31.01.2023 Views

Cyber Defense eMagazine February Edition for 2023

Cyber Defense eMagazine February Edition for 2023 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

Cyber Defense eMagazine February Edition for 2023 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

MSPs are enticing targets <strong>for</strong> ransomware gangs since they have access to the data of numerous<br />

organisations and so offer a variety of potential extortion sources. The renowned REvil organisation has<br />

previously targeted MSPs.<br />

7. Uber's internal systems compromised.<br />

In September 2021, a teenager completely infiltrated the internal systems of the ride-sharing business<br />

Uber. It appears that he employed a technique known as an MFA Fatigue attack, in which, if the<br />

organisation uses MFA (Multi-Factor Authentication), the attacker floods the employee with<br />

authentication requests on their mobile phone after obtaining their credentials.<br />

In this case, the attacker eventually contacted the employee via WhatsApp and pretended to be from<br />

Uber IT, warning him that he needed to accept the auth request or they would keep coming if he didn't.<br />

At first, the employee will refuse them because they aren't logging in, but initially they will be refused<br />

because they are not logging in. The worker gave in after becoming sufficiently weary of the constant<br />

solicitations. The attacker then could add his own device to the MFA to change it.<br />

The attacker then got in via the company VPN and started digging around. He quickly discovered a<br />

Powershell script with administrator login in<strong>for</strong>mation <strong>for</strong> the Thycotic privileged access management<br />

(PAM) plat<strong>for</strong>m used by the business. All necessary credentials were accessible from this point. Given<br />

that the attacker appears to have done it out of curiosity rather than <strong>for</strong> financial gain or other more<br />

harmful mischief, Uber may be regarded as <strong>for</strong>tunate in this case.<br />

So what's in store <strong>for</strong> <strong>2023</strong>?<br />

This is un<strong>for</strong>tunately just some of the largest attacks that hit organisations throughout 2022, there were<br />

many more reported and many that are yet to be uncovered. Although analysis of trends <strong>for</strong> 2022 is still<br />

ongoing, it appears that many of the common suspicious groups are still active. Even if ransomware isn't<br />

garnering as much attention as it did a year ago, it still poses a serious threat to many businesses. The<br />

majority of businesses could per<strong>for</strong>m significantly better with just the most fundamental security best<br />

practices such as the protection of mobile devices and the security behind them, according to surveys<br />

like the IBM Security Cost of Data Breaches 2022.<br />

As we move towards <strong>2023</strong>, cybersecurity and threat detection remain important priorities. For both large<br />

and small firms, data breaches and the theft of sensitive in<strong>for</strong>mation continue to be a concern.<br />

To sign up <strong>for</strong> a free trial of Salt Communications contact us on info@saltcommunications.com or visit<br />

our website at https://saltcommunications.com/.<br />

<strong>Cyber</strong> <strong>Defense</strong> <strong>eMagazine</strong> – <strong>February</strong> <strong>2023</strong> <strong>Edition</strong> 64<br />

Copyright © <strong>2023</strong>, <strong>Cyber</strong> <strong>Defense</strong> Magazine. All rights reserved worldwide.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!