#insiderthreat — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #insiderthreat, aggregated by home.social.
-
AI Agents Emerge as New Insider Threat Vector
Get ready for a new frontier in cyber threats: AI agents are emerging as a prime target for hackers, with experts warning that attacks against these autonomous agents will become the next big threat vector. As AI agents gain access to sensitive data, organizations are essentially handing hackers the keys to the kingdom.
#AiAgents #InsiderThreat #EmergingThreats #ArtificialIntelligence #NextgenThreats
-
CISA Revamps Insider Threat Guide with Expanded Mitigation Advice
Stay ahead of insider threats with the latest guidance from CISA's revised Insider Threat Mitigation Guide, your go-to playbook for protecting your organization from evolving security risks. The updated guide offers practical advice on tackling emerging challenges like hybrid work, AI, and more.
#InsiderThreat #InsiderThreatMitigation #Cisa #GuideRevision #HybridWork
-
Lax Access Controls Enable Ex-Employee to Inflict Hundreds of Thousands in Damages
A single misstep in access control can have devastating consequences: one terminated employee's lingering credentials led to hundreds of thousands of dollars in damages, including data deletion, system lockdowns, and a corrupted database. The breach not only racked up costly recovery fees but…
#AccessControlFailure #InsiderThreat #IdentityManagement #DataCorruption #ProjectManagement
-
Un ex-dipendente Apple accusato di aver sottratto dati su un progetto segreto con OpenAI — e il MacBook aziendale avrebbe lasciato tracce nei log. Un promemoria concreto: i dispositivi corporate registrano molto più di quanto si pensi. La surface d'attacco insider passa spesso per gli strumenti più ordinari. #infosec #insiderthreat #Apple
https://spider-mac.com/2026/09/01/apple-openai-nuove-prove-causa-segreti-industriali/ -
Un ex-dipendente Apple accusato di aver sottratto dati su un progetto segreto con OpenAI — e il MacBook aziendale avrebbe lasciato tracce nei log. Un promemoria concreto: i dispositivi corporate registrano molto più di quanto si pensi. La surface d'attacco insider passa spesso per gli strumenti più ordinari. #infosec #insiderthreat #Apple
https://spider-mac.com/2026/09/01/apple-openai-nuove-prove-causa-segreti-industriali/ -
DIA Insider Pleads Guilty to Leaking Secrets to Foreign Spies
A DIA insider has pleaded guilty to leaking classified information to foreign spies, admitting to betraying his oath and putting national security at risk. The shocking case began with a single email in March 2025, sparking a months-long undercover operation that ultimately led to his arrest.
#Espionage #InsiderThreat #NationalSecurity #Counterintelligence #Dia
-
Wie lassen sich Insiderbedrohungen früher erkennen und proaktiver abwehren? Ne-Trust soll dafür Negative-Trust-Paradigmen und Referenzarchitekturen erforschen – technologieoffen, interdisziplinär und über Zero Trust hinaus.
Partnering Event: 22.09.2026, 14–17 Uhr.
Anmeldung bis 16.09.2026. Mehr: https://t1p.de/21fzz
#NegativeTrust #Cybersicherheit #InsiderThreat #Forschung -
Wie lassen sich Insiderbedrohungen früher erkennen und proaktiver abwehren? Ne-Trust soll dafür Negative-Trust-Paradigmen und Referenzarchitekturen erforschen – technologieoffen, interdisziplinär und über Zero Trust hinaus.
Partnering Event: 22.09.2026, 14–17 Uhr.
Anmeldung bis 16.09.2026. Mehr: https://t1p.de/21fzz
#NegativeTrust #Cybersicherheit #InsiderThreat #Forschung -
Wie lassen sich Insiderbedrohungen früher erkennen und proaktiver abwehren? Ne-Trust soll dafür Negative-Trust-Paradigmen und Referenzarchitekturen erforschen – technologieoffen, interdisziplinär und über Zero Trust hinaus.
Partnering Event: 22.09.2026, 14–17 Uhr.
