Executive Spotlight: Q&A with Lead Scientist & Sr. Principal Engineer, Christiaan Beek

Welcome back to our executive blog series, where I chat with some of the pivotal players behind McAfee Enterprise and the Advanced Threat Research Team to hear their takes on today’s security trends, challenges, and opportunities for companies across the globe.

Q: What got you interested in technology and threat research?

As a little kid, I was always fascinated by technology. I would wrench open devices to study the inner workings, and try to assemble again. At age 12 I worked for three years to assemble my first computer-setup: a Commodore 64, disk-drive, and printer followed by an Amiga with modem. From that point, it was a journey from sysadmin to ethical hacking into specializing in digital forensics and joining FoundStone to setup their EMEA Incident Response team. As I witnessed multiple malware incidents and later some of the largest cyber-attacks ever, I got fascinated by all the mechanics around threat research. From this, I made a move to lead and envision new ways (threat) research can assist both responders and customers.

Q: If you could relive any moment of your life, which would it be?

Good question. There are so many moments to be thankful for that I cannot choose one but will mention a few that might sound obvious: My baptism, marrying my wife, and the birth of my kids.

Q: What are some of the trends you are currently noticing across the threat landscape?

Of course, we still have ransomware around as an ongoing issue that keeps evolving and impacting not only companies around the world, but also our lives more and more when fuel is not available, supermarkets are closed, and delivery of goods cannot be executed. Secondly, I would say the volume and number of attacks that happen have increased dramatically over the years. The moment a vulnerability is announced, within days, a proof-of-concept is available and within a week it is used by adversaries (either cybercrime or nation-state motivated). The feedback from our customers has been tremendously positive.

Q: How do you react to constantly changing threats in the market?

The only way to respond to the constant changing threats is to be flexible and willing to change. What works today might not work tomorrow, which should be part of your strategy when it comes to threat hunting, threat detection, and protection. My team is eager to learn and we are committed to protect our customers, innovate new research techniques, and adapt that into our technology.

The post Executive Spotlight: Q&A with Lead Scientist & Sr. Principal Engineer, Christiaan Beek appeared first on McAfee Blogs.

—————
Boost Internet Speed
Free Business Hosting
Free Email Account
Dropcatch
Free Secure Email
Secure Email
Cheap VOIP Calls
Free Hosting
Boost Inflight Wifi
Premium Domains
Free Domains

“School Should Be Teaching Online Safety” says 80% of Aussie Parents

Despite the old adage that it takes a village to raise a child, new research from McAfee shows that an overwhelming majority (80%) of Aussies believe schools should be taking the lead in teaching our kids about online safety. 

At the time of the survey in April 2021, nearly 40% of Aussie households had at least one family member participating in online learning – a number that has most definitely increased in recent months as the Delta variant hit Australian shores causing many schools to shut.  

Aussies Worry about the Risks Online but Many Don’t Take Action 

But despite this turn of circumstances, nearly half (48%) of Aussies didn’t take any proactive security measures to protect their family/home when distance learning was introduced, with 34% saying they saw no increased risk to their children’s online safety. 

Now, here’s the interesting thing – these same respondents nominated in the same survey that they were extremely worried about their kids’ exposure to scams (43%), sharing personal information (43%), illegal content (35%), cyber-bullying (40%) and misinformation (31%). Confusing, I know! 

Aussies Believe Schools Should Be Teaching CyberSafety 

There’s no doubt that managing kids and home learning while trying to keep your day job and keep the household running is an extremely tough gig! In fact, I think thousands of Aussie parents will deserve medals after this chapter in our lives is over! But, I think these statistics aren’t just about being overwhelmed and a lack of energy – as 80% of surveyed Aussies nominated that they believe it is in fact the responsibility of schools to teach our kids how to be safe online. Only 8% considered cyber safety to be the responsibility of the parent. 

If there is anyone who gets just how intense family life can be it’s me! With four boys, 2 cats, a dog (and an action-orientated husband) to manage, I have spent years living in chaos! And I understand that it can often feel like a relief knowing that something can be outsourced or managed by someone else. But, when it comes to something as important as our kids’ online safety, it’s essential that we put that top of our list. Forget about the ironing and focus on your kids’ digital lives instead. I’ve been an advocate of letting body heat remove wrinkles for years! 

