Sometimes a cyber-attack is something as easy as adding a button saying “view document” when whale phishing senior people in an organisation. Ongoing Microsoft Azure account hijacking campaign targets executives (bleepingcomputer.com) Your takeaway When was the last time you audited the credentials and associated authorisations of those credentials? If you …
Talk! Talk! Cyber Security Awareness
For those of you who read Smart Thinking regularly, you will realise that this “Wednesday Bit” has been published a day late – the reason was a Cyber Security Awareness talk I gave yesterday at the East Lincs Expo. I delayed publishing, rather than writing an article and leaving it …
Facebook Credentials
Facebook is a vital tool on most organisation’s marketing plan – so the Facebook credentials are as important as the ones for the bank and Microsoft 365. Threat actors targeting personal accounts with their phishing campaigns could also catch your business account details. Watch out for “I can’t believe he …
If Microsoft can get it wrong…
It has emerged that senior executives at Microsoft had their emails hacked and monitored by Russian threat actors for nearly 2 months. Microsoft network breached through password-spraying by Russian-state hackers | Ars Technica The attack was not sophisticated. The threat actors – Midnight Blizzard – using nothing more than a …
Credential Theft
If Have I Been Pwned have these credentials then you can bet that the threat actors have them as well. Have I Been Pwned adds 71 million emails from Naz.API stolen account list (bleepingcomputer.com) Your takeaway from this It is important you and your team understand the importance of any …