Anmeldung bis 16.09.2026. Mehr: https://t1p.de/21fzz
#NegativeTrust #Cybersicherheit #InsiderThreat #Forschung -
Rockstar Games Leak Exposes Insider Threat Risks
The leak of Grand Theft Auto VI footage by CyberLeek has highlighted the devastating risks of insider threats, where stolen IP can destroy the hard work and livelihoods of employees and companies. This breach has exposed a gaping hole between traditional copyright enforcement and the evolving tactics of threat actors.
#InsiderThreat #IpTheft #DataExtortion #RansomwareOperations #EmergingThreats
-
Cameron Curry, a former contract data analyst, has been sentenced to two years in prison for cyber extortion against Brightly Software. He exploited privileged access to payroll data and company documents, weaponizing the stolen information against his former employer.
#InsiderThreat #CyberExtortion #ThreatIntelligence #DataExfiltration
https://cyberworldops.eu/en/former-analyst-sentenced-for-extorting-brightly-software
-
Σοκ: η «επίθεση» μπορεί να περάσει από συνέντευξη για δουλειά.
Έρευνα που συνδέεται με τη Βόρεια Κορέα δείχνει πώς ύποπτοι προγραμματιστές απέκτησαν κανονική πρόσβαση σε εταιρικά συστήματα, χρησιμοποιώντας ψεύτικες ταυτότητες, VPN και AI.
Αν μια εταιρεία προσλάβει το λάθος άτομο, μπορεί να το καταλάβει πολύ αργά.
Δες ποια μικρά σημάδια τους πρόδωσαν.
#Cybersecurity #NorthKorea #LazarusGroup #InsiderThreat #IdentityFraud
-
FBI investigating North Korean remote IT staffer working for US agency
The FBI is investigating how an unidentified federal agency was recently swept up in a yearslong campaign involving…
#EuropeSays #Korea #KR #NorthKorea #donaldblersch #FBI #identitytheft #insiderthreat #intelligenceandnationalsecurityalliance #lornamacfarlane #meganmocho #securityclearance #toddhemmen
https://www.europesays.com/korea/117430/ -
FBI investigating North Korean remote IT staffer working for US agency https://www.byteseu.com/2264279/ #Conflicts #DonaldBlersch #FBI #IdentityTheft #InsiderThreat #IntelligenceAndNationalSecurityAlliance #LornaMacfarlane #MeganMocho #NorthKorea #SecurityClearance #ToddHemmen
-
An ex-SK Hynix employee received 18 months for leaking chip manufacturing secrets to Chinese firms. Beyond the verdict: this case highlights how semiconductor IP — lithography processes, materials, tooling — has become a primary target in tech competition. Insider threat programs are rarely glamorous, but they're increasingly critical infrastructure. #infosec #InsiderThreat #semiconductors
https://www.digitimes.com/news/a20260810VL201/sk-hynix-technology-2022-huawei.html -
📰 US Data Breach Notices in H1 2026 Already Exceed All of 2025
ITRC's H1 2026 report: US data breach notices (471M) have already surpassed all of 2025. Mega-breaches, supply chain attacks, and a 7x rise in insider threats are key drivers. #DataBreach #CyberSecurity #ITRC #InsiderThreat
🌐 cyber[.]netsecops[.]io
-
NATO Military HQ Intern Arrested for Espionage: Alliance Vetting Blind Spot Exposed https://www.byteseu.com/2227584/ #Belgium #China #ChinaNATOIntelligenceOperations #Espionage #Europe #InsiderThreat #NATO #NATOInternArrestEspionage #SHAPEHeadquartersBelgiumSpy
-
NATO Military HQ Intern Arrested for Espionage: Alliance Vetting Blind Spot Exposed
Belgian authorities announced on Saturday that a Canadian woman of Chinese origin working as an intern at NATO’s…
#NATO #OTAN #Europe #Europa #EU #News #Belgium #China #ChinaNATOintelligenceoperations #espionage #insiderthreat #nato #NATOinternarrestespionage #SHAPEheadquartersBelgiumspy
https://www.europesays.com/nato/8848/ -
A Florida ransomware negotiator got 70 months for feeding clients' secrets to BlackCat ransomware actors. The DOJ seized over $10 million in proceeds.
