In 2020 Toll Group went twice through a ransomware attack, now Sophos which acted as a response and investigation team for the events, announces that the entry point was an account of an employee who died but remained active in the system.

Nefilim Ransomware Attack Used “Ghost” Credentials.

According to the report by Sophos, the Nefilim group responsible for the infidelity attack that was on the company’s network for about a month without the defense systems identifying suspicious activity, the user used by the attack group belonged to a deceased employee but his account was locked/deleted due to being integrated into various services. 

Read more about Examples and Numbers of Social Engineering attacks  ›

Save Your Company from Social Engineering Attacks Like that

 

Register and Get your Personalized Free Exposure Report NOW
and See your where your Company is Exposed to Hackers

Recently Published on our Blog

💥 Most Security Breaches Start With What You Don’t Know

Blind spots breed risk.

AUMINT’s €1,500 Attack Surface Report reveals:
• Leaked employee data
• Shadow IT exposure
• Vulnerabilities you haven’t yet patched

Don’t guess your risk.

Get full clarity today: https://calendly.com/aumint/aumint-intro

#InfoSec #CyberSecurity #AttackSurface #RiskManagement #CISO #SOC #AUMINT

read more

Luxury Brands Cartier and The North Face Breached in Latest Cyberattacks

🛡️ Cartier and The North Face Breached in Latest Cyberattacks

Luxury brands Cartier and The North Face have recently reported data breaches, exposing customer information such as names and email addresses. While financial data remains secure, these incidents underscore the escalating cyber threats in the retail sector.

Key takeaways:

Cartier’s breach involved unauthorized access to limited customer data.

The North Face suffered a credential stuffing attack affecting nearly 3,000 customers.

Experts recommend implementing multi-factor authentication and regular security audits.

At AUMINT.io, we offer comprehensive cybersecurity solutions to safeguard your business against such threats.

Book a Consultation with AUMINT.io

#CyberSecurity #DataBreach #RetailSecurity #AUMINT

read more

Vendor Email Compromise Outpaces BEC in EMEA – A Wake-Up Call for MSSPs

📧 VEC Attacks in EMEA Soar Past BEC Threats

Vendor Email Compromise (VEC) engagement in EMEA hits 47.3% – almost double BEC’s rate.

This rise shows how VEC exploits trust in external vendors, bypassing traditional BEC defenses.

EMEA reports only 0.2% of VEC incidents, signaling a critical awareness gap.

MSSPs must adopt advanced behavioral analytics and third-party identity monitoring to catch these sophisticated threats.

Continuous employee education and simulated VEC phishing drills are essential to close this gap.

At AUMINT.io, we deliver cutting-edge solutions combining threat detection and training tailored for these risks.

Protect your organization before attackers do.

Book a Consultation with AUMINT.io

#Cybersecurity #VendorEmailCompromise #EmailSecurity #MSSP #AUMINT

read more