News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

CISO Report: Many companies lost sensitive data 
CISO Report: Many companies lost sensitive data

In the latest Voice of the CISO report, Proofpoint publishes the top challenges, expectations and priorities of Chief Information Security Officers (CISOs). They say that four fifths of German companies have lost sensitive data in the last 12 months. The results show that most CISOs have returned to the stress levels they were at when the pandemic began. 83 percent of German CISOs surveyed see themselves as a potential victim of a significant cyberattack in the next 12 months, compared to just 40 percent a year earlier. Almost 80 percent expect the cyber attack back then...

Read more

Microsoft Teams: Open gateway for cybercriminals
Microsoft Teams: Open gateway for cybercriminals

Many authorities and companies use Microsoft products, the Microsoft Office product range with teams in particular is very popular, also in the cloud version. As Proofpoint's security experts have shown in the past, this cloud migration brings new cyber risks, such as phishing, stolen logins and identities. Attackers are currently increasingly targeting cloud environments and services and trying to exploit existing security gaps and vulnerabilities for their own purposes. In recent months and years, cybercriminals have used Microsoft services for attacks and, for example, effectively used Microsoft Sway as a weapon, bypassing security measures. Many…

Read more

New AI/ML powered threat protection platform
New AI/ML powered threat protection platform

Proofpoint is bringing a number of new capabilities to its Aegis Threat Protection, Identity Threat Defense, and Sigma Information Protection platforms. These enable organizations to stop malicious email attacks, detect and prevent identity-based threats, and protect sensitive data from theft, loss, and insider threats. The new innovations from Proofpoint also complement the range of the newly founded Identity Threat Defense (formerly Illusive) business unit, in order to flexibly complement and protect productivity solutions such as Microsoft 365 in particular. Aegis Threat Protection Platform The Proofpoint Aegis Threat Protection Platform is an AI/ML-powered threat protection platform that combines modern...

Read more

State of the Phish Report: Enormous ransomware damage
State of the Phish Report: Enormous ransomware damage

The current "State of the Phish" report shows that ransomware attacks pose an increasing threat to German companies. Ransomware attacks wreak havoc. Who Pays the Ransom: Only 4 out of 10 companies get the full data back. That's according to the ninth annual State of the Phish report released today by leading cybersecurity and compliance firm Proofpoint. 85 percent of German companies were affected by a ransomware attack last year. 63 percent of these attacks were successful. Defying ransom: only 41 percent get data back Less than half (41 percent)…

Read more

APT: TA473 attacks NATO allies, officials and structures
B2B Cyber ​​Security ShortNews

Proofpoint's security experts have uncovered a new cyber campaign that is particularly targeting NATO allies. The TA473 hacker group, an Advanced Persistent Threat (APT) actor, is using an IT vulnerability called "Zimbra vulnerability" (CVE-2022-27926) for its current campaign. The target of their attacks are publicly accessible webmail portals hosted by Zimbra (the Zimbra Collaboration Suite is an e-mail and groupware solution). As part of their activities, the attackers attempt to gain access to e-mails related to the war between Russia and Ukraine from military, governmental and diplomatic organizations in Europe. The APT group TA473 is also…

Read more

Cybercrime with ChatGPT
Cybercrime with ChatGPT

With every improvement in ChatGPT, there is growing concern that it could be misused on a large scale, particularly by cybercrime, and that it would greatly increase the online threat situation. The past has shown that technological innovations have always been misused by cybercriminals. This certainly also applies to ChatGPT. All sorts of new uses are being devised for this conversational AI. The writing of applications or articles as well as the use as a search engine. In the latest version even to create images. This has certainly not escaped the notice of the cybercriminals. And that ChatGPT is free and not to use…

Read more

Hacker group first spies on whether victims are lucrative

Proofpoint security experts have uncovered a new hacker group called TA866, which attacked tens of thousands of companies with malware between October 2022 and January 2023. The activities are aimed in particular at organizations in Germany and the USA. One detail of the TA866 attacks stands out: the cybercriminals first analyze screenshots of their potential victims' IT environments to identify particularly lucrative targets. They only try to infect the victim with a bot or a stealer if they think it is worth further involvement. Attack start with Screentime From October 2022 until…

Read more

New scam by cyber criminals
New scam by cyber criminals

Since Microsoft began blocking macros by default in 2022, cybercriminals have experimented with many new tactics, techniques, and procedures (TTPs), including the use of previously rarely observed file types such as virtual hard disk drives (VHD), compiled HTML (CHM), and now OneNote (.one). At the time of analysis, several OneNote malware samples observed by Proofpoint were not detected by numerous antivirus vendors on VirusTotal. While the subjects and senders of the emails vary, almost all campaigns use unique messages to spread malware and typically do not use thread hijacking. The emails usually contain OneNote file attachments...

Read more

Iranian TA453 group targets researchers and accounts
B2B Cyber ​​Security ShortNews

The cyber criminal group TA453, which is associated with Iran, is increasingly using new attack methods and aggressively addressing new targets. This is the preliminary result of ongoing investigations by the cybersecurity company Proofpoint. Since late 2020, Proofpoint researchers have observed discrepancies in TA453's phishing activity (which overlaps with groups publicly known as "Charming Kitten", "PHOSPHORUS" and "APT42"), with the group using new methods and others targets than in the past. TA453 also known as APT42 Email campaigns from TA453 had previously almost always targeted academics, researchers, diplomats,...

Read more

Employees thwart IT security technology
Employees thwart IT security technology

The security situation in German companies is increasingly threatened by careless and criminal employees. A study entitled "Cybersecurity in Germany: Better protection of people and data" reveals the many forms of misconduct that employees of German companies display. In 41 percent of the companies surveyed, their own negligent or careless employees were the cause of data loss in the last 12 months. For example, they opened email attachments infected with malware, accessed fake websites and filled out fake online forms, or disclosed sensitive information. In 30 percent of the cases, employees were…

Read more