Coveware, which provides response services to ransomware attacks, has released a report for the fourth quarter of 2020.
The 4 most interesting data from the report
1. The average ransom payment stands at $ 154,108
It is a decrease of 34% from the third quarter.
2. Organisations decline to pay
The significant decrease in the average payment is due to the fact that more and more organizations are deciding not to pay the ransom.
3. 70% of ransomware attacks also include theft of information from the victim and double extortion
It is an increase of 43% from the third quarter.
4. Social Engineering is the main attack type
In the current quarter the main attack channel was social engineering attacks.
_________________
( Source: Coverware Ransomeware Report)
Save Your Company from Social Engineering Attacks Like that
Register and Get your Personalized Free Exposure Report NOW,
And see where your Company is Exposed to Hackers
Recently Posted on AUMINT.io Blog
The Subtle Snail Recruitment Trap – How Attackers Use Fake HR to Steal Credentials and Persist
🚨 Recruitment-Style Phishing Is the New Front Line
😱 Researchers link an Iran-nexus group to recruitment lures that infected 34 devices across 11 organizations, using fake HR profiles to bait targets.
🧩 The bait looks real: tailored outreach, plausible interviews, and job documents that contain weaponized ZIPs or signed binaries which deploy loaders.
🧠 The payload family MINIBIKE steals credentials, logs keystrokes, and creates persistent backdoors for long-term espionage.
⚠️ These campaigns hide traffic in Azure-hosted C2 and abuse DLL sideloading to evade detection, so standard AV often misses them.
✅ Quick actions: treat unsolicited job attachments as untrusted; verify recruiter emails and LinkedIn profiles; sandbox any job-related archive before opening.
🔁 For security teams – simulate recruitment lures, tighten endpoint rules against DLL sideloading, and monitor cloud egress for anomalous C2.
🔎 SEO note: use keywords like job, recruiter, LinkedIn, credential theft, MINIBIKE to surface this threat to practitioners and hiring teams.
🔒 AUMINT.io helps design simulations and detection playbooks that mirror this recruitment workflow. Book a 15-minute intro and get a tailored risk checklist: https://calendly.com/aumint/aumint-intro
#JobSeekers #CISO #HR #ITSecurity #AUMINT #ThreatIntel #RecruitingSecurity