TalPoint Weekly Wrap Up 4/1/2022
North Korean hackers linked to $620 million Axie Infinity crypto heist
Washington Post: Over $600 million dollars was stolen from a popular video game, Axie Infinity’s Ronin Network last month. The gaming developers discovered the hack last month and the hackers ran off with an astonishing $620 million in cryptocurrencies. The US Treasury Department has blamed the North Korea-backed Lazarus Group for this hack. This cybercrime gang is also responsible for the 2014 hack of Sony Pictures though North Korea has repeatedly denied these allegations. United Nations investigators state that the North Korean missile program is heavily funded by these cybercrimes.
More: The Verge | The Hacker News | Coin Desk | BBC News
CISA warns orgs to patch actively exploited Windows LPE bug
Bleeping Computer: The Cybersecurity and Infrastructure Security Agency (CISA) has added ten new security bugs to its list of actively exploited vulnerabilities, including a high severity local privilege escalation bug in the Windows Common Log File System Driver. Agencies have three weeks to patch and secure their systems. CISA also strongly urges all US organizations to patch this actively exploited security bug to block attempts to escalate privileges on their Windows systems.
Nearly two-thirds of ransomware victims paid ransoms last year
Tech Republic: In a survey by Cyberthreat Defense of 1,200 IT professionals, 63% paid ransom in cyber attacks in 2021. According to the survey, 71% of organizations were affected by successful ransomware attacks last year as well. The high percentage of paying ransom was due to successfully recovering data and avoiding a lengthy service blackout. To keep companies more secure, increasing security training on current employees can be a time and money saver when it comes to attacks. Another method to thwart hackers is to invest in proper security software.