Back To Resource Center

Published: December 9, 2022

Security 3-2-1 for the Week 12/9/22

By Annie articles

3 Interesting Articles

Hive Social Buzzing With Security Flaws, Analysts Warn

Dark Reading: Warning to social media users – be very wary of Hive, a Twitter alternative. German researchers Zerforschung issued a warning after investigating the platform, which recently hit 1MM users.. The researchers found severe vulnerabilities for Hive users and while the company announced they patched all the issues, researchers stated that several of the concerns were still present. After the researchers posted their findings on their blog, Hive decided that it would shut down its servers until the issues were fully fixed. 

Major password manager LastPass suffered a breach — again 

NPR: LastPass, a passwords manager, has suffered a second breach in 3 months by the same hacker. The company detected unusual activity within a third-party cloud storage service and determined that the hacker used information from an August 2022 incident to access customer’s information last month. The company is confident that user passwords are still safely encrypted but customers may lose faith in the company and look elsewhere for protection. 

Rackspace confirms outage was caused by ransomware attack

Bleeping Computer: Cloud computing company, Rackspace, has been affected by a ransomware attack last week. It has left a number of its customers isolated to email access due to the incident being affected by its Hosted Exchange business. While the company does not believe sensitive information has been compromised, they maintain that they will notify customers if this is not the case. This incident is expected to lead to losses for its hosted exchange business, which generates about $30MM annually for the company. 

2 Stats You Should Know

81% of companies report that they have suffered a security incident in the cloud over the last year (source)

$4.54M is the average cost of a ransomware attack (source)

1 More Thing

Our large and diverse network of experts is here to help...

Charles M.

Principal

Charlies is a 14 year cyber security expert. He started his career in the U.S. armed forces and then transitioned into commercial roles. A security engineer by training, he's well-versed in tool deployment and administration.

Ellen K.

GRC Expert

Ellen bring a decade of GRC expertise to the TalPoint community. She's knowledgeable on a variety of frameworks and employs a methodical approach to compliance. She's available for needs assessments, gap assessments, internal audits, and for certain frameworks running independent 3rd party audits.

Zachary C.

Founder and CRO

Zachary bring a 20+ year career in risk management to the TalPoint community. He's worked across healthcare, finance, and supply chain manufacturing. His broad experience offers both a holistic view of risk as well as a common sense approach to risk management.