Intelligent CISO Issue 80 | Page 24

UPDATES
1
2
2
1

threat

UPDATES
1
US
The United States Department of Justice ( DOJ ) has unsealed an indictment outlining efforts to dismantle Anonymous Sudan , a prominent group tracked by Cloudflare as LameDuck , notorious for its apparent politically motivated hacktivism and significant involvement in distributed denial-of-service ( DDoS ) attacks .
This broad initiative to bring to justice the group ’ s key members is an impressive step in improving Internet security , and was made possible through co-ordinated efforts among international law enforcement agencies and private sector entities , including Cloudflare .
2
SWITZERLAND
Swtizerland ’ s National Cyber Security Centre ( NCSC ) has issued an alert about malware being spread via the country ’ s postal service .
Mike Britton , CIO at Abnormal Security , said when discussing the increasing threat from QR code based phishing : “ Delivering QR code letters physically via Switzerland ’ s postal service is an effective way for criminals to catch out unsuspecting victims . By pretending to be a trusted source , threat actors are banking on the lack of caution that recipients may have .
It underscores the importance of partnership across all stakeholders in combating today ’ s most advanced cyberthreats , while also demonstrating the value transparency brings to improving threat intelligence .
“ As a relatively new attack vector , QR code scams don ’ t have the kind of ingrained suspicion that we ’ ve come to expect from other phishing techniques . Just as we ’ ve seen in the UK with a recent Winter fuel payments scam , attackers are seeing success in imitating trusted sources in a timely manner .
“ Unlike on the web where you can use automated solutions to catch out phishing attempts , these attacks will be solely down to the individual to catch out .”
2
1
24 WWW . INTELLIGENTCISO . COM