Understanding the Impact of Cybersecurity Threats: Insights from Indiana

Understanding the Nationwide Cybersecurity Concerns

In June 2023, a wave of cyberattacks targeting critical software systems across the nation thrust cybersecurity concerns into the forefront. These attacks highlighted the vulnerability of digital infrastructure, prompting heightened vigilance among individuals and organizations alike. 

In Indiana, where reliance on digital technology is pervasive, the potential impact of such breaches is significant. Beyond mere inconvenience, these attacks jeopardize the integrity of personal and sensitive information, disrupt essential services, and erode public trust in the state’s digital governance.

Scott Shackelford, Executive Director of the Center for Applied Cybersecurity Research at Indiana University, offers valuable insights. He emphasizes the far-reaching consequences of compromised personal information, stressing that once exposed, such data can never be fully reclaimed. Unfortunately, he believes that “what we’ve seen so far is just the tip of the iceberg.”

Collaborative Efforts: Strengthening Indiana’s Cyber Defenses

Indiana is leveraging the expertise of renowned institutions like Indiana University and Purdue University to enhance its cybersecurity posture. Through rigorous assessments and collaborative initiatives, the state aims to identify vulnerabilities, mitigate risks, and safeguard Hoosiers’ digital assets.

Being Proactive with Threat Assessments

IU and Purdue’s partnership with the Indiana Office of Technology exemplifies an important approach to cybersecurity – being proactive and conducting comprehensive assessments to find out where you might have weaknesses in your cybersecurity stack. 

We are happy to help you in that regard. Our team of experts will run you through a complimentary threat assessment to find out where you can improve. Click the link HERE to book a meeting.

A Good Reminder for a Safer Future

In conclusion, the recent cyberattack serves as a sobering reminder of the ever-present threat posed by cyber threats. Indiana’s proactive response and collaborative efforts underscore its commitment to fortifying cybersecurity resilience and safeguarding the interests of its residents. By leveraging expertise, conducting assessments, and empowering individuals, Indiana is poised to navigate the evolving cybersecurity landscape and emerge stronger and more resilient than ever before.

 

link to article



Cyberattack in Rock County, Wisconsin: A Wake-Up Call for ALL Cities

In a recent alarming development, the Rock County Human Services Department in Wisconsin, fell victim to a devastating cybersecurity attack, resulting in the theft of employee and client information. This breach underscores the critical importance of robust cybersecurity measures in safeguarding sensitive data and ensuring the integrity of public services.

 

Details of the Attack

The attack, orchestrated through a phishing email campaign, targeted the Human Services Department’s employees. According to Rock County Administrator Josh Smith, the incident required disclosure under federal HIPAA law. The attack occurred with stealth, leaving the county grappling with the aftermath and uncertainties surrounding the extent of the breach. An excerpt from the Wisconsin State Journal’s report stated that “The threat actor requested $1.9 million in ransom, which neither the County nor our insurance carrier paid.”

 

Cities on the Cyber Frontline

This incident is not an isolated case. Cities and municipalities across the globe have increasingly become targets of cybercriminals due to their vulnerability and the potential high rewards. The repercussions of such attacks extend far beyond the immediate breach. Financial documents, tax information, and personal health information were among the data compromised in the Rock County attack. The ramifications of such breaches can include financial loss, reputational damage, and disruption of essential services, posing a grave threat to the well-being of communities.

 

Tailored Solutions to Protect Your City

At Trinsio, we understand the gravity of the cyber threats facing cities today. We offer tailored solutions designed to fortify defenses and mitigate risks. Our team of experts stands ready to devise strategies to enhance resilience. With our cutting-edge technologies and proactive approach, we empower cities to confront emerging threats head-on and safeguard the trust and safety of their constituents. Click the link HERE for a free threat analysis to assess potential threats or vulnerabilities that could pose problems for you. 

 

The unfortunate incident in Rock County, Wisconsin serves as a stark reminder of the urgent need for comprehensive cybersecurity measures in our increasingly digitized world. As cyber threats continue to evolve in sophistication and scale, proactive measures are essential to protect our cities and communities from the devastating impact of cyberattacks. Together, let us prioritize cybersecurity and take decisive action to secure a safer, more resilient future for all.

