• Skip to main content
  • Skip to header right navigation
  • Skip to site footer
  • X
  • Facebook
  • YouTube
  • LinkedIn
Support
Screen Connect
Pay Online
SWK logo.

SWK Technologies

Software Solutions & Services

  • Accounting & ERP Software
      • Acumatica Cloud ERP
        • Overview
        • Construction
        • Distribution
        • Field Service
        • Financial Management
        • Manufacturing
        • Professional Services
        • Project Accounting
        • Retail-Commerce
      • Sage Intacct
        • Overview
        • Construction and Real Estate (CRE)
        • Distribution Operations for Sage Intacct
        • Financial Services
        • Healthcare
        • Manufacturing Operations for Sage Intacct
        • Nonprofits
        • Professional Services
        • Sage Intacct Payroll powered by ADP
      • Sage 100
        • Overview
        • Business Intelligence
        • Core Accounting & Financials
        • Distribution
        • Manufacturing
        • Payroll
        • Sage 100 Contractor
      • More Accounting Products
        • QuickBooks
        • Sage 50
        • Sage 300
        • Sage 500
        • Sage BusinessWorks
      • ERP Add-ons
        • ADP Workforce Now
        • Altec
        • Avalara
        • AvidXchange
        • BigCommerce
        • CIMCloud
        • Cloud Hosting
        • DataSelf
        • Fortis
        • FreightPOP
        • Microsoft 365
        • Netstock
        • Ottimate
        • Sage Fixed Assets
        • Sage HRMS
        • Sage Intacct Payroll powered by ADP
        • Savant WMS
        • Scanco
        • ScanForce
        • Solver
        • SPS Commerce
        • Velixo
        • Workforce Go!
      • More ERP Add-ons
        • Bizinsight
        • Concur
        • Crystal Reports
        • Fraxion
        • Fusion RMS
        • FYISoft
        • JobOps
        • KnowledgeSync
        • Lockstep Collect
        • Nectari
        • Pacejet
        • Planning Maestro
        • Sage CRM
        • Sage Intelligence
        • Scissortail HCM
        • Service Pro
        • ShipStation
        • Shopify
        • Starship
        • Sugar CRM
        • Time & Billing Pro
        • Timekeeper
        • True Sky
      • Industries
        • Construction
        • Distribution
        • Financial Services
        • Healthcare
        • Manufacturing
        • Nonprofit
        • Professional Services
        • Retail
  • Managed Cloud Services
      • Managed Services
        • IT Support
        • Cloud Hosting
        • Infrastructure-as-a-Service
        • Managed Cloud Services
        • vCIO
        • Acumatica Infrastructure
      • IT Solutions
        • Backup & Continuity
        • Cybersecurity
        • Email Hosting
        • Microsoft 365 Services
        • Virtualization
  • Consulting & Implementation
    • Business Technology Consulting
    • eCommerce
    • Financing
    • Human Capital Management
    • Managed Cloud & IT Services
    • Partner Program
    • Software Development
    • Software Implementation
  • Resources
    • Help Desk
    • Blog Posts
    • Payments Portal
    • Webinars
    • YouTube Channels
    • Acumatica Resources
    • Sage Intacct Resources
    • Sage 100 Resources
    • IT Resource Pages
  • About
    • About SWK
    • Awards & Recognition
    • Life@SWK
    • Careers
    • Success Stories
    • SWK Gives
  • Contact
    • Contact Us
    • Support
    • Our Locations

SWK Cybersecurity News Recap December 2021

December 14, 2021 by Hector

Home » Blog » SWK Cybersecurity News Recap December 2021

december-2021-cybersecurity-news-recap-SWK-technologies-logj4-java

As if October and November were not already filled with stories of cyber incidents, December has shaped up to be possibly the biggest month for cybersecurity news for all of 2021. This is because besides the general and perhaps too common reporting on ransomware attacks, one of the most severe and potentially widespread exploits was discovered affecting the popular Java programming language. This means that millions upon millions of computer applications are susceptible to this vulnerability, making this a priority threat.

