This research by Okta highlights the issue of users recycling passwords: Okta: Credential stuffing accounts for 34% of all login attempts (bleepingcomputer.com) There were more login attempts by threat actors than legitimate ones! They were just trying out passwords to see if someone was stupid, (sorry if you do not …
Be careful of security theatre and user security fatigue
Would your Global Administrator account security up to our standard? Protecting credentials is an important step in any cyber security plan. One of the first things we always do when taking on a cyber security client, before we even embark on the fact finding and documentation, is make sure everyone …
Continue reading “Be careful of security theatre and user security fatigue”
Omphaloskepsis?
This is what cyber security can become. Not sure what it means? It means navel gazing – thinking about one thing to the exclusion of the wider picture. So what am I talking about? You have been sold anti-virus and a firewall, you’ve set the updates to automatic and have …
American Airlines data breach due to employee email accounts being compromised
American Airlines had to write to customers to explain that personal data had been stolen through a cyber-attack – although they did state in the letter that there was no evidence of that personal data having been misused! I would like to see their evidence of that, because I think …
Continue reading “American Airlines data breach due to employee email accounts being compromised”
Do not use the password Qwerty1234 – the hackers know that one!
It is being reported that the hack on the Holiday Inn was done for fun and that the hackers, from Vietnam, used the password Qwerty1234 to gain access. IHG hack: ‘Vindictive’ couple deleted hotel chain data for fun – BBC News If you want your people to have a better …
Continue reading “Do not use the password Qwerty1234 – the hackers know that one!”