{"id":1429,"date":"2020-09-01T14:42:00","date_gmt":"2020-09-01T14:42:00","guid":{"rendered":"https:\/\/sectigostore.com\/blog\/?p=1429"},"modified":"2020-11-06T22:27:21","modified_gmt":"2020-11-06T22:27:21","slug":"cyber-attacks-2020-notable-2020-cyber-attacks","status":"publish","type":"post","link":"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/","title":{"rendered":"Cyber Attacks 2020! 20 of 2020&#8217;s Notable Cyber Attacks"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\" id=\"cloud-based-attacks-rose-630-between-january-and-april-2020-let\u2019s-explore-20-of-the-cyber-attacks-we\u2019ve-seen-so-far-in-2020\">Cloud-based attacks rose <a href=\"https:\/\/www.fintechnews.org\/the-2020-cybersecurity-stats-you-need-to-know\/\" target=\"_blank\" rel=\"noreferrer noopener\">630%<\/a> between January and April 2020! Let\u2019s explore 20 of the cyber attacks we\u2019ve seen (so far) in 2020&#8230;<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">As if the world isn\u2019t facing enough difficulties in 2020, cybercriminals are contributing to greater anxiety in the collective consciousness. Just like every year, we\u2019ve witnessed a large number of cyber attacks in 2020 so far, exposing millions of data records and executing the most dangerous cybercrimes against individuals and organizations. Out of thousands of cyber attacks that took place so far this year, we&#8217;ve handpicked 20 of the most noteworthy 2020 cyber attacks to cover.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In this article, we\u2019ll share examples of cyber attacks that targeted people, businesses, and other entities along with the data breaches that resulted from them. This includes info about attackers using leaked data for financial fraud, identity theft, <a href=\"https:\/\/sectigostore.com\/blog\/5-best-ransomware-protection-tips-to-protect-your-organization\/\">ransomware attacks<\/a>, <a href=\"https:\/\/www.varonis.com\/blog\/brute-force-attack\/\" target=\"_blank\" rel=\"noreferrer noopener\">brute-force attacks<\/a>, and getting unauthorized access to user accounts.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">If you\u2019re looking for information specifically relating to COVID-19 scams, we recommend reading this article on <a href=\"https:\/\/www.thesslstore.com\/blog\/coronavirus-scams-phishing-websites-emails-target-unsuspecting-users\/\" target=\"_blank\" rel=\"noreferrer noopener\">Coronavirus Scams<\/a>.<\/p>\n\n\n\n<div class=\"wp-block-advanced-gutenberg-blocks-summary\"><p class=\"wp-block-advanced-gutenberg-blocks-summary__title\">Table of contents<\/p><div class=\"wp-block-advanced-gutenberg-blocks-summary__fold\"><svg xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"24\" height=\"24\" viewbox=\"0 0 24 24\" fill=\"none\" stroke=\"currentColor\" stroke-width=\"2\" stroke-linecap=\"round\" stroke-linejoin=\"round\" class=\"feather feather-chevron-up\"><polyline points=\"18 15 12 9 6 15\"><\/polyline><\/svg><\/div><ol role=\"directory\" class=\"wp-block-advanced-gutenberg-blocks-summary__list\"><li><a href=\"#cloud-based-attacks-rose-630-between-january-and-april-2020-let\u2019s-explore-20-of-the-cyber-attacks-we\u2019ve-seen-so-far-in-2020\">Cloud-based attacks rose 630% between January and April 2020! Let\u2019s explore 20 of the cyber attacks we\u2019ve seen (so far) in 2020&#8230;<\/a><ol><\/ol><\/li><li><a href=\"#cyber-attacks-2020-20-attack-examples-so-far\"><a class=\"wpil_keyword_link\" href=\"https:\/\/sectigostore.com\/blog\/10-different-types-of-cyber-attacks-how-they-work\/\" title=\"Cyber Attacks\">Cyber Attacks<\/a> 2020: 20 Attack Examples (So Far)<\/a><ol><li><a href=\"#1-iranian-hackers-attack-us-government\u2019s-library-program-website\">1. Iranian Hackers Attack U.S. Government\u2019s Library Program Website<\/a><ol><\/ol><\/li><li><a href=\"#2-hacker-group-steals-25-million-students\u2019-data-from-math-app\u2019s-database\">2. Hacker Group Steals 25 Million Students\u2019 Data from Math App\u2019s Database<\/a><ol><\/ol><\/li><li><a href=\"#3-cybercriminal-post-credentials-of-368-million-mobifriends-users-in-web-forum\">3. Cybercriminal Post Credentials of 3.68 Million MobiFriends Users in Web Forum<\/a><ol><\/ol><\/li><li><a href=\"#4-attackers-launch-a-massive-ddos-attack-against-amazon\">4. Attackers Launch a Massive DDoS Attack Against Amazon<\/a><ol><\/ol><\/li><li><a href=\"#5-a-hacker-accesses-godaddys-servers-to-steal-users-login-credentials\">5. A Hacker Accesses GoDaddy&#8217;s Servers to Steal Users&#8217; Login Credentials<\/a><ol><\/ol><\/li><li><a href=\"#6-ransomware-attack-steals-800-gb-of-sensitive-data-from-wamp;t-offshore\">6. Ransomware Attack Steals 800 GB of Sensitive Data from W&amp;T Offshore<\/a><ol><\/ol><\/li><li><a href=\"#7-network-break-leads-to-theft-of-11-million-banco-bcr-payment-card-credentials\">7. Network Break Leads to Theft of 11 Million Banco BCR Payment Card Credentials<\/a><ol><\/ol><\/li><li><a href=\"#8-a-hacker-posts-15-million-tokopedia-users\u2019-data-on-the-dark-web\">8. A Hacker Posts 15 Million Tokopedia Users\u2019 Data on The Dark Web<\/a><ol><\/ol><\/li><li><a href=\"#9-australia\u2019s-home-affairs-department-leaks-774000-immigrants\u2019-data\">9. Australia\u2019s Home Affairs Department Leaks 774,000 Immigrants\u2019 Data<\/a><ol><\/ol><\/li><li><a href=\"#10-a-hacker-tries-selling-unacademy\u2019s-21909709-registered-users\u2019-data-online\">10. A Hacker Tries Selling Unacademy\u2019s 21,909,709 Registered Users\u2019 Data Online<\/a><ol><\/ol><\/li><li><a href=\"#11-phishing-email-leads-to-leak-of-more-than-12000-nikkei-employees\u2019-data\">11. Phishing Email Leads to Leak of More Than 12,000 Nikkei Employees\u2019 Data<\/a><ol><\/ol><\/li><li><a href=\"#12-the-hacker-group-shinyhunters-lists-73-million-user-records-for-sale\">12. The Hacker Group ShinyHunters Lists 73 Million User Records for Sale<\/a><ol><\/ol><\/li><li><a href=\"#13-a-cyber-attack-on-easyjet-affects-9-million-customers\">13. A Cyber Attack on EasyJet Affects 9 Million Customers<\/a><ol><\/ol><\/li><li><a href=\"#14-a-hacker-publishes-23-million-indonesian-voters-data-on-the-darknet\">14. A Hacker Publishes 2.3 Million Indonesian Voters&#8217; Data on The Darknet<\/a><ol><\/ol><\/li><li><a href=\"#15-bigfootycom\u2019s-leaky-database-exposes-132gb-of-customer-data\">15. Bigfooty.com\u2019s Leaky Database Exposes 132GB of Customer Data<\/a><ol><\/ol><\/li><li><a href=\"#16-ucsf-pays-114-million-ransom\">16. UCSF Pays $1.14 Million Ransom<\/a><ol><\/ol><\/li><li><a href=\"#17-cloudflare-becomes-the-target-of-a-massive-ddos-attack\">17. Cloudflare Becomes the Target of a Massive DDoS Attack<\/a><ol><\/ol><\/li><li><a href=\"#18-bitcoin-scammers-hacks-130-celebrities\u2019-twitter-accounts\">18. Bitcoin Scammers Hacks 130 Celebrities\u2019 Twitter Accounts<\/a><ol><\/ol><\/li><li><a href=\"#19-avon-leaks-19-million-document-records\">19. Avon Leaks 19 Million Document Records<\/a><ol><\/ol><\/li><li><a href=\"#20-new-zealand-experiences-a-wave-of-cyber-attacks\">20. New Zealand Experiences a Wave of Cyber Attacks<\/a><ol><\/ol><\/li><\/ol><\/li><li><a href=\"#wrapping-up-on-cyber-attacks-2020\">Wrapping Up on Cyber Attacks 2020<\/a><ol><\/ol><\/li><\/ol><\/div>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"cyber-attacks-2020-20-attack-examples-so-far\">Cyber Attacks 2020: 20 Attack Examples (So Far)<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">It\u2019s been an only half year passed, and we have witnessed some of the ugliest cyber attacks of 2020. We&#8217;ve compiled a list of notable 2020 cyber attacks in chronological order \u2014 from January to August \u2014 to make it easy to follow.