---
title: "Cyber Security News Update, Week 48 of 2020 | DuoCircle"
description: "Cybersecurity is a dynamic domain, and our ignorance fuels the attacks and malicious schemes of adversaries."
image: "https://www.duocircle.com/images/og-default.png"
canonical: "https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-48-of-2020/"
---

Quick Answer

Week 48 of 2020 covered six items. Zoom rolled out a new at-risk meeting notifier to flag invitations being shared on the open web, helping hosts prevent Zoombombing. The Origin Dollar (OUSD) stablecoin protocol lost roughly $7 million in a flash-loan attack two months after launch, with the team committing to compensate affected depositors. The alleged leader of the FIN7 cybercrime group, Andrii Kolpakov, pleaded guilty in US court to conspiracy to commit computer hacking and wire fraud after the group stole tens of millions of payment cards. Industry analysts forecast a continued increase in healthcare-sector cyberattacks heading into 2021, citing ransomware shifts toward hospitals during the pandemic. Reports highlighted ransomware as the dominant operational threat to enterprises. NordPass's annual analysis showed simple passwords like 123456 and password remained the most common credentials in breach corpora.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-48-of-2020%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Cyber%20Security%20News%20Update%2C%20Week%2048%20of%202020&url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-48-of-2020%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-48-of-2020%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-48-of-2020%2F&title=Cyber%20Security%20News%20Update%2C%20Week%2048%20of%202020 "Share on Reddit") [ ](mailto:?subject=Cyber%20Security%20News%20Update%2C%20Week%2048%20of%202020&body=Check out this article: undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-48-of-2020%2F "Share via Email") 

![Cyber Security](https://media.mailhop.org/duocircle/images/2020/11/spf-record-tester-7482.jpg) 

_Cybersecurity is a dynamic domain, and our ignorance fuels the attacks and malicious schemes of adversaries_. Learning about cybersecurity has become crucial in today’s times, and these headlines will give you some idea about what goes on out there and how you can keep your information assets safe from threat actors.

## Zoom’s New Anti-Raid Feature

_The year 2020 has been all about surviving the pandemic and Zoom raids on the popular video conferencing app Zoom_. The application makes it to the headlines almost every other for some **security flaw or vulnerability**. However, this time around, Zoom is finally doing things right by introducing a new feature called [At-Risk Meeting Notifier](https://support.zoom.us/hc/en-us/articles/360052087972-At-Risk-Meeting-Notifier), which promises to eliminate the [threat from Zoom raids](https://www.zdnet.com/article/new-zoom-feature-can-alert-room-owners-of-possible-zoombombing-disruptions/?&web%5Fview=true) or Zoombombing.

Through Zoom raids, malicious actors trespass a Zoom room and disrupt the meeting via vulgar comments, content, or threatening statements. With Zoom’s new feature, all public posts with Zoom links will be scanned on the app’s back-end servers, _searching for illegal third parties trying to enter a meeting room_. If such issues are found, Zoom will automatically notify the meeting host about the same.

Zoom raids have caused much chaos in the cyber world since March, and though late, we’re glad that Zoom is finally doing something about it! The question now is: how efficient will the At-Risk Meeting Notifier feature be as a cybersecurity tool?

[![Cyber Security](https://media.mailhop.org/duocircle/images/2020/11/sender-policy-framework-7483.jpg)](https://media.mailhop.org/duocircle/images/2020/11/sender-policy-framework-7483.jpg)

## Origin Dollar Loses $7 M in Two Months of Launch

In just two months of the launch of its stablecoin project, Origin Dollar (OUSD) **lost $7 million to a hack**. The attack was detected on 17th November, and deposits to the vault have been disabled since then. Among the stolen funds was _$1 million worth of deposits by Origin’s employees and founders_. Origin co-founder Josh Fraser notified that the [stolen funds](https://portswigger.net/daily-swig/origin-dollar-cryptocurrency-hacked-to-the-tune-of-7m-less-than-two-months-after-launch?&web%5Fview=true) were believed to be in an Ethereum wallet with **2.249 million DAI and 7,137 ETH**. Although Fraser has assured that their team is working on ensuring [ransomware protection](/advanced-threat-defense) and recovering the stolen funds, no significant progress has been made so far.

