It’s not enough to tell your employees to create strong, unique passwords. You’ve got to actively manage and protect their login accounts, especially those belonging to privileged users. Many types of software can help you handle employee credentials to make your organization as safe and smooth-running as possible.
Turkey-based threat group Cobalt Terrapin has been deploying a more sophisticated business email compromise campaign involving both vendor and executive impersonation since July, ZDNET reports.
Numerous state-sponsored threat actors were able to compromise and exfiltrate data from a U.S.-based defense industrial base organization between January and November last year, BleepingComputer reports.
Microsoft updated the mitigation measures security teams should undertake for recently disclosed Exchange vulnerabilities that can lead to remote code execution after it was reported that previous measure can easily be bypassed.
Four British researchers discovered the vulnerabilities, two of which were critical and could allow a malicious server to read user messages and impersonate devices.
This week’s healthcare data breach roundup is led by a cyberattack on Family Medical Center Services in Texas that compromised a large trove of patient data, and includes multiple cyberattacks and email-related security incidents.
Kaspersky researchers noticed a rather clever way threat actors are deceiving users in China into downloading a malicious Tor browser installer that can be used to track the history and location of its victims.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.