 

link to original article



University of Michigan Says Hackers Gained Personal Information

University officials say an investigation learned of suspicious activity on a computer network where hackers were able to get the personal information of individuals tied to the University of Michigan during a cyberattack back in August, 2023.

The investigation determined an unauthorized third party was able to access personal information relating to certain students and applicants, alumni and donors, employees and contractors, University Health Service and School of Dentistry patients, and research study participants.

The information included social security numbers, driver’s licenses or other government-issued identification numbers, financial account or payment card numbers, and health information. The university determined that the hacker gained access between Aug. 23-27.

Education is one of the most targeted sectors for ransomware. One reason educational organizations are at such high risk is because of the valuable information they store. They have social security numbers, banking information, credit card numbers, birthdates, and other personal information. In addition, this information does not just stem from students, but from all employees and parents. Another reason the education sector is targeted is because typically their IT equipment is not always state of the art. The school districts have budgetary constraints that make it difficult to fund IT security investments.

According to a study done by Emsisoft Malware Lab, in 2019, the United States was hit by a myriad of ransomware attacks “that impacted at least 966 government agencies, educational establishments and healthcare providers at a potential cost in excess of $7.5 billion.” That number is astounding. Of these attacks, 89 were educational sectors which potentially affected 1,233 individual schools. These numbers demonstrate the severity of the issue and reiterate the need for a data backup and recovery plan.

The attack is just the latest in an upward trend or attacks over the last few years.

As reported on by Infosecurity Magazine, nearly half of all ransomware attacks now target small schools and municipalities.

Ransomware attacks on the national education sector have surged by 80% in the past year alone, according to the Institute for Security and Technology.

Link to original article.

Government in Arkansas Reports Rise in Cyberattacks

The number of cybersecurity incidents affecting state and local government entities in Arkansas in fiscal 2023 was more than double the number reported in the previous year, according to an Arkansas Legislative Audit report.

In recent sessions, the Arkansas State Legislature has passed legislation aimed at combating cyberattacks directed on public bodies. In the last regular session, the General Assembly approved a bill creating the Arkansas Cyber Response Board, which provides protection for school districts and municipalities targeted by cyber attacks. The law also defines a minimum standard of cybersecurity that bodies that participate in the program must adhere to.

Recent Increase in Nationwide Small Government Attacks

The incidents validate a recent trend noted by cybersecurity experts indicating a rapid rise in cyberattacks targeted against small governments and cities.

As reported on by Infosecurity Magazine, nearly half of all ransomware attacks target municipalities.

The International City/County Management Association (ICMA) lists five key reasons these organizations are targeted including:

  1. Large number of local governments
  2. Holders of sensitive information
  3. Inadequate cybersecurity
  4. Financial constraints
  5. Use of Internet of Things (IoT) technology

CISA CPG Guidelines

CISA recommends taking advantage of third-party validation options available at zero cost to organizations like yours to help identify cybersecurity gaps.

Trinsio offers four complimentary services including a Firewall Network Threat Assessment.

Based on actual traffic hitting your firewall over a 24-hour period, a Trinsio network threat assessment will confirm your firewall’s effectiveness by documenting all of the incoming and outgoing threats to your network based on more than 50 lists maintained by the cyber intelligence community.

link to original article

Michigan Healthcare Breach Affecting Over 1 Million Patients

In December of 2023, HealthEC, a Corewell Health service provider announced a data breach exposed patients’ personal and medical information.

The cyberattack is just one of the latest in a series of attacks and data breaches impacting health systems across the U.S.

According to research published in the Journal of the American Medical Association, the number of attacks on U.S. hospitals each year doubled between 2016 and 2021.

CISA CPG Guidelines

CISA recommends taking advantage of third-party validation options available at zero cost to organizations like yours to help identify cybersecurity gaps.

Trinsio offers four complimentary services including a Firewall Network Threat Assessment.

