Computer Security US Blog

Computer Security News and Insights

Social Engineering Attacks

Social Engineering Attacks: How They Actually Work

The Phone Call That Cost One Company $25 Million In early 2024, a finance worker at engineering firm Arup was tricked into transferring $25 million after a video call with what appeared to be the company's CFO. Every person on that call was a deepfake. The attackers never

Carl B. Johnson Sep 08, 2026 5 min read
Fake Identity Website

Fake Identity Website Scams: How to Spot and Stop Them

A Single Fake Identity Website Cost One Company $23 Million In early 2024, a finance employee at Arup, a British engineering firm, was tricked into transferring approximately $25 million after threat actors used a deepfake video call combined with a fake identity website that impersonated senior executives. The site looked

Carl B. Johnson Sep 07, 2026 5 min read
Insider Threat Examples

Insider Threat Examples: Real Breaches That Cost Millions

In 2022, a former Amazon engineer named Paige Thompson was convicted for the Capital One breach that exposed over 100 million customer records. She wasn't an outside hacker who cracked through a firewall. She was an insider — someone with knowledge of the cloud infrastructure who exploited a misconfigured

Carl B. Johnson Sep 07, 2026 5 min read
DNS Spoofing Attack

DNS Spoofing Attack: How Hackers Hijack Your Traffic

In April 2022, researchers at Tsinghua University and the University of California disclosed a new class of DNS cache poisoning vulnerabilities affecting major DNS software. The attack, dubbed "MaginotDNS," could redirect users from legitimate banking and email sites to pixel-perfect phishing pages — and the victims never saw a

Carl B. Johnson Sep 07, 2026 6 min read
Incident Response

How to Respond to a Cyberattack: A Step-by-Step Guide

In February 2024, Change Healthcare — one of the largest health payment processors in the U.S. — was hit by a ransomware attack that disrupted claims processing for thousands of hospitals, pharmacies, and clinics nationwide. UnitedHealth Group, its parent company, later confirmed the breach affected roughly 100 million individuals. The company

Carl B. Johnson Sep 06, 2026 6 min read
Trojan Horse Malware

Trojan Horse Malware: What It Really Does to Networks

In 2023, the FBI's Internet Crime Complaint Center reported over $12.5 billion in losses from cybercrime — and a staggering percentage of those incidents started with a single piece of software pretending to be something it wasn't. Trojan horse malware remains one of the most effective

Carl B. Johnson Sep 05, 2026 5 min read
Phishing Scams

What Is a Phishing Scam? A Security Pro's Real Guide

In 2023, the FBI's Internet Crime Complaint Center received over 298,000 phishing complaints — making it the most reported cybercrime category for the fifth consecutive year. I've investigated phishing incidents at organizations of every size, from ten-person startups to Fortune 500 companies. The pattern is always

Carl B. Johnson Sep 05, 2026 5 min read