{"id":90067,"date":"2021-06-17T20:09:07","date_gmt":"2021-06-17T14:39:07","guid":{"rendered":"https:\/\/blogs.quickheal.com\/?p=90067"},"modified":"2023-08-08T17:55:51","modified_gmt":"2023-08-08T12:25:51","slug":"breaches-and-incidents-top-5-cyber-attacks-in-quarter-1-2021","status":"publish","type":"post","link":"https:\/\/www.quickheal.com\/blogs\/breaches-and-incidents-top-5-cyber-attacks-in-quarter-1-2021\/","title":{"rendered":"Breaches and Incidents: Top 5 Cyber-attacks in Quarter 1 &#8211; 2021"},"content":{"rendered":"<p>The second wave of the pandemic has hit India hard from a cybersecurity perspective. There has been a rise in recent cyber-attacks in India in 2021, with cybercriminals taking advantage of the situation and finding new ways to breach data. If we analyze the news of cyber-attacks in 2021, we will observe increased <a href=\"https:\/\/blogs.quickheal.com\/scam-alert-covid-19-vaccine-phishing-and-money-scam-hits-india\/\">COVID-19<\/a> cyber threats and supply chain attacks. Here is a roundup of five cyber-attacks that had the most severe consequences:<\/p>\n<h2 style=\"font-size: 27px;\"><strong>1. SolarWinds Attack<\/strong><\/h2>\n<p>The<a href=\"https:\/\/www.seqrite.com\/blog\/nation-states-shoot-from-somebody-elses-shoulder\/\" target=\"_blank\" rel=\"noopener noreferrer\">\u00a0SolarWinds attack<\/a> is considered to be among the worst cyber-espionage incidents ever suffered by the United States. Some of the biggest and most important organizations globally, including the North Atlantic Treaty Organization (NATO), the Government of the United Kingdom, the European Parliament, and Microsoft, were\u00a0<a href=\"https:\/\/www.bloomberg.com\/news\/articles\/2020-12-14\/u-k-government-nato-join-u-s-in-monitoring-risk-from-hack\" target=\"_blank\" rel=\"noopener noreferrer\">reportedly<\/a>\u00a0affected. According to intelligence, the hacking group Cozy Bear, allegedly backed by Russia, was part of this classic supply-chain attack which\u00a0<a href=\"https:\/\/www.bloomberg.com\/news\/articles\/2020-12-19\/at-least-200-victims-identified-in-suspected-russian-hacking\" target=\"_blank\" rel=\"noopener noreferrer\">involved<\/a>\u00a0more than 200 organizations worldwide.<\/p>\n<p>The key takeaway from the SolarWinds attack is enterprises must integrate their cybersecurity silos into a single-point holistic security posture to ensure better monitoring. <a href=\"https:\/\/www.seqrite.com\/hawkk\/seqrite-hawkkeye\" target=\"_blank\" rel=\"noopener noreferrer\">Seqrite HawkkEye<\/a> offers enterprises a single-pane-of-truth for the age of the digital everything with an intuitive cloud-based platform to help manage all individual point products from a single dashboard.<\/p>\n<h2 style=\"font-size: 27px;\"><strong>2. Attacks on India\u2019s CoWIN app<\/strong><\/h2>\n<p>As India aims to find its way out of the pandemic by accelerating the vaccination process, cybercriminals jump on the opportunity by misguiding and tricking users into downloading fake apps. In January, we\u00a0<a href=\"https:\/\/blogs.quickheal.com\/you-might-get-hacked-before-getting-vaccinated\/\" target=\"_blank\" rel=\"noopener noreferrer\">reported<\/a>\u00a0incidences of fake Aarogya Setu apps created by malware authors to plant malware into the end user\u2019s phone. Now with vaccination being made eligible for the 18-44 population, there have been instances of\u00a0<a href=\"https:\/\/www.financialexpress.com\/industry\/technology\/fake-covid-19-vaccine-registration-sms-can-trick-you-into-installing-malicious-app-steal-your-contacts-to-inflict-more-damage\/2245967\/\" target=\"_blank\" rel=\"noopener noreferrer\">fake CoWIN apps<\/a>\u00a0being used to lure users into downloading the app in the hope of getting vaccinated.\u00a0 <strong>\u00a0<\/strong><\/p>\n<p>These attacks clearly demonstrate the importance of keeping your mobile phone safe from such threats. <a href=\"https:\/\/www.quickheal.co.in\/quick-heal-mobile-security\" target=\"_blank\" rel=\"noopener noreferrer\">Quick Heal Mobile Security<\/a> offers free protection for your Android phone against virus attacks, unwanted calls, and theft.