---
title: "Cyber Security News Update, Week 39 of 2021 | DuoCircle"
description: "Implementing cybersecurity is a collective responsibility wherein every member has to play their part in maintaining confidentiality, integrity."
image: "https://www.duocircle.com/images/og-default.png"
canonical: "https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-39-of-2021/"
---

Quick Answer

Cybersecurity headlines for the week of September 25, 2021\. The FTC adopted a policy statement applying its Health Breach Notification Rule to mobile health apps and connected devices, requiring vendors to notify users and the FTC after a breach. Application performance vendor Dynatrace announced its acquisition of log-data provider SpectX. Ransomware operators turned more hostile, with the Conti group threatening to publish data faster and BlackMatter targeting US food and agriculture firms. Microsoft enabled passwordless sign-in for personal accounts using Authenticator, Windows Hello, security keys, or SMS codes. CrowdStrike's 2021 Threat Hunting Report flagged cloud-account compromise as the next major target for adversaries. IBM's Cost of a Data Breach 2021 report put financial-services average breach cost at around $5.7 million, with most spend tied to detection and lost business.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-39-of-2021%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Cyber%20Security%20News%20Update%2C%20Week%2039%20of%202021&url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-39-of-2021%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-39-of-2021%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-39-of-2021%2F&title=Cyber%20Security%20News%20Update%2C%20Week%2039%20of%202021 "Share on Reddit") [ ](mailto:?subject=Cyber%20Security%20News%20Update%2C%20Week%2039%20of%202021&body=Check out this article: undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-39-of-2021%2F "Share via Email") 

![Cyber Security](https://media.mailhop.org/duocircle/images/2021/09/dkim-selector-8536.jpg) 

_Implementing cybersecurity is a collective responsibility wherein every member has to play their part_ in maintaining confidentiality, integrity, and availability of the organization’s information assets at large. This includes keeping oneself abreast of the latest happenings in the cyber world to keep one step ahead of threat actors at all times. Here are the most relevant [cybersecurity headlines](/announcements) this week, highlighting the progress made by both the good and the bad (malicious) actors.

## FTC Implements Data Breach Rule For Mobile Applications

Developed in 2009, the Federal Trade Commission’s Health Breach Notification Rule is back on the table. _The FTC has recently released a statement asking health app creators collecting users’ personal health information_ (PHI) to comply with the [data breach notification rule](https://therecord.media/ftc-health-app-and-connected-device-makers-must-disclose-data-breaches/). This might be the first of the many checks on the **cybersecurity practices** adopted by such apps and devices. The PHI is usually collected and stored to feature behavioral ads; however, permission needs to be acquired before collecting such sensitive personal data.

[![data breach](https://media.mailhop.org/duocircle/images/2021/09/dkim-record-check-6804.jpg)](https://media.mailhop.org/duocircle/images/2021/09/dkim-record-check-6804.jpg)

The Health Breach Notification Rule mandates vendors beyond the medical information-related privacy laws such as Health Insurance Portability and Accountability Act (HIPAA) to notify about any [data breach](/phishing-protection/the-terrible-price-small-businesses-pay-for-a-data-breach/) affecting the agency, users, or the media. This decision to implement the breach notification rule for mobile apps comes after a letter was sent to the FTC by Senator Bob Menendez, Congresswomen Bonnie Watson Coleman, and Mikie Sherrill.

## Dynatrace Acquires SpectX

Amidst all the mayhem about cyberattacks being more potent in the battle among internet users and breakers, _Dynatrace has managed to strengthen its cybersecurity position by acquiring the high-speed query analytics and parsing organization SpectX_. [This merger](https://www.helpnetsecurity.com/2021/09/16/dynatrace-spectx/) shall facilitate faster security and convergence of observability for modern multi-cloud environments (characterized by constant change). With the acquisition of SpectX, Dynatrace will now be able to extend its Software Intelligence Platform’s observability and security analytics to broader audiences.

The CTO and Founder of Dynatrace, Bernd Greifeneder, views this acquisition as an empowering move for both parties as they can now use the best of _both teams to provide advanced analytics solutions and bring in digital innovation_. The CTO and Founder of SpectX, Renee Trisberg, too, looks forward to the journey ahead of both enterprises in providing robust parsing and query analytics services to customers.

## Ransomware Actors Turn Hostile

In a recent series of reports, some [ransomware gangs](/phishing-protection/one-more-reason-to-avoid-a-ransomware-attack/) are threatening victim organizations of deleting their files if they seek the help of professional negotiators. Among these gangs is [Grief Corp](https://www.theregister.com/2021/09/15/grief%5Fcorp%5Fransomware%5Fnegotiator%5Frage/) which has clearly warned victims against engaging mediators. They say that recovery organizations will have to be hired anyway, so it’s better to do it later than losing all **encrypted data**. The RagnarLocker ransomware gang seems to be the pioneer in this ongoing trend among adversaries.

