The Board of Directors at an international financial services organization, headquartered in London with offices in financial centers throughout the world, including Paris, New York and Hong Kong, were considering a confidential merger offer. On a Friday afternoon, before a three-day weekend, the CIO received a ransom email from an unknown source stating they knew about the merger plans and had personal details of 150,000 customers.
A sample of personal details for 500 customers was included in the ransom email as "proof". Unless a significant ransom was paid in Bitcoin, they would leak the merger plans and sell the customer information.
1- Give three possible scenarios on how the attacker was able to retrieve the information.
2- Under which category of the Threat spectrum do you think this case should be categorized?
3- What should be, in your opinion, the course of actions that will need to be taken by the CIO.
Comments
Leave a comment