<\/p>\n<h2 style=\"font-size: 27px;\"><strong>3. The Black Kingdom ransomware targets Microsoft Exchange servers<\/strong><\/h2>\n<p>According to reports, the dangerous\u00a0<a href=\"https:\/\/www.seqrite.com\/blog\/all-you-need-to-know-about-the-black-kingdom-ransomware-targeting-exchange-servers\/\" target=\"_blank\" rel=\"noopener noreferrer\">Black Kingdom ransomware<\/a>\u00a0<a href=\"https:\/\/meterpreter.org\/black-kingdom-ransomware-attacked-1500-exchange-server-servers-for-ransom\/\" target=\"_blank\" rel=\"noopener noreferrer\">attacked<\/a>\u00a0close to 1,500 Microsoft Exchange servers. Thought to be the handiwork of Hafnium, a Chinese state-sponsored group, this ransomware targeted a flaw in Microsoft Exchange servers that had not been updated with a patch. Files would be encrypted on compromised servers, and the attackers would demand a ransom of USD 10,000 in bitcoin.<\/p>\n<p>In our <a href=\"https:\/\/www.seqrite.com\/blog\/all-you-need-to-know-about-the-black-kingdom-ransomware-targeting-exchange-servers\/\" target=\"_blank\" rel=\"noopener noreferrer\">detailed analysis<\/a> of the Black Kingdom ransomware, we took a deeper look into its functioning and the steps that enterprises need to take to secure themselves. This attack has yet again illustrated why regular and timely patching of systems is so important.<\/p>\n<h2 style=\"font-size: 27px;\"><strong>4. LinkedIn Phishing Scam<\/strong><\/h2>\n<p>LinkedIn is one of the world\u2019s most popular social networks, with\u00a0<a href=\"https:\/\/about.linkedin.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">756 million members<\/a>\u00a0in more than 200 countries worldwide. This popularity has brought it in the crosshairs of attackers with the recent news of a\u00a0<a href=\"https:\/\/blogs.quickheal.com\/linkedin-phishing-scam-hackers-target-users-with-fake-job-offers\/\" target=\"_blank\" rel=\"noopener noreferrer\">massive data breach<\/a>\u00a0in the company with reports that scraped data of 500 million LinkedIn users were\u00a0<a href=\"https:\/\/cybernews.com\/news\/stolen-data-of-500-million-linkedin-users-being-sold-online-2-million-leaked-as-proof-2\/\" target=\"_blank\" rel=\"noopener noreferrer\">being sold online<\/a>. Attackers were gaining access to this data by spear-phishing users by emailing them with fraudulent job offers and making them click on malicious links. These links would lead to malicious software or backdoors being downloaded into the victim\u2019s systems.<\/p>\n<p>For a more detailed analysis of the <a href=\"https:\/\/blogs.quickheal.com\/linkedin-phishing-scam-hackers-target-users-with-fake-job-offers\/\" target=\"_blank\" rel=\"noopener noreferrer\">LinkedIn phishing scam<\/a>, do read our article which explains how unsuspecting victims are tricked into clicking on fake phishing links through messages which promise a job opportunity. It also underlines the importance of staying aware of phishing attempts on all social media networks, including LinkedIn.<\/p>\n<h2 style=\"font-size: 27px;\"><strong>5. Cyber-attack on Air India<\/strong><\/h2>\n<p>The data of millions of India\u2019s flagship airline customers, Air India, was compromised in one of the biggest cyber-attacks in 2021. Between August 2011 and February 2021, confidential information such as passport details, ticket information, and credit card data of more than\u00a0<a href=\"https:\/\/www.bloomberg.com\/news\/articles\/2021-05-22\/cyber-attack-on-air-india-led-to-data-leak-of-4-5-million-fliers\" target=\"_blank\" rel=\"noopener noreferrer\">4.5 million customers<\/a>\u00a0was compromised. While the airline tried to reassure its customers by stating that credit card details had not been leaked, it urged its users to change their passwords.<\/p>\n<p>These attacks make it clear that threat actors are moving quickly to take advantage of the chaos caused by the COVID-19 pandemic. Cyber-attacks will continue to evolve with malware authors honing their attack strategies. For more information on these attacks and cyber-attacks statistics, download <a href=\"https:\/\/www.quickheal.co.in\/documents\/threat-report\/Quick-Heal-Threat-Report-Q1-2021.pdf\" target=\"_blank\" rel=\"noopener noreferrer\">Quick Heal Threat Report for Q1-2021<\/a>. The report contains all the latest data, trends, and statistics of recent cyber-attacks on Windows and Android. Click here now to read the threat report and stay updated about the latest trends in cybersecurity.