Spear phishing is now the main attack vector for cybercriminals, says Europol

Spear phishing is the number one cyber-threat to organizations in the European Union, according to the European Cybercrime Centre (EC3), a group of cybersecurity experts set up by Europol to help fight cybercrime. The finding is highlighted in the EC3&… Continue reading Spear phishing is now the main attack vector for cybercriminals, says Europol

BEC Scam Swindled Media Conglomerate Nikkei out of $29 Million

Nikkei Inc. recently fell victim to a business email compromise (BEC) scam that cost the Japanese media conglomerate $29 million. In a statement released on October 30, the company revealed that an employee at Nikkei America based in New York City fell… Continue reading BEC Scam Swindled Media Conglomerate Nikkei out of $29 Million

Payroll Fraud: A Growing BEC Threat to Businesses and Employees Alike

The FBI reports that direct deposit change requests increased more than 815% in 1.5 years $8.3 million. This number represents the total reported losses due to payroll diversion schemes that…
The post Payroll Fraud: A Growing BEC Threat to Businesse… Continue reading Payroll Fraud: A Growing BEC Threat to Businesses and Employees Alike

[SANS ISC] Keep an Eye on Remote Access to Mailboxes

I published the following diary on isc.sans.edu: “Generating PCAP Files from YAML“: BEC or “Business Email Compromize” is a trending thread for a while. The idea is simple: a corporate mailbox (usually from a C-level member) is compromized to send legitimate emails to other employees or partners. That’s the very first

[The post [SANS ISC] Keep an Eye on Remote Access to Mailboxes has been first published on /dev/random]

Continue reading [SANS ISC] Keep an Eye on Remote Access to Mailboxes

Why This New Cybergang is Heralding a New Age For BEC

Cybergang Silent Starling is taking BEC to the next level by targeting suppliers and going after their customers. Continue reading Why This New Cybergang is Heralding a New Age For BEC

APWG: Phishing Continues to Rise, Threat Actors Love Gift Cards

This week APWG released its findings from Q2 of this year that compiles insights from their member companies and provides an analysis of how phishing is changing. This quarter’s report shows that phishing attacks continue to increase, both SaaS an… Continue reading APWG: Phishing Continues to Rise, Threat Actors Love Gift Cards

Leaky database spills data on 20 million Ecuadorians and businesses

Included are deep details on 7 million minors, one grownup named Julian Assange, and perhaps a few million deceased Ecuadorians. Continue reading Leaky database spills data on 20 million Ecuadorians and businesses