_Origin also plans on compensating the loss of affected shareholders and urges them not to invest in OUSD_. They are keen on identifying the attacker but have promised to avoid legal actions if the adversaries return the stolen funds.

## FIN7 Leader Pleads Guilty

The Ukrainian ringleader of the hacking group FIN7, [Andrii Kolpakov](https://www.cyberscoop.com/fin7-recruiter-andrii-kolpakov-pleads-guilty-role-global-hacking-scheme/), _pleaded guilty to stealing payment card records and over $1 billion from global enterprises_. The hacker group escaped the scrutiny of [email security services](/) by pretending to be a cybersecurity vendor and conned several firms, including Red Robin, Whole Foods, Sonic Drive-In, Saks Fifth Avenue, Chipotle, Trump Hotels, etc.

_Kolpakov was arrested by the Spanish police in June 2018 and then handed over to the U.S in 2019_. He was found with a laptop, hard drives, and phone storing payment card information of thousands of people. Such a massive amount of **data theft** is bound to get a strict penalty, and Kolpakov, for one, has been _sentenced to 25 years in prison_.

## Healthcare Sector To Experience More Cyberattacks In 2021

A Black Book Market Research report states that _data breaches in the healthcare industry might triple by 2021_, and here’s why they reached that conclusion:

- A 300% increase in [data breaches](https://www.infosecurity-magazine.com/news/healthcare-data-breaches-to-triple/?&web%5Fview=true) is predicted, with _1500 healthcare facilities vulnerable to data breaches_.
- Around _75% of healthcare facilities were ill-equipped to handle cybersecurity issues_.
- [Email security as a service](/) lacks in the healthcare sector because of which the number of successful cyberattacks only keeps rising.
- The demand for cybersecurity experts in the healthcare industry is always undermined.
- The lack of zeal among the healthcare facilities to face a cyberattack, and the _readiness to pay ransom encourages the adversaries to launch more attacks_.
- _75% of surveyed CISOs confessed that CISOs do not prefer to work in the healthcare sector_ because of the minimal decision-making power given to them and the responsibility they are made to own up in case of a cyberattack.

[![Email security](https://media.mailhop.org/duocircle/images/2020/11/spf-record-check-7484.jpg)](https://media.mailhop.org/duocircle/images/2020/11/spf-record-check-7484.jpg)

## Unrivaled Threat From Ransomware

Covid 19 has affected the world both at a physical and a virtual level. Amidst all the cyberattacks that have gained momentum in the pandemic, _[ransomware](https://www.helpnetsecurity.com/2020/11/18/ransomware-cyber-threat-smbs/?web%5Fview=true) remains unrivaled as the most commonly occurring form of a cyber attack_. This is mostly true for Managed IT Service Providers (MSPs), **60% of whose SMB** or Server Message Block clients have undergone a **ransomware attack** in Q3 2020.

Poor implementation of anti-phishing and [ransomware protection](/advanced-threat-defense) measures, combined with the lack of [cybersecurity awareness](/phishing-awareness-training), leads to increased ransomware attacks. Enterprises must rely on multi-factor authentication, Single Sign-on (SSO), and other cybersecurity tools and strategies rather than fixating on a **linear cybersecurity approach** or measure.

## Obvious Passwords Still Actively Used

Despite all the instructions and healthy password habits propagated online, people continue using obvious and [easy-to-guess](https://www.zdnet.com/article/the-worst-passwords-of-2020-show-we-are-as-lazy-about-security-as-ever/?&web%5Fview=true) passwords like “123456” or “password.” _A recent analysis by Nordpass reveals that only **44% of passwords leaked** in 2020 were unique or not easy-to-guess_.

_Passwords should be impersonal and filled with upper and lower case letters, numbers, and symbols placed interchangeably_. Still, people seem to dislike putting in the effort to create such strong passwords and settle for the easy-to-remember ones like “123456789,” “picture1,” “12345678,” and “password,” among others. These may be easy to recall, but they are easier to decrypt and hence need to be avoided. Such weak passwords render [phishing prevention](/email/phishing-protection) measures powerless and result in the compromise of sensitive information.

And that’s the week that was.

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

Brad Slavin 

General Manager

General Manager at DuoCircle. Product strategy and commercial lead across the email security portfolio.

## Secure your email infrastructure

Protect, authenticate, and deliver. Contact our team to find the right solution.

