- Gone Phishing
- Posts
- Tech giants and global coalition unite against spyware abuse
Tech giants and global coalition unite against spyware abuse

Welcome to Gone Phishing, your daily cybersecurity newsletter that floats like a butter-cy and stings like a cyber-bee πππ
Todayβs hottest cybersecurity news stories:
π€ Tech giants and global coalition unite against spyware abuse π΅οΈ
π¨πΎ Forget MaaS immigration, Maas is top threat to organisations π
π¨ββοΈ Failed their HIPAAcratic oath! Medical Center Fined $4.75M π°
CybeAvengers Unite π¦Έβπ₯
π‘οΈ Global Effort to Curb Spyware Abuse Unveiled! π€πΌ
Countries like France, the U.K., and the U.S., joined by tech giants such as Google, Meta, and Microsoft, unite against commercial spyware misuse in the Pall Mall Process. Their aim? To rein in the proliferation of cyber intrusion tools and establish guidelines for responsible development and use.
β οΈ The initiative warns of the dangers posed by spyware, which can infiltrate devices without user interaction, posing threats to privacy, human rights, and digital security. Thousands fall victim to spyware attacks yearly, with malicious actors exploiting vulnerabilities to gather sensitive information.
π While the move highlights global cooperation, the absence of certain nations like Israel and Hungary raises questions. The action also coincides with the U.S. Department of State's visa denials for those linked to spyware misuse, signalling a broader crackdown.
π΅οΈ Commercial spyware, such as Chrysaor and Pegasus, designed for legitimate use, often ends up in the wrong hands, targeting journalists, activists, and dissidents. Despite efforts to contain the spyware ecosystem, the battle persists, with tech firms tracking numerous vendors and exploits.
Let's stay vigilant and work together to protect against cyber threats! π¨π

Learn AI in 5 minutes a day. We'll teach you how to save time and earn more with AI. Join 400,000+ free daily readers for trending tools, productivity boosting prompts, the latest news, and more.

Opiate of the MaaSes π€
π‘οΈ Darktrace Report: MaaS Reigns Supreme in 2023 Threat Landscape! π¨π»
The 2023 End of Year Threat Report by Darktrace sounds the alarm on Malware-as-a-Service (MaaS) infections, emerging as the top threat to organisations in the latter half of the year.
Malware strains like ViperSoftX and Black Basta showcase a menacing trend of combining multiple functions, making detection a formidable challenge for defenders. π±
π ViperSoftX, a notorious info stealer and RAT, evolved with sophisticated evasion tactics, targeting sensitive data such as crypto wallets and browser passwords. Meanwhile, Black Basta ransomware spreads alongside Qbot banking trojan for credential theft.
π° The rise of Ransomware-as-a-Service (RaaS) in the wake of Hive ransomware's takedown spells trouble ahead. π Darktrace predicts a surge in double and triple extortion tactics, fueled by the expanding arsenal of multi-functional malware.
π€ Moreover, attackers are leveraging AI to craft more convincing phishing campaigns, bypassing traditional security measures with alarming success rates. π£
As cyber threats grow in complexity, organisations face an uphill battle to stay protected. With MaaS and RaaS on the rise, the cybersecurity landscape remains fraught with challenges in 2024. π‘οΈπ

π£ Catch of the Day!! πππ¦
π The Motley Fool: βFool me once, shame on β shame on you. Fool me β you can't get fooled again.β Good olβ George Dubya π Let us tell whoβs not fooling around though; thatβs the CrΓΌe π at Motley Fool. Youβd be a fool (alright, enough already! π) not to check out their Share Tips from time to time so your savings can one day emerge from their cocoon as a beautiful butterfly! π Kidding aside, if you check out their website theyβve actually got a ton of great content with a wide variety of different investment ideas to suit most budgets π€ (LINK)
π΅ Wander: Find your happy place. Cue Happy Gilmore flashback ποΈβ³πποΈ Mmmm Happy Placeβ¦ π So, weβve noticed a lot of you guys are interested in travel. As are we! We stumbled upon this cool company that offers a range of breath-taking spots around the United States and, honestly, the website alone is worth a gander. When all you see about the Land of the free and the home of the brave is news of rioting, looting and school shootings, itβs easy to forget how beautiful some parts of it are. The awe-inspiring locations along with the innovative architecture of the hotels sets Wander apart from your run of the mill American getaway ποΈπ (LINK)
π Digital Ocean: If you build it they will come. Nope, weβre not talking about a baseball field for ghosts βΎπ»πΏ (Great movie, to be fair π). This is the Digital Ocean whoβve got a really cool platform for building and hosting pretty much anything you can think of. If you check out their website youβll find yourself catching the buzz even if you canβt code (guilty π). But if you can and youβre looking for somewhere to test things out or launch something new or simply enhance what youβve got, weβd recommend checking out their services foβ sho π And how can you not love their slogan: Dream it. Build it. Grow it. Right on, brother! πΏ (LINK)

Yeah, but I gotta fake (medical) ID thoughβ¦ πΆ
π¨ HIPAA Violation: NYC Medical Center Fined $4.75M! πΈ
Federal regulators have slapped Montefiore Medical Center with a hefty fine of $4.75 million following a data breach dating back to 2013. π± The settlement, announced by the U.S. Department of Health and Human Services' Office for Civil Rights (HHS OCR), stems from "data security failures" that allowed an insider to steal and sell patients' protected health information.
The breach went undetected for years until the New York Police Department uncovered evidence in 2015, prompting an internal investigation by Montefiore. It was revealed that an employee had stolen the electronic health records of thousands of patients and sold them to an identity theft ring. π‘
OCR's investigation found multiple HIPAA Security Rule violations, including failures to analyse and identify risks to PHI, monitor and safeguard health information systems, and implement proper policies and procedures for PHI protection. π΅οΈββοΈ
"Unfortunately, we are living in a time where cyberattacks from malicious insiders are not uncommon," said HHS OCR Director Melanie Fontes Rainer, emphasising the critical need for robust cybersecurity measures in the healthcare sector. πͺ
In addition to the financial penalty, Montefiore has agreed to implement a corrective action plan, including conducting a thorough security risk analysis, implementing audit controls, and providing comprehensive training on HIPAA rules for its workforce. π‘οΈπ
Montefiore, in response, highlighted its commitment to patient privacy and cybersecurity, emphasising the steps taken to enhance security protocols and reinforce staff training since the incident. π©ββοΈπ
As healthcare systems remain prime targets for cyberattacks, Montefiore vows to remain vigilant in protecting patient information and upholding safety protocols. π₯π»
Catch up tomorrow cyber squad π

ποΈ Extra, Extra! Read all about it!
Every few weeks, we carefully select three hot newsletters to show you. Reputation is everything, so any links we share come from personal recommendation or carefully researched businesses at the time of posting. Enjoy!
The GeekAI: A daily 3 min newsletter on what matters in AI, with all the new AI things coming to market its good to stay ahead of the curve.
Wealthy Primate: Want to earn over $100k a year in IT or cybersecurity? 20 year veteran 'Wealthy Primate' might be able to help you climb that tree ππ΄ with his stick and banana approach ππ
Techspresso: Receive a daily summary of the most important AI and Tech news, selected from 50+ media outlets (The Verge, Wired, Tech Crunch etc)
Let us know what you think!
So long and thanks for reading all the phish!
Give us a rating? |

