Rogue employees present significant financial and cybersecurity risks to organizations. Rapid7 threat researchers and penetration testers are actively observing how malicious actors exploit hiring pipelines to infiltrate businesses. This blog highlights real-world tactics, including:
- Insider Reconnaissance: Rogue applicants leveraging interviews to map office layouts, identify vulnerable devices, and even plant malware during site visits.
Read more…
Source: Rapid7
Related:
- NSA employee pleads guilty after stolen classified data landed in Russian hands
December 1, 2017
A former National Security Agency hacker has admitted to illegally taking highly classified information from the agency’s headquarters, which was later stolen by Russian hackers. Nghia Pho, 67, a Maryland resident who worked for the NSA’s Tailored Access Operations, the agency’s elite hacking unit, entered a guilty plea on Friday to charges of willful retention of ...
- Your biggest threat is inside your organisation and probably didn’t mean it
November 19, 2017
It doesn’t have a super-sexy moniker like KRACK or Heartbleed, but the spectre of the insider threat looms large for organisations, and has done so for as long as electricity, silicon, and computing have been paired up to store information. While it’s easy to imagine a disgruntled, unhappy employee becoming a malicious actor within an organisation, and dumping the ...
- For 11 minutes, Donald Trump’s Twitter ceased to exist
November 3, 2017
Donald Trump’s Twitter account was deactivated by a company employee and was down for 11 minutes before it was restored, Twitter said. Twitter blamed a customer-support employee “who did this on the employee’s last day”. The internet was seized by a brief spell of panic just before 11pm on Thursday, when the US President’s account disappeared suddenly ...

