Weak password allowed hackers to sink a 158-year-old company


One password is believed to have been all it took for a ransomware gang to destroy a 158-year-old company and put 700 people out of work. KNP – a Northamptonshire transport company – is just one of tens of thousands of UK businesses that have been hit by such attacks.

Big names such as M&S, Co-op and Harrods have all been attacked in recent months. The chief executive of Co-op confirmed last week that all 6.5 million of its members had had their data stolen. In KNP’s case, it’s thought the hackers managed to gain entry to the computer system by guessing an employee’s password, after which they encrypted the company’s data and locked its internal systems.

Read more…
Source: BBC News


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • UK Government To Seek Post-Brexit EU Data Protection Agreement

    March 5, 2018

    Tech firms said they welcome the government’s latest data protection plans, which could see an ongoing EU-level role for Britain’s information commissioner UK technology ndmpanies have welcomed a commitment by the government to seek a broader role for Britain in the ongoing development of European data protection policy after exit from the European Union, as laid out in ...

  • UK local gov: 37 cyber attacks a minute but little mandatory training

    February 20, 2018

    Britain’s local governments were hit by almost 100 million cyber attacks in the last five years, while one in four councils’ systems were successfully breached, according to research. Privacy campaign group Big Brother Watch sent Freedom of Information to all the UK’s local authorities, asking for details of cyber attacks and data breaches from 2013-17. Read more… Source: ...

  • UK names Russia as source of NotPetya, USA follows suit

    February 15, 2018

    The United Kingdon’s Foreign and Commonwealth Office has formally “attributed the NotPetya cyber-attack to the Russian Government”, specifically the nation’s military. “The decision to publicly attribute this incident underlines the fact that the UK and its allies will not tolerate malicious cyber activity,” said a February-15th-dated statement from Foreign Office Minister for Cyber Security Lord (Tariq) Ahmad of ...

  • UK keeps up its legal losing streak over mass surveillance

    January 30, 2018

    Yet another defeat in the courts for the UK government’s use of mass surveillance as an indiscriminate and, as it frequently turns out, unlawful investigatory tool. Today the UK’s Court of Appeal handed down its ruling in a long running challenge to the 2014 Data Retention and Investigatory Powers Act (DRIPA) — judging that the regime’s bulk collection ...

  • GDPR: Deadline looms but businesses still aren’t ready

    January 25, 2018

    Under half of businesses are aware of upcoming data protection laws they’ll be subject to in just four months’ time — or what the new legislation means for how information security is handled. A lack of awareness about the forthcoming introduction of General Data Protection Regulation (GDPR) — a new set of rules from the European Union which ...

  • Govt to help cyber security geeks commercialise their ideas with fresh funds

    January 18, 2018

    Cyber security academicians in the UK will soon be able to receive grants of up to £16,000 from the National Cyber Security Centre if they come up with innovative ideas that can be commercialised. Grants offered by the National Cyber Security Centre to academics in the field of cyber security will come from a £500,000 ...