The hacktivist group Anonymous Sudan claims to have breached Microsoft and stolen credentials from 30 million customers. Microsoft says they are lying. The group has done a lot of DDoS attacks, and claimed much bigger impact than they really have had. Exaggerated claims may lead to increased “panic state” at the top of the corporate food chain. How do you communicate about threat groups making bold statements like this to your higher ups or customers?
Clop ransomware group exfiltrated, for just one example, Genworth Financial’s primary database including millions of policyholders’ Name, DoB, SSN, etc.
This news is “stunning” say many cybersecurity experts; it’s so bad that a patch can’t resolve it, companies have to completely stop using these (very expensive) machines and get new ones.