Based on actual traffic hitting your firewall over a 24-hour period, a Trinsio network threat assessment will confirm your firewall’s effectiveness by documenting all of the incoming and outgoing threats to your network based on more than 50 lists maintained by the cyber intelligence community.

link to original article

Maryland Cyber Attacks Urge for Stronger Cybersecurity

Maryland’s Alarming Cybercrime Stats

In an era dominated by digital transactions and connectivity, the threat of cybercrime looms larger than ever. A recent study conducted by NetworkBuildz has shed light on the states most vulnerable to cyber attacks, with Maryland ranking third in the list of the top 10 at-risk states. 

The study, based on the annual FBI Internet Crime Report spanning 2018-2022, revealed a staggering 58,627 cyber attacks in Maryland, translating to 951 attacks per 100,000 people, resulting in a victim loss of $479,475,435. Notably, 2020 witnessed a peak in cybercrimes in the state, with 14,804 recorded incidents. Alaska secured the second spot, and Nevada topped the list in terms of cyber vulnerability.

The financial repercussions of cybercrime underscore the urgency of staying informed about evolving scams, adopting best online practices, and implementing necessary precautions. It has also become evident that 2020 was particularly detrimental nationwide, possibly exacerbated by the vulnerabilities brought on by the global Covid-19 pandemic.

Cybersecurity: A Universal Concern

The broader context of cybercrime paints a stark reality—no entity, be it an individual or a state, is immune to the risks. Cybersecurity is not just a concern for large corporations; it is a growing peril for everyone. Individuals, businesses, and governments must be proactive and aware, continually updating their defenses against the ever-evolving tactics of cybercriminals.

As we navigate the complex realm of digital threats, it’s crucial to acknowledge that the battle against cybercrime is multifaceted. While the numbers expose vulnerabilities, they also serve as a call to action. 

Be Proactive

All states, businesses, and organizations can benefit from a collaborative approach—consulting with cybersecurity experts to assess and fortify existing defenses. It is in this proactive engagement that resilience is built, ensuring a safer digital landscape for individuals and businesses alike. 

If you are looking to fortify your cybersecurity posture, we invite you to connect with our experts. Together, we can tailor strategies to safeguard against the rising tide of cyber threats. In a world where data is currency, investing in cybersecurity is an investment in a secure future.

Info Leaked in Louisiana School District Cyberattack

In early August of 2023, Louisiana’s St. Landry Parish School District reported it fell victim to a ransomware attack.

Originally the school district reported no sensitive information was compromised, then a few months later cyber criminals leaked more than 200,000 files containing personal information on students, teachers, and local business owners.

After St. Landry Parish refused to pay a $1 million ransom, files began being distributed on Telegram containing health records, Social Security numbers, tax records, dates of birth, home addresses, parents’ phone numbers, and even login credentials for district systems.

The attack is just the latest in an upward trend or attacks over the last few years.

As reported on by Infosecurity Magazine, nearly half of all ransomware attacks now target small schools and municipalities.

Ransomware attacks on the national education sector have surged by 80% in the past year alone, according to the Institute for Security and Technology.

Link to original article.

New Mexico IT Department Asks For More Staff

The New Mexico IT department hopes to hire more cybersecurity experts to deal with increased and complex needs.

The department is missing nearly a quarter of its workforce. With increasingly complicated and prominent technology needs, the department’s acting secretary wants lawmakers to set aside more money to pay for additional positions at the agency

Recent Increase in Nationwide Small Government Attacks

New Mexico’s need for IT staff comes during a recent trend noted by cybersecurity experts indicating a rapid rise in cyberattacks targeted against small governments and cities.

As reported on by Infosecurity Magazine, nearly half of all ransomware attacks target municipalities.

The International City/County Management Association (ICMA) lists five key reasons these organizations are targeted including:

  1. Large number of local governments
  2. Holders of sensitive information
  3. Inadequate cybersecurity
  4. Financial constraints
  5. Use of Internet of Things (IoT) technology

CISA CPG Guidelines

CISA recommends taking advantage of third-party validation options available at zero cost to organizations like yours to help identify cybersecurity gaps.

Trinsio offers four complimentary services including a Firewall Network Threat Assessment.

