XFER Blog

XFER has been serving Michigan since 1994, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

The Most Devastating Hacks of 2018… So Far

The Most Devastating Hacks of 2018… So Far

Network security is a crucial consideration for every contemporary business owner, as there are just too many threats that originate from an Internet connection to be overlooked. One only has to look at what businesses of all sizes have dealt with, even within this calendar year, to gain an appreciation for how crucial it is that every business owner consider their cybersecurity.

Here, we’ve assembled a few statistics and examples to illustrate just how serious the threat of cyberattack can be, hopefully inspiring you to prioritize your company’s network security. Consider these cybersecurity figures:

  • In 2017 over 130 large-scale breaches were reported, a 27 percent increase over 2016.
  • Nearly 1-in-3 organization have experienced some sort of cyberattack in the past.
  • Cryptojacking (stealing cryptocurrency) increased 8,500 percent in 2017.
  • 100,000 organizations were infected with the WannaCry ransomware (400,000 machines).
  • 5.4 billion WannaCry attacks were blocked in 2017.
  • The average monetary cost of a malware attack is $2.4 million.
  • The average time cost of a malware is 50 days.
  • Ransomware cost organization’s over $5 billion in 2017.
  • 20 percent of cyberattacks come from China, 11 percent from the United States, and six percent from the Russian Federation.
  • Phone numbers are the most leaked information.
  • 21 percent of files are completely unprotected.
  • 41 percent of companies have over 1,000 sensitive files left unprotected.
  • Ransomware is growing at 350 percent annually.
  • IoT-based attacks are growing at about 500 percent per year.
  • Ransomware attacks are expected to quadruple by 2020.
  • 7.7 percent of web requests lead to malware.
  • There were 54 percent more types of malware in 2017 than there were in 2016.
  • The cybersecurity market will be worth over $1 trillion by 2025.

If that wasn’t convincing enough, what follows is just an assortment of the attacks that 2018 has seen (as of July). To simplify things, we’ve organized them by the intended targets: public (like individuals and government bodies) and private (such as businesses):

Public
January

  • The Department of Homeland Security was affected by a data breach that exposed information about 247,167 current and former employees.

March

  • Atlanta, Georgia was targeted by a ransomware attack called SamSam. This resulted in a massive problem for their municipal infrastructure. The ransom price given was $51,000, but Atlanta’s leadership refused to meet these demands. Overall, the numbers show that Atlanta has spent more than 10 times that number in the fallout of the attack. Some estimates place the actual cost of this event at nearly $20 million.
  • India’s national ID database, Aadhaar, leaked data of over a billion people. This is one of the largest data breaches in history. A user could pay 500 rupees, equal to about $7, to get the login credentials that allowed anyone to enter a person’s 12-digit code for their personal information. For 300 rupees, or about $4.20, users could also access software that could print an ID card for anyone associated with the database.
  • Cambridge Analytica, a data analytics company that U.S. President Donald Trump used to help his campaign, harvested personal information from over 50 million Facebook users without asking for their permission. Facebook hasn’t called this a data breach, but Cambridge Analytica has since been banned from using the service thanks to this event.

June

  • A hack of a U.S. Government-funded active shooter training center exposed the personal data of thousands of U.S. law enforcement officials. This also exposed which police departments aren’t able to respond to an active shooter situation.

Private
January

  • 280,000 Medicaid records were exposed when a hacker attacked the Oklahoma State University Center for Health Sciences. Among the information exposed were patient names, provider names, and full names for affected individuals.

February

  • An unsecured server owned by Bongo International, a company acquired by FedEx, leaked over a hundred-thousand files of FedEx customers. Some of the information leaked included names, drivers’ licenses, national ID cards, voting cards, and utility bills.

