Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Amid Sharp Increase in Identity-Based Attacks, CrowdStrike Unveils New Threat Hunting Capability

Adversaries are doubling down on identity-based attacks. According to Nowhere to Hide: CrowdStrike 2023 Threat Hunting Report, we’ve seen an alarming 583% year-over-year increase in Kerberoasting attacks — a form of identity-based threat — and a 147% increase in access broker advertisements on the dark web. Adversaries are evolving their tradecraft, building custom tooling and leveraging more than usernames and passwords to breach your environments.

BEC Trends: Payroll Diversion Dominates and Sneaky Multi-Persona Attacks Emerge

Business Email Compromise (BEC) remains a lucrative threat vector for attackers. The FBI’s IC3 reported that in 2022, they received 21,832 complaints with adjusted losses of over $2.7 billion. When it comes to targeted attacks, threat actor sophistication is evident in their ever-evolving tactics, even as detection capabilities and preventative measures improve. Let’s take a look at the current BEC landscape for the first half of 2023.

What is Carding? Inside Russian Carding Fraud: Part 1

Carding fraud is a financially devastating attack made more damaging by bot-based automation that allows it to run at scale. Russian cybercriminals are especially prolific in the carding space. The Netacea threat research team recently conducted an in-depth investigation into this notorious carding fraud ecosystem.

Azure Cloud Security: Benefits And Best Practices

In today’s rapidly evolving digital landscape, businesses are increasingly turning to cloud solutions to power their operations, streamline processes, and drive innovation. Among the leading players in this domain, Microsoft Azure stands out as a versatile and robust cloud platform that offers a wide array of services to meet diverse business needs. However, with great power comes great responsibility, and ensuring your Azure cloud’s security is paramount.

Device Authority KeyScaler as a Service: Mastering and Empowering Successful IoT Implementation Aligned With The CISA Framework To Deliver Zero Trust For IoT

The Internet of Things (IoT) has unlocked a realm of innovation and transformation, promising to revolutionize industries across the board. Author Felipe Fernandes successfully points out in his article for Forbes “Mastering IoT Implementation: Strategies For Successful Outcomes,” the success of IoT initiatives hinges on careful planning, strategic execution, and a commitment to addressing key challenges.

Common Types of Financial Frauds and How to Protect Your Money Online

In today's interconnected world, where digital transactions have become the norm, it is vital to be aware of the ever-present threat of fraud scams and take proactive measures to protect your hard-earned money. Whether it's one of the many types of cybercrimes (phishing emails, identity theft, online shopping scams, or investment fraud), fraudsters are constantly devising new ways to exploit unsuspecting individuals.