Cybersecurity analyst Brett Callow said that _hiring negotiators help organizations evade ransom demands and recover quickly by paying the least amount of money_. Hence, the ransomware gangs have taken to threatening victims against doing it now.

Grief Corp, in particular, operates under Evil Corp, which is subject to OFAC sanctions. Negotiators are aware of this and can advise victim organizations accordingly. In essence, it is advisable to refrain from complying with the [demands of the ransomware](/phishing-protection/the-threat-of-ransomware-is-real/) operators as it helps kill their business. _The UK government also advises against paying ransom to the adversaries_.

## Microsoft Users Can Now Go Passwordless

While creating an online account, _we first choose a password and safeguard it for all years to come_. But Microsoft is in the process of [removing the compulsory password](https://therecord.media/microsoft-to-let-users-completely-remove-account-passwords-and-go-passwordless/) needed to log in to Microsoft accounts. Users will have the liberty to choose between security keys, Microsoft Authenticator mobile app, Windows Hello biometrics, or verification codes received on SMS and email as alternative authentication measures. The option is likely to be rolled out in a couple of weeks. It was first introduced among Azure enterprise users in March as a safer alternative to traditional passwords.

[![cybersecurity measure](https://media.mailhop.org/duocircle/images/2021/09/what-is-dkim-8563.jpg)](https://media.mailhop.org/duocircle/images/2021/09/what-is-dkim-8563.jpg)

This move comes in response to the easy-to-crack and recycled passwords that people often use on their online accounts. _The passwordless feature serves as a significant security measure_, and it has been widely requested for quite some time now. Microsoft’s findings suggest that people tend to forget their passwords or use a simple combination of words and numbers such as their loved ones’ or pets’ names, date of birth, etc., as passwords that simplify adversaries’ work. _Over the last six years, “123456” has consistently been the most commonly seen password in data breaches_. Therefore, going passwordless might be the [cybersecurity measure](/msp-email-security/critical-cybersecurity-steps-for-msps-to-secure-clients-confidential-data/) netizens have been looking forward to for logging into their accounts without having to worry about remembering the passwords.

## Next Target of Threat Actors: Cloud Accounts

As more people and organizations shift to the cloud, _the risks associated with cloud account access have also increased_. This time, the adversaries are [running after](https://web.archive.org/web/20211025080247/https://cyware.com/news/criminals-sell-direct-access-to-cloud-accounts-d52a98d4) the compromised admin accounts of Amazon AWS, Azure, and Google Cloud circulating in the dark market.

The malware Cpuminer has been allegedly used to mine altcoin(s). In addition, the threat actor Keksec is using Ryuk’s new **DDoS malware** strain Tsunami to conduct [crypto-mining](/content/email-security-services/email-security-in-cryptography) attacks. Another gang called 8220 is using PwnRing to attack hosts on common cloud services. Such activities in the recent past hint at the increase in the compromise and sale of cloud accounts. These trends suggest that there is a growing need for stringent [email security](/) measures for cloud services.

## Financial Services Spent $2M in Data Breach Costs in 2020

A new [cybersecurity report](https://secure2.sophos.com/en-us/security-news-trends/whitepapers/gated-wp/state-of-ransomware-in-financial-services.aspx) by Sophos on global financial services firms indicates that **34% of enterprises** were victims of [ransomware attacks](/phishing-protection/ransomware-attacks-your-organizations-ability-to-function/) in 2020\. The survey was conducted among 550 mid-sized financial organizations, of which 51% admitted to having their _data compromised by the adversaries_. An **average of $2 million** was spent on recovering this data from the clutches of the attackers. This data was represented in the Sophos _State of Ransomware in Financial Services 2021_ report. It indicated that **around 62% of victim** organizations were able to restore their systems from backup. The report further suggested that the [costs involved](https://www.infosecurity-magazine.com/news/financial-services-firms-spend/) in recovering files were higher in this sector than in other sectors ($1.85 million).

_This huge figure is ironic as only 25% of the surveyed financial services had paid the demanded ransom_. This led to the conclusion that these financial bodies had more **robust defenses** and could recover the encrypted data from backups because of the strong adherence to the guidelines of regulatory bodies such as GDPR and SOX. But on the flip side, a targeted **ransomware attack** on such an organization is likely to cause more harm. Finally, the Sophos report referred to IBM’s findings which indicated that the financial sector continues to _record the second-highest data breach costs even in 2021_.

## Topics

NewsSecurityUpdates 

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

Brad Slavin 

General Manager

General Manager at DuoCircle. Product strategy and commercial lead across the email security portfolio.