-
American Express ordered to fix security gaps after a customer complained about improper employee access.
It seems that a customer reported a privacy concern and fought AmEx for 4 years to get them to implement stronger access controls or monitoring of employee access to data.
Now, the AU govt has ordered AmEx to rectify security flaws in five of its data systems to guard against “insider threats” and to restrict employee access to specific customer information to protect vulnerable and high-profile customers.
and:
https://www.oaic.gov.au/__data/assets/pdf_file/0031/264919/Report-of-investigation-into-AMEX.pdf
h/t, @TheAge (paywalled):
https://www.theage.com.au/business/banking-and-finance/american-express-ordered-to-fix-security-gaps-after-customer-was-spied-on-20260612-p606ei.html#AmEx #AmericanExpress #insiderthreat #accesscontrols #logging #enforcement #privacy #FinSec #infosec
-
American Express ordered to fix security gaps after a customer complained about improper employee access.
It seems that a customer reported a privacy concern and fought AmEx for 4 years to get them to implement stronger access controls or monitoring of employee access to data.
Now, the AU govt has ordered AmEx to rectify security flaws in five of its data systems to guard against “insider threats” and to restrict employee access to specific customer information to protect vulnerable and high-profile customers.
and:
https://www.oaic.gov.au/__data/assets/pdf_file/0031/264919/Report-of-investigation-into-AMEX.pdf
h/t, @TheAge (paywalled):
https://www.theage.com.au/business/banking-and-finance/american-express-ordered-to-fix-security-gaps-after-customer-was-spied-on-20260612-p606ei.html#AmEx #AmericanExpress #insiderthreat #accesscontrols #logging #enforcement #privacy #FinSec #infosec
-
American Express ordered to fix security gaps after a customer complained about improper employee access.
It seems that a customer reported a privacy concern and fought AmEx for 4 years to get them to implement stronger access controls or monitoring of employee access to data.
Now, the AU govt has ordered AmEx to rectify security flaws in five of its data systems to guard against “insider threats” and to restrict employee access to specific customer information to protect vulnerable and high-profile customers.
and:
https://www.oaic.gov.au/__data/assets/pdf_file/0031/264919/Report-of-investigation-into-AMEX.pdf
h/t, @TheAge (paywalled):
https://www.theage.com.au/business/banking-and-finance/american-express-ordered-to-fix-security-gaps-after-customer-was-spied-on-20260612-p606ei.html#AmEx #AmericanExpress #insiderthreat #accesscontrols #logging #enforcement #privacy #FinSec #infosec
-
Brandon Dixon, CTO & Co-Founder of Ent AI, explains how fake remote IT workers are bypassing interviews, onboarding, and enterprise workflows using legitimate credentials and approved tools.
👉 AI-generated interview responses
👉 Zoom-based remote access abuse
👉 KVM-controlled corporate laptops
👉 Behavioral drift after hiring
“Historically, the assumption has been that if somebody authenticated successfully, they’re probably trustworthy.”https://www.technadu.com/spot-fake-remote-workers-who-bypass-hiring-and-security-checks/628044/
#CyberSecurity #InsiderThreat #RemoteWork #IdentitySecurity #InfoSec
-
Brandon Dixon, CTO & Co-Founder of Ent AI, explains how fake remote IT workers are bypassing interviews, onboarding, and enterprise workflows using legitimate credentials and approved tools.
👉 AI-generated interview responses
👉 Zoom-based remote access abuse
👉 KVM-controlled corporate laptops
👉 Behavioral drift after hiring
“Historically, the assumption has been that if somebody authenticated successfully, they’re probably trustworthy.”https://www.technadu.com/spot-fake-remote-workers-who-bypass-hiring-and-security-checks/628044/
#CyberSecurity #InsiderThreat #RemoteWork #IdentitySecurity #InfoSec
-
The #InsiderThreat Special Interest Group (#SIG) is building a dedicated space within the FIRST community for practitioners to come together, share real-world expertise, and develop practical approaches to detection, response, and mitigation. Early members of Insider Threat SIG will shape:
• The direction of the SIG
• The playbooks and frameworks we produce
• The way this space evolves within FIRSTWe’ve just launched the #FIRST #InsiderThreatSIG and the first in-person meetup will be in Denver, Colorado in June this year! #FIRSTCON26 (Registration still available!)
