JANUARY 2021 | International Law Alerts | Cybersecurity

The rhythm of life among Southeast Asians was shaken by the sudden, sweeping changes last year. Despite the gloomy outlook, policies across SEA successfully compelled both the public and business sectors to shift gears quickly, step up their use of technology and go online for literally everything.

Security experts from Kaspersky’s Global Research and Analysis Team (GReAT) gives us a lowdown on how cybercriminals took advantage of this  event and what the cybersecurity landscape appears to look like in 2021.

Today, researchers have responsibly disclosed a security vulnerability by exploiting which they could access over 100,000 private employee records of United Nations Environmental Programme (UNEP).

DarkMarket, the world’s largest illegal marketplace on the dark web, has been taken offline in an international operation involving Germany, Australia, Denmark, Moldova, Ukraine, the United Kingdom (the National Crime Agency), and the USA (DEA, FBI, and IRS).

Chinese hardware manufacturer Xiaomi has been added to a list of alleged Communist Chinese military companies by the United States Department of Defense.

The cyberattacks that targeted multiple US government agencies and companies in recent months have raised the alarm in developing Eastern European countries regarding their own cybersecurity capabilities.

Vulnerabilities found in multiple video conferencing mobile applications allowed attackers to listen to users’ surroundings without permission before the person on the other end picked up the calls.

We discuss the behaviors and external indicators of some phishing campaigns that we observed from the latter part of December 2020 to the first weeks of January 2021. These campaigns highlight the inclusion of fake online payment forms with the goal of stealing financial information more efficiently.

Some of the laptops given out in England to support vulnerable children home-schooling during lockdown contain malware, BBC News has learned.

The Russian government has issued a security warning to organizations in Russia about possible retaliatory cyberattacks by the USA for the SolarWinds breach.

Law enforcement and judicial authorities worldwide have this week disrupted one of most significant botnets of the past decade: EMOTET. Investigators have now taken control of its infrastructure in an international coordinated action.

Security firm Clearsky said they identified at least 250 servers hacked by Lebanese Cedar, a hacking group linked to the Hezbollah militant group.

Nobody anticipated the coronavirus pandemic or governments’ and private organizations’ reaction to it.

Organizations were forced to make decisions that fundamentally, and perhaps permanently, changed the way they do business.

In the wake of the new normal, information technology (IT) and its security challenges would likely persist in 2021.

Phishing remains a popular and effective tactic that malicious actors continue to deploy against internet users. The current retail climate brought about by the global health crisis has only worsened the problem

Many countries across the globe have seen a surge in online shopping, and malicious actors are quick to deploy campaigns that take advantage of that trend.

The Fonix Ransomware operators have shut down their operation and released the master decryption allowing victims to recover their files for free.