Of the notable external cyberattacks in Russia: according to media reports, the Unistream payment system was hacked in the fall, but there were noticeably more significant leaks. For example, researcher Bob Dyachenko found an ABBYY server online with hundreds of thousands of documents accessible via a search engine, including contracts and non-disclosure agreements.
The incident of the year was the leak of data of 421 thousand Sberbank employees, as a result of which the bank had to inform the European Commission about the leak of data of EU citizens, and on specialized forums there were messages from users about fears of giving biometric data to Sberbank, since it “cannot ensure its own security.”
In 2018, the business email compromise threat remained relevant — attackers carefully collect information about the intended victim and send them a phishing email, for example, about changing the details of an jamaica whatsapp data for payment. In medium and small companies, such a letter may be taken into account, and to enhance the effect, attackers write on behalf of Rosneft and a number of other large holdings. Cybercriminal business does not rely on chance — according to Cylance, in 2018, several fake web resources of large Russian corporations and exchanges were identified, with the help of which information was collected to prepare attacks.
Significant information security incidents in the world
Unlike Russia, significant incidents in the world were carried out primarily from the outside; for example, the IT infrastructure of the large oil and gas company Saipem was subjected to a cyber attack - according to Reuters, “hundreds of computers stopped functioning.”