home.social

#insiderthreat — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #insiderthreat, aggregated by home.social.

fetched live
  1. AI Agents Emerge as New Insider Threat Vector

    Get ready for a new frontier in cyber threats: AI agents are emerging as a prime target for hackers, with experts warning that attacks against these autonomous agents will become the next big threat vector. As AI agents gain access to sensitive data, organizations are essentially handing hackers the keys to the kingdom.

    osintsights.com/ai-agents-emer

    #AiAgents #InsiderThreat #EmergingThreats #ArtificialIntelligence #NextgenThreats

  2. CISA Revamps Insider Threat Guide with Expanded Mitigation Advice

    Stay ahead of insider threats with the latest guidance from CISA's revised Insider Threat Mitigation Guide, your go-to playbook for protecting your organization from evolving security risks. The updated guide offers practical advice on tackling emerging challenges like hybrid work, AI, and more.

    osintsights.com/cisa-revamps-i

    #InsiderThreat #InsiderThreatMitigation #Cisa #GuideRevision #HybridWork

  3. Lax Access Controls Enable Ex-Employee to Inflict Hundreds of Thousands in Damages

    A single misstep in access control can have devastating consequences: one terminated employee's lingering credentials led to hundreds of thousands of dollars in damages, including data deletion, system lockdowns, and a corrupted database. The breach not only racked up costly recovery fees but…

    osintsights.com/lax-access-con

    #AccessControlFailure #InsiderThreat #IdentityManagement #DataCorruption #ProjectManagement

  4. Un ex-dipendente Apple accusato di aver sottratto dati su un progetto segreto con OpenAI — e il MacBook aziendale avrebbe lasciato tracce nei log. Un promemoria concreto: i dispositivi corporate registrano molto più di quanto si pensi. La surface d'attacco insider passa spesso per gli strumenti più ordinari. #infosec #insiderthreat #Apple
    spider-mac.com/2026/09/01/appl

  5. Un ex-dipendente Apple accusato di aver sottratto dati su un progetto segreto con OpenAI — e il MacBook aziendale avrebbe lasciato tracce nei log. Un promemoria concreto: i dispositivi corporate registrano molto più di quanto si pensi. La surface d'attacco insider passa spesso per gli strumenti più ordinari. #infosec #insiderthreat #Apple
    spider-mac.com/2026/09/01/appl

  6. DIA Insider Pleads Guilty to Leaking Secrets to Foreign Spies

    A DIA insider has pleaded guilty to leaking classified information to foreign spies, admitting to betraying his oath and putting national security at risk. The shocking case began with a single email in March 2025, sparking a months-long undercover operation that ultimately led to his arrest.

    osintsights.com/dia-insider-pl

    #Espionage #InsiderThreat #NationalSecurity #Counterintelligence #Dia

  7. Wie lassen sich Insiderbedrohungen früher erkennen und proaktiver abwehren? Ne-Trust soll dafür Negative-Trust-Paradigmen und Referenzarchitekturen erforschen – technologieoffen, interdisziplinär und über Zero Trust hinaus.
    Partnering Event: 22.09.2026, 14–17 Uhr.
    Anmeldung bis 16.09.2026. Mehr: t1p.de/21fzz
    #NegativeTrust #Cybersicherheit #InsiderThreat #Forschung

  8. Wie lassen sich Insiderbedrohungen früher erkennen und proaktiver abwehren? Ne-Trust soll dafür Negative-Trust-Paradigmen und Referenzarchitekturen erforschen – technologieoffen, interdisziplinär und über Zero Trust hinaus.
    Partnering Event: 22.09.2026, 14–17 Uhr.
    Anmeldung bis 16.09.2026. Mehr: t1p.de/21fzz
    #NegativeTrust #Cybersicherheit #InsiderThreat #Forschung

  9. Wie lassen sich Insiderbedrohungen früher erkennen und proaktiver abwehren? Ne-Trust soll dafür Negative-Trust-Paradigmen und Referenzarchitekturen erforschen – technologieoffen, interdisziplinär und über Zero Trust hinaus.
    Partnering Event: 22.09.2026, 14–17 Uhr.
    Anmeldung bis 16.09.2026. Mehr: t1p.de/21fzz
    #NegativeTrust #Cybersicherheit #InsiderThreat #Forschung

  10. Rockstar Games Leak Exposes Insider Threat Risks

    The leak of Grand Theft Auto VI footage by CyberLeek has highlighted the devastating risks of insider threats, where stolen IP can destroy the hard work and livelihoods of employees and companies. This breach has exposed a gaping hole between traditional copyright enforcement and the evolving tactics of threat actors.

    osintsights.com/rockstar-games

    #InsiderThreat #IpTheft #DataExtortion #RansomwareOperations #EmergingThreats

  11. Cameron Curry, a former contract data analyst, has been sentenced to two years in prison for cyber extortion against Brightly Software. He exploited privileged access to payroll data and company documents, weaponizing the stolen information against his former employer.

