ClearView IT Blog

ClearView IT has been serving the Phoenix area since 2005, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

$100 Million Hacking Incident Shows that No Company is Immune

$100 Million Hacking Incident Shows that No Company is Immune

It’s a tough lesson to learn, but almost any company is susceptible to cyber-attacks that take advantage of any security setup’s weakest link: the people involved. This lesson was most recently learned the hard way by two unnamed tech companies that fell victim to a phishing campaign that was allegedly run by Evaldas Rimasauskas, a Lithuanian man accused of stealing $100 million from them.

As Acting United States Attorney Joon H. Kim said, “This case should serve as a wake-up call to all companies--even the most sophisticated--that they too can be victims of phishing attacks by cyber criminals.” These words are only made more impactful by the fact that all the public knows about the two companies is that one of them is a “multinational online social media company” and the other a “multinational technology company.”

Rimasauskas is accused of orchestrating a phishing scheme that intended to sway his supposed victims into wiring large sums of money into accounts that he controlled in Latvia and Cyprus. According to the U.S. Department of Justice, this was accomplished by establishing a company in Latvia with the same name as a computer hardware manufacturer based in Asia, and telling the targeted companies that utilized the Asian computer manufacturer’s services that there were still balances to be paid. Once these funds were transferred, it seems that Rimasaukas would quickly disperse them into numerous other global bank accounts.

Due to his alleged use of these practices to defraud the two plaintiff companies, Rimasauskas faces a count of wire fraud potentially worth 20 years in prison, as well as three counts of money laundering, also worth a maximum of 20 years each, along with a single count of aggravated identity theft that carries a mandatory minimum sentence of two years in prison.

This story has two major takeaways: the first has to do with the victims of this scam. Although they are not named specifically, they are specified as multinational. This means that they are almost certainly very large companies, and the fact that they have elected to remain anonymous suggests that they are easily recognizable. Companies of that scale have the means and opportunity to protect their assets, but despite these companies most likely having these protections in place, Rimasauskas (or whomever was responsible) still managed to bypass them by exploiting the human element these companies had in place.

This only goes to show that every company, regardless of its size, is only as secure as its weakest security feature allows. When the company can be described as small or medium-sized, it becomes even more important to ensure that its defenses are universally held to high standards, especially when the human element is involved. To combat this, you must be sure that your staff knows the ways to ensure company security by heart. In essence, you have to be sure that your workforce isn’t any less security-oriented than the rest of your security is.

The second takeaway has to do with the methodology used to extract so many funds from the defrauded businesses. Hackers are human, after all, and as a result will more than likely take the easiest path to reach their goals. For every attacker that prefers to go after a few large, high-value targets, there are plenty that don’t mind having their ill-gotten gains coming in from many more, much smaller targets. If given the choice between figuring out how to work around a company’s cybersecurity or moving on to find an easier target, the hacker in question could very well move along and leave that company untouched.

However, if all the hacker has to do is write a few deceptive emails and set up a few bank accounts, they are much more likely to stay with that target, take what they can, and move on to another unfortunate company to do the same.

Therefore, the lesson here is that the basics of cybersecurity can’t be ignored in favor of just having enterprise-level security solutions in place. Very rarely are companies breached due to a highly advanced-effort, more often, it’s because there was an overlooked issue that the perpetrator took advantage of.

At ClearView IT, we know to look at the little details as well as the big picture. To talk about improvements to your IT, including its security, give us a call at 866-326-7214.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Saturday, 05 July 2025
If you'd like to register, please fill in the username, password and name fields.