## Secure your email infrastructure

Protect, authenticate, and deliver. Contact our team to find the right solution.

[Contact Sales](/contact/) [Explore Products](/products/) 

Share this article

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-39-of-2021%2F) [ ](https://twitter.com/intent/tweet?text=Cyber%20Security%20News%20Update%2C%20Week%2039%20of%202021&url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-39-of-2021%2F) [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-39-of-2021%2F) Copy 

Related Articles

- [ ![spam](https://media.mailhop.org/duocircle/images/2021/07/sender-policy-framework-7535.jpg)  Alert: Fix SPF & DKIM Settings For Your Email Forwarding Set Up Through Microsoft o365 SMTP Server Or Your Emails May End Up In Spam News ](/blog/announcements/alert-fix-spf-dkim-settings-for-your-email-forwarding-set-up-through-microsoft-o365-smtp-server-or-your-emails-may-end-up-in-spam/)
- [ ![Cyber Security](https://media.mailhop.org/duocircle/images/2022/01/spf-flattening-7011.jpg)  Cyber Security News Update, Week 1 of 2022 News ](/blog/announcements/cyber-security-news-update-week-1-of-2022/)
- [ ![Cybersecurity](https://media.mailhop.org/duocircle/images/2023/01/spf-validator-6824.jpg)  Cybersecurity News Update, Week 1 of 2023 News ](/blog/announcements/cyber-security-news-update-week-1-of-2023/)
- [ ![cybersecurity](https://media.mailhop.org/duocircle/images/2024/01/phishing-protection.jpg)  EasyPark Data Breach, Ohio Lottery Cyberattack, GTA 5 Leak, Cybersecurity News \[December 25, 2023\] News ](/blog/announcements/cyber-security-news-update-week-1-of-2024/)

## Related Articles

[  News 3m  Alert: Fix SPF & DKIM Settings For Your Email Forwarding Set Up Through Microsoft o365 SMTP Server Or Your Emails May End Up In Spam  Jul 20, 2021 ](/blog/announcements/alert-fix-spf-dkim-settings-for-your-email-forwarding-set-up-through-microsoft-o365-smtp-server-or-your-emails-may-end-up-in-spam/)[  News 6m  Cyber Security News Update, Week 1 of 2022  Jan 7, 2022 ](/blog/announcements/cyber-security-news-update-week-1-of-2022/)[  News 7m  Cybersecurity News Update, Week 1 of 2023  Jan 1, 2023 ](/blog/announcements/cyber-security-news-update-week-1-of-2023/)[  News 5m  EasyPark Data Breach, Ohio Lottery Cyberattack, GTA 5 Leak, Cybersecurity News \[December 25, 2023\]  Jan 4, 2024 ](/blog/announcements/cyber-security-news-update-week-1-of-2024/)

```json
{"@context":"https://schema.org","@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}],"sameAs":["https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.facebook.com/duocirclellc","https://www.g2.com/products/phish-protection-by-duocircle/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://support.duocircle.com"},"knowsAbout":["Email Security","Email Authentication","SPF","DKIM","DMARC","Phishing Protection","Spam Filtering","SMTP Relay","Email Deliverability","Email Forwarding"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DuoCircle LLC","url":"https://www.duocircle.com","description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cyber Security News Update, Week 39 of 2021","description":"Implementing cybersecurity is a collective responsibility wherein every member has to play their part in maintaining confidentiality, integrity.","url":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-39-of-2021/","datePublished":"2021-09-25T17:02:27.000Z","dateModified":"2025-05-26T18:14:18.000Z","dateCreated":"2021-09-25T17:02:27.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-39-of-2021/"},"articleSection":"announcements","keywords":"News, Security, Updates","wordCount":1120,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2021/09/dkim-selector-8536.jpg","caption":"Cyber Security","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":2,"name":"News"},{"@type":"ListItem","position":3,"name":"Cyber Security News Update, Week 39 of 2021","item":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-39-of-2021/"}]}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://www.duocircle.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":3,"name":"News","item":"https://www.duocircle.comundefined"},{"@type":"ListItem","position":4,"name":"Cyber Security News Update, Week 39 of 2021","item":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-39-of-2021/"}]}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cyber Security News Update, Week 39 of 2021","description":"Implementing cybersecurity is a collective responsibility wherein every member has to play their part in maintaining confidentiality, integrity.","url":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-39-of-2021/","datePublished":"2021-09-25T17:02:27.000Z","dateModified":"2025-05-26T18:14:18.000Z","dateCreated":"2021-09-25T17:02:27.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-39-of-2021/"},"articleSection":"announcements","keywords":"News, Security, Updates","wordCount":1120,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2021/09/dkim-selector-8536.jpg","caption":"Cyber Security","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```
