The fifth in a five-part cyber threat series focuses on supply chain attacks. This indirect approach will exploit a weakness in one company’s cyber defenses to gain access to thousands of other targets. Whether it is an organization allowing vendors and suppliers network access, or a software-as-a-service company pushing out updates to its customers,…
The fourth in a five-part cyber threat series focuses on ransomware attacks where information or computer networks are held hostage until money has been paid. Often these attacks are specifically timed and targeted to place the most pressure on businesses. However, paying the ransom does not guarantee returned access as attacks may not always be…
The third in a five-part series demystifies business email compromise schemes and how they target those who transfer funds electronically. Often using information gained from previous successful phishing attacks, BEC scams can average millions of dollars per incident. While the FBI’s cyber attack response may help recover lost funds, the time and resources lost to…
The second in a five-part series explores phishing, and the more targeted spear phishing attack, and how they manipulate information while creating a sense of urgency to trap the unwary. Used within the Cyber Attack Cycle, phishing attacks can allow the attacker some level of unwanted access to a victim’s accounts, devices, or even the…
Cyber attacks leverage information to gain access to proprietary networks, electronic devices, and chains of command in order to gain intelligence, funds, cause disruptions, or all of the above. Attackers can range from the highly sophisticated, state-backed advanced persistent threats to well-organized, financially motivated criminal groups, to more rudimentary individual scammers. The first in a…
