Every major event will attract cyber criminals. What is your organisation doing on Monday 19 September?

The Queen

The death of Her Majesty Queen Elizabeth II and the associated ceremonies and period of national mourning will be no exception: Potential phishing activity update – NCSC.GOV.UK The National Cyber Security Centre has issued a warning that the potential for malicious phishing, social engineering and scam cyber-attacks is very high …

Phishing attacks will become easier for the threat actors and harder for you defend against

There is no doubt that threat actors are becoming more organised, with skilled organisations, not only carrying out attacks, but suppling highly capable hacking tools to less skilled organisations – fo a cut of the illicit profits: New EvilProxy service lets all hackers use advanced phishing tactics (bleepingcomputer.com) This one …

Malware in redistributed James Webb Space telescope images – but we use JWST images here at Smart Thinking!

James Webb Telescope

Here is a story that shows you always have to keep your guard up when dealing with cyber-security, as the threat landscape is constantly changing and the threat actors will always choose vectors that are in the news. This particular attack comes right back here to Smart Thinking – malware …

And here is another phishing attack story – have you visited CyberAwake.co.uk yet?

I have just written about this supply chain cyber attack: Developer software repositories will always be a prime target for threat actors – Smart Thinking Solutions And here is another phishing attack hunting for the unwary who will reveal their credentials: DoorDash customer info exposed in Oktapus phishing attack • …

Ransomware this week… with an international flavour and some advice.

Ransomware cartoon

Here are some of the leading ransomware stories this week: Greek natural gas operator suffers ransomware-related data breach – Bleeping Computers LockBit ransomware group implicated in crippling attack on French hospital – The Record by Recorded Future New ‘Donut Leaks’ extortion gang linked to recent ransomware attacks (bleepingcomputer.com) RansomEXX claims …

Pass the cookie attack – but you still need to use MFA and have these extra steps in place

We cannot emphasise how important multi-factor authentication is to your cyber security – however, of course, the threat actors do have ways around it: Cookie stealing: the new perimeter bypass – Sophos News The threat is malware getting into your system and stealing session cookies that are associated with the …