My Recommended Action Plan 

Even if your child’s school is teaching digital wellness, it’s imperative that these messages are also reinforced at home. Here’s what I recommend you do to get your family’s digital safety back on track: 

1. Device Check 

Ensure the devices your kids are using for school or homework have up-to-date software and security settings. Software updates are usually designed to address security weaknesses so using outdated software can be quite risky!

2. Password, Password, Passwords!! 

Using weak and default passwords is, without a doubt, one of the easiest ways to get into trouble online. Ensure your kids have complex passwords for EACH of their online accounts and devices. Passwords should contain numbers, special characters and both lower- and upper-case letters. I’m a big fan of a crazy sentence. Why not consider a password manager like McAfee’s free True Key to help them generate and remember their passwords – I know I couldn’t survive without mine!   

3. Use a Virtual Private Network (VPN) 

Why not consider using a VPN when your kids are accessing online learning services from home to protect the privacy of the internet connection? VPN’s use bank-grade level encryption to stop hackers from stealing personal information like passwords or data.   

4. Teach Personal Responsibility 

With both misinformation and disinformation a major concern for Aussie parents, it’s critical that us parents educate our kids about fake news: how to spot it and why they shouldn’t share it. Encouraging kids to question what they read or watch online before deciding whether it is to be believed and shared will help establish important digital critical thinking skills. 

5. Talk About Digital Safety and Wellness – whenever possible 

I’m a big fan of family dinners, even if it’s a humble bowl of spaghetti bolognese! In my opinion, it’s the perfect time to weave in messages of all types but particularly ones of a digital safety nature. Why not share stories of data breaches and what affected consumers had to do to prevent being hacked? Share news stories about new apps or scams, stories of kindness online, and digital citizenship you’ve witnessed online. Once you start sharing, you’ll likely find your kids want to share their stories too. But always keep calm and interested – otherwise they’ll stop talking!! 

As a mum of four and cybersafety ambassador, I believe that a village approach is the absolute best way of setting our kids up for safe and positive interactions online. So, if you’re feeling unsure about what to tell your kids, spend some time educating yourself. We are lucky enough to have a dedicated eSafety Commissioner here in Australia who has a plethora of resources for Aussie parents. Spend some time checking it out, I promise it will be worth it! 

Till next time, stay safe everyone! 

Alex xx 

The post “School Should Be Teaching Online Safety” says 80% of Aussie Parents appeared first on McAfee Blogs.

—————
Boost Internet Speed
Free Business Hosting
Free Email Account
Dropcatch
Free Secure Email
Secure Email
Cheap VOIP Calls
Free Hosting
Boost Inflight Wifi
Premium Domains
Free Domains

European Telecom Company Expands Its Footprint to Better Protect Users and Customers

Hyper-growth and a determination to stand above the crowd compelled a popular Eastern European telecom to upgrade its trusty McAfee Enterprise security infrastructure, which they relied on for many years to protect their 8,000 corporate endpoints. Competitive pressure to keep costs low and cybercriminals at bay for both their internal users and their customers spurred the mobile and fixed telephony company to enhance their existing security architecture with the latest endpoint and cloud-based protections from McAfee Enterprise.

The integrated McAfee Enterprise approach—with ePolicy Orchestrator ( ePO™) at the helm as the single-pane-of-glass management hub—enabled the security architect to build out a strong security foundation, with McAfee Enterprise endpoint and data protection solutions and Microsoft Defender as the mainstays of the telecom’s line of defense.

With ransomware and other advanced threats grabbing headlines, the telecom company felt a pressing need to upgrade its McAfee Enterprise infrastructure and expand its on-premises endpoint protection to cloud-based McAfee Enterprise Endpoint Security. The organization also added MVISION™ Endpoint Threat Detection and Response (MVISION® EDR) and deployed two McAfee Enterprise Advanced Threat Defense appliances for dynamic and static sandboxing. These deployments were easily integrated into the telecom’s existing security architecture—with all solutions managed by McAfee Enterprise ePO software. 