Captcha Image

Tag Cloud

Tip of the Week Security Technology Best Practices Business Computing Hackers Productivity Software Network Security Privacy Data Cloud Business User Tips IT Support Internet Hardware Innovation Malware Email Hosted Solutions Efficiency Workplace Tips Computer Microsoft Google Collaboration Android Phishing Cybersecurity Business Management IT Services Backup Data Backup Ransomware communications Smartphone Small Business Upgrade Smartphones Microsoft Office Network Mobile Devices Data Recovery Communication Managed IT Services Quick Tips Productivity Social Media VoIP Users Mobile Device Automation Tech Term Facebook Windows 10 Business Continuity Passwords Holiday Covid-19 Disaster Recovery IT Support Browser Windows 10 Apps Managed Service Cloud Computing Outsourced IT Miscellaneous Managed Service Provider Remote Work Data Management Internet of Things Saving Money Operating System Government Managed IT services Networking Windows Workplace Strategy Gadgets Artificial Intelligence WiFi App Server Virtualization Blockchain Spam Remote Mobile Device Management Information Bandwidth Business Technology Encryption Gmail Office Budget Two-factor Authentication Office 365 Employee/Employer Relationship Apple History Information Technology Analytics Big Data Access Control Wi-Fi Data Security Conferencing BDR Cybercrime Health Remote Computing Save Money Help Desk Hacking Patch Management Hacker Remote Monitoring Cost Management Employer-Employee Relationship Vendor Compliance Voice over Internet Protocol IT Management Training Document Management IBM Hiring/Firing Data storage Managed Services Outlook Website Password Data loss BYOD Computing Project Management Vendor Management Money Hard Drive Search... Customer Service Best Practice Unified Threat Management Firewall Applications Retail Legal Alert Augmented Reality Word Mobile Office Vulnerabilities User Monitoring Free Resource Healthcare VPN Router How To Travel Virtual Reality Update Social Engineering Cryptocurrency The Internet of Things Chrome Black Market YouTube Cleaning Robot Laptop Paperless Office Antivirus Mobile Computing Maintenance Marketing Running Cable Windows 11 Social Sports DDoS Data Breach Websites Twitter Storage SaaS Meetings Mobility Law Enforcement End of Support iPhone Remote Workers Printer Cortana Google Maps Education Scam Windows 7 Content Filtering Multi-factor Authentication Notifications Virtual Private Network Unified Communications Processors Google Docs Current Events Bluetooth Saving Time Tech Terms Distributed Denial of Service Solutions Managed IT Office Tips Memory Computers Bitcoin Digital Private Cloud Images 101 Integration Display Telephone Taxes PowerPoint Wireless Technology Politics Administration Employees Settings Excel Machine Learning eWaste Presentation Avoiding Downtime Specifications Physical Security Holidays Downtime Solid State Drive IT Consultant Safety Customer Relationship Management Cooperation Virtual Assistant Chromebook Video Conferencing Drones Co-Managed IT Virtual Desktop Experience Start Menu Entertainment Computer Care Virtual Machines Downloads Automobile Computer Repair Vulnerability Processor Professional Services How To Software as a Service Microchip Disaster Data Protection Flexibility Managed Services Provider Lithium-ion battery Identity Theft HIPAA Hack Cables Entrepreneur Google Apps LiFi Proxy Server Documents Emails Knowledge Application Fake News Corporate Profile Scalability Telework Administrator Business Intelligence Employer Employee Relationship Smartwatch Text Messaging Communitications Proactive IT Service Level Agreement Television Microsoft 365 Computing Infrastructure Telephony Device security Point of Sale Cabling Bring Your Own Device Business Owner Procurement Management Securty Wireless Headphones Microsoft Excel Tablet G Suite FinTech Tracking CES Tech IT Assessment Music Going Green Mouse Domains Business Cards Shortcuts VoIP Supply Chain Management Error Value Organization Bookmark Cyber security Web Server Botnet Digital Payment Term Smart Devices Download SharePoint Piracy Be Proactive HTML Worker Rental Service Inbound Marketing Remote Working Micrsooft AI Flash Browsers Trend Micro Nanotechnology Public Speaking Access Public Cloud Digital Security Cameras Telephone Systems Google Play Electronic Health Records Business Growth Streaming Media Upload Transportation Software License Workplace Strategies Time Management Wasting Time Keyboard Social Network Data Analysis eCommerce Screen Reader Audit Modem Hard Drives Spyware Electronic Payment intranet File Sharing Videos Banking Security Cameras Surveillance Google Wallet Trends Mobile Technology Customer Resource management Managing Costs Wireless Devices Redundancy Shortcut Messenger Deep Learning Phone System Fileless Malware SSID Heating/Cooling Tip of the week Cache Environment Company Culture Smart Technology Unified Threat Management Social Networking Workers Media Business Metrics Development Hosted Solution Windows XP Gamification Employer/Employee Relationships Telephone System Virtual Machine Regulations Books CCTV Reviews Language Directions Optimization Society Backup and Disaster Recovery Printing Desktop Touchscreen 2FA Content Teamwork Electronic Medical Records Hypervisor Visible Light Communication Accountants Emergency Reading Computer Malfunction Data Storage Monitors Computer Accessories Shopping Windows 8 Database Medical IT Vendor Mangement Supply Chain Samsung Paperless SQL Server Health IT Licensing Advertising Staffing Equifax Uninterrupted Power Supply Relocation Webcam PCI DSS Displays Gig Economy Work/Life Balance Humor Tech Support Tactics IP Address Hard Drive Disposal Business Mangement Workplace Tablets Business Communications Internet Service Provider Username Azure Managed IT Service Startup Freedom of Information Regulations Compliance Supercomputer Navigation Memes Addiction Google Calendar email scam In Internet of Things Mobile Security Scams Virus Human Resources Hacks Troubleshooting Net Neutrality Network Congestion User Tip Recovery Legislation Competition News Reliable Computing Motion Sickness Financial Data Writing Risk Management Evernote IT Network Management Comparison Google Drive

Blog Archive

Recent Comments

No comments yet.

Interested In A Free Consultation?