March

  • Orbitz, a travel booking site, fell victim to a security vulnerability that exposed 880,000 customers’ payment card information. There was also about two whole years of customer data stolen from their server.
  • French news site L’Express left a database that wasn’t password-protected up for weeks, despite being warned about the security issues regarding this.
  • 134,512 records regarding patients and financial records at the St. Peter’s Surgery and Endoscopy Center in Albany, NY were accessed by hackers.
  • MyFitnessPal, an application used by Under Armor, exposed about 150 million people’s personal information to threats.
  • The WannaCry ransomware claimed another victim in Boeing, which stated that “a few machines” were protected by Microsoft’s 2017 patch.

May

  • Thanks to Twitter storing user passwords in a plaintext file that may have been exposed by internal company staff, the social media titan had to force hundreds of millions of users to change their password.
  • An unauthenticated API found on T-Mobile’s website exposed the personal information of all their customers simply through the use of their cell phone number. The following information was made available: full name, address, account numbers, and tax IDs.
  • A bug found in Atlassian development software titles Jira and Confluence paved the way for hackers to sneak into IT infrastructure of several companies and one U.S. government agency.
  • Rail Europe, a popular server used by American travelers to acquire rail tickets, experienced a three-month data breach that exposed credit card information to hackers.

June

  • A marketing company named Exactis had 340 million records stolen from it, but what’s most shocking about this is that they had accumulated information about nearly every American out there. In response to the breach, there was a class action lawsuit made against the company.
  • Adidas’s website was hacked, resulting in a loss of a few million users’ personal and credit card information.
  • A hacker collective called Magecart initiated a campaign to skim at least 800 e-commerce sites, including Ticketmaster, for sensitive information.

Clearly, if these lists are any indication, companies of all sizes need to commit to maintaining their network security, holding it to a higher standard. For assistance in doing so, you can rely on the professionals at XFER. We can design and implement security solutions to protect you from threats like these, and others that may rear their ugly heads. Give us a call at 734-927-6666 / 800-Get-XFER to get started.

Is Email Actually More Trouble than It’s Worth?
How Much Have Smartphone Cameras Made a Difference...
 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Friday, December 14 2018
If you'd like to register, please fill in the username, password and name fields.

Captcha Image

Mobile? Grab this Article!