    #InsiderThreat #CyberExtortion #ThreatIntelligence #DataExfiltration

    cyberworldops.eu/en/former-ana

  12. Σοκ: η «επίθεση» μπορεί να περάσει από συνέντευξη για δουλειά.

    Έρευνα που συνδέεται με τη Βόρεια Κορέα δείχνει πώς ύποπτοι προγραμματιστές απέκτησαν κανονική πρόσβαση σε εταιρικά συστήματα, χρησιμοποιώντας ψεύτικες ταυτότητες, VPN και AI.

    Αν μια εταιρεία προσλάβει το λάθος άτομο, μπορεί να το καταλάβει πολύ αργά.

    Δες ποια μικρά σημάδια τους πρόδωσαν.

    hacks.gr/proselavan-tychaia-vo

    #Cybersecurity #NorthKorea #LazarusGroup #InsiderThreat #IdentityFraud

  13. An ex-SK Hynix employee received 18 months for leaking chip manufacturing secrets to Chinese firms. Beyond the verdict: this case highlights how semiconductor IP — lithography processes, materials, tooling — has become a primary target in tech competition. Insider threat programs are rarely glamorous, but they're increasingly critical infrastructure. #infosec #InsiderThreat #semiconductors
    digitimes.com/news/a20260810VL

  14. 📰 US Data Breach Notices in H1 2026 Already Exceed All of 2025

    ITRC's H1 2026 report: US data breach notices (471M) have already surpassed all of 2025. Mega-breaches, supply chain attacks, and a 7x rise in insider threats are key drivers. #DataBreach #CyberSecurity #ITRC #InsiderThreat

    🌐 cyber[.]netsecops[.]io

    🔗 cyber.netsecops.io/articles/us

  15. American Express ordered to fix security gaps after a customer complained about improper employee access.

    It seems that a customer reported a privacy concern and fought AmEx for 4 years to get them to implement stronger access controls or monitoring of employee access to data.

    Now, the AU govt has ordered AmEx to rectify security flaws in five of its data systems to guard against “insider threats” and to restrict employee access to specific customer information to protect vulnerable and high-profile customers.

    See: oaic.gov.au/news/media-centre/

    and:

    oaic.gov.au/__data/assets/pdf_

    h/t, @TheAge (paywalled):
    theage.com.au/business/banking

    #AmEx #AmericanExpress #insiderthreat #accesscontrols #logging #enforcement #privacy #FinSec #infosec

  16. American Express ordered to fix security gaps after a customer complained about improper employee access.

    It seems that a customer reported a privacy concern and fought AmEx for 4 years to get them to implement stronger access controls or monitoring of employee access to data.

    Now, the AU govt has ordered AmEx to rectify security flaws in five of its data systems to guard against “insider threats” and to restrict employee access to specific customer information to protect vulnerable and high-profile customers.

    See: oaic.gov.au/news/media-centre/

    and:

    oaic.gov.au/__data/assets/pdf_

    h/t, @TheAge (paywalled):
    theage.com.au/business/banking

    #AmEx #AmericanExpress #insiderthreat #accesscontrols #logging #enforcement #privacy #FinSec #infosec

  17. American Express ordered to fix security gaps after a customer complained about improper employee access.

    It seems that a customer reported a privacy concern and fought AmEx for 4 years to get them to implement stronger access controls or monitoring of employee access to data.

    Now, the AU govt has ordered AmEx to rectify security flaws in five of its data systems to guard against “insider threats” and to restrict employee access to specific customer information to protect vulnerable and high-profile customers.

