Since the escalation of COVID-19 cases, malicious activity from cybercriminals is also on the rise.
Hackers are taking advantage of the coronavirus fear to carry out attacks. This is done by creating websites that claim to have cures for the virus or by spreading emails that contain links to malware.
Consider this research by Check Point, where they found an increase in coronavirus domain name registration. Most of these scam websites allege to be selling vaccines against the virus.
At the beginning of this year, one of the reported cases was the Emotet malware that was used in a coronavirus-themed campaign in Japan. Phishing victims received an email purporting to report locations where the infection was spreading. Because the email appeared to be an official communication from the government, victims were likely to open it to find out more about the information. However, an attempt to open a .docx document will download the Emotet malware to the victim’s computer.
Apart from a .docx, the attachment could be a .pdf or an .mp4 claiming to have instructions on how to protect against the virus or other related updates.
The case in Japan is among the first attacks on the public domain that came with the rise of the COVID-19. Since then as the coronavirus continued to spread, more data breach cases have been reported. According to Malwarebytes Labs director Jerome Segura, there is an increase in campaigns that use the coronavirus situation to trick victims. Segura reports that in March alone, there was a 26 percent increase in online credit card skimming as people did online shopping from the safety of their homes.
Even the World Health Organization has not been spared, as they recently reported a fivefold increase in cyberattacks. The attacks have increased such that there was a joint alert sent out by the United States Department of Homeland Security, the Cybersecurity and Infrastructure Security Agency, and the United Kingdom’s National Cyber Security Centre.
Unfortunately, the fact is it won’t get any better as more cybersecurity firms report an increase in attacks relating to the coronavirus outbreak. This is because attacks that are based on important events or occurrences such as the COVID-19 pandemic become effective as they leverage on the public’s need to know.
In matters of life and death, people tend to be less careful; and in an attempt to stay informed, they end up becoming victims of cybercriminals.
Apart from malware, there are fears that work-at-home directives also have led to an increase in data breaches. If you have a business, you probably have policies to help guard against cyberattacks. However, since the work-at-home situation was largely unplanned and employees are having to work from home, data can be easily leaked from the devices they use to connect to the office network.
It’s important to keep in mind that hackers love to take advantage of current events to trick their victims. Because of this, it’s expected that these attacks will increase in frequency – and this calls for users to be vigilant.
Although security systems might already be in place, none of them have the ability to deal with ever-increasing threats that have grown in sophistication. Email security remains one of the hardest challenges for employers. However, taking precautionary measures will help reduce the possibility of successful attacks.
Here are 10 ways to keep safe:
- Avoid clicking on promotional links in emails.
- Be careful when you receive emails with subject lines that include coronavirus or COVID-19 and have a call to action.
- Be careful when clicking on pages with special offers, especially pages claiming to sell or know about the cure for the coronavirus.
- Check domain names to verify their validity.
- Be careful about clicking on links found on SMS that claim to come from institutions such as your credit company or bank; such links could activate the malware.
- Make sure to use a virtual private network (VPN) – especially when working with sensitive data.
- If you have a business and your employees are using corporate devices, enable remote wipe in case devices to get compromised or lost.
- Limit the number of times you enter your credit card details online and confirm that the domain where you enter personal information is legitimate.
- Hackers will continue to adjust their tactics; therefore, use trusted resources such as the Centers for Disease Control and Prevention for information on the coronavirus.
- Use strong passwords.
Coronavirus Aid, Relief and Economic Security Act (HR 748) – This legislation provided $2 trillion of stimulus relief in response to the coronavirus crisis. Provisions of the bill include:
Coronavirus Preparedness and Response Supplemental Appropriations Act, 2020 (HR 6074) – Introduced by Rep. Nita Lowey (D-NY), this was the first bill passed to authorize funding in response to the COVID-19 outbreak. It was introduced on March 4 and signed into law on March 6. The legislation provides $8.3 billion in emergency funding for federal agencies to respond to the coronavirus outbreak. It includes appropriations for the Department of Health and Human Services, the State Department and the Small Business Administration for the development, manufacture and procurement of vaccines and other medical supplies; grants for state, local and tribal public health agencies and organizations; loans for affected small businesses; evacuations and emergency preparedness activities at U.S. embassies and other State Department facilities; and humanitarian assistance and support for health systems in affected countries.
The COVID-19 pandemic has seen a rise in remote working. Even organizations that have always been against it have their employees working from home. With some areas experiencing complete lockdowns, this means you find yourself in an unfamiliar work environment.
The effect of the coronavirus on our lives is unprecedented. While we’re all sheltering in place while trying to manage our daily tasks, it’s undoubtedly taking a toll on us mentally, physically and financially. Here are some tips to help you weather this storm of economic uncertainty.
In the days ahead, the COVID-19 pandemic will likely be described in economic terms as a Black Swan. This phrase is used to describe an event that: 1) was unpredictable; 2) causes severe and widespread consequences; and 3) in hindsight was determined to be wholly predictable.
Over the past six years, domestic crude oil has experienced a volatile ride. 2014 saw the emergence of American shale as producers were attracted to the $114 price levels. However, in 2016 the price for a barrel eventually fell to $27 as a global supply glut developed. 2016 also saw Russia and Saudi Arabia form an oil pact that drew together Russia and OPEC, leading to the so-called OPEC+ to navigate the global oil market. This agreement would eventually culminate into the current crude oil tensions that exist between Saudi Arabia and Russia.
During the holiday season in December, Congress passed the Consolidated Budget Appropriations Act of 2020. Included in this Act was a tax package that renewed more than 24 tax provisions through what are known as extenders. An extender makes a tax provision effective retroactively. Some of the extender provisions are rather esoteric, so we’ll only focus on those most applicable to the broader taxpayer base.
Supporting Veterans in STEM Careers Act (S 153) – This bill encourages veterans to participate in STEM (science, technology, engineering and mathematics) fields in a variety of ways, including making veterans eligible for certain National Science Foundation (NSF) programs. The Act directs the Office of Science and Technology Policy to establish an interagency working group to improve veteran and military spouse representation in STEM fields, and authorizes funding for the Government Accountability Office to study 1) the academic success rates of student veterans pursuing an undergraduate degree in STEM and related fields; and 2) the barriers faced by such students in pursuing such degrees. This legislation was sponsored by Sen. Marco Rubio (D-FL) on Jan. 16, 2019. It was passed in the Senate in December, the House in January, and was signed into law by the president on Feb. 11.