Log4j Puts Java Apps at Risk in Possibly Biggest Vulnerability Ever

Log4j is a Java logging tool supported by the Apache Software Foundation, a nonprofit devoted to open-source projects. In early December 2021, Alibaba Cloud’s security team informed Apache that they had discovered a remote code execution (RCE) vulnerability in Log4j version 2 (CVE-2021-44228 AKA Log4Shell), prompting the organization to quickly send out a public security advisory. RCE exploits essentially allow hackers to leverage a bug to bypass permission controls and access the system externally using built-in remote protocols, eventually taking over the entire machine.

Several big-name services and software brands have already been confirmed to be impacted by the Log4j exploit, including Amazon Web Services (AWS), IBM, Cisco, Microsoft and Google Cloud. Security researchers have already found evidence of the vulnerability being utilized “in the wild,” and some observers have noticed activities around it spiking once the news became public. Apache has released a fix with version 2.15.0, and is still continuing to update the application, but experts predict that this bug will affect cloud apps for some time.

Here are some resources a few of the enterprise vendors affected have posted:

  • IBM
  • Cisco
  • Microsoft
  • Google
  • Amazon

Windows 8 and Windows 7 Will Lose Compatibility with OneDrive

Users still on Windows 7, Windows 8 and Windows 8.1 machines will cease receiving updates to OneDrive January 1, 2022, and will lose the ability to synchronize with the greater Office 365 cloud by March 1, 2022. Some readers will no doubt recognize this latter date right away – it is the same deadline for switching to the increased pricing for several Microsoft 365 for Business licenses, as well as for month-to-month M365 plans. This seems to be part of Microsoft’s general push towards migrating customers from legacy systems – both software and hardware – to newer generations, with more up to date security controls.

Despite many warnings and even a few proof-of-concept examples in the wild of the vulnerability of these legacy operating systems to cyber attack, there are still many users remaining on these outdated OSes, putting connected networks in danger. The risk of a wormable attack only grows with the extension of endpoints within the cloud, as OneDrive and SharePoint integrate every workstation on the organizational license to a shared database. Microsoft is essentially forcing migration and ultimately a better standard of cybersecurity, albeit at the expense of users who cannot move to Windows 11 without performing a costly hardware upgrade.

cyber-security-news-logj4-onedrive-windows-7-8-hacking-ransomware

Ransomware Increases Over Holidays & Weekends

Though it is technically old news, a warning from the FBI and the DHS’s Cybersecurity and Infrastructure Agency (CISA) on cyber attacks increasing during holidays – and weekends – is only proving even more true as incidents ramp up in the time between Thanksgiving, Chanukah (Hanukkah), Christmas and New Year’s Eve (see list below). Similar spikes were seen during past celebrations and office closings, especially during extended holiday weekends such as Mother’s Day, Memorial Day and the Fourth of July. This parallels the growing commercialization of the malware ecosystem, with ransomware-as-a-service (RaaS) affiliates increasingly behind most attacks, and reflects the move from big sophisticated campaigns back to easier “drive-by” hits against a greater volume of unsuspecting targets.

US & Allies Still Pursuing Ransomware Gangs

In the aftermath of the attacks on Colonial Pipeline, JBS, Kaseya and others – and the subsequent takedown of REvil and many affiliates as direct consequences of these incidents – the momentum has continued in the hunt for ransomware gangs. More arrests have been made by the seemingly ad hoc multinational coalition, however, even some of the unmasked perpetrators are still beyond these nations’ collective reach and many of the others remain hidden. Here are several updates on the latest related stories:

  • The US State Department offered an up to $10 million reward for information on DarkSide group leaders, and up to $5 million for affiliates
  • The Daily Mail tracked one of the Russian affiliates of REvil indicted by the US Department of Justice to a mansion in Siberia, where he is apparently living with impunity from local law enforcement
  • NSA Directory and head of US Cyber Command, General Nakasone, confirms that the US military is actively pursuing, gathering intelligence on, and taking action against ransomware gangs
  • Canada, Ireland and other countries confirm operations against local ransomware affiliates in their jurisdiction
  • Romanian authorities made another arrest of a local ransomware affiliate, suspected of hitting several targets worldwide
  • US and Canadian law enforcement arrest a Canadian ransomware affiliate on multiple charges from both sides of the border