    See: oaic.gov.au/news/media-centre/

    and:

    oaic.gov.au/__data/assets/pdf_

    h/t, @TheAge (paywalled):
    theage.com.au/business/banking

    #AmEx #AmericanExpress #insiderthreat #accesscontrols #logging #enforcement #privacy #FinSec #infosec

  18. Brandon Dixon, CTO & Co-Founder of Ent AI, explains how fake remote IT workers are bypassing interviews, onboarding, and enterprise workflows using legitimate credentials and approved tools.

    👉 AI-generated interview responses
    👉 Zoom-based remote access abuse
    👉 KVM-controlled corporate laptops
    👉 Behavioral drift after hiring
    “Historically, the assumption has been that if somebody authenticated successfully, they’re probably trustworthy.”

    technadu.com/spot-fake-remote-

    #CyberSecurity #InsiderThreat #RemoteWork #IdentitySecurity #InfoSec

  19. Brandon Dixon, CTO & Co-Founder of Ent AI, explains how fake remote IT workers are bypassing interviews, onboarding, and enterprise workflows using legitimate credentials and approved tools.

    👉 AI-generated interview responses
    👉 Zoom-based remote access abuse
    👉 KVM-controlled corporate laptops
    👉 Behavioral drift after hiring
    “Historically, the assumption has been that if somebody authenticated successfully, they’re probably trustworthy.”

    technadu.com/spot-fake-remote-

    #CyberSecurity #InsiderThreat #RemoteWork #IdentitySecurity #InfoSec

  20. The #InsiderThreat Special Interest Group (#SIG) is building a dedicated space within the FIRST community for practitioners to come together, share real-world expertise, and develop practical approaches to detection, response, and mitigation. Early members of Insider Threat SIG will shape:

    • The direction of the SIG
    • The playbooks and frameworks we produce
    • The way this space evolves within FIRST

    We’ve just launched the #FIRST #InsiderThreatSIG and the first in-person meetup will be in Denver, Colorado in June this year! #FIRSTCON26 (Registration still available!)

    This is a practitioner-led group focused on real detection, response, and tradecraft not theory.
    If you work in IR, D&R, Threat Hunting, Insider Risk, or Security Engineering, you should be part of this!

    Join here:
    first.org/global/sigs/insider-
    Let’s build something the industry actually needs.

  21. The #InsiderThreat Special Interest Group (#SIG) is building a dedicated space within the FIRST community for practitioners to come together, share real-world expertise, and develop practical approaches to detection, response, and mitigation. Early members of Insider Threat SIG will shape:

    • The direction of the SIG
    • The playbooks and frameworks we produce
    • The way this space evolves within FIRST

    We’ve just launched the #FIRST #InsiderThreatSIG and the first in-person meetup will be in Denver, Colorado in June this year! #FIRSTCON26 (Registration still available!)

    This is a practitioner-led group focused on real detection, response, and tradecraft not theory.
    If you work in IR, D&R, Threat Hunting, Insider Risk, or Security Engineering, you should be part of this!

    Join here:
    first.org/global/sigs/insider-
    Let’s build something the industry actually needs.

  22. The #InsiderThreat Special Interest Group (#SIG) is building a dedicated space within the FIRST community for practitioners to come together, share real-world expertise, and develop practical approaches to detection, response, and mitigation. Early members of Insider Threat SIG will shape:

    • The direction of the SIG
    • The playbooks and frameworks we produce
    • The way this space evolves within FIRST

    We’ve just launched the #FIRST #InsiderThreatSIG and the first in-person meetup will be in Denver, Colorado in June this year! #FIRSTCON26 (Registration still available!)

    This is a practitioner-led group focused on real detection, response, and tradecraft not theory.
    If you work in IR, D&R, Threat Hunting, Insider Risk, or Security Engineering, you should be part of this!

    Join here:
    first.org/global/sigs/insider-
    Let’s build something the industry actually needs.

  23. Former L3Harris offensive cyber exec ordered to pay $10M after selling hacking tools to Russian exploit broker Operation Zero.

    Prosecutors say the stolen tools later surfaced in campaigns tied to Russian intel activity and Chinese cybercriminals.
    A major insider threat case with national security implications.

    Source: techcrunch.com/2026/05/08/u-s-

    Follow @technadu for more cybersecurity updates.
    #InfoSec #Cybersecurity #InsiderThreat

  24. Former L3Harris offensive cyber exec ordered to pay $10M after selling hacking tools to Russian exploit broker Operation Zero.

    Prosecutors say the stolen tools later surfaced in campaigns tied to Russian intel activity and Chinese cybercriminals.
    A major insider threat case with national security implications.