<\/p>\n<p>&nbsp;<\/p>\n<h2 class=\"mb-3\"><strong>How to protect your organization from complex cyber threats? <\/strong><\/h2>\n<p>Witnessing the extent of damage cyber-attacks can cause, addressing these threats requires a multipronged security approach right away. Being proactive will be one of the important actions businesses can take in 202. Organizations who come to terms with the fact that security is no longer an optional investment will more successfully withstand the cybersecurity challenges they now face.<\/p>\n<p>Here are some steps you can take to reinforce your organization\u2019s cybersecurity framework and keep it shielded from cyber-attacks.<\/p>\n<ul>\n<li>\n<h3 class=\"mb-3\"><strong>Prioritize generating cybersecurity awareness in your workforce \u2013 <\/strong><\/h3>\n<\/li>\n<\/ul>\n<p>Unaware employees can prove to be an organization\u2019s most significant weakness when it comes to cybersecurity. Organizations must prioritize generating awareness amongst their workforce about the prevalent and emerging cyber threats to secure the fast-expanding digital world they face today.<\/p>\n<ul>\n<li>\n<h3 class=\"mb-3\"><strong>Invest in robust security tool \u2013 <\/strong><\/h3>\n<\/li>\n<\/ul>\n<p>Equip your organization and workforce with the proper means of dealing with cyber threats. With the amount of data multiplying every day, hyper-automation\u2014the process in which businesses automate as many IT processes as possible\u2014is more imperative than ever. According to the <a href=\"https:\/\/www.quickheal.co.in\/threat-reports\/\">Quick Heal threat report<\/a>, there is a significant rise in malware, ransomware, phishing scams, and more. As a result, organizations need powerful, fast, and secure <a href=\"https:\/\/www.quickheal.co.in\/\" target=\"_blank\" rel=\"noopener noreferrer\">Quick Heal solutions<\/a> for PCs, mobile, and other devices for employees working from home. Also, <a href=\"https:\/\/www.seqrite.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">Seqrite<\/a> provides advanced automated solutions for organizations to help them prevent tomorrow\u2019s threat today!<\/p>\n<ul>\n<li>\n<h3 class=\"mb-3\"><strong>Keep the systems updated on a regular basis \u2013 <\/strong><\/h3>\n<\/li>\n<\/ul>\n<p>Keep all your hardware and software up-to-date with the latest security updates and patches. Failing to do so can create weaknesses in your security infrastructure and lead to cyber-attacks.<\/p>\n<p>So, don\u2019t wait for your company\u2019s name to be on the list of cyber-attack victims and take the necessary precautions immediately.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The second wave of the pandemic has hit India hard from a cybersecurity perspective. There has been a rise in recent cyber-attacks in India in 2021, with cybercriminals taking advantage of the situation and finding new ways to breach data. If we analyze the news of cyber-attacks in 2021, we will observe increased COVID-19 cyber [&hellip;]<\/p>\n","protected":false},"author":75,"featured_media":90069,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1739],"tags":[1836,1834,1833,1832,533,1835,147,1831,318,25,613,1830],"class_list":["post-90067","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-1836","tag-air-india","tag-black-kingdome-ransomware","tag-cowin-app","tag-cyberattacks","tag-dominoz","tag-linkedin","tag-microsoft-exchange-servers","tag-mobile-security","tag-phishing","tag-scam","tag-solarwinds"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/posts\/90067"}],"collection":[{"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/users\/75"}],"replies":[{"embeddable":true,"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/comments?post=90067"}],"version-history":[{"count":12,"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/posts\/90067\/revisions"}],"predecessor-version":[{"id":91465,"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/posts\/90067\/revisions\/91465"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/media\/90069"}],"wp:attachment":[{"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/media?parent=90067"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/categories?post=90067"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/tags?post=90067"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}