QR-Code dieser Seite

Tag Cloud

Security Technology Tip of the Week Privacy Microsoft Internet Cloud Best Practices Saving Money Backup Software Workplace Tips Managed Service Provider Business Computing Hosted Solutions Hackers Data Small Business Hardware Google Mobile Devices Productivity Mobile Office VoIP Email Gadgets Malware Quick Tips Network Efficiency Network Security Innovation IT Support Business Social Media Business Management IT Services Business Continuity Smartphones Miscellaneous Server Upgrade Virtualization Communication Windows User Tips Disaster Recovery Data Backup Computer Communications Microsoft Office Managed IT Services Users Mobile Device Management Data Recovery Passwords Browser Smartphone Android WiFi Marketing Holiday Save Money Ransomware Alert Outsourced IT Cybercrime BDR Tech Term Vendor Management Mobile Computing Chrome Operating System Remote Monitoring Windows 10 Cloud Computing Internet of Things Information Technology Avoiding Downtime Bring Your Own Device Apple Computers BYOD Going Green Current Events Automation Spam History Best Practice Managed IT Services VPN Telephone Systems Big Data Cybersecurity Remote Computing IT Solutions Firewall The Internet of Things Artificial Intelligence Router Collaboration Hacking Health Social Engineering Employer-Employee Relationship Phone System Printer Trending Wireless Technology Facebook Application IT Consultant Bandwidth Money Proactive IT Excel Office App Lithium-ion Battery Budget Fax Server IT Support Unified Threat Management Maintenance Networking Windows 8 Business Intelligence iPhone Two-factor Authentication Mouse How To Mobility Office 365 Productivity Content Filtering Applications Recovery Windows 10 Business Managament Virus Sports Apps Value Google Drive Information Website PowerPoint Managed IT Gmail Antivirus Data Protection Private Cloud Customer Relationship Management Blockchain Training Hard Drives Redundancy Analytics Law Enforcement Word User Error Encryption Humor Data Security Outlook Mobile Device Tutorials Phishing Digital Payment Search Social Networking Tablet IT Management Save Time Computer Repair Twitter Document Management Servers Office Tips Vulnerability Analysis Streaming Media Risk Management Managed Service Compliance Administrator Software as a Service Flexibility Tech Support Saving Time Connectivity Entertainment Scam Settings Data Management Retail Inbound Marketing Downtime Human Resources File Sharing Memory Identity Theft Network Congestion Conferencing Administration Voice over Internet Protocol SaaS Credit Cards Machine Learning USB Webinar Online Currency Robot Video Surveillance OneNote Recycling Data storage Point of Sale CES Help Desk Education Fraud eWaste Statistics IT Plan IBM Internet Exlporer Data Storage Piracy Paperless Office Leadership PDF Keyboard Content Management HaaS End of Support Programming Work/Life Balance Safety Data Breach Wi-Fi Skype Computer Accessories Government Unsupported Software YouTube Infrastructure Running Cable Augmented Reality Intranet Instant Messaging Meetings Workers Update Wearable Technology Virtual Assistant Environment DDoS Social Comparison Solid State Drive Data loss Telephony Biometrics Google Docs IT service Windows 7 Telephone System Black Market Best Available Touchscreen Spam Blocking Bluetooth Hacker People Cleaning Password Access Control Wireless Physical Security Public Cloud Smart Tech Samsung Criminal Camera Colocation Windows 10s HBO Cryptocurrency Science Business Owner Laptop Travel Content Filter Millennials Shadow IT Charger Cast Mobile Authentication Cortana MSP SharePoint Multi-Factor Security Smart Office Strategy Hiring/Firing Hybrid Cloud Insurance Wireless Charging Entrepreneur HIPAA Storage IaaS Computing Infrastructure IT Security Frequently Asked Questions Safe Mode Tablets Webcam Touchpad Hosted Solution Relocation Print Server Workforce HVAC Hiring/Firing Computer Care Legal Professional Services Nanotechnology Google Apps Remote Worker Windows Media Player Virtual Desktop Lifestyle Search Engine Remote Support Flash Practices Fiber-Optic Cost Management Monitor nternet Crowdfunding Addiction Virtual Private Network PC Care Audit Tip of the week Accountants Amazon Business Technology Upgrades Analyitcs Customer Service 3D Netflix Law Firm IT Telecommuting Enterprise Content Management Scheduling Company Culture Tools Wiring Students Bing Consultant Root Cause Analysis Sync Hosted Computing Cables Proactive eBay Reputation Cache Project Management Alerts Internet exploMicrosoft Computer Fan Windows Server 2008 Amazon Web Services Macro Supercomputer LinkedIn Cameras Software Tips Remote Work Password Management Co-managed IT NarrowBand Net Neutrality Devices Password Manager GDPR Healthcare Shortcuts Licensing Uninterrupted Power Supply Windows 8.1 Update Inventory Unified Communications Remote Monitoring and Maintenance Text Messaging Customers Wireless Internet Staff Warranty WIndows 7 Work Station Advertising FENG Display IoT Online Shopping Virtual Reality Gaming Console Knowledge Printer Server Shortcut Distributed Denial of Service Patch Management Files Debate NIST Chromecast Botnet Thought Leadership Business Mangement E-Commerce Emails Data Warehousing Specifications Electronic Health Records User Screen Mirroring Start Menu Theft Line of Business Worker Commute 360 Wire Digital Signature Microchip Managing Stress Domains Notifications Electronic Medical Records Regulations Evernote Bloatware Transportation Television How to Troubleshooting Webinar Techology Utility Computing Printers Benefits Automobile Public Computer IT solutions Thank You Employer Employee Relationship CrashOverride Smart Technology Books Loyalty Congratulations Experience Two Factor Authentication Content Battery Emergency Video Games Worker Music Audiobook Assessment Scalability eCommerce Rootkit Regulation Politics

Sign up for our Newsletter!

  • Company Name *
  • First Name *
  • Last Name *