Accessibility links
  • Skip to main content
News Icon NEWS FILTER
All News Security Education Videos Scams & Phishing Your Security Mobile Security Identity Theft Corporate Security
Search Icon SEARCH
 

Email Icon SUBSCRIBE TO WEEKLY NEWSLETTER
SIM Swap Sinks Data Security For Medical Research Org
Facebook   X   LinkedIn   Email

SIM Swap Sinks Data Security For Medical Research Org

January 13, 2024

A SIM swap attack targeting an Advarra medical research exec recently put the company’s data security at risk. The company, a provider of medical research and clinical trial assistance, experienced the data breach by the ransomware group ALPHV, aka BlackCat. It’s believed the ransomware threat group specifically targeted the victim for his phone number and was not a random attack.

Healthcare is one of the top industries targeted by ransomware groups for its data-rich environments. Threat actors prefer this industry due to the highly sensitive nature of the data and the fact that healthcare victims are more likely to be insured against cyberattacks. Both reasons provide a history of supporting a quick ransom payout for attackers. ALPHV is now threatening to sell the 120 gigabytes of pilfered data.

SIM Swap Attacks

Also called SIM-jacking, these attacks get control of a target’s phone number allowing hackers to steal authentication codes used for secure account access. Having the one-time code gives them access to a victim’s accounts where they can change passwords and logins and access data stored there. SIM swapping is considered a type of account takeover (ATO) since the victim can no longer access the account and its contents.

How It Happened

It’s believed ALPHV group convinced the victim’s phone carrier to move the hijacked number to another carrier and new SIM under attacker control, a common SIM swap tactic. The group then accessed and copied Advarra’s data, threatening to sell it if their ransom demand isn’t paid. In response, the company says they don’t “pay digital terrorists.” Although Advarra doesn’t say where the employee’s phone number was obtained for the targeted attack, it’s been used to access their work, LinkedIn, and other accounts.

BOLO And More

As proof of their ransomware attack, ALPHV released the PII belonging to one of Advarra’s clinical trial members. It’s a reminder that when PII ends up in the wrong hands it can be used for targeted phishing attacks against victims affected by a data breach of any kind.

Hackers also troll social media, including career-related sites like LinkedIn, for PII they can use for targeted strikes, so limit or completely steer clear of posting PII online. Also, if you have an option, avoid getting MFA (multi-factor authentication) codes in texts and calls when possible, and use an alternative source for MFA such as an authenticator app or hardware security key to verify your identity.


This Cunning Account Takeover Robbed A “Cybersmart” User’s Account

Scams & Phishing

This Cunning Account Takeover Robbed A “Cybersmart” User’s Account

While banking online, this person received a message saying her account had been compromised and provided her a phone number to call. A woman in New York learned the hard way that even those who know the tell-tale signs of a cyberattack can be fooled. She fell victim to an account takeover (ATO) of her financial accounts – to the tune of over $30,000. Know that all types of accounts are vulnerable to ATOs, and not just those that are financial. READ FULL STORY

Executive Impersonations Lead to $2.7 Billion in Costs To Businesses

Corporate Security

Executive Impersonations Lead to $2.7 Billion in Costs To Businesses

Executive impersonation attacks, also known as CEO fraud or whaling attacks, are a type of phishing attack where attackers pose as a high-level executive, such as a CEO, CFO, or other C-Level, in order to trick employees into revealing sensitive information or transferring money. Essentially, these are other ways attackers use Business Email Compromise (BEC) attacks. Executive impersonation attacks can be very costly for businesses. In 2022, the FBI's Internet Crime Report found that these types of attacks cost businesses over $2.7 billion. READ FULL STORY

Are You Getting Smished? How To Tell And How To Avoid It

Mobile Security

Are You Getting Smished? How To Tell And How To Avoid It

It doesn’t take much to be a smishing victim when just a text message does the trick. A member of the email phishing and voice (vishing) family of criminal scams, replying to a smishing text can be all that’s needed to begin a successful scam. Knowing how smishing works and the tell-tale signs of these scams can help keep you from being the next smishing victim. Using pressure, fear, curiosity, trust, winning a contest, and other tactics increase their chances of reeling you in. But what do you do when a text has only one word? READ FULL STORY

SIM Swap Attack Transfers Mobile Numbers To Cyber Thieves

Mobile Security

SIM Swap Attack Transfers Mobile Numbers To Cyber Thieves

There was a recent such breach at Kroll, a firm specializing in risk and financial advisory services. This one had far-reaching consequences, affecting downstream customers and exposing the personal information of numerous claimants. These claimants were involved in bankruptcy proceedings linked to cryptocurrency trading firms like FTX, BlockFI, and Genesis. This incident serves as a poignant reminder of the persistent threat that organizations face from SIM-swapping attacks, because that’s what happened in this case. READ FULL STORY

Verizon Warns of Uptick In SIM Swapping To Swap Their Scam For Your PII

Mobile Security

Verizon Warns of Uptick In SIM Swapping To Swap Their Scam For Your PII

SIM swapping, also called SIM hijacking, is when sneaky hackers get control of your mobile phone account and simply transfer your service to their own device, including your phone number. Once they manage to do that, they can access all your phone data and important accounts. Essentially, consider that if you can access it from your phone, so can they. Verizon has recently been warning of an uptick in this type of cybercrime, which can happen in a variety of ways. READ FULL STORY








Close
Fraud News & Alerts!

Keep up with the latest cyber security news through our weekly Fraud News & Alerts updates. Each week you will receive an email containing the latest cyber security news, tips and breach notifications.



You're all set!

You will receive your first official security update email within the next week.

A welcome email has also just been sent to you. If you do not receive this email within the next few minutes, please check your Junk box or spam filter to confirm our emails are not being blocked.


 
Help  
Enter any word or words you like.        

The email newsletter will arrive from news@stickleyonsecurity.com


Loading
Please wait...