Based on actual traffic hitting your firewall over a 24-hour period, a Trinsio network threat assessment will confirm your firewall’s effectiveness by documenting all of the incoming and outgoing threats to your network based on more than 50 lists maintained by the cyber intelligence community.

link to original article

Kansas Ransomware Attack Forces Government Shut Down

In our digitally-driven world, a recent cybersecurity incident has put the Kansas court system into the spotlight. Termed a “security issue,” this event disrupted online operations across 104 counties, leaving clerks unable to manage essential filings. As we unravel the details of this incident, we’ll explore the vulnerability of critical systems and the urgent need for robust cybersecurity measures. 

Details of the Attack:

Details surrounding the recent cyber incident that shook the Kansas court system remain elusive. Described as a “security incident,” it disrupted online operations across 104 counties, leaving clerks unable to receive online filings. The nature of the attack, whether it involved sophisticated malware, a distributed denial-of-service (DDoS) assault, or possibly ransomware, has not been officially disclosed. Brandon Joiner, CEO of ONX IT Solutions, speculates that, given the system’s perceived antiquation, a DDoS attack could be plausible, overwhelming a web server and causing a site crash.

Impact on Operations and Public Access:

The repercussions were extensive, hampering the court system’s ability to electronically process cases, accept online filings, and provide accessible court information. To mitigate the situation, a public access service center was instituted, offering limited computer access to the public. As of now, all filings must be submitted in paper format. 

Beating the Odds: Strengthening Cybersecurity Measures:

In the face of escalating cyber threats, companies and organizations can fortify their defenses by adopting robust cybersecurity measures. This includes staying on top of the latest security technologies, implementing stringent access controls, and conducting regular employee training to mitigate human-centric vulnerabilities. The Cybersecurity and Infrastructure Security Agency (CISA) recommends a proactive approach, advocating for third-party evaluations to assess vulnerabilities comprehensively. These evaluations, often conducted by reputable cybersecurity firms, offer an unbiased perspective, helping organizations identify and address potential weaknesses before malicious actors exploit them.

CISA’s Guidance and Third-Party Evaluations:

CISA plays a pivotal role in guiding organizations through the cybersecurity landscape. As a proactive measure, CISA advises companies to engage in third-party evaluations, emphasizing their importance in identifying and mitigating risks. By collaborating with external cybersecurity experts, organizations can gain a fresh perspective on their security postures and leverage insights to enhance their resilience against evolving threats. In the ever-evolving realm of cybersecurity, continuous vigilance and a commitment to proactive measures are essential to stay one step ahead of potential adversaries.

The Kansas court cybersecurity incident prompts a sober reflection on the imperative need for heightened cybersecurity defenses in an era where digital interconnectivity is the norm. As organizations grapple with evolving cyber threats, the lessons drawn from this incident underscore the importance of proactive measures. Strengthening cybersecurity defenses, adopting the latest technologies, and prioritizing employee training are not merely recommendations but necessities.

Book a meeting with us for a FREE threat assessment

Link to article



Cyberattack Causes Outages in City of Pittsburg, Kansas

A ransomware attack on the City of Pittsburg in Kansas has disrupted the local government’s phone, email, and online payment systems.

City staff discovered the attack on September 16, 2023, after the bad actors involved demanded a ransom payment to recover city servers.

The city was forced to perform critical tasks on paper until services were restored.

Recent Increase in Small Government Attacks

The incident exemplifies a recent trend noted by cybersecurity experts indicating a rapid rise in cyberattacks targeted against small governments and cities.

As reported on by Infosecurity Magazine, nearly half of all ransomware attacks target municipalities.

The International City/County Management Association (ICMA) lists five key reasons these organizations are targeted including:

  1. Large number of local governments
  2. Holders of sensitive information
  3. Inadequate cybersecurity
  4. Financial constraints
  5. Use of Internet of Things (IoT) technology

CISA CPG Guidelines

CISA recommends taking advantage of third-party validation options available at zero cost to organizations like yours to help identify cybersecurity gaps.

Trinsio offers four complimentary services including a Firewall Network Threat Assessment.

Based on actual traffic hitting your firewall over a 24-hour period, a Trinsio network threat assessment will confirm your firewall’s effectiveness by documenting all of the incoming and outgoing threats to your network based on more than 50 lists maintained by the cyber intelligence community.

link to original article