Faster time to detection, investigation, and remediation

McAfee Enterprise Endpoint Security was instrumental in both simplifying and boosting endpoint protection, as multiple technologies—Threat Protection, Firewall, Web Control, and Adaptive Threat Prevention—are consolidated into a single agent. Leveraging threat data from local endpoints and McAfee Enterprise Global Threat Intelligence in the cloud, the telecom’s security team is also empowered to detect zero-day threats in near real time. When a threat is identified on a given endpoint, that information is automatically shared with all the other endpoints. And when an unknown or suspicious file is detected, it is immediately quarantined for analysis by MVISION EDR or the McAfee Endpoint Advanced Threat Defense sandbox.

Investigation had once been a lengthy and laborious manual process, often taking days or weeks. Sometimes detections of malicious activity were even ignored due to time constraints. But, after implementing MVISION EDR, things changed dramatically. Investigations and remediations now take as little as 10 to 15 minutes. The security team is catching more threats than ever before, their workflows are streamlined, and investigations are faster. Best of all, thanks to MVISION EDR, team members have expanded their threat-hunting capacity—without augmenting their staff.

Alerts coordinate with action

Because McAfee Enterprise Advanced Threat Defense appliances and MVISION EDR are integrated with McAfee Enterprise SIEM solutions and McAfee Enterprise ePO software, suspicious activity at an endpoint automatically triggers an investigation. Advanced analytics and artificial intelligence (AI) in MVISION enable administrators to understand the alert, sort out the facts, and remediate any threat. MVISION EDR does all the preparatory work, gathering and distilling relevant data, such as IP addresses and information about devices and users. Graphic visualizations and AI-guided investigations help analysts quickly get a grasp on what’s happening. The security team can also run real-time queries to see if something similar has occurred anywhere else, and they can conduct historical searches for greater context.

“The volume of malware we have to deal with has definitely shrunk since implementing McAfee Enterprise Endpoint Security. But the addition of MVISION EDR has made an even bigger impact on security posture. When our endpoints do encounter malware, we can now respond many times faster and more effectively than ever before,” points out the security architect.

Achieving a proactive stance

The enhanced McAfee Enterprise security architecture has transformed the telecom company’s approach to maintaining a more resilient security posture. The company is now taking a more proactive defense as a result of the new, fully coordinated McAfee Enterprise toolset.

In addition to advanced threat-hunting capabilities, the ability to share threat information across the organization via the Data Exchange Layer (DXL) has also contributed to a more proactive stance. For example, whenever a malicious file is identified, that information is automatically added to the McAfee Enterprise Threat Intelligence Exchange threat reputation database and shared with all DXL-connected systems: endpoints, SIEM, Advanced Threat Defense sandboxes, MVISION EDR software, and even the company’s Cisco pxGrid infrastructure, a multivendor, cross-platform network system that pulls together different parts of an IT infrastructure.

The European telecom company has plans to migrate to the cloud, beginning with Microsoft Office 365 and Microsoft Azure. For the time being, the organization plans to keep the McAfee Enterprise ePO management console on premises, but, in the very near future, the plan is to protect internet-only users with cloud-based MVISION ePO™.

“Taking measured steps to augment our security infrastructure has helped us succeed at keeping our company and customers secure,” say the security architect. “It’s nice to know that McAfee Enterprise can support us wherever we are in our journey and can extend our integrated security infrastructure from device to cloud when we’re ready.”

 

The post European Telecom Company Expands Its Footprint to Better Protect Users and Customers appeared first on McAfee Blogs.

—————
Boost Internet Speed
Free Business Hosting
Free Email Account
Dropcatch
Free Secure Email
Secure Email
Cheap VOIP Calls
Free Hosting
Boost Inflight Wifi
Premium Domains
Free Domains

Hacker Steals $12M from DeFi Platform

Hacker Steals $12M from DeFi Platform

“Wrapped” Bitcoin worth more than $12m has been stolen from the decentralized finance protocol pNetwork. 

