{"id":42440,"date":"2021-03-30T08:56:41","date_gmt":"2021-03-30T00:56:41","guid":{"rendered":"http:\/\/www.upgrademag.com\/web\/?p=42440"},"modified":"2021-03-30T08:56:44","modified_gmt":"2021-03-30T00:56:44","slug":"pandemic-post-pandemic-measures-will-continue-to-alter-threat-landscape","status":"publish","type":"post","link":"http:\/\/www.upgrademag.com\/web\/2021\/03\/30\/pandemic-post-pandemic-measures-will-continue-to-alter-threat-landscape\/","title":{"rendered":"Pandemic, post-pandemic measures will continue to alter threat landscape"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\"><strong>IntSights, the threat intelligence company focused on enabling enterprises to Defend Forward,\u00a0released a\u00a0<a rel=\"noreferrer noopener\" href=\"https:\/\/intsights.com\/resources\/the-cyber-threat-impact-of-covid-19-on-the-retail-and-hospitality-industry\" target=\"_blank\">research report<\/a>\u00a0on their findings of the\u00a0cyber threat impact of COVID-19 on the retail and hospitality industry. The retail and hospitality industry with its predominant \u201cbrick-and-mortar\u201d focus pre-pandemic, bore the brunt of moving portions of their workforce to remote work \u2013 complicating their attack surfaces and creating opportunities for attackers. <\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The report uncovers how the pandemic and post-pandemic measures will continue to alter the industry threat landscape, especially as vaccine distribution and contact tracing efforts expand to wider segments of the population.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Retail, hospitality, and travel businesses increasingly hold protected health information (PHI) and personally identifiable information (PII) records as more and more of these businesses now require proof of COVID-19 testing or vaccination from customers or employees. IntSights discovered that\u00a0underground black market sale prices of containing PHI and PII with key data points for identity theft are notably higher than those of even compromised credit cards, putting the industry at a larger risk of cyberattacks as the information it holds becomes increasingly attractive and lucrative to criminals.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The report also highlights the surge in demand for fake COVID-19 testing and vaccination documents resulting in attacks against retailers with pharmacy components \u2013 and a black market for fake test results has been thriving online. Some\u00a0criminal vendors claim that they can abuse access to legitimate infrastructure that outputs testing documentation\u00a0to generate otherwise authentic documents without actually conducting tests.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Other key findings include:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Growth in the sale of unauthorized access to enterprise networks on underground criminal forums that enable other criminals to deploy ransomware on the networks, for instance, and access are mostly priced at four figures in USD<\/li><li>Expansion of ecommerce attacks and card-not-present (CNP) fraud as more consumers increase reliance on ecommerce and home deliveries<ul><li>Up for sale on underground criminal forums are Python scripts to bypass one-time passwords (OTPs) which provide an extra layer of protection for CNP transactions<\/li><\/ul><\/li><\/ul>\n","protected":false},"excerpt":{"rendered":"<p>The retail and hospitality industry with its predominant \u201cbrick-and-mortar\u201d focus pre-pandemic, bore the brunt of moving portions of their workforce to remote work \u2013 complicating their attack surfaces and creating opportunities for attackers. <\/p>\n","protected":false},"author":6,"featured_media":42051,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19],"tags":[7218,54,2103,3914,53,4100],"class_list":["post-42440","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-headlines","tag-intsights","tag-security","tag-security-breach","tag-security-platform","tag-security-risk-management","tag-security-solutions"],"_links":{"self":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/42440","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/comments?post=42440"}],"version-history":[{"count":0,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/42440\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media\/42051"}],"wp:attachment":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media?parent=42440"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/categories?post=42440"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/tags?post=42440"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}