Cyber Hygiene

Credential Theft Via Spoofed Login Pages Increase, Healthcare Top Target

by Jessica Davis

A new IRONSCALES report found a drastic increase in successful credential theft attempts sent through spoofed login pages and social engineering attacks during the first half of...

BEC Phishing Campaigns Bypass MFA, Target Office 365 Executive Accounts

by Jessica Davis

Entities should be on the alert for an increase in two business email compromise campaigns. One report found an increase in BEC phishing campaigns targeting the Microsoft Office 365 accounts...

How Zero Trust in Healthcare Can Keep Pace with the Threat Landscape

by Jessica Davis

Healthcare has and will likely always be a prime target for cyberattacks, given its valuable data and the need for constant data access to ensure continuity of care. While awareness around these issues has drastically improved, the need...

IBM: Health Sector Leads in Annual Data Breach Costs, Topping $7.13M

by Jessica Davis

Data breaches are the most expensive in healthcare when compared to all global industries with costs topping $7.13 million annually, compared to $3.86 million across all sectors,...

Feds Issue Joint Alert on COVID-19 CARES Act Payment Fraud Scams

by Jessica Davis

In the latest COVID-19-related fraud scheme, threat actors are looking to exploit the Coronavirus Aid, Relief, and Economic Security (CARES) Act economic impact payments to steal personal and financial...

Paying the Ransom Can Double Ransomware Attack Recovery Costs

by Jessica Davis

The FBI, Microsoft, and others have repeatedly warned victims to not pay the ransom demands after a cyberattack for a host a reasons. And new research from Sophos confirms that ransomware payments can...

HSCC Shares Guide to Protecting Healthcare Trade Secrets, Research

by Jessica Davis

The Healthcare and Public Health Sector Coordinating Council (HSCC) today released guidance on ways healthcare entities can best protect its trade secrets, medical research, and other valuable...

DHS CISA, FBI Reveal The Top Exploited Vulnerabilities Since 2016

by Jessica Davis

The Department of Homeland Security Cybersecurity and Infrastructure Security Agency, the FBI, and the US government recently unveiled the 10 most exploited vulnerabilities from 2016 and 2019, as well...

Feds Alert to New North Korean Malware Threats, Mitigation Tactics

by Jessica Davis

The Department of Homeland Security Cybersecurity and Infrastructure Security Agency, the FBI, and the Department of Homeland Security issued an alert regarding three newly identified malware variants...

OCR Shares COVID-19 Privacy and Security Threat Resources

by Jessica Davis

The Office for Civil Rights issued a list of COVID-19-related cyber threat resources for covered healthcare providers to help the sector best prevent, detect, respond, and recover from privacy and...

APT Hackers Targeting Healthcare, Essential Services Amid COVID-19

by Jessica Davis

Healthcare organizations and other essential services are again being warned that advanced persistent threat (APT) hacking groups are continuing to exploit the COVID-19 pandemic; this time to actively...

NSA Shares Guide to Web Shell, Malware Vulnerabilities, Mitigation

by Jessica Davis

The National Security Agency (NSA) and Australian Signals Directorate released an advisory urging organizations to be alert for common web shell and malware potentially found on web-facing and internal...

Threat Actors Targeting Hospitals with Double Extortion Ransomware

by Jessica Davis

An increasing number of hacking groups have begun following a disturbing trend first made public by the notorious Maze threat actors: targeting hospitals and other healthcare entities with double...

AMA, AHA Share COVID-19 Telework Guidance for Hospitals, Providers

by Jessica Davis

The American Medical Association and the American Hospital Association developed guidance for hospitals and providers on best practice cybersecurity for the remote work environment, in response to the...

Microsoft Patches 3 Zero-Day Exploits, Delays Some End-of-Support

by Jessica Davis

Microsoft released fixes for 113 vulnerabilities found in a range of platforms on Patch Tuesday, including 15 critical flaws, 93 important issues, and three zero-day vulnerabilities. The tech giant...

FBI Alerts to BEC Scams Targeting COVID-19 PPE Supply Procurement

by Jessica Davis

Cybercriminals are again leveraging the COVID-19 pandemic for financial benefit. The latest FBI alert warns hackers are targeting the government and other healthcare industry buyers attempting to...

Hackers, APTs Exploiting COVID-19 with Phishing Attacks, Fraud Schemes

by Jessica Davis

Cybercriminals and advanced persistent threat (APT) groups are exploiting the Coronavirus pandemic with COVID-19-related scams and phishing attacks, according to a joint alert from the Department of...

82% of Vulnerable Microsoft Exchange Servers Remain Unpatched

by Jessica Davis

A few weeks following the Department of Homeland Security Cybersecurity and Infrastructure Security agency alerted to hackers targeting a critical Microsoft Exchange server vulnerability, a new...

FBI: COVID-19 Spurs Increase in Zoom, Video-Conferencing Hijacking

by Jessica Davis

The FBI released insights into ways organizations can defend against video-teleconferencing hijacking attempts, in the wake of a rise in “Zoombombing” attacks on the Zoom VTC platform...

FBI Again Alerts to Kwampirs Malware Supply Chain Cyberattacks

by Jessica Davis

The FBI released a Private Industry Notification, which again warns organizations that Kwampirs malware is being leveraged in ongoing supply chain cyberattacks targeting global...