The cross-chain project announced the theft of 277 BTC on September 19 via Twitter, ascribing the hack to a codebase vulnerability. 

The theft was executed on Binance Smart Chain, which featured in the biggest ever DeFi heist in history – the $610m Poly Network hack that took place in August.

pNetwork supports multiple blockchains, including Ethereum, xDAI, EOS, Polygon, Binance Smart Chain, Telos and Ultra. Wrapped tokens increase interoperability between different blockchains by making it possible for currency created on one blockchain to cross onto another.

“We’re sorry to inform the community that an attacker was able to leverage a bug in our codebase and attack pBTC on BSC, stealing 277 BTC (most of its collateral),” said pNetwork.

“The other bridges were not affected. All other funds in the pNetwork are safe.”

The DeFi platform said it had identified the bug but would keep certain data bridges closed until a fix was found.

In a bid to recover the stolen cryptocurrency, pNetwork has publicly offered to pay its attacker 12.5% of their total illegal haul. 

“To the black hat hacker. Although this is a long shot, we’re offering a clean $1,500,000 bounty if funds are returned,” said the platform on Twitter.

“Finding vulnerabilities is part of the game, unfortunately, but we all want [the] DeFi ecosystem to continue growing, returning funds is a step in that direction.”

pNetwork is undertaking an investigation which it described as “a detailed post-mortem.”

“We want to assure everyone that we are prioritizing security over speed,” said the platform, adding, “Bridges are being extensively reviewed for that and similar exploits.”

On Monday, pNetwork said that while its Telos and EOS bridges had been safely restored, they would be “running with extra security measures in place for the first few days.”

In its most recent update, posted at around 6 pm Eastern Time on September 20, the platform said that the pUOS on Ultra bridge was not affected and is now back up.

“A detailed post-mortem will be shared tomorrow. Updates to follow on the gradual reactivation of all other bridges,” said pNetwork. 

—————
Boost Internet Speed
Free Business Hosting
Free Email Account
Dropcatch
Free Secure Email
Secure Email
Cheap VOIP Calls
Free Hosting
Boost Inflight Wifi
Premium Domains
Free Domains

Medical Device Cybersecurity Center Launches in Minnesota

Medical Device Cybersecurity Center Launches in Minnesota

The University of Minnesota has announced a new center that aims to ensure that medical devices are safe and secured against cybersecurity threats. 

The Center for Medical Device Cybersecurity (CMDC) was created after members of the medical device manufacturing industry called for a collaborative hub to facilitate discovery, outreach, and workforce training in device security. 

CMDC will foster university-industry-government collaborations focusing on developing new education and training, technologies, and research to address potential threats to the cybersecurity of medical devices. 

Collaborators already signed up to work with the CMDC include the University of Minnesota College of Science and Engineering, the Technological Leadership Institute, the Office of the Vice President for Research, and the Earl E. Bakken Medical Devices Center.

“Cultivating innovative and transformational partnerships, like the CMDC, is a core focus of MPact 2025, our new systemwide strategic plan,” said University of Minnesota president Joan Gabel. “I’m excited about how this new innovative center will enhance the security of our state’s thriving medtech sector and beyond.”

The Technological Leadership Institute (TLI), an interdisciplinary center at the University of Minnesota that is sited within the College of Science and Engineering, will house the new CMDC.

“The center aligns perfectly with our mission and merges the expertise within our Medical Device Innovation and Security Technologies masters programs,” said TLI director Allison Hubel. 

“While manufacturers can ensure a high level of safety through testing, the security of connected devices remains a growing and moving target, making this collaboration and the work of the CMDC critical to the industry and all those it serves.”

Plans for the center’s first year include a hackathon, roundtables, organizing networking and training opportunities, implementing a medical device cybersecurity short course that TLI will launch this fall, and establishing a medical device cybersecurity internship program. 

Health industry companies Boston Scientific, Smiths Medical, Optum, Medtronic, and Abbott Laboratories provided much of the funding for the CMDC.

The United States remains the largest medical device market globally, with 40% of the global medical device market (valued at $156bn) in 2017. By 2023, the medical device market in the US is expected to grow to $208bn.

