New FBI WarningDisable Local Admin Accounts As Attacks Continue
www.forbes.com
Disable local admin accounts, the FBI warns.Getty ImagesHackers use many methods to steal your data, from cybercrime AI-chatbots, two-factor authentication bypass attacks, and even novel dont click twice hacks. They also, however, attack after gaining employment with your organization, as is the case outlined in the latest warning from the Federal Bureau of Investigation in public service announcement I-012325-PSA. Disable local admin accounts, the FBI said: heres why your business really should take notice.FBI WarningExtortion And Theft Of Sensitive Company DataAs hack attacks involving remotely-based information technology workers from the Democratic People's Republic of Korea continue, the FBI said, it is warning the public, private sector and international community about the victimization of US-based businesses. FBI investigations have observed North Korean IT workers using unlawful access to systems in order to steal proprietary and sensitive data as well as to facilitate other cyber-crime activity.According to the FBI announcement, victims have seen proprietary data and code held to ransom, the copying of corporate code repositories to attacker user-profiles and personal cloud accounts, and the attempted harvesting of company credentials and session cookies for further compromise opportunities.MORE FOR YOUThe FBI has advised that you should disable local administrator accounts and limit privileges for installing remote desktop applications, as well as monitor for any unusual network traffic. North Korean IT workers often have multiple logins into one account in a short period of time, the FBI warned, from various IP addresses, often associated with different countries.The FBI concluded that you should implement strict identity-verification processes during the interviewing and onboarding stages of hiring such workers, as well as continuing to do so throughout the employment lifecycle. Cross-check HR systems for other applicants with the same resume content and/or contact information, the FBI warned, adding that North Korean IT workers have been observed using artificial intelligence and face-swapping technology during video job interviews to obfuscate their true identities.
0 Commentarii ·0 Distribuiri ·24 Views