Retail CISOs and the areas they must focus on

In this interview, Matt Cooke, cybersecurity strategist, EMEA at Proofpoint, discusses the cybersecurity challenges for retail organizations and the main areas CISOs need to focus on. Generally, are retailers paying enough attention to security hygiene… Continue reading Retail CISOs and the areas they must focus on

BEC attacks increase in most industries, invoice and payment fraud rise by 155%

BEC attacks increased 15% quarter-over-quarter, driven by an explosion in invoice and payment fraud, Abnormal Security research reveals. “As the industry’s only measure of BEC attack volume by industry, our quarterly BEC research is important for CISOs… Continue reading BEC attacks increase in most industries, invoice and payment fraud rise by 155%

Attackers finding new ways to exploit and bypass Office 365 defenses

Over the six-month period from March to August 2020, over 925,000 malicious emails managed to bypass Office 365 defenses and well-known secure email gateways (SEGs), an Area 1 Security study reveals. How criminals bypass Office 365 defenses Attackers i… Continue reading Attackers finding new ways to exploit and bypass Office 365 defenses

Phishing gangs mounting high-ticket BEC attacks, average loss now $80,000

Companies are losing money to criminals who are launching Business Email Compromise (BEC) attacks as a more remunerative line of business than retail-accounts phishing, APWG reveals. High-ticket BEC attacks Agari reported average wire transfer loss fro… Continue reading Phishing gangs mounting high-ticket BEC attacks, average loss now $80,000

Targeted Attacks Part 1 – OSINT and Reconnaissance

In our August monthly episode we start our three part series on targeted attacks. In this episode we focus on OSINT (Open Source Intelligence) and reconnaissance techniques used by attackers in phishing and BEC (Business Email Compromise) attacks. Kyle… Continue reading Targeted Attacks Part 1 – OSINT and Reconnaissance

Brand impersonation is a go-to tactic for attackers, especially for credential phishing and BEC attacks

Trends in BEC and email security during Q2 2020 included a peaking and plateauing of COVID-19-themed email attacks, an increase in BEC attack volume and acceleration of payment and invoice fraud, according to an Abnormal Security report. The report als… Continue reading Brand impersonation is a go-to tactic for attackers, especially for credential phishing and BEC attacks

6,600 organizations bombarded with 100,000+ BEC attacks

Cybercriminals are increasingly registering accounts with legitimate services, such as Gmail and AOL, to use them in impersonation and BEC attacks, according to Barracuda Networks. BEC attacks impact thousands of organizations In their most recent thre… Continue reading 6,600 organizations bombarded with 100,000+ BEC attacks

200% increase in invoice and payment fraud BEC attacks

There has been a 200 percent increase in BEC attacks focused on invoice or payment fraud from April to May 2020, according to Abnormal Security. This sharp rise continues the trend. Also, according to the report, invoice and payment fraud attacks incre… Continue reading 200% increase in invoice and payment fraud BEC attacks

Email security challenges and BEC trends during the pandemic

COVID-related attacks increased 436% between the second and third weeks of March 2020, with an average 173% week-over-week increase during the quarter, according to Abnormal Security. A trend toward payment fraud There has also been a shift from indivi… Continue reading Email security challenges and BEC trends during the pandemic

The “return” of fraudulent wire transfers

Ransomware gangs targeting businesses are currently getting more public attention, but scammers trying to trick employees into performing fraudulent wire transfers are once again ramping up their efforts, US-headquartered law firm BakerHostetler has wa… Continue reading The “return” of fraudulent wire transfers