Linchakin

CyberheistNews Vol 11 #40 [Heads Up] The New James Bond Movie Is Cybercriminals Shiniest Phishbait

 October 12, 2021     No comments   

C-suite employees need to understand the risk posed by social engineering attacks, according to CSO. Terry Thompson, adjunct instructor in cybersecurity at Johns Hopkins University, told CSO that business email compromise (BEC) can expose an organization to “ransomware, email spoofing, and related threats.”

Alex Holden, founder and CISO at Hold Security, told CSO that executives are particularly valuable targets since their accounts are more likely to hold sensitive information.

“In many cases of BEC, the cybercriminals would find critical/confidential data inside the emails of C-suite victims,” Holden said. Holden added that executives needed to be even more vigilant than regular employees.

“C-suite members are not regular employees; they are the most prominent employees,” Holden said. “They are role models and not above the rules. They are supposed to be the most protected individuals in the company. They may need more reminders to lead the cyber security initiatives by example and not to be the exception.”

Holden added that despite this, executives sometimes tend to take security shortcuts, putting themselves (and their organizations) at risk.

“[C-suite executives] are more likely to change technology and more likely to insist on breaking the rules,” Holden said. “They are also more prominent and therefore easier to target and imitate for abuse.”

Michael Del Giudice, principal in the consulting group at Crowe, told CSO that a defense-in-depth strategy is essential for preventing these attacks. In addition to training employees to be on the lookout for social engineering attacks, organizations should also require multi-factor authentication in case an attacker manages to get their hands on a password.

“Complementing that with technical controls, implementing things like MFA on email so even if they do get credentials it will still prevent them from authenticating,” Del Giudice said.

Executives and boards understand business risk. Cyber threats that operate through social engineering can be pigeonholed as matters of personal risk. But in fact they represent a clear business risk, and often the kind of business risks that an organization’s leaders are well-positioned to manage.

Framing the risk of social engineering as a business risk is an important first step in managing that risk. New-school security awareness training for executives will help them avoid falling for targeted social engineering attacks.

Blog post with links:
https://blog.knowbe4.com/framing-the-social-engineering-risk-in-business-terms

Adblock test (Why?)


You may be interested in:
>> Is a Chromebook worth replacing a Windows laptop?
>> Find out in detail the outstanding features of Google Pixel 4a
>> Top 7 best earbuds you should not miss

Related Posts:
>> Recognizing 12 Basic Body Shapes To Choose Better Clothes
>>Ranking the 10 most used smart technology devices
>> Top 5+ Best E-readers: Compact & Convenient Pen
  • Share This:  
  •  Facebook
  •  Twitter
  •  Google+
  •  Stumble
  •  Digg
Email ThisBlogThis!Share to XShare to Facebook

Related Posts:

  • GOM Player Plus Crack 2.3.69.5333 With Activation Key Download 2022 Table of Contents GOM Player Plus Crack 2.3.69.5333 With Activation Key Download 2022 GOM Player Plus Crack Free Download is the next evolution of… Read More
  • The Best Risk-Adjusted Path to 10x Crypto Returns with Ethereum September 28th 2021 new story Address Capital’s price target for Ether is $3,077 to $32,468 in the next five years, representing … Read More
  • Google Pixel 6 biggest upgrades just teased ahead of launchA new Google Pixel 6 advert has hinted at some powerful incoming camera and AI featuresIt looks like the Google Pixel 6 and Pixel 6 Pro could be the most AI-centric phones Google has ever made, as a new advertisement has teased a suite o… Read More
  • Driver Magician 5.7 Crack With Serial Full Version Latest 2022 Table of Contents Driver Magician 5.7 Crack With Keygen Full Version Latest 2022 Driver Magician Crack an efficient and complete solution for Marg… Read More
  • Dissecting Poly Network Hack: What Really Happened Dmitry Mishunin CEO HashEx Disclaimer: I'm showing an alternative perspective considering an inside cyber attack. I will support my … Read More
Newer Post Older Post Home

0 Comments:

Post a Comment


Copyright © 2025 Linchakin | Powered by Blogger
Design by Hardeep Asrani | Blogger Theme by NewBloggerThemes.com | Distributed By Gooyaabi Templates