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"1-iranian-hackers-attack-us-government\u2019s-library-program-website\">1. Iranian Hackers Attack U.S. Government\u2019s Library Program Website<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">We\u2019ll kick off our list of 2020 cyber attacks with an attack on the Federal Depository Library Program website. The site <a href=\"https:\/\/www.nytimes.com\/2020\/01\/06\/us\/iran-hack-federal-depository-library.html\" target=\"_blank\" rel=\"noreferrer noopener\">displayed a disturbing image<\/a> over a map of the Middle East on Jan. 6, 2020. The image consisted of:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>A tribute to Iran\u2019s late major general Qassim Soleimani,<\/li><li>A declaration of taking revenge for the commander\u2019s death,<\/li><li>A doctored image of an arm and fist labeled \u201cIran\u201d that punches U.S. President Donald Trump in the face,<\/li><li>A message stating that &#8220;This is only a small part of Iran&#8217;s cyber ability!&#8221;&nbsp;<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">The attackers exploited a misconfigured content management system (CMS) to insert the image and messages. Although this cyber attack didn\u2019t involve a data breach, this incident shines a light on the cyber threats that face government-owned websites. Attackers constantly search for misconfigurations and small vulnerabilities in websites\u2019 security postures that they can exploit.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"2-hacker-group-steals-25-million-students\u2019-data-from-math-app\u2019s-database\">2. Hacker Group Steals 25 Million Students\u2019 Data from Math App\u2019s Database<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">In January 2020, a hacker group named Shiny Hunters stole 25 million students\u2019 email addresses and passwords from a math solving app, Mathway. A report by <a href=\"https:\/\/www.zdnet.com\/article\/25-million-user-records-leak-online-from-popular-math-app-mathway\/\" target=\"_blank\" rel=\"noreferrer noopener\">ZDNet<\/a> shows that the attackers put the data up for sale for $4,000 on the dark web on May 18, 2020. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The passwords were encrypted, and the onus of decrypting them was on the buyers. Even if the buyer of the data can\u2019t decrypt the passwords, having a list of 25 million email addresses is still useful for sending malware-laden <a href=\"https:\/\/sectigostore.com\/blog\/what-is-a-phishing-email-5-examples-of-phishing-emails-and-how-to-avoid-them\/\">phishing<\/a> or spam emails to the students.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"3-cybercriminal-post-credentials-of-368-million-mobifriends-users-in-web-forum\">3. Cybercriminal Post Credentials of 3.68 Million MobiFriends Users in Web Forum<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">According to Risk Based Security\u2019s <a href=\"https:\/\/www.riskbasedsecurity.com\/2020\/05\/07\/3-68-million-mobifriends-user-credentials-stolen-and-shared-on-hacking-forum\/\" target=\"_blank\" rel=\"noreferrer noopener\">report<\/a>, on Jan. 12, 2020, a hacker named \u201cDonJuji\u201d tried to sell the sensitive data about nearly 4 million&nbsp;MobiFriends&nbsp;users on a deep web hacking forum. On Apr. 12, 2020, the same data was posted without restrictions by another person on the same website.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">MobiFriends is a Barcelona based popular dating website. The database includes the following information of 3,688,060 users:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Email addresses,<\/li><li>Usernames,<\/li><li>Encrypted passwords,<\/li><li>Mobile numbers,<\/li><li>Dates of birth,<\/li><li>Genders, and<\/li><li>Website activities.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">The data included corporate email addresses of Fortune 1000 companies, including American International Group (AIG), Experian, Walmart, and Virgin Media. If the users are using the same breached passwords to log in to their corporate email addresses, these companies can be at risk of <a href=\"https:\/\/sectigostore.com\/blog\/whale-of-an-attack-a-guide-to-business-email-compromise\/\">business email compromise<\/a> (BEC) related cybercrimes. Although Risk Based Security reports that the passwords were encrypted with the MD5 algorithm, it\u2019s not considered a very robust hashing algorithm.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Let\u2019s move on to the next item on our list of 2020 cyber attacks.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"4-attackers-launch-a-massive-ddos-attack-against-amazon\">4. Attackers Launch a Massive DDoS Attack Against Amazon<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">In Feb. 2020, <a href=\"https:\/\/aws-shield-tlr.s3.amazonaws.com\/2020-Q1_AWS_Shield_TLR.pdf\" target=\"_blank\" rel=\"noreferrer noopener\">Amazon Web Services<\/a> (AWS) became the target of a massive distributed denial of service (DDoS) attack. The company experienced and mitigated the DDoS attack, which had a magnitude of 2.3 terabits per second (Tbps). It also had a 293.1 Mpps packet forwarding rate and 694,201 request rate per second (rps). The DDoS attack caused three days of elevated threat during a single week and is thought to be one of the <a href=\"https:\/\/www.thesslstore.com\/blog\/largest-ddos-attack-in-history\/\" target=\"_blank\" rel=\"noreferrer noopener\">biggest DDoS attacks in history<\/a>.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"5-a-hacker-accesses-godaddys-servers-to-steal-users-login-credentials\">5. A Hacker Accesses GoDaddy&#8217;s Servers to Steal Users&#8217; Login Credentials<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">GoDaddy, one of the biggest hosting provider company, <a href=\"https:\/\/www.documentcloud.org\/documents\/6882021-GoDaddy-Customer-Notification.html?