[Contact Sales](/contact/) [Explore Products](/products/) 

Share this article

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-48-of-2020%2F) [ ](https://twitter.com/intent/tweet?text=Cyber%20Security%20News%20Update%2C%20Week%2048%20of%202020&url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-48-of-2020%2F) [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-48-of-2020%2F) Copy 

Related Articles

- [ ![spam](https://media.mailhop.org/duocircle/images/2021/07/sender-policy-framework-7535.jpg)  Alert: Fix SPF & DKIM Settings For Your Email Forwarding Set Up Through Microsoft o365 SMTP Server Or Your Emails May End Up In Spam News ](/blog/announcements/alert-fix-spf-dkim-settings-for-your-email-forwarding-set-up-through-microsoft-o365-smtp-server-or-your-emails-may-end-up-in-spam/)
- [ ![Spam](https://media.mailhop.org/duocircle/images/2016/05/spf-permerror-3256.jpg)  April Spam Filtering Uptime Report News ](/blog/announcements/april-spam-filtering-uptime-report/)
- [ ![Spam Filtering](https://media.mailhop.org/duocircle/images/2023/02/spf-record-tester-7226.jpg)  Changes to Spam Filtering Technology News ](/blog/announcements/changes-to-spam-filtering-technology/)
- [ ![Cyber Security](https://media.mailhop.org/duocircle/images/2020/01/spf-permerror-7312.jpg)  Cyber Security News Update, Week 1 of 2020 News ](/blog/announcements/cyber-security-news-update-week-1-of-2020/)

## Related Articles

[  News 3m  Alert: Fix SPF & DKIM Settings For Your Email Forwarding Set Up Through Microsoft o365 SMTP Server Or Your Emails May End Up In Spam  Jul 20, 2021 ](/blog/announcements/alert-fix-spf-dkim-settings-for-your-email-forwarding-set-up-through-microsoft-o365-smtp-server-or-your-emails-may-end-up-in-spam/)[  News 1m  April Spam Filtering Uptime Report  May 4, 2016 ](/blog/announcements/april-spam-filtering-uptime-report/)[  News 2m  Changes to Spam Filtering Technology  Feb 8, 2023 ](/blog/announcements/changes-to-spam-filtering-technology/)[  News 4m  Cyber Security News Update, Week 1 of 2020  Jan 3, 2020 ](/blog/announcements/cyber-security-news-update-week-1-of-2020/)

```json
{"@context":"https://schema.org","@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}],"sameAs":["https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.facebook.com/duocirclellc","https://www.g2.com/products/phish-protection-by-duocircle/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://support.duocircle.com"},"knowsAbout":["Email Security","Email Authentication","SPF","DKIM","DMARC","Phishing Protection","Spam Filtering","SMTP Relay","Email Deliverability","Email Forwarding"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DuoCircle LLC","url":"https://www.duocircle.com","description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cyber Security News Update, Week 48 of 2020","description":"Cybersecurity is a dynamic domain, and our ignorance fuels the attacks and malicious schemes of adversaries.","url":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-48-of-2020/","datePublished":"2020-11-28T14:41:55.000Z","dateModified":"2025-05-15T11:46:30.000Z","dateCreated":"2020-11-28T14:41:55.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-48-of-2020/"},"articleSection":"announcements","keywords":"","wordCount":905,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2020/11/spf-record-tester-7482.jpg","caption":"Cyber Security","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":2,"name":"News"},{"@type":"ListItem","position":3,"name":"Cyber Security News Update, Week 48 of 2020","item":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-48-of-2020/"}]}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://www.duocircle.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":3,"name":"News","item":"https://www.duocircle.comundefined"},{"@type":"ListItem","position":4,"name":"Cyber Security News Update, Week 48 of 2020","item":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-48-of-2020/"}]}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cyber Security News Update, Week 48 of 2020","description":"Cybersecurity is a dynamic domain, and our ignorance fuels the attacks and malicious schemes of adversaries.","url":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-48-of-2020/","datePublished":"2020-11-28T14:41:55.000Z","dateModified":"2025-05-15T11:46:30.000Z","dateCreated":"2020-11-28T14:41:55.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-48-of-2020/"},"articleSection":"announcements","keywords":"","wordCount":905,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2020/11/spf-record-tester-7482.jpg","caption":"Cyber Security","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```
