Member Spotlight: Rafia Noor

Rafia Noor is an information security engineer in the operation technology division at Colgate-Palmolive. We had an opportunity to sit down with Rafia to discuss her career path, intelligence sharing at RH-ISAC, and the trajectory of cybersecurity. Tell us a little about what you do at Colgate-Palmolive and what fills your day.   Rafia: I…

Read More

Small and Medium-Sized Businesses Increasingly Targeted by APTs

On March 24, 2023, Proofpoint released their report, “Account Compromise, Financial Theft, and Supply Chain Attacks: Analyzing the Small and Medium Business APT Phishing Landscape in 2023.” Context The report provides insight into key trends in the increasing prevalence of sophisticated advanced persistent threats (APTs) targeting small and medium-sized businesses (SMBs). Key Takeaways Key points…

Read More

Resurgence of Vacation Request-Themed Phishing

On May 23, 2023, Cofense researchers reported a phishing campaign with threat actors leveraging paid time off (PTO) and vacation requests as a lure theme. Context The report is based on a Phishing Defence Center (PDC)-reported a phishing campaign where threat actors sent emails to users claiming to be from ‘HR Departments’ and providing the users with links…

Read More

Careers in Cybersecurity

With cybersecurity being a flourishing industry with promising job opportunities, recent college graduates may have their sights set on a career in cyber threat intelligence. The notion that graduates must obtain a degree in computer science, computer programming, or machine learning to land a career in cybersecurity is no longer the case. Many skills developed…

Read More

New RaaS CryptNet Advertised for Double Extortion Attacks in Dark Web Forums

Context On May 16, 2023, ZScaler threat researchers reported the technical details of a new ransomware-as-a-service (RaaS) operation they’ve observed being advertised on dark web forums. ZScaler researchers provided the following key takeaways: CryptNet is a new ransomware-as-a-service that has been advertised in underground forums since at least April 2023 The CryptNet threat group claims…

Read More