\/6882021-letter.html\" target=\"_blank\" rel=\"noreferrer noopener\">notified<\/a> some of its customers about an altered SSH file in GoDaddy&#8217;s hosting environment that led to a data breach incident on Apr. 23, 2020. The letter informed the users that an unauthorized individual tried to access users\u2019 hosting accounts using the exposed credentials.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">GoDaddy reset the users hosting accounts\u2019 login credentials to prevent further damage. They also provided a one-year subscription of website malware removal tool for free to the affected customers to make up for this incident.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">I think the most disturbing thing about this incident is the time gap. Although the incident took place on Oct. 19, 2019, GoDaddy didn\u2019t notice it until Apr. 23, 2020. &nbsp;According to IBM\u2019s <a href=\"https:\/\/www.ibm.com\/security\/digital-assets\/cost-data-breach-report\/#\/\">Cost of a Data Breach Report 2020<\/a>, it takes an average of 280 days to identify and contain a data breach in 2020! In that amount of time, an attacker can not only exploit the system but also sell the breached credential on the dark web to other cybercriminals.<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"798\" height=\"377\" src=\"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2020\/09\/ibm-security-cost-of-a-data-breach-statistics.png\" alt=\"A screenshot of the costs of data breaches from IBM Security\" class=\"wp-image-1431\" srcset=\"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2020\/09\/ibm-security-cost-of-a-data-breach-statistics.png 798w, https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2020\/09\/ibm-security-cost-of-a-data-breach-statistics-300x142.png 300w, https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2020\/09\/ibm-security-cost-of-a-data-breach-statistics-560x265.png 560w\" sizes=\"auto, (max-width: 798px) 100vw, 798px\" \/><figcaption>Image source: <a href=\"https:\/\/securityintelligence.com\/posts\/whats-new-2020-cost-of-a-data-breach-report\/\" target=\"_blank\" rel=\"noreferrer noopener\">IBM Security<\/a><\/figcaption><\/figure><\/div>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"6-ransomware-attack-steals-800-gb-of-sensitive-data-from-wamp;t-offshore\">6. Ransomware Attack Steals 800 GB of Sensitive Data from W&amp;T Offshore<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Security research firm <a href=\"https:\/\/cybleinc.com\/2020\/04\/28\/nefilim-ransomware-operators-strike-wt-offshore-a-leading-independent-oil-and-natural-gas-producer\/\" target=\"_blank\" rel=\"noreferrer noopener\">Cyble Inc<\/a>. published a report on Apr. 28, 2020, about a ransomware attack on W&amp;T Offshore. According to the report, Netfilim ransomware operators stole 800 gigabytes of sensitive data from the Texas-based oil and gas company.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The report further states that the company\u2019s ransom negotiations with the attacker failed, resulting in the cybercriminal releasing 10 GB of the data on the dark web. The leaked data included sensitive financial documents as follows:&nbsp;<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Bank reconciliation statements,<\/li><li>Journal entries,<\/li><li>Company\u2019s risk analytics model, and<\/li><li>Long-term debt reports.<\/li><\/ul>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"7-network-break-leads-to-theft-of-11-million-banco-bcr-payment-card-credentials\">7. Network Break Leads to Theft of 11 Million Banco BCR Payment Card Credentials<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">BleepingComputer published an <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/hackers-say-they-stole-millions-of-credit-cards-from-banco-bcr\/\" target=\"_blank\" rel=\"noreferrer noopener\">article<\/a> on May 1, 2020, about Maze ransomware operators who are claiming responsibility for stealing 11 million credit card credentials from Banco de Costa Rica\u2019s (BCR) network.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Banco BCR is a government-owned commercial bank. The report shares that the bank&#8217;s network was accessed in August 2019 and again in February 2020, but the attackers claim to have stolen &#8220;a few years of data, including 11 million credit cards.\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Of those 11 million records, 4 million are unique, and 140,000 belong to U.S. residents. As proof, hackers posted:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>240 credit card numbers (without disclosing the last four digits),<\/li><li>The cards\u2019 expiration dates, and<\/li><li>The cards\u2019 verification codes (CVV).<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">The attackers told BleepingComputer that they are unable to contact bank authorities to negotiate the ransom. On May 22, 2020, <a href=\"https:\/\/cybleinc.com\/2020\/05\/22\/maze-ransomware-operators-release-the-banco-de-costa-rica-data-leak-part-3\/\" target=\"_blank\" rel=\"noreferrer noopener\">Cyble Inc<\/a> posted a report stating the Maze ransomware operators have started to release Banco&#8217;s customers&#8217; credit card details on the dark web. The attackers released a 2GB CSV file containing various Mastercard and Visa credit and debit card information because the bank wasn\u2019t taking their leak claims seriously.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"8-a-hacker-posts-15-million-tokopedia-users\u2019-data-on-the-dark-web\">8. A Hacker Posts 15 Million Tokopedia Users\u2019 Data on The Dark Web<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Next on our list of 2020 cyber attacks comes from the data breach monitoring and prevent service <strong>Under the Breach<\/strong>. They posted a <a href=\"https:\/\/twitter.com\/UnderTheBreach\/status\/1256512580069269504\" target=\"_blank\" rel=\"noreferrer noopener\">tweet<\/a> on May 2, 2020, that shared that a hacker listed the personal data of 15 million Tokopedia customers for sale on the dark web. The data comes from a hack that occurred back in March. On May 3, the firm released an update that the attacker has 91 million records of the victim, which they are selling for $5,000. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">According to <a href=\"https:\/\/www.zdnet.com\/article\/hacker-leaks-15-million-records-from-tokopedia-indonesias-largest-online-store\/\" target=\"_blank\" rel=\"noreferrer noopener\">ZDnet<\/a>, the data includes:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Full names,<\/li><li>Email addresses,<\/li><li>Phone numbers,<\/li><li>Hashed passwords,<\/li><li>Dates of birth, and<\/li><li>Tokopedia profile-related details<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Thankfully, the passwords were encrypted using the SHA2-384 hashing algorithm, so the hacker could not decrypt the passwords. The company&#8217;s spokesperson said they had taken measures to protect their customers&#8217; data but still advised users to change their passwords as the precautionary measure.