Intelligent CISO Issue 74 | Page 25

UPDATES
3
4

threat

UPDATES
3
SPAIN
International bank Santander has been hit by a data breach in Spain , Chile and Uruguay
The Spain-based bank said some customer and employee data in a database hosted by an outside provider was accessed by an unauthorised party but that the bank ’ s own operations and systems have not been affected .
The bank said in a statement that the data was from customers in Spain , Chile and Uruguay , as well as from current and some former employees . It is not known how many clients were affected .
Thomas Richards , Principal Consultant at the Synopsys Software Integrity Group , said : “ This incident highlights the trend of third party providers undergoing additional security scrutiny . Over the past few years there have been several instances of compromise where the root cause was a security issue from a third party . Financial institutions are going to require more from their vendors to undergo security reviews and make improvements to better protect information being stored outside of their control . “
4
UK
The UK Ministry of Defence has become a victim of a cyberbreach which has affected the armed forces payroll system .
A culprit has not yet been identified for the attack , which is believed to have involved the compromise of personal information of UK military personnel , but most commentators are pointing their suspicions at China .
Tim West , Director , Threat Intelligence and Outreach at WithSecure , said : “ The breach of highly sensitive data from the Ministry of Defence raises significant concerns . Government departments are a prime target of cyberthreats every single day . Cybercriminals also know that government data is only as secure as the weakest third-party network that it is processed upon , and this is why they are targeted .
“ There are obvious reasons why the Ministry of Defence is an extremely attractive target to any adversarial nation state . The intelligence value of who , how much and when the UK military makes payments should be fairly clear , particularly as this breach comes at a time where Rishi Sunak has recently pledged a significant increase of defence spending to 2.5 %.”
WWW . INTELLIGENTCISO . COM 25