This is a practitioner-led group focused on real detection, response, and tradecraft not theory.
If you work in IR, D&R, Threat Hunting, Insider Risk, or Security Engineering, you should be part of this!Join here:
https://www.first.org/global/sigs/insider-threat/
Let’s build something the industry actually needs. -
The #InsiderThreat Special Interest Group (#SIG) is building a dedicated space within the FIRST community for practitioners to come together, share real-world expertise, and develop practical approaches to detection, response, and mitigation. Early members of Insider Threat SIG will shape:
• The direction of the SIG
• The playbooks and frameworks we produce
• The way this space evolves within FIRSTWe’ve just launched the #FIRST #InsiderThreatSIG and the first in-person meetup will be in Denver, Colorado in June this year! #FIRSTCON26 (Registration still available!)
This is a practitioner-led group focused on real detection, response, and tradecraft not theory.
If you work in IR, D&R, Threat Hunting, Insider Risk, or Security Engineering, you should be part of this!Join here:
https://www.first.org/global/sigs/insider-threat/
Let’s build something the industry actually needs. -
The #InsiderThreat Special Interest Group (#SIG) is building a dedicated space within the FIRST community for practitioners to come together, share real-world expertise, and develop practical approaches to detection, response, and mitigation. Early members of Insider Threat SIG will shape:
• The direction of the SIG
• The playbooks and frameworks we produce
• The way this space evolves within FIRSTWe’ve just launched the #FIRST #InsiderThreatSIG and the first in-person meetup will be in Denver, Colorado in June this year! #FIRSTCON26 (Registration still available!)
This is a practitioner-led group focused on real detection, response, and tradecraft not theory.
If you work in IR, D&R, Threat Hunting, Insider Risk, or Security Engineering, you should be part of this!Join here:
https://www.first.org/global/sigs/insider-threat/
Let’s build something the industry actually needs. -
Former L3Harris offensive cyber exec ordered to pay $10M after selling hacking tools to Russian exploit broker Operation Zero.
Prosecutors say the stolen tools later surfaced in campaigns tied to Russian intel activity and Chinese cybercriminals.
A major insider threat case with national security implications.Follow @technadu for more cybersecurity updates.
#InfoSec #Cybersecurity #InsiderThreat -
Former L3Harris offensive cyber exec ordered to pay $10M after selling hacking tools to Russian exploit broker Operation Zero.
Prosecutors say the stolen tools later surfaced in campaigns tied to Russian intel activity and Chinese cybercriminals.
A major insider threat case with national security implications.Follow @technadu for more cybersecurity updates.
#InfoSec #Cybersecurity #InsiderThreat -
Virginia man convicted in case involving deletion of 96 U.S. government databases after termination from federal contractor.
Another major insider threat case tied to privileged access abuse.Source: https://infosec.exchange/@technadu/116538665477514728
-
Virginia man convicted in case involving deletion of 96 U.S. government databases after termination from federal contractor.
Another major insider threat case tied to privileged access abuse.Source: https://infosec.exchange/@technadu/116538665477514728
-
📰 NSW Government Downgrades Treasury Cyber Incident, Cites Containment
The NSW Government has downgraded the 'significant cyber incident' at its Treasury, confirming the insider threat is contained. A staff member faces criminal charges for the alleged data transfer. 🇦🇺 #InsiderThreat #CyberSecurity #NSW #GovAu
-
ALPHV BlackCat case ⚠️
Cybersecurity pros turned ransomware affiliates.
Key issue: insider threat + skills abuse.
RaaS model continues to scale impact.Are orgs monitoring privileged users enough?
Follow @technadu
-
ALPHV BlackCat case ⚠️
Cybersecurity pros turned ransomware affiliates.