&nbsp;<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"9-australia\u2019s-home-affairs-department-leaks-774000-immigrants\u2019-data\">9. Australia\u2019s Home Affairs Department Leaks 774,000 Immigrants\u2019 Data<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The media outlet <a href=\"https:\/\/www.theguardian.com\/australia-news\/2020\/may\/05\/government-investigates-data-breach-revealing-details-of-774000-migrants\" target=\"_blank\" rel=\"noreferrer noopener\">The Guardian<\/a> published a report on May 2, 2020, indicating that Australia&#8217;s Home Affairs Department has a leaky database that exposes personal details of 774,000 existing and would-be migrants online.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The database leaked migrants\u2019 information such as:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>774,326 unique identifiers known as ADUserIDs,<\/li><li>189,426 completed expressions of interests,<\/li><li>The outcome of the applications, and<\/li><li>Applicants\u2019 birth countries, ages, qualifications, and marital statuses.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">After The Guardian&#8217;s report, the Australian government took the information offline.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"10-a-hacker-tries-selling-unacademy\u2019s-21909709-registered-users\u2019-data-online\">10. A Hacker Tries Selling Unacademy\u2019s 21,909,709 Registered Users\u2019 Data Online<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Unacademy comes in next on our list of 2020 cyber attacks. Unfortunately, India\u2019s largest educational platform was schooled in an unfortunate lesson in cybersecurity on 8 May when a hacker began selling nearly 22 million Unacademy users\u2019 data on the dark web. The security firm <a href=\"https:\/\/cybleinc.com\/2020\/05\/05\/unacademy-indias-largest-learning-platform-has-been-breached-by-professional-hackers\/?__cf_chl_jschl_tk__=4bcc6e094a99e7de6ef26bfec6ccd04168561c60-1588854280-0-Aatkjwph2XgBitTymKGBjtTUHmoQkpGkUgdNmXFAavhZfn_1xstX92_HFPPAowVywS91p0VMfBq682vyccJTSOsHNH47Px4UAY19Yq7ysG5IoOa5--AfNZR4E0KoIFPZTIVEujqPx5FRpSRQUWhWvec8_TYGkpMmcQGZf8CKWkGT5fNaVQ3tj4pTRG-Q9i_5kWtQeKnxH-8067J8F3BBHMN-SBiP9tlBr6ni8GAO2Q7yPg_AO0XGdIZpLi0X73TTg5SdzPkkiLnBezSi-TM7aXV2iLZ4_sZJ31dCyr2spNei1zXTAI6MeW1hU4wP0EPMJMJmZ5ffl5wQqD_lVe6mKp6A5H5Sx-1kSX_AASB8je_NR2WDOYSC9y0cVMQ0WyNeJUOw6YeIQCCTsTbLoBie1IE\" target=\"_blank\" rel=\"noreferrer noopener\">Cyble<\/a> reports that the hackers were selling the entire Unacademy database for $2,000. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Cyber Inc.&#8217;s report says the data contained:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>First names,<\/li><li>Last names,<\/li><li>Usernames,<\/li><li>Encrypted passwords, and<\/li><li>Email addresses.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">It also included details related to Unacademy\u2019s user profiles and their roles and statuses. The leaked database also contains corporate email addresses that belonged to reputed organizations such as Wipro, Reliance Industries, TCS, Google, and Facebook. If users are using the same password for their corporate email account, the attackers can break into these corporation\u2019s email network as well.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">When questioned about the security measures taken to secure data by Mint, Unacademy\u2019s co-founder Hemesh Singh <a href=\"https:\/\/www.livemint.com\/technology\/tech-news\/over-20-mn-unacademy-user-accounts-exposed-in-data-breach-report-11588775083410.html\" target=\"_blank\" rel=\"noreferrer noopener\">responded<\/a> that misusing the leaked data to access passwords is \u201chighly implausible.\u201d That\u2019s because they use the SHA256 algorithm to protect their passwords and a one-time password (OTP) based login system to provide <a href=\"https:\/\/sectigostore.com\/blog\/what-is-multi-factor-authentication-and-how-does-it-differ-from-2fa-sfa\/\">two-factor authentication<\/a> (2FA).<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"11-phishing-email-leads-to-leak-of-more-than-12000-nikkei-employees\u2019-data\">11. Phishing Email Leads to Leak of More Than 12,000 Nikkei Employees\u2019 Data<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Nikkei Inc., a prominent Japanese newspaper publisher, <a href=\"https:\/\/www.nikkei.com\/article\/DGXMZO58987830S0A510C2CR8000\/\" target=\"_blank\" rel=\"noreferrer noopener\">announced<\/a> a data leak relating to the personal data of 12,514 contract employees. The cause of the attack? A <a href=\"https:\/\/sectigostore.com\/blog\/what-is-a-phishing-email-5-examples-of-phishing-emails-and-how-to-avoid-them\/\">phishing email<\/a> that appeared to be coming from Nikkei&#8217;s internal network itself had a virus in it.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The virus infected a portion of Nikkei&#8217;s internal email system and stole 12,514 contract employees&#8217; details, including names, affiliations, and email addresses. The data was leaked on May 8, 2020.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"12-the-hacker-group-shinyhunters-lists-73-million-user-records-for-sale\">12. The Hacker Group ShinyHunters Lists 73 Million User Records for Sale<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">A hacker group ShinyHunters listed individual databases containing a total of 73.2 million user records from 10 different companies for sale on the dark web for $18,000. <a href=\"https:\/\/www.zdnet.com\/article\/a-hacker-group-is-selling-more-than-73-million-user-records-on-the-dark-web\/\" target=\"_blank\" rel=\"noreferrer noopener\">ZDnet&#8217;s report<\/a> from May 9, 2020 shares that ShinyHunters is the same group that was responsible for the Tokopedia data breach back in March.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">According to the report, the list of the 10 companies with breached data includes:<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table><tbody><tr><td><strong>Company name<\/strong><\/td><td><strong>Number of breached user records<\/strong><\/td><\/tr><tr><td><strong>Zoosk<\/strong><\/td><td>30 million<\/td><\/tr><tr><td><strong>ChatBooks<\/strong><\/td><td>15 million<\/td><\/tr><tr><td><strong>SocialShare<\/strong><\/td><td>6 million<\/td><\/tr><tr><td><strong>Home Chef<\/strong><\/td><td>8 million<\/td><\/tr><tr><td><strong>Minted<\/strong><\/td><td>5 million<\/td><\/tr><tr><td><strong>Chronicle of Higher Education<\/strong><\/td><td>3 million<\/td><\/tr><tr><td><strong>Ggumim<\/strong><\/td><td>2 million<\/td><\/tr><tr><td><strong>Mindful<\/strong><\/td><td>2 million<\/td><\/tr><tr><td><strong>StarTribune<\/strong><\/td><td>1 million<\/td><\/tr><tr><td><strong>Bhinneka<\/strong><\/td><td>1.2 million<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"13-a-cyber-attack-on-easyjet-affects-9-million-customers\">13. A Cyber Attack on EasyJet Affects 9 Million Customers<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.bbc.com\/news\/technology-52722626#:~:text=EasyJet%20has%20admitted%20that%20a,affected%20approximately%20nine%20million%20customers.