—————
Boost Internet Speed
Free Business Hosting
Free Email Account
Dropcatch
Free Secure Email
Secure Email
Cheap VOIP Calls
Free Hosting
Boost Inflight Wifi
Premium Domains
Free Domains

Afghan Interpreters’ Data Exposed in MoD Breach

Afghan Interpreters’ Data Exposed in MoD Breach

The United Kingdom’s Ministry of Defense has apologized for sending an email that exposed the data of more than 250 Afghan interpreters who worked for British forces. 

The impacted interpreters are seeking to be relocated to the UK either from Afghanistan, where many are currently in hiding from the Taliban, which seized power in August, or from another country to which they have relocated. 

The email – in which the interpreters’ email addresses, names, and some linked profile images were exposed – was sent by the team in charge of the UK’s Afghan Relocations and Assistance Policy (ARAP) to Afghan interpreters who have either left Afghanistan or who remain in the country. 

One of the email’s recipients told the BBC: “This mistake could cost the life of interpreters, especially for those who are still in Afghanistan. Some of the interpreters didn’t notice the mistake and they replied to all the emails already and they explained their situation which is very dangerous.”

The MoD has reportedly suspended an official and launched an investigation into the data breach, which UK defense secretary Ben Wallace has described as “unacceptable.”

An MoD spokesperson said: “We apologize to everyone impacted by this breach and are working hard to ensure it does not happen again.”

Commenting on ARAP’s failure to utilize the BCC email feature, Labour shadow defense secretary John Healey said: “We told these Afghans interpreters we would keep them safe, instead this breach has needlessly put lives at risk.”

Martin Jartelius, CSO at Outpost24, said that while this type of email-based data breach could easily occur, it was “sad and unnecessary in most organizations.”

“It’s so extremely easy to, by mistake and in stress, send an email with recipients listed openly instead of in BCC,” said Jartelius. “Still, for example, in the Office365 suite, there are solutions, of which the easiest to at least give an additional notice is the feature mail tips.

“Here you can set the flag to warn for ‘Large Audience,’ and even as an organization sets what [that] level is – the default is 25 if enabled. Organizations that do not want to make the same mistake can set a warning this way.” 

—————
Boost Internet Speed
Free Business Hosting
Free Email Account
Dropcatch
Free Secure Email
Secure Email
Cheap VOIP Calls
Free Hosting
Boost Inflight Wifi
Premium Domains
Free Domains

Malicious Email Surge Predicted for Q4

Malicious Email Surge Predicted for Q4

Corporate end-users should be on high alert for phishing attacks in the final quarter of the year as this is when most malicious emails are likely to land, according to new research from Tessian.

The email security vendor analyzed four billion messages sent between July 2020 and July 2021 to compile its Spear Phishing Threat Landscape 2021 report.

It found 45% more malicious emails sent in October, November and December 2020 than in the previous quarter. That’s perhaps not surprising given the number of opportunities for threat actors at the end of the year to capitalize on current events.

November 2020 saw the most significant spike, with around 90,000 malicious emails detected in the week of the Black Friday sales.

Overall, employee inboxes received 14 malicious emails per year, rising dramatically to 49 on average in the retail sector, 31 in manufacturing, and 22 in the food and drink industry. Employees working in research and development received 16, and those with tech roles received 14.

Organizations don’t just need to keep an eye out for phishing and scam emails in the fourth quarter; they should also train staff to be watchful at specific hours of the day.

The report revealed that malicious emails are typically delivered around 2 pm and 6 pm, perhaps trying to hit inboxes when employees are at their most distracted — just after lunch and at the end of the day.

The most common tactics detected by Tessian were impersonation techniques like display name spoofing (19%), as well as domain impersonation (11%) and account takeover (2%).

The most spoofed brands over the year were Microsoft, ADP, Amazon, Adobe Sign and Zoom.

Tessian CISO, Josh Yavor, argued that staff training alone is not enough to mitigate the threat from malicious emails.

