Drones, or unmanned aerial vehicles (UAVs), continue to grow across various industries, including government and public services. Counties increasingly leverage drones for tasks such as surveying land, inspecting infrastructure, monitoring […]
As cybersecurity measures improve, cybercriminals continue adapting. One of the fastest-growing threats is SIM-swapping, a form of social engineering that allows attackers to take control of a victim’s phone number and access sensitive accounts. This can lead to financial theft, data breaches, and unauthorized access to company networks.
Attackers trick mobile carriers into transferring a victim’s phone number to a new SIM card, allowing them to intercept calls, text messages, and MFA codes. With this access, they can reset passwords, steal funds, and infiltrate company systems.
SIM-swapping attacks typically follow these steps:
Detecting a SIM-swap attack early is key to minimizing damage. A sudden loss of mobile service, unexpected login attempts, or unauthorized transactions may signal an attack. Alerts from your mobile carrier about unapproved account changes or difficulty accessing accounts due to altered passwords or unrecognized MFA requests are also red flags. Identifying these signs quickly allows immediate action to secure accounts and prevent further harm.
Counties and individuals can take steps to prevent and mitigate SIM-swapping attacks:
If you suspect a SIM-swap attack, act immediately. Contact your mobile carrier to report unauthorized changes and request an account freeze. Change passwords for critical accounts, prioritizing email, banking, and work-related logins. Notify financial institutions to prevent fraudulent transactions and limit financial loss. Report the incident to your IT team and cybersecurity professionals, and monitor your accounts for suspicious activity in the following weeks to mitigate lingering threats.
Regular cybersecurity updates are vital to an effective security strategy. They help keep counties informed, vigilant, and prepared to respond to threats. CTSI recommends counties implement these essential cybersecurity controls to help manage their cyber exposures. This will safeguard and reduce digital vulnerabilities at the county level and assist in obtaining coverage with higher limits and lower premiums for CAPP. For more information, contact CTSI at (303) 861-0507.
Drones, or unmanned aerial vehicles (UAVs), continue to grow across various industries, including government and public services. Counties increasingly leverage drones for tasks such as surveying land, inspecting infrastructure, monitoring […]
County employees often use their personal vehicles while conducting county business. Understanding how insurance coverage applies in these situations is essential for employees and county officials to manage risk effectively. […]