    Source: techcrunch.com/2026/05/08/u-s-

    Follow @technadu for more cybersecurity updates.
    #InfoSec #Cybersecurity #InsiderThreat

  25. Virginia man convicted in case involving deletion of 96 U.S. government databases after termination from federal contractor.
    Another major insider threat case tied to privileged access abuse.

    Source: infosec.exchange/@technadu/116

    Follow @technadu
    #Infosec #CyberSecurity #InsiderThreat

  26. Virginia man convicted in case involving deletion of 96 U.S. government databases after termination from federal contractor.
    Another major insider threat case tied to privileged access abuse.

    Source: infosec.exchange/@technadu/116

    Follow @technadu
    #Infosec #CyberSecurity #InsiderThreat

  27. 📰 NSW Government Downgrades Treasury Cyber Incident, Cites Containment

    The NSW Government has downgraded the 'significant cyber incident' at its Treasury, confirming the insider threat is contained. A staff member faces criminal charges for the alleged data transfer. 🇦🇺 #InsiderThreat #CyberSecurity #NSW #GovAu

    🔗 cyber.netsecops.io

  28. ALPHV BlackCat case ⚠️
    Cybersecurity pros turned ransomware affiliates.
    Key issue: insider threat + skills abuse.
    RaaS model continues to scale impact.

    Are orgs monitoring privileged users enough?

    Source: justice.gov/opa/pr/two-america

    Follow @technadu

    #Infosec #Ransomware #InsiderThreat

  29. ALPHV BlackCat case ⚠️
    Cybersecurity pros turned ransomware affiliates.
    Key issue: insider threat + skills abuse.
    RaaS model continues to scale impact.

    Are orgs monitoring privileged users enough?

    Source: justice.gov/opa/pr/two-america

    Follow @technadu

    #Infosec #Ransomware #InsiderThreat

  30. 📢⚠️ Two US cybersecurity experts have been jailed for aiding the BlackCat ransomware group, extorting victims worldwide, and exploiting insider access for profit.

    Read: hackread.com/us-cybersecurity-

  31. 📢⚠️ Two US cybersecurity experts have been jailed for aiding the BlackCat ransomware group, extorting victims worldwide, and exploiting insider access for profit.

    Read: hackread.com/us-cybersecurity-

    #CyberSecurity #CyberCrime #ALPHV #BlackCat #Ransomware #InsiderThreat

  32. 📢⚠️ Two US cybersecurity experts have been jailed for aiding the BlackCat ransomware group, extorting victims worldwide, and exploiting insider access for profit.

    Read: hackread.com/us-cybersecurity-

    #CyberSecurity #CyberCrime #ALPHV #BlackCat #Ransomware #InsiderThreat

  33. Insider threat alert ⚠️
    Former employee hacks company, deletes admin accounts, shuts down servers, demands 20 BTC.
    Proof that internal access is the biggest risk vector.

    technadu.com/former-employee-p

    #CyberSecurity #InsiderThreat #ZeroTrust

  34. Insider threat alert ⚠️
    Former employee hacks company, deletes admin accounts, shuts down servers, demands 20 BTC.
    Proof that internal access is the biggest risk vector.

    technadu.com/former-employee-p

    #CyberSecurity #InsiderThreat #ZeroTrust

  35. US soldier sentenced for enabling North Korean IT worker fraud.
    • Identity misuse in hiring pipelines
    • Remote access via company laptops
    • ~$1.3M generated
    Trend: Insider-assisted infiltration rising.

    Source: therecord.media/us-soldier-sen

    💬 Mitigation strategies?
    🔔 Follow TechNadu

    #Infosec #CyberSecurity #InsiderThreat

  36. US soldier sentenced for enabling North Korean IT worker fraud.
    • Identity misuse in hiring pipelines
    • Remote access via company laptops
    • ~$1.3M generated
    Trend: Insider-assisted infiltration rising.