“Gone are the days of the bulk spam and phishing attacks, and here to stay is the highly targeted spear-phishing email. Why? Because they reap the biggest rewards,” he added.

“Cyber-criminals are always finding ways to bypass detection and reach employees’ inboxes, leaving people as the last line of defense. Businesses need a more advanced approach to email security to stop the threats that are getting through because it’s not enough to rely on your people 100% of the time.”

—————
Boost Internet Speed
Free Business Hosting
Free Email Account
Dropcatch
Free Secure Email
Secure Email
Cheap VOIP Calls
Free Hosting
Boost Inflight Wifi
Premium Domains
Free Domains

#IMOS21: Embrace the Opportunities of Emerging Tech – Lisa Short

#IMOS21: Embrace the Opportunities of Emerging Tech – Lisa Short

Emerging technologies like blockchain and AI should be seen as an opportunity and a threat, according to Professor Lisa Short, director and co-founder of Hephaestus Collective, whose rousing opening keynote addressed attendees of Infosecurity Magazine’s Autumn Online Summit – EMEA 2021.

Short began by describing the vast digital shift that has taken place in recent years, noting that advancements in technology mean “revolutions” are now occurring in less than a generation. For example, the development of technologies like AI, blockchain and IoT has meant that in the past two years, tech changes that previously would have taken seven years are now being achieved in just six months.

She also provided some startling statistics around the rate of information being created and published since the advent of social media and user-generated content. Short observed that from the beginning of recorded history to 2003, the entire written works of humanity amounted to five exabytes of data. Since 2003, this same amount of data has been created every two days on average.

These trends provide enormous benefits — as highlighted by the ability to shift to remote working during the COVID-19 pandemic. However, there are reasons for concern. Technologies such as GPT-3 are now capable of recording our habits and knowledge “and influence our thoughts,” making the digital world very “pervasive.” Currently, over half the world’s population are internet users, and this is quickly growing.

Short added it is estimated that by 2023, 70% of all enterprise workloads will be in the cloud, meaning there will be a “lot of material going into a pervasive digital space that is in fact not our computer, it’s on somebody else’s.”

This rapid digitization increases the risk of data breaches. The cost is predicted to surpass $6tn in 2021 and $10.5tn in 2025. Short pointed out this cost, which is just one aspect of infosecurity, is higher than every natural disaster globally in a year and is “considered a bigger threat to humanity than nuclear weapons of mass destruction.” The entire sector spend on cybersecurity, including ransomware costs, is believed to have reached $1tn per annum.

She highlighted that many security experts cite the pace of technology adoption as a significant contributing factor to the increasingly dangerous cyber-threat landscape. This view is because “many of the latest tech-powered business strategies — such as storing massive amounts of data — introduce exponentially more risk.”

Short, therefore, believes a mindset shift is needed, which views advanced technologies as an opportunity to enhance safety and trust online rather than a threat. As Short put it, “invest more in what we have to gain than what we spend to lose.”

“Invest more in what we have to gain than what we spend to lose”

This investment must aim to enhance digital trust, most notably by “prioritizing education of people and establishing a culture within businesses and the economy about digital health and trust being a way of life rather than a choice.”

Blockchain and other emergent technologies can help provide governance and assurance over the digital world, if used properly, according to Short. The key to this is fully understanding these technologies and their underlying philosophy. Short emphasized this does not necessarily mean knowledge of the technicalities, such as coding, but rather what it is, how it works and why it helps. These fall into four philosophical concepts:

  • Ontology — what is it
  • Epistemology — what is it helping us know and understand
  • Axiology — how is it changing behavior
  • Methodology — strategy and justification of deployment

Short said, according to estimates, achieving this understanding is critical, as blockchain technology can boost global GDP by $1.76tn over the next ten years. Additionally, if just 1% of SMEs adopt, deploy, and understand this technology, this could offer a further boost of $1.42tn. This requires an “inward-facing look at our own self, our businesses and the economy,” which is something organizations typically fail to do, handing over responsibility for areas like cybersecurity to others.

