Intelligent CISO Issue 37 | Page 25

threat updates
2 4
1
3

3

SINGAPORE
SITA , one of the world ’ s largest air transport communications and IT vendors , has released a statement confirming that it was the victim of a cyberattack which led to passenger data stored on its servers to become compromised .
The incident took place on February 24 , 2021 and the company immediately contacted the affected customers . The incident has had a knock-on effect for Singapore Airlines as the breach of the SITA PSS server has affected the data of some of its KrisFlyer and PPS members .
A SITA spokesperson said : “ The matter remains under continued investigation by SITA ’ s Security Incident Response Team with the support of leading external experts in cybersecurity .”

4

UK / US
The UK and US have revealed , for the first time , that Russia ’ s Foreign Intelligence Service ( SVR ) was behind a series of cyber intrusions , including the SolarWinds compromise .
The National Cyber Security Centre ( NCSC ), a part of GCHQ , assesses that it is highly likely the SVR was responsible for gaining unauthorised access to SolarWinds Orion software and subsequent targeting .
The US National Security Agency ( NSA ), Department of Homeland Security ’ s Cybersecurity Infrastructure Security Agency ( CISA ) and the FBI have published a technical advisory with mitigation advice . www . intelligentciso . com
25