Key issue: insider threat + skills abuse.
RaaS model continues to scale impact.Are orgs monitoring privileged users enough?
Follow @technadu
-
📢⚠️ Two US cybersecurity experts have been jailed for aiding the BlackCat ransomware group, extorting victims worldwide, and exploiting insider access for profit.
Read: https://hackread.com/us-cybersecurity-experts-jail-alphv-blackcat-ransomware/
#CyberSecurity #CyberCrime #ALPHV #BlackCat #Ransomware #InsiderThreat
-
📢⚠️ Two US cybersecurity experts have been jailed for aiding the BlackCat ransomware group, extorting victims worldwide, and exploiting insider access for profit.
Read: https://hackread.com/us-cybersecurity-experts-jail-alphv-blackcat-ransomware/
#CyberSecurity #CyberCrime #ALPHV #BlackCat #Ransomware #InsiderThreat
-
📢⚠️ Two US cybersecurity experts have been jailed for aiding the BlackCat ransomware group, extorting victims worldwide, and exploiting insider access for profit.
Read: https://hackread.com/us-cybersecurity-experts-jail-alphv-blackcat-ransomware/
#CyberSecurity #CyberCrime #ALPHV #BlackCat #Ransomware #InsiderThreat
-
Caution required - do NOT just run off and build/launch new AI Agents..... Good read on AI Agents as insider threat. https://www.zdnet.com/article/enterprise-ai-agents-insider-threat/ #AI #AIAgents #Security #AISecurity #AgenticAI #DataSecurity #InsiderThreat
-
Caution required - do NOT just run off and build/launch new AI Agents..... Good read on AI Agents as insider threat. https://www.zdnet.com/article/enterprise-ai-agents-insider-threat/ #AI #AIAgents #Security #AISecurity #AgenticAI #DataSecurity #InsiderThreat
-
Caution required - do NOT just run off and build/launch new AI Agents..... Good read on AI Agents as insider threat. https://www.zdnet.com/article/enterprise-ai-agents-insider-threat/ #AI #AIAgents #Security #AISecurity #AgenticAI #DataSecurity #InsiderThreat
-
Clearwater, Florida, library disruption leads to felony charge against former employee #ComputerTampering #DeepFreeze #MultiFactorAuthentication #InsiderThreat #Clearwater #AuditLogs #Florida #Library https://dysruptionhub.com/clearwater-library-charge-florida/
-
CW: US Federal Charges / Cybersecurity
A core infrastructure engineer pleads guilty to federal charges in insider attack | CSO Online https://www.csoonline.com/article/4154204/a-core-infrastructure-engineer-pleads-guilty-to-federal-charges-in-insider-attack.html
#CyberSecurity #InfoSec #InsiderThreat #TechNews #Engineering
-
Insider threat alert ⚠️
Former employee hacks company, deletes admin accounts, shuts down servers, demands 20 BTC.
Proof that internal access is the biggest risk vector. -
Insider threat alert ⚠️
Former employee hacks company, deletes admin accounts, shuts down servers, demands 20 BTC.
Proof that internal access is the biggest risk vector. -
US soldier sentenced for enabling North Korean IT worker fraud.
• Identity misuse in hiring pipelines
• Remote access via company laptops
• ~$1.3M generated
Trend: Insider-assisted infiltration rising.Source: https://therecord.media/us-soldier-sentencer-for-helping-nk-it-workers
💬 Mitigation strategies?
🔔 Follow TechNadu -
US soldier sentenced for enabling North Korean IT worker fraud.
• Identity misuse in hiring pipelines
• Remote access via company laptops
• ~$1.3M generated
Trend: Insider-assisted infiltration rising.Source: https://therecord.media/us-soldier-sentencer-for-helping-nk-it-workers
💬 Mitigation strategies?
