Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

March 2024

Cybercriminals Sent 1.76 Billion Social Media Phishing Emails in 2023

As social media phishing reaches new heights, new data reviewing 2023 shows a massive effort by cybercriminals to leverage impersonation of social media brands. Cybercriminals are no longer just targeting your corporate network. Due to the rise of the cybercrime economy, there are a growing number of cybercriminal gangs strictly going after initial access (that can be sold to other cybercriminals).

Email-Based Cyber Attacks Increase 222% as Phishing Dominates as the Top Vector

Analysis of the second half of 2023 shows attackers are getting more aggressive with email-based phishing attacks in both frequency and execution. Until there’s a catch-all way to stop malicious emails from being an effective means of initial attack, phishing will continue to grow as the primary initial attack vector for cybercriminals.

Closing the loop on AI point solutions to deliver context and visibility

Today most organisations are thinking about or deploying AI and, in effect, trying it out. This is supported by Gartner, which states that approximately 80% of enterprises will have used generative artificial intelligence (GenAI) application programming interfaces (APIs) or models by 2026. As AI drives value for organisations, it is fuelling further demand and adoption.

Keeper 101 - How to Create Your Keeper Account on iOS

Signing up for Keeper's iOS mobile app is easy. Simply visit the App Store on your device, search for Keeper, and install “Keeper Password Manager”. Once the download is complete, tap Open to launch Keeper. Tap Create Account to get started. Enter your email address and tap Next. You will be prompted to set and confirm a master password. Don’t forget your master password! Since this password will unlock all of your other passwords in your Keeper Vault, it is critical that you set a strong master password using upper and lowercase letters, numbers and symbols.

Keeper 101 - How to Create Your Keeper Account

To create your Keeper Account, visit keepersecurity.com and hover your cursor over the “Login” dropdown and select Web Vault, then click Create an Account. Enter your email address and click Next. You will be prompted to set and confirm a master password. Don’t forget your master password! Since this password will unlock all of your other passwords in your Keeper Vault, it is critical that you set a strong master password using upper and lowercase letters, numbers and symbols.

Keeper 101 | Enterprise - How to Create Nodes in Keeper Enterprise

Keeper's node architecture scales to any sized organization. At the highest level of our organization structure are nodes. Nodes are used to organize your users into distinct groupings, which can have their own sets of roles, teams, two-factor authentication, enforcement policies and provisioning methods. By default, the top level parent node, or root node is set to your organization name, and all additional nodes are created underneath the Root Node. Smaller organizations may choose to administer Keeper at a single level, meaning no additional nodes are created.

University Vendor Management: Advanced Risk Assessment Techniques

Like most high-performing organizations, higher education institutions often utilize third-party vendors to outsource key services, such as data management and research initiatives. This reliance on third-party vendors can lead to various risks, including data privacy vulnerabilities, compliance issues, and operational disruptions. Therefore, universities must implement advanced vendor management processes to mitigate these risks.

TPRM & Remote Learning: Defending the Education Sector

The rise of remote learning has motivated cybercriminals to advance their assault on the education sector. In 2022, cybercriminals deployed more than 2200 attacks against higher education institutions every week, a 44% increase compared to 2021 (Check Point, 2022). Risk professionals attribute this increase to various factors, including the structure of remote learning environments.

CVE-2024-1071 - Critical Vulnerability in Ultimate Member WordPress Plugin

A critical security flaw, known as CVE-2024-1071, has been found in the Ultimate Member plugin for WordPress. This vulnerability, with a CVSS score of 9.8, poses a significant risk to over 200,000 active installations. It potentially enables attackers to extract sensitive data from compromised databases, presenting a severe threat to website security.