List of Recent Cyber Incidents & Related Events

There have been many, many confirmed breaches throughout recent months and likely many more that went unreported. Here is a quick list of some of the top cyber incidents along with additional insights put together by researchers, as well as a few actions taken to combat the attackers:

  • The owners of the Robinhood trading app reported that their database was breached, exposing the data of 7 million users
  • Several Virginia legislative agencies were forced to shut down their computer systems after a ransomware attack was confirmed
  • Car manufacturer Volvo gave public notice of a data breach, but would not confirm if the incident was related to ransomware
  • New York City’s MTA shut down after its timekeeping software provider suffered a ransomware breach
  • A ransomware gang claimed it successfully hacked the NRA
  • NJ-based food importer Atalanta reveals it was victim of a breach in July 2021
  • A report revealed that over 92% of all computer vulnerabilities can be used for ransomware
  • Microsoft seizes 29 domains linked to nation-state cyber attacks

Using the Lessons of 2021 to Improve Cybersecurity in 2022

Though 2020 and 2021 have presented daunting challenges to cybersecurity, the knowledge gained can help your organization better prepare yourselves for the obstacles of the new year. There are still several initiatives you can take to secure your data and systems at the ground level, and improve your cybersecurity stance for 2022 – watch our webinar to learn more.

Sign up to watch our webinar here, and discover how to gain a better understanding of and ultimately improve your cybersecurity going into 2022.


Category: Blog, Cybersecurity, IT Services

Sidebar

Recent Posts

  • How a Recreational Play Structure Builder Laid the Groundwork for Their Lasting Growth
  • Why Financial Services Firms Need Phishing Defense
  • Acumatica General Ledger Training – Key Tips & Tricks
  • Sage Intacct vs. Sage 500: Best ERP for CFOs and Financial Leaders
  • What is the Relationship Between Cybersecurity and Cyber Insurance? 
  • Guide for Sage Intacct Credit Card Management
  • Minimize Tariff Impacts on Your Technology Costs in the Cloud

Categories

Ready to take the next step?

Contact SWK today to get in touch with one of our experts. We’ll go over your business challenges and unique needs, and see where you can unlock new value from your technology and make your operations run easier.

Get in touch!

Our Latest Posts

Recreational Play Structure

How a Recreational Play Structure Builder Laid the Groundwork for Their Lasting Growth

Read moreHow a Recreational Play Structure Builder Laid the Groundwork for Their Lasting Growth
Hands holding an open silver padlock over a laptop keyboard, symbolizing cybersecurity vulnerabilities that phishing attacks exploit in financial services firms

Why Financial Services Firms Need Phishing Defense

Read moreWhy Financial Services Firms Need Phishing Defense
Black laptop displaying Acumatica General Ledger journal transactions screen on a desk with coffee mug and notepad, showcasing the financial management interface on a computer in an office setting.

Acumatica General Ledger Training – Key Tips & Tricks

Read moreAcumatica General Ledger Training – Key Tips & Tricks

Awards and Accreditations

Top work places in NJ 2020.
Acumatica the Cloud ERP gold certified partner.
The Gold Microsoft partner logo on a black background.
Sage business partner diamond logo.
Dell Technologies Gold Partner
Sage tech partner logo.

Stay in the know!

Subscribe for exclusive ERP, process automation, IT and cybersecurity news.

Twitter
  • Facebook
  • YouTube
  • LinkedIn

Home
About
Contact

Support
Screen Connect
Pay Online
Downloads

SWK logo.

Headquarters:
120 Eagle Rock Ave, Suite 330
East Hanover, NJ 07936

Contact:
info@swktech.com
(877) 979-5462

Copyright © 2025 · SWK Technologies, Inc. · All Rights Reserved · Terms of Use · Privacy Policy