    Source: therecord.media/us-soldier-sen

    💬 Mitigation strategies?
    🔔 Follow TechNadu

    #Infosec #CyberSecurity #InsiderThreat

  37. 'Is your biggest security threat already inside your castle?' - the definition of an "insider" has fundamentally changed. It’s not just about disgruntled employees; it’s about a complex web of social engineering, digital savviness, and agentic AI. nielharper.com/2026/03/23/is-y #CyberSecurity #InsiderThreat #DigitalTrust #RiskManagement #AI #ZeroTrust #InfoSec

  38. 'Is your biggest security threat already inside your castle?' - the definition of an "insider" has fundamentally changed. It’s not just about disgruntled employees; it’s about a complex web of social engineering, digital savviness, and agentic AI. nielharper.com/2026/03/23/is-y #CyberSecurity #InsiderThreat #DigitalTrust #RiskManagement #AI #ZeroTrust #InfoSec

  39. 'Is your biggest security threat already inside your castle?' - the definition of an "insider" has fundamentally changed. It’s not just about disgruntled employees; it’s about a complex web of social engineering, digital savviness, and agentic AI. nielharper.com/2026/03/23/is-y #CyberSecurity #InsiderThreat #DigitalTrust #RiskManagement #AI #ZeroTrust #InfoSec

  40. Insider threat case: ex-analyst used legitimate access to execute $2.5M extortion scheme.

    Reinforces need for RBAC, DLP & behavior analytics.

    technadu.com/ex-data-analyst-c

    #Infosec #InsiderThreat #CyberSecurity

  41. DOJ has charged a former incident response employee in connection with alleged ransomware extortion activity linked to ALPHV (BlackCat).
    The case highlights serious insider threat risks within cybersecurity environments.

    technadu.com/former-employee-o

    #Cybersecurity #Ransomware #InsiderThreat #Infosec

  42. DOJ has charged a former incident response employee in connection with alleged ransomware extortion activity linked to ALPHV (BlackCat).
    The case highlights serious insider threat risks within cybersecurity environments.

    technadu.com/former-employee-o

    #Cybersecurity #Ransomware #InsiderThreat #Infosec

  43. 🚨 Alleged insider breach under investigation.
    A former DOGE engineer is accused of copying SSA databases containing sensitive records of millions of individuals, including SSNs and birth data.

    The case highlights serious access control and insider threat risks.
    technadu.com/former-doge-emplo

    #Cybersecurity #InsiderThreat #DataBreach #Infosec

  44. Former defense contractor sentenced to 87 months for selling classified U.S. cyber-exploit tools to a Russian broker.

    • 8 tools stolen
    • $35M impact
    • $1.3M + crypto forfeited
    Insider risk continues to threaten national security supply chains.

    Full report:
    technadu.com/former-defense-co

    Thoughts on insider threat mitigation strategies?

    #InfoSec #InsiderThreat #Espionage

  45. Interessenbekundung „Ne-Trust“ gestartet: Die @Cyberagentur sucht Ideenskizzen zu „Negative Trust“ – einem weiterentwickelten Sicherheitsparadigma, das Insiderangriffe und KI-gestützte Angriffe besser abwehren soll als heutige Ansätze.
    Einreichfrist: 08.04.2026.
    Mehr: t1p.de/oi305
    #Cybersicherheit #NegativeTrust #InsiderThreat #KI

  46. Interessenbekundung „Ne-Trust“ gestartet: Die @Cyberagentur sucht Ideenskizzen zu „Negative Trust“ – einem weiterentwickelten Sicherheitsparadigma, das Insiderangriffe und KI-gestützte Angriffe besser abwehren soll als heutige Ansätze.
    Einreichfrist: 08.04.2026.
    Mehr: t1p.de/oi305
    #Cybersicherheit #NegativeTrust #InsiderThreat #KI

  47. The sentencing of Oleksandr Didenko highlights the operational mechanics of North Korea’s IT worker revenue scheme.

    TTPs included:
    • Identity theft & resale infrastructure
    • U.S.-based laptop farms
    • Remote access tooling
    • Money transmitter accounts
    • Tax filings under stolen identities
    The Federal Bureau of Investigation linked the activity to broader nation-state revenue generation.
    The United Nations estimates up to $600M annually generated via embedded IT workers.
    Technical mitigation questions:
    - Device attestation + hardware-bound identity?
    - Continuous behavioral authentication?
    - Payroll anomaly detection?
    - Zero-trust for remote contractors?

    Drop your technical countermeasures below.

    Source: therecord.media/north-korea-la

    Follow Technadu for advanced cyber threat reporting.

    #ThreatModeling #InsiderThreat #NorthKorea #IdentityManagement #ZeroTrust #RemoteAccessSecurity #CyberCounterintelligence #FraudDetection #Infosec #SecurityEngineering #RiskManagement #CyberIntelligence