Unfortunately, there is currently a severe lack of knowledge of blockchain across society and the economy; Short said less than 3% of academics, government decision-makers, and board members and leaders have any science and tech expertise, and less than that with knowledge of blockchain. This lack of insights leads to poor outcomes. One example she gave was the UK Financial Conduct Authority banning crypto derivatives and exchange-traded notes to retail investors, which led to these funds simply being taken out of the UK economy.

There is also a significant lack of knowledge of the cybersecurity industry, which contributes to false information and social engineering being spread around blockchain.

Short pointed out that “the front door keys to the digital world are digital identity,” and blockchain offers “amazing potential” in this respect, especially regarding its encryption and evidentiary capabilities. For example, blockchain-enabled a digital trail to be followed to help recover 80% of the funds paid to the DarkSide ransomware gang following the attack on Colonial Pipeline earlier this year.

Other opportunities technologies like blockchain and IoT offer include turning non-performing assets into corporate intelligence and sharing assets without moving data around. “We can cyber-harden the resilience and go straight to the core by making sure we anchor to blockchain and cryptographically encode data,” thereby preventing malicious actors from accessing the data in the first place. Short added: “These technologies have profound abilities to value create and protect assets rather than stopping people getting into the business.”

Short concluded by stating it is the responsibility of the cyber industry to keep up with the pace of technology development and not fear it, thereby providing accurate information over its potential. “It is up to us as an industry to ensure that we give the correct information, that we do bust those myths. If we don’t understand, we seek an understanding,” she outlined.

—————
Boost Internet Speed
Free Business Hosting
Free Email Account
Dropcatch
Free Secure Email
Secure Email
Cheap VOIP Calls
Free Hosting
Boost Inflight Wifi
Premium Domains
Free Domains

Farming Group Warns of Supply Chain Chaos After Ransomware Attack

Farming Group Warns of Supply Chain Chaos After Ransomware Attack

An Iowan agricultural group hit by ransomware over the weekend appears to have claimed that the impact of the attack on the US public could be worse than the Colonial Pipeline incident.

The attack has been traced to BlackMatter, a group that some believe has links to the DarkMatter outfit responsible for the days-long oil supply outage in May, which sent prices soaring on the East Coast.

According to reports, it targeted New Cooperative, a major US grain producer, with a $5.9m ransom demand.

However, screenshots of the negotiations between the two parties posted on Twitter by security researchers shed some interesting light on the attack’s significance.

In one, the cooperative’s spokesperson suggests that the ransomware group has misjudged the scale of the impact a resulting supply chain outage could have.

“The impact of this attack will likely be much worse than the pipeline attack for context, and we have no way to control that given the disruption this has already caused,” they said. “I am just telling you this so you are not surprised as it does not seem like you understood who we are and what role our company plays in the food supply chain.”

The threat actors appeared unmoved, demanding the firm come up with the money.

The to-and-fro between victim and extorter has added significance given the Biden administration has made it clear to the Kremlin that 16 critical infrastructure sectors of the US economy are off-limits to cybercrime groups thought to be operating from Russia.

After a relatively quiet summer, this attack would appear to be testing those red lines.

“There is going to be very very public disruption to the grain, pork and chicken supply chain. About 40% of grain production runs on our software and 11 million animals feed schedules rely on us,” the spokesperson said, according to another screenshot.

“This will break the supply chain very shortly, and we will have to report this to our regulators and likely the public if this disruption continues … CISA is going to be demanding answers from us within the next 12 hours or so and we are going to have to tell them exactly what has happened.”

Hank Schless, senior manager of security solutions at Lookout, argued that firms would need better to protect themselves in place of any geopolitical breakthrough.

“BlackMatter claimed that New Cooperative doesn’t reach the threshold that the President laid out. Threat actors already operate outside the bounds of the law, so why would they suddenly comply? If this is the attitude Russia-based threat actors have towards the President’s warnings, then this could be indicative of similar attacks to come,” he added.

—————
Boost Internet Speed
Free Business Hosting
Free Email Account
Dropcatch
Free Secure Email
Secure Email
Cheap VOIP Calls
Free Hosting
Boost Inflight Wifi
Premium Domains
Free Domains