Tag

Identity Based Attacks

All articles tagged with #identity based attacks

Identity as the Perimeter: The Hidden Gate in Cyber Breaches
technology17 days ago

Identity as the Perimeter: The Hidden Gate in Cyber Breaches

A sponsored Visual Capitalist infographic (in partnership with Unit 42 by Palo Alto Networks) outlines how cyberattackers breach systems by exploiting identity. Identity-based techniques drive about 65% of initial access, with social engineering and credential misuse leading the way, and 90% of recent investigations showing identity weaknesses as material. Once inside, over-privileged identities and token abuse enable rapid lateral movement, making identity the practical perimeter. Defenses recommended include phishing-resistant MFA (passkeys/FIDO2), rotating machine credentials, shorter sessions, just-in-time elevation for admins, and cross-cloud identity telemetry to detect unusual access chains.

Ticketmaster Data Breach Exposes Millions of Customer Accounts
cybersecurity1 year ago

Ticketmaster Data Breach Exposes Millions of Customer Accounts

Snowflake denies claims of a breach in its production environment, attributing the theft of Santander and Ticketmaster data to compromised customer login credentials. The company asserts that the attackers accessed accounts lacking two-factor authentication and that no vulnerabilities or misconfigurations in Snowflake's systems were involved. Snowflake has engaged Crowdstrike and Mandiant for incident response, confirming that the compromised accounts were demo accounts of a former employee, not linked to production or corporate systems.