Threats to Asset and Wealth Management in 2020-2021
If you work in the asset and wealth management industry and are concerned with proactively avoiding a data breach and the reputational and financial damages that come with it, here are the top 2021..
Read Post
Nightmare Market In Disarray And SEC Investigation Into Data Leak At First American Financial Corp
Harrison is back! Alex and Christian join this week to discuss how Black Hat and DEFCON went last week, analyze the irregularities of the dark web criminal market, Nightmare, and explore the story...
Read Post
How Digital Shadows Helped Find and Remediate an Exposed Admin Password on Github
In this blog series, we’ll share some tales from the front lines – keeping client names anonymous, of course. We’ll investigate some of SearchLight’s most impactful findings, and more importantly, she
Read Post
SearchLight’s Exposed Document Alerts: Uncover the Critical, Faster
BACKING UP…INTO A DITCH I am a terrible driver. While I’ve sat through Driver’s Ed courses, studied physics and trigonometry, ...
Read Post
Reducing technical leakage: Detecting software exposure from the outside-in
A combination of the rapid delivery of software, onset of digital transformation, and poor security practices, have increased the likelihood of sensitive technical data being exposed online.
Read Post
Third Party Risk: 4 ways to manage your security ecosystem
Don’t assume your data is safe because you’ve completed a vendor risk questionnaire, or the third-party has a promising risk score. Data finds a way online. Find a way to detect it when it does.
Read Post
Account takeover: Expanding on impact
Digital Shadows has collected over 15 billion credentials across the open, deep, and dark web.
Read Post
Let’s get ready to tumble! Bitcoin vs Monero
Over the past ten years, cryptocurrencies have become the go-to form of payment for the less law-abiding citizens of the ...
Read Post
The Rise of OpenBullet: A Deep Dive in the Attacker’s ATO toolkit
Account takeover (ATO) has become a serious issue for many organizations. Digital Shadows has identified over 15 billion credentials circulating ...
Read Post
From Exposure to Takeover: Part 1. Beg, borrow, and steal your way in
Account Takeover: Why criminals can’t resist We rely on passwords to safeguard those precious accounts that allow us to conduct ...
Read Post
NSA Vulnerability Disclosure: Pros and Cons
On Monday, January 13th, Brian Krebs reported that Microsoft would be releasing “a software update on Tuesday to fix ...
Read Post
2020 Cybersecurity Forecasts: 5 trends and predictions for the new year
In this blog, we discuss several significant trends and events that have helped shape the cyber threat landscape, all of which will almost certainly continue through 2020.
Read Post
Quarterly Update: Ransomware Trends in Q3
As we embark on the final months of 2020, ransomware has been the main topic of conversation once again. Throughout ...
Read Post
Forums are Forever – Part 1: Cybercrime Never Dies
The survival of the cybercriminal forum in the face of new, more secure technologies and constant pressure from law enforcement does not come as a surprise to researchers at Digital Shadows.
Read Post
Threat Intelligence: A Deep Dive
Welcome to our deep dive on threat intelligence: intended to help security professionals embarking on creating and building a ...
Read Post
Forums are Forever – Part 2: Shaken, but not Stirred
Part 2 looks at cybercriminal forum users’ resistance to moving away from the forum model.
Read Post
A Threat Intelligence Analyst’s Guide to Today’s Sources of Bias
This blog seeks to rebalance intelligence tradecraft discussions by highlighting some of the less glamorous everyday sources of bias that are too often overlooked.
Read Post