&amp;text=EasyJet%20added%20that%20it%20had,be%20wary%20of%20phishing%20attacks.\" target=\"_blank\" rel=\"noreferrer noopener\">BBC reported<\/a> that the budget airline EasyJet had been the victim of a highly sophisticated cyber attack in which nine million customers\u2019 email addresses and travel details were stolen. The report states that attackers were also able to access 2,208 customers&#8217; credit card\/debit card numbers along with CVV.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Although EasyJet was aware of the data breach since January, it didn\u2019t disclose this matter to the general public until May 19. However, the airline did inform the customers whose payment card details have been stolen in April. EasyJet has informed UK\u2019s Information Commissioner&#8217;s Office (ICO) about the breach to help them further investigate it.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"14-a-hacker-publishes-23-million-indonesian-voters-data-on-the-darknet\">14. A Hacker Publishes 2.3 Million Indonesian Voters&#8217; Data on The Darknet<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">According to a report published on <a href=\"https:\/\/www.reuters.com\/article\/us-indonesia-cyber-breach\/indonesia-probes-breach-of-data-on-more-than-two-million-voters-idUSKBN22Y15K\" target=\"_blank\" rel=\"noreferrer noopener\">Reuters<\/a> on May 22, &nbsp;a hacker released 2.3 million Indonesian voters data on the hacking forum Raidforums on May 20, 2020. The data included sensitive details such as home addresses and national identification number of the voters.&nbsp; The attacker had also given a threat to release the other 200 million voters\u2019 data. Indonesia\u2019s General Election Commission confirmed the authenticity of the voters\u2019 data.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"15-bigfootycom\u2019s-leaky-database-exposes-132gb-of-customer-data\">15. Bigfooty.com\u2019s Leaky Database Exposes 132GB of Customer Data<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Security researcher Anurag Sen and his team atof <a href=\"https:\/\/www.safetydetectives.com\/blog\/bigfooty-leak-report\/\" target=\"_blank\" rel=\"noreferrer noopener\">Safety Detectives<\/a> found a leaky database of bigfooty.com on Bigfooty\u2019s parent company Big Interest Group LLC\u2019s server on May 29, 2020. Bigfooty.com is a famous Australian football fan forum with more than 100,000 members.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The leaky Elasticsearch database had 132 GB of data containing approximately 70 million user records. Up to 100,000 users were affected by this leak, which included data such as:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Usernames<\/li><li>Passwords<\/li><li>Email addresses<\/li><li>Mobile phone numbers<\/li><li>Personal messages and data relating to behaviors and activities<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">In Bigfooty, users get an option to be anonymous. However, with the above details, it becomes possible to track down the anonymous users&#8217; identities, including those who were sending personal threats and racist material in private messages. Comments posted by high-profile users such as Australian police officers and government employees can also be tracked down. Attackers can easily use such details for ransomware attacks, blackmailing, personal revenge, and ruining the image or reputation of a person and organization.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The leaked data also included the website\u2019s internal technical information related to IP addresses and GPS locations, operating system and server data, access and error logs, etc. Such information can be used by hackers to execute other serious crimes against the website.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"16-ucsf-pays-114-million-ransom\">16. UCSF Pays $1.14 Million Ransom<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The <a href=\"https:\/\/www.ucsf.edu\/news\/2020\/06\/417911\/update-it-security-incident-ucsf\" target=\"_blank\" rel=\"noreferrer noopener\">University of California San Francisco<\/a> (UCSF) hit by a <a href=\"https:\/\/www.thesslstore.com\/blog\/recent-ransomware-attacks-latest-ransomware-attack-news\/\" target=\"_blank\" rel=\"noreferrer noopener\">ransomware attack<\/a> on Jun. 1, 2020. The Netwalker ransomware operators encrypted some important servers from the university\u2019s medical-research institution, which was working on a cure for COVID-19.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Although the university&#8217;s staff isolated the malware-infected servers from the core UCSF network, they didn\u2019t have any plans to get back to unlock the hacked servers and decrypt the data. Hence, <a href=\"https:\/\/www.bbc.com\/news\/technology-53214783\" target=\"_blank\" rel=\"noreferrer noopener\">UCSF negotiated with the hackers<\/a> and paid $1.14 million (116.4 bitcoins) to Netwalker operators on Jun. 26, 2020. In return, hackers sent the decryption key to UCSF, which they used to get back access to the servers and the lost data.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"17-cloudflare-becomes-the-target-of-a-massive-ddos-attack\">17. Cloudflare Becomes the Target of a Massive DDoS Attack<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">An attacker launched a massive DDoS attack against <a href=\"https:\/\/blog.cloudflare.com\/mitigating-a-754-million-pps-ddos-attack-automatically\/\" target=\"_blank\" rel=\"noreferrer noopener\">Cloudflare<\/a>, a leading U.S. web infrastructure and security company, on Jun. 18, 2020. The attack continued for four days before ending on Jun. 21. These are the details that Cloudflare shared about the severity of the attack:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>The June 2020 DDoS cyber attacks lasted for multiple hours at rates exceeding 400-600 million packets per second (pps). It peaked multiple times above 700 million packets per second.<\/li><li>At the peak of the attack, 754 million pps were sent out from more than 316,000 different IP addresses.<\/li><li>A combination of three types of TCP attack vectors was used: SYN floods, SYN-ACK floods, and ACK floods.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">The attackers targeted one particular Cloudflare IP address that was mostly used for websites on the free subscription plan.