Cyberthreat News
Cyberthreat News
For every big data breach that makes the headlines, there are thousands of incidents that don’t. These incidents lead to service outages, financial losses, and long-term damage to brand trust. The Department of Homeland Security is committed to strengthening cybersecurity resilience, investigating malicious cyber activity, and advancing cybersecurity alongside our democratic values and principles.
Increasingly, attacks begin with compromised vendors or shared platforms. Incidents involving UNFI, U.S. Treasury, Snowflake customers, and the UK Ministry of Defence demonstrate that third-party vulnerabilities can significantly impact organizational risk.
The 2024 breaches affecting the Bank Sepah, M&S, Ukrainian government users, and retail and SaaS brands highlight how stolen credentials can quickly compromise an organization without raising alarms. These trends underscore the need for multi-factor authentication, identity monitoring, and user awareness.
Cyber espionage is increasingly used to target political figures and disrupt essential services. For example, China’s Salt Typhoon global telecom espionage campaign targeted telecom providers in the U.S. and around twenty other countries, gaining unauthorized access to call records and private communications to support espionage objectives.
Ransomware attacks continue to challenge cybersecurity and business operations, including disrupting food supply chains, hospital services, and airport operations. The incident affecting the Ceva warehouses in Europe resulted in shipment delays, and the attack impacted Heathrow and other European airports by impacting operations systems. These incidents show that security teams need to be prepared to detect and mitigate these threats to ensure business continuity.