Category: Industry News

News and information from the Advent IM team.

Ransomware victims are paying up. But then the gangs are coming back for more

Many organisations that fall prey to ransomware attacks end up paying a ransom multiple times as cyber criminals exploit weaknesses in cybersecurity to squeeze their victims for as much cash as they can. According to analysis by cybersecurity researchers at Proofpoint, 58% of organisations infected with ransomware paid a ransom to cyber criminals for the […]

Read More

Energy sector the ‘most attacked’ in the UK, report

The UK, Germany and Italy suffered the largest number cyber attacks in Europe in 2021, and the UK’s energy sector was targetted in a quarter of all attempts in the country. The energy sector was the target of 24 per cent of attacks, with manufacturing and finance each on 19 per cent. Data theft was […]

Read More

Google moves to make Android apps more private

Google’s plan to limit data tracking on its Chrome browser has been extended to cover apps on its Android-based smartphones. Its so-called Privacy Sandbox project aims to curb the amount of user data that advertisers can gather. Rival Apple now forces app developers to ask permission from users before tracking them. The news will be […]

Read More

New phishing campaign targets Monzo online-banking customers

Users of Monzo, one of the UK’s most popular digital-only banking platforms, are being targeted by phishing messages supported by a growing network of malicious websites. Monzo is a 100% online banking platform with over four million customers and among the first to challenge the traditional financial managing system. The mobile-only platform offers a feature-rich […]

Read More

ISO/IEC 27002: 2022 – changes you need to know about.

From Advent IM Security Consultant, Leighton Hughes ISO/IEC 27001 is an international information security standard that assists organisations in managing their information security.  First published in 2005 (replacing ISO/IEC 17799) it was reviewed and updated in 2013. ISO 27001 details the requirements for organisations in establishing, implementing, and maintaining the continuous improvement of their Information […]

Read More

Millions of Internet Society personal files exposed in data leak

Unprotected Microsoft Azure contained personal and login details of around 80,000 members Cybersecurity researchers discovered an unprotected Microsoft Azure Blob storage containing millions of files with personal and login details belonging to Internet Society (ISOC) members. The exposed information contained included names, addresses, social media account information, passwords and more. The data leak was due […]

Read More

‘Human error’ let criminals hack Sepa’s systems with £42m unaccounted for

SCOTLAND’S auditor general has revealed that a huge cyber attack on the Scottish Environmental Protection Agency (Sepa) was carried out after “human error” allowed criminals to access systems. Sepa suffered a huge ransomware attack on Christmas Eve in 2020 which led to around 1.2GB of data, amounting to at least 4,000 files, being stolen. An […]

Read More

‘Increasingly sophisticated ransomware attacks’ prompt joint alert from UK, US, and Australia

The advisory warns there is “a growing wave” of attacks which could impact critical infrastructure and have “devastating consequences”. Cyber security experts from the UK, US, and Australia are warning of a “growing wave of increasingly sophisticated ransomware attacks” which could have “devastating consequences”. Chief executive officers and board members are being strongly encourages to […]

Read More

Puma suffers data breach caused by Kronos ransomware attack

Sensitive data on thousands of Puma employees stolen The impact of last year’s Kronos ransomware attack is still being felt, with sports equipment company Puma now confirming it has suffered a related breach. As reported by Bleeping Computer, Kronos filed a breach notification with several attorney generals’ offices earlier this month, which states that the […]

Read More

Foreign Office was targeted by ‘serious cyber security incident’

In a tender document the department said it “was the target of a serious cyber security incident, details of which cannot be disclosed”. The Foreign Office was targeted by a “serious cyber security incident” according to a recently released public tender document. It is unclear what kind of incident targeted the department, nor is it […]

Read More