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Fortunately, the attack was detected and handled by Cloudflare\u2019s own DDoS detection and mitigation tool named Gatebot. The customers experienced no downtime and service discrepancies. While Cloudflare was able to mitigate the DDoS attack successfully, not all companies can say the same. For other companies, especially for startups and small companies, escaping such a massive DDoS attack virtually unscathed is an enormous feat.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"18-bitcoin-scammers-hacks-130-celebrities\u2019-twitter-accounts\">18. Bitcoin Scammers Hacks 130 Celebrities\u2019 Twitter Accounts<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.bbc.com\/news\/technology-53445090\" target=\"_blank\" rel=\"noreferrer noopener\">Several attackers hacked<\/a> 130 high-profile Twitter accounts and posted cryptocurrency scam message from their profiles on Jul. 15, 2020. <a href=\"https:\/\/blog.twitter.com\/en_us\/topics\/company\/2020\/an-update-on-our-security-incident.html\" target=\"_blank\" rel=\"noreferrer noopener\">According to Twitter<\/a>, the posts were the result of a social engineering attack that resulted in tweets from 45 accounts, accessing the direct message inboxes of 36, and downloading the Twitter data of seven others.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For example, the fraudulent message posted using Joe Biden\u2019s account was as follows:<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\"><p><em>\u201cI am giving back to the community. All Bitcoins sent to the address below will be sent back doubled! If you send $1,000, I will send back $2,000. Only doing this for 30 minutes.\u201d<\/em><\/p><\/blockquote>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"400\" height=\"507\" src=\"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2020\/09\/cyber-attacks-2020-example-barack-obama-fake-tweet.png\" alt=\"\" class=\"wp-image-1432\" srcset=\"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2020\/09\/cyber-attacks-2020-example-barack-obama-fake-tweet.png 400w, https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2020\/09\/cyber-attacks-2020-example-barack-obama-fake-tweet-237x300.png 237w\" sizes=\"auto, (max-width: 400px) 100vw, 400px\" \/><figcaption><em>Image Source: <\/em><a href=\"https:\/\/www.bbc.com\/news\/technology-53445090\"><em>BBC.com<\/em><\/a><em>. This is an example of one of the fake tweets.<\/em><\/figcaption><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">The list of celebrities included Barack Obama, Joe Biden, Elon Musk, Kanye West, and Bill Gates \u2014 all of who have millions of followers. Hackers <a href=\"https:\/\/www.vice.com\/en_us\/article\/jgxd3d\/twitter-insider-access-panel-account-hacks-biden-uber-bezos?\" target=\"_blank\" rel=\"noreferrer noopener\">gained access<\/a> to Twitter&#8217;s own internal administration tool through the social engineering attack. Twitter immediately put a temporary hold on all the verified users to post anything from their accounts. However, the attackers were able to trick some people into falling for this scam and received more than $100,000 worth of Bitcoin.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"19-avon-leaks-19-million-document-records\">19. Avon Leaks 19 Million Document Records<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The Safety Detectives team published a <a href=\"https:\/\/www.safetydetectives.com\/blog\/avon-leak-report\/\" target=\"_blank\" rel=\"noreferrer noopener\">report<\/a> on Jul. 28, 2020, revealing some major vulnerabilities in the cosmetic giant Avon\u2019s servers. They discovered that a leaky database containing 7 GB of customer and employee data. The data, which could be accessed by anyone with the server\u2019s IP address, included everything from their names and GPS coordinates to their email addresses and phone numbers. Such details can be used for phishing attacks and identity theft-related crimes.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The database also included details about Avon\u2019s internal technical components such as:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Security tokens, SMS verification service logs,<\/li><li>OAuth tokens,<\/li><li>3 million technical log entries,<\/li><li>Account settings information,<\/li><li>11,000+ entries marked as \u201csalesLeadMap,\u201d and<\/li><li>Technical server information.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">An attacker can easily use these details to execute massive cyber attacks against the website or sell the data to competitors or marketers.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The Safety Detectives team discovered the leaky database on Jun. 3, 2020, itself. But, fortunately, before releasing the information to the public, they contacted Avon, and the company took steps to secure it.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"20-new-zealand-experiences-a-wave-of-cyber-attacks\">20. New Zealand Experiences a Wave of Cyber Attacks<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Alright, we&#8217;ve reached the <a href=\"https:\/\/sectigostore.com\/blog\/42-cyber-attack-statistics-by-year-a-look-at-the-last-decade\/\">last item on our list of 2020 cyber attacks<\/a>. New Zealand\u2019s various services and websites found themselves the targets of various 2020 cyber attacks during the month of August. For example, entities such as <a href=\"https:\/\/www.stuff.co.nz\/business\/122634175\/westpac-metservice-confirm-cyberattacks\">Westpac Bank<\/a>, <a href=\"https:\/\/www.rnz.co.nz\/news\/national\/425016\/metservice-site-down-a-day-after-cyber-attack\">MetService<\/a> weather news website, <a href=\"https:\/\/www.stuff.co.nz\/business\/industries\/122631374\/tsb-kiwibank-services-hit-by-outages\">Kiwibank, and TSB bank<\/a> experienced service outages and issues due to cyber attacks.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Among the biggest targets, however, was the New Zealand Stock Market (NZX). The NZX <a href=\"https:\/\/www.bbc.com\/news\/business-53942907#:~:text=New%20Zealand's%20communications%20security%20bureau,service%22%20(DDoS)%20attacks.\">had to halt trading<\/a> due to a severe DDoS attack that lasted for <a href=\"https:\/\/www.tvnz.co.nz\/one-news\/new-zealand\/nzx-website-offline-fifth-consecutive-trading-day-following-cyber-attacks\">five consecutive days<\/a>, Aug. 24-Aug. 28. The magnitude of the attack was more than one terabit a second (Tbps) at its peak. Prior to the attack, a hacker (or group of hackers) sent an email to NZX and <a href=\"https:\/\/www.rnz.co.nz\/national\/programmes\/checkpoint\/audio\/2018761943\/nzx-organisations-warned-ahead-of-cyber-attacks-gcsb-minister-says\" target=\"_blank\" rel=\"noreferrer noopener\">warned<\/a> about the potential cyber attack. According to <a href=\"https:\/\/www.stuff.co.nz\/business\/122636582\/gcsb-examining-extortion-email-sent-to-nzx-ahead-of-ddos-attack\">Stuff.co.nz<\/a>, the attackers might have been seeking to extort ransom payments in Bitcoin to halt the attacks.