🔔 Follow TechNadu -
'Is your biggest security threat already inside your castle?' - the definition of an "insider" has fundamentally changed. It’s not just about disgruntled employees; it’s about a complex web of social engineering, digital savviness, and agentic AI. https://nielharper.com/2026/03/23/is-your-biggest-security-risk-already-inside-your-castle #CyberSecurity #InsiderThreat #DigitalTrust #RiskManagement #AI #ZeroTrust #InfoSec
-
'Is your biggest security threat already inside your castle?' - the definition of an "insider" has fundamentally changed. It’s not just about disgruntled employees; it’s about a complex web of social engineering, digital savviness, and agentic AI. https://nielharper.com/2026/03/23/is-your-biggest-security-risk-already-inside-your-castle #CyberSecurity #InsiderThreat #DigitalTrust #RiskManagement #AI #ZeroTrust #InfoSec
-
'Is your biggest security threat already inside your castle?' - the definition of an "insider" has fundamentally changed. It’s not just about disgruntled employees; it’s about a complex web of social engineering, digital savviness, and agentic AI. https://nielharper.com/2026/03/23/is-your-biggest-security-risk-already-inside-your-castle #CyberSecurity #InsiderThreat #DigitalTrust #RiskManagement #AI #ZeroTrust #InfoSec
-
Insider threat case: ex-analyst used legitimate access to execute $2.5M extortion scheme.
Reinforces need for RBAC, DLP & behavior analytics.
-
DOJ has charged a former incident response employee in connection with alleged ransomware extortion activity linked to ALPHV (BlackCat).
The case highlights serious insider threat risks within cybersecurity environments. -
DOJ has charged a former incident response employee in connection with alleged ransomware extortion activity linked to ALPHV (BlackCat).
The case highlights serious insider threat risks within cybersecurity environments. -
🚨 Alleged insider breach under investigation.
A former DOGE engineer is accused of copying SSA databases containing sensitive records of millions of individuals, including SSNs and birth data.The case highlights serious access control and insider threat risks.
https://www.technadu.com/former-doge-employee-accused-of-social-security-data-theft-affecting-500-million-americans/623057/ -
Former defense contractor sentenced to 87 months for selling classified U.S. cyber-exploit tools to a Russian broker.
• 8 tools stolen
• $35M impact
• $1.3M + crypto forfeited
Insider risk continues to threaten national security supply chains.Thoughts on insider threat mitigation strategies?
-
Interessenbekundung „Ne-Trust“ gestartet: Die @Cyberagentur sucht Ideenskizzen zu „Negative Trust“ – einem weiterentwickelten Sicherheitsparadigma, das Insiderangriffe und KI-gestützte Angriffe besser abwehren soll als heutige Ansätze.
Einreichfrist: 08.04.2026.
Mehr: https://t1p.de/oi305
#Cybersicherheit #NegativeTrust #InsiderThreat #KI -
Interessenbekundung „Ne-Trust“ gestartet: Die @Cyberagentur sucht Ideenskizzen zu „Negative Trust“ – einem weiterentwickelten Sicherheitsparadigma, das Insiderangriffe und KI-gestützte Angriffe besser abwehren soll als heutige Ansätze.
Einreichfrist: 08.04.2026.
Mehr: https://t1p.de/oi305
#Cybersicherheit #NegativeTrust #InsiderThreat #KI -
The sentencing of Oleksandr Didenko highlights the operational mechanics of North Korea’s IT worker revenue scheme.
TTPs included:
• Identity theft & resale infrastructure
• U.S.-based laptop farms
• Remote access tooling
• Money transmitter accounts
• Tax filings under stolen identities
The Federal Bureau of Investigation linked the activity to broader nation-state revenue generation.
The United Nations estimates up to $600M annually generated via embedded IT workers.
Technical mitigation questions:
- Device attestation + hardware-bound identity?
- Continuous behavioral authentication?
- Payroll anomaly detection?
- Zero-trust for remote contractors?Drop your technical countermeasures below.
Source: https://therecord.media/north-korea-laptop-farm-ukraine
Follow Technadu for advanced cyber threat reporting.
#ThreatModeling #InsiderThreat #NorthKorea #IdentityManagement #ZeroTrust #RemoteAccessSecurity #CyberCounterintelligence #FraudDetection #Infosec #SecurityEngineering #RiskManagement #CyberIntelligence