[fusion_builder_container type=”flex” hundred_percent=”no” equal_height_columns=”no” hide_on_mobile=”small-visibility,medium-visibility,large-visibility” background_position=”center center” background_repeat=”no-repeat” fade=”no” background_parallax=”none” parallax_speed=”0.3″ video_aspect_ratio=”16:9″ video_loop=”yes” video_mute=”yes” border_style=”solid” margin_top=”1px” flex_align_items=”center” flex_justify_content=”flex-start”][fusion_builder_row][fusion_builder_column type=”1_1″ layout=”1_1″ background_position=”left top” border_style=”solid” border_position=”all” spacing=”yes” background_repeat=”no-repeat” margin_top=”0px” margin_bottom=”0px” animation_speed=”0.3″ animation_direction=”left” hide_on_mobile=”small-visibility,medium-visibility,large-visibility” center_content=”no” last=”true” hover_type=”none” first=”true” background_blend_mode=”overlay” min_height=”” link=””][fusion_text]
Welcome to the latest edition of the Cyber Safe Cyber Threats Updates, a weekly series in which we bring attention to the latest cyber attacks, scams, frauds, and malware including Ransomware, to ensure you stay safe online.
Beware of the ‘Permanent Page Deletion’ Scam Targeting Small Businesses on Facebook
In recent times, scammers have been exploiting small businesses on Facebook through a deceptive tactic. The scam involves fraudsters impersonating Facebook and its parent company, Meta, and sending misleading messages to business page owners, threatening the permanent deletion of their pages due to alleged trademark violations.
The scam message falsely claims that a specific post on the business’s Facebook page infringes upon Facebook’s trademark rights, necessitating the page’s deletion. To seemingly rectify this situation, the targeted company is encouraged to file a complaint to contest the impending deletion. The message goes on to emphasise that failure to complain will result in the irreversible deletion of the page.
At least ten counterfeit profiles have been identified as the source of these scam messages, all utilising names related to compliance, security, or brand content to add an air of legitimacy. None of these profiles are affiliated with Meta or Facebook.
The deceptive messages contain links to fraudulent websites impersonating Meta. Despite the advised caution against clicking on suspicious links, investigators proceeded to investigate the scam further by clicking the link. The fake webpage displayed a genuine link to Meta’s privacy policy, enhancing the illusion of authenticity. Upon following the link for a supposed review request, visitors were prompted to provide personal information such as their name, email address, phone number, and an explanation for the alleged policy violation.
Although the scammers’ intentions regarding the collected information remain unclear, it is common for fraudsters to utilise such data to orchestrate scams or access victims’ online accounts at a later date.
After uncovering this scam, investigators promptly informed Meta and the social media giant confirmed the fraudulent nature of the operation. To safeguard against falling victim to this scheme, businesses are strongly advised not to engage with suspicious messages and to report them to the appropriate authorities promptly. Additionally, vigilance and caution regarding sharing personal information online remain crucial in the ongoing fight against cybercrime.
—-
ICO Issues Warning Against Excel Spreadsheets to Prevent Public Sector Data Breaches
The Information Commissioner’s Office (ICO) in the UK has released an advisory urging public bodies to refrain from using Excel spreadsheets when responding to requests made under the Freedom of Information Act 2000 (FoI).
The advisory notice, emphasising an “immediate end” to using Excel spreadsheets for such purposes, outlined recommendations for public authorities to adopt. The ICO discouraged the practice of replying to FoI requests with spreadsheets containing an excessive number of rows.
Among the core recommendations, the guidance stressed the need to invest in data management systems that support data integrity. It specifically suggested that police services should convert spreadsheets and sensitive metadata into open reusable formats, such as comma-separated value (CSV) files.
Moreover, the advisory called for enhanced staff training to prevent inadvertent exposure of sensitive data while disclosing information. UK Information Commissioner John Edwards emphasised the necessity for public authorities to maintain robust measures when handling personal information.
The advisory follows a series of data protection blunders related to FoI requests at various UK police services. Although not explicitly cited, recent incidents, including a significant breach in Northern Ireland involving the exposure of personal information belonging to thousands of police officers and staff due to a mistaken document upload, have underlined the importance of ensuring data security.
In response to these breaches, the ICO’s advisory outlines the minimum actions that public authorities should take to protect personal data during information access requests and to provide reassurance to the people they serve regarding the safety of their information. Edwards emphasised the crucial nature of data protection and the immediate and ongoing impact of breaches on individuals and their families.
Major UK Logistics Firm, KNP Logistics, Declares Insolvency After Ransomware Attack
One of the United Kingdom’s largest privately owned logistics groups, KNP Logistics, has officially declared insolvency, attributing a ransomware attack in June as the key factor behind its financial distress.
The ransomware incident has had a profound impact, leading to the company’s administration and subsequently putting approximately 730 employees at risk of redundancy. However, a glimmer of hope remains as a critical business entity within the group has been successfully sold, ensuring the preservation of roughly 170 jobs.
It’s important to note that KNP Logistics Group was already facing financial difficulties before the ransomware incident, as pointed out by Raj Mittal, the joint administrator overseeing the insolvency proceedings on behalf of business advisory firm FRP Advisory. Mittal highlighted the challenging market conditions and the inability to secure urgent investment due to the cyber attack, ultimately leading to the business’s failure to continue operations.
The administrators shared insights into the impact of the ransomware attack, stating that it severely affected vital systems, processes, and financial information, significantly undermining the group’s financial stability and impeding efforts to secure additional investment and funding.
In June, KNP Logistics Group, operating under various names, including Knights of Old, fell victim to the Akira ransomware gang. The attack was part of a series of targeted attacks by this group. Following this incident, cybersecurity firm Avast released a decryptor for the Akira ransomware in July, providing a glimmer of hope to victims. However, whether KNP has access to or utilised the decryptor remains to be determined.
Despite the severity of the attack, details about the company’s interactions with law enforcement or external incident response entities have yet to be disclosed by the spokesperson for the company’s administrators. The insolvency announcement highlights the devastating impact of cyber threats on businesses and the urgency to bolster cybersecurity measures across industries.
——————————————————————————————————————————
Contact Neuways to help your business become
Cyber Safe
If you need any assistance with cyber security assistance, then please contact Neuways and we will help you where we can. Just get in touch with our team today.
[/fusion_text][/fusion_builder_column][/fusion_builder_row][/fusion_builder_container]