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"wrapping-up-on-cyber-attacks-2020\">Wrapping Up on Cyber Attacks 2020<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">As you can see from the above 2020 cyber attack incidents, your data is not secured even with the big reputed organizations and government institutions. Cybersecurity is a continuous process, and that\u2019s why all the big organizations keep a cybersecurity team that is dedicated to data protection and preventing various types of cyberattacks. But startups, small businesses, and SMBs generally have tight budgets and can\u2019t necessarily afford to hire cybersecurity experts. But there are some DIY cybersecurity tricks you can follow to strengthen your company\u2019s cybersecurity posture.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">We\u2019ve compiled a list of eight articles to help you mitigate cyber risks. Check out these simple yet powerful cybersecurity tips to help prevent your business from making headlines as the target of any 2020 cyber attacks:<\/p>\n\n\n\n<ol class=\"wp-block-list\" type=\"1\"><li><a href=\"https:\/\/sectigostore.com\/blog\/top-25-recommendations-for-small-business-cyber-security\/\">Top 25 Recommendations for Small Business Cyber Security<\/a><\/li><li><a href=\"https:\/\/sectigostore.com\/blog\/how-to-prevent-malware-risks-in-9-ways\/\">How to Prevent Malware Risks in 9 Ways<\/a><\/li><li><a href=\"https:\/\/sectigostore.com\/blog\/5-best-ransomware-protection-tips-to-protect-your-organization\/\">5 Best Ransomware Protection Tips to Protect Your Organization<\/a><\/li><li><a href=\"https:\/\/sectigostore.com\/blog\/data-leak-8-data-leakage-prevention-tips-for-your-organization\/\">8 Data Leakage Prevention Tips for Your Organization<\/a><\/li><li><a href=\"https:\/\/sectigostore.com\/blog\/10-iot-security-tips-you-can-use-to-secure-your-iot-devices\/\">10 IoT Security Tips You Can Use to Secure Your IoT Devices<\/a><\/li><li><a href=\"https:\/\/sectigostore.com\/blog\/email-security-how-to-secure-email-communication\/\">10 Steps for How to Secure Your Email Communication<\/a><\/li><li><a href=\"https:\/\/sectigostore.com\/blog\/12-network-security-best-practices-to-secure-your-business\/\">12 Network Security Best Practices to Secure Your Business<\/a><\/li><li><a href=\"https:\/\/sectigostore.com\/blog\/secure-wordpress-website\/\">8 Crucial Tips to Secure Your WordPress Website<\/a><\/li><\/ol>\n","protected":false},"excerpt":{"rendered":"<p>Cloud-based attacks rose 630% between January and April 2020! Let\u2019s explore 20 of the cyber attacks we\u2019ve seen (so far) in 2020&#8230; As if the world isn\u2019t facing enough difficulties&#8230;<\/p>\n","protected":false},"author":6,"featured_media":1433,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":"","tve_updated_post":"","tve_custom_css":"","tve_user_custom_css":"","tve_globals":{},"tcb2_ready":0,"tcb_editor_enabled":0,"tve_landing_page":"","_tve_header":"","_tve_footer":""},"categories":[13],"tags":[40],"class_list":["post-1429","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cyber-security","tag-cyber-attacks","post-with-tags"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.1 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Cyber Attacks 2020! 20 of 2020&#039;s Notable Cyber Attacks - InfoSec Insights<\/title>\n<meta name=\"description\" content=\"Curious about cyber attacks in 2020? We&#039;ve got info on 20 noteworthy 2020 cyber attacks that resulted in the exposure of millions of records.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Cyber Attacks 2020! 20 of 2020&#039;s Notable Cyber Attacks - InfoSec Insights\" \/>\n<meta property=\"og:description\" content=\"Curious about cyber attacks in 2020? We&#039;ve got info on 20 noteworthy 2020 cyber attacks that resulted in the exposure of millions of records.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/\" \/>\n<meta property=\"og:site_name\" content=\"InfoSec Insights\" \/>\n<meta property=\"article:published_time\" content=\"2020-09-01T14:42:00+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2020-11-06T22:27:21+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2020\/09\/cyber-attacks-2020.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1600\" \/>\n\t<meta property=\"og:image:height\" content=\"1000\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Medha Mehta\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Medha Mehta\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"17 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/cyber-attacks-2020-notable-2020-cyber-attacks\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/cyber-attacks-2020-notable-2020-cyber-attacks\\\/\"},\"author\":{\"name\":\"Medha Mehta\",\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/#\\\/schema\\\/person\\\/41d095943b7798ade1bc3683c8822f15\"},\"headline\":\"Cyber Attacks 2020! 20 of 2020&#8217;s Notable Cyber Attacks\",\"datePublished\":\"2020-09-01T14:42:00+00:00\",\"dateModified\":\"2020-11-06T22:27:21+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/cyber-attacks-2020-notable-2020-cyber-attacks\\\/\"},\"wordCount\":3455,\"image\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/cyber-attacks-2020-notable-2020-cyber-attacks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/09\\\/cyber-attacks-2020.jpg\",\"keywords\":[\"cyber attacks\"],\"articleSection\":[\"Cyber Security\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/cyber-attacks-2020-notable-2020-cyber-attacks\\\/\",\"url\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/cyber-attacks-2020-notable-2020-cyber-attacks\\\/\",\"name\":\"Cyber Attacks 2020! 20 of 2020's Notable Cyber Attacks - InfoSec Insights\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/cyber-attacks-2020-notable-2020-cyber-attacks\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/cyber-attacks-2020-notable-2020-cyber-attacks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/09\\\/cyber-attacks-2020.jpg\",\"datePublished\":\"2020-09-01T14:42:00+00:00\",\"dateModified\":\"2020-11-06T22:27:21+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/#\\\/schema\\\/person\\\/41d095943b7798ade1bc3683c8822f15\"},\"description\":\"Curious about cyber attacks in 2020? We've got info on 20 noteworthy 2020 cyber attacks that resulted in the exposure of millions of records.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/cyber-attacks-2020-notable-2020-cyber-attacks\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/sectigostore.com\\\/blog\\\/cyber-attacks-2020-notable-2020-cyber-attacks\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/cyber-attacks-2020-notable-2020-cyber-attacks\\\/#primaryimage\",\"url\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/09\\\/cyber-attacks-2020.jpg\",\"contentUrl\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/09\\\/cyber-attacks-2020.jpg\",\"width\":1600,\"height\":1000,\"caption\":\"Cyber attack breaking news - daily newspaper printing. Danger warning in vintage paper media press production abstract concept. Retro style 3d rendering illustration.\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/cyber-attacks-2020-notable-2020-cyber-attacks\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Cyber Attacks 2020! 20 of 2020&#8217;s Notable Cyber Attacks\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/\",\"name\":\"InfoSec Insights\",\"description\":\"SectigoStore.com Blog\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/#\\\/schema\\\/person\\\/41d095943b7798ade1bc3683c8822f15\",\"name\":\"Medha Mehta\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/a1e5b5025e87d4e1acfd683fbede8c366e652e9ddb2164b7a0d0a77e2d9da727?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/a1e5b5025e87d4e1acfd683fbede8c366e652e9ddb2164b7a0d0a77e2d9da727?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/a1e5b5025e87d4e1acfd683fbede8c366e652e9ddb2164b7a0d0a77e2d9da727?s=96&d=mm&r=g\",\"caption\":\"Medha Mehta\"},\"description\":\"Medha is a regular contributor to InfoSec Insights. She's a tech enthusiast and writes about technology, website security, cryptography, cyber security, and data protection.\",\"sameAs\":[\"https:\\\/\\\/sectigostore.com\\\/\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Cyber Attacks 2020! 20 of 2020's Notable Cyber Attacks - InfoSec Insights","description":"Curious about cyber attacks in 2020? We've got info on 20 noteworthy 2020 cyber attacks that resulted in the exposure of millions of records.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/","og_locale":"en_US","og_type":"article","og_title":"Cyber Attacks 2020! 20 of 2020's Notable Cyber Attacks - InfoSec Insights","og_description":"Curious about cyber attacks in 2020? We've got info on 20 noteworthy 2020 cyber attacks that resulted in the exposure of millions of records.","og_url":"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/","og_site_name":"InfoSec Insights","article_published_time":"2020-09-01T14:42:00+00:00","article_modified_time":"2020-11-06T22:27:21+00:00","og_image":[{"width":1600,"height":1000,"url":"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2020\/09\/cyber-attacks-2020.jpg","type":"image\/jpeg"}],"author":"Medha Mehta","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Medha Mehta","Est. reading time":"17 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/#article","isPartOf":{"@id":"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/"},"author":{"name":"Medha Mehta","@id":"https:\/\/sectigostore.com\/blog\/#\/schema\/person\/41d095943b7798ade1bc3683c8822f15"},"headline":"Cyber Attacks 2020! 20 of 2020&#8217;s Notable Cyber Attacks","datePublished":"2020-09-01T14:42:00+00:00","dateModified":"2020-11-06T22:27:21+00:00","mainEntityOfPage":{"@id":"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/"},"wordCount":3455,"image":{"@id":"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/#primaryimage"},"thumbnailUrl":"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2020\/09\/cyber-attacks-2020.jpg","keywords":["cyber attacks"],"articleSection":["Cyber Security"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/","url":"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/","name":"Cyber Attacks 2020! 20 of 2020's Notable Cyber Attacks - InfoSec Insights","isPartOf":{"@id":"https:\/\/sectigostore.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/#primaryimage"},"image":{"@id":"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/#primaryimage"},"thumbnailUrl":"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2020\/09\/cyber-attacks-2020.jpg","datePublished":"2020-09-01T14:42:00+00:00","dateModified":"2020-11-06T22:27:21+00:00","author":{"@id":"https:\/\/sectigostore.com\/blog\/#\/schema\/person\/41d095943b7798ade1bc3683c8822f15"},"description":"Curious about cyber attacks in 2020? We've got info on 20 noteworthy 2020 cyber attacks that resulted in the exposure of millions of records.","breadcrumb":{"@id":"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/#primaryimage","url":"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2020\/09\/cyber-attacks-2020.jpg","contentUrl":"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2020\/09\/cyber-attacks-2020.jpg","width":1600,"height":1000,"caption":"Cyber attack breaking news - daily newspaper printing. Danger warning in vintage paper media press production abstract concept. Retro style 3d rendering illustration."},{"@type":"BreadcrumbList","@id":"https:\/\/sectigostore.com\/blog\/cyber-attacks-2020-notable-2020-cyber-attacks\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/sectigostore.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Cyber Attacks 2020! 20 of 2020&#8217;s Notable Cyber Attacks"}]},{"@type":"WebSite","@id":"https:\/\/sectigostore.com\/blog\/#website","url":"https:\/\/sectigostore.com\/blog\/","name":"InfoSec Insights","description":"SectigoStore.com Blog","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/sectigostore.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/sectigostore.com\/blog\/#\/schema\/person\/41d095943b7798ade1bc3683c8822f15","name":"Medha Mehta","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/a1e5b5025e87d4e1acfd683fbede8c366e652e9ddb2164b7a0d0a77e2d9da727?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/a1e5b5025e87d4e1acfd683fbede8c366e652e9ddb2164b7a0d0a77e2d9da727?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/a1e5b5025e87d4e1acfd683fbede8c366e652e9ddb2164b7a0d0a77e2d9da727?s=96&d=mm&r=g","caption":"Medha Mehta"},"description":"Medha is a regular contributor to InfoSec Insights. She's a tech enthusiast and writes about technology, website security, cryptography, cyber security, and data protection.","sameAs":["https:\/\/sectigostore.com\/"]}]}},"_links":{"self":[{"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/posts\/1429","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/comments?post=1429"}],"version-history":[{"count":0,"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/posts\/1429\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/media\/1433"}],"wp:attachment":[{"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/media?parent=1429"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/categories?post=1429"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/tags?post=1429"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}