Computer Security US Blog

Computer Security News and Insights

Cyber Hygiene

What Is Cyber Hygiene? The Daily Habits That Stop Breaches

A Billion Records Exposed Because Someone Skipped the Basics In 2024, the National Public Data breach exposed an estimated 2.9 billion records — Social Security numbers, addresses, phone numbers — all because basic security controls failed. Not a sophisticated zero-day exploit. Not a nation-state attack. Just poor fundamentals. That's

Carl B. Johnson Aug 31, 2026 5 min read
Cybersecurity Best Practices

Cybersecurity Best Practices for Employees in 2026

One Click Cost MGM Resorts $100 Million In September 2023, a threat actor called Scattered Spider called MGM Resorts' IT help desk, impersonated an employee, and gained access to internal systems. The result? Over $100 million in losses, days of disrupted operations, and a data breach affecting millions of

Carl B. Johnson Aug 31, 2026 5 min read
Shoulder Surfing Attack

Shoulder Surfing Attack: The Low-Tech Threat You Ignore

A financial analyst at a Fortune 500 company typed her corporate credentials into a laptop at Chicago O'Hare. The man sitting two seats behind her wasn't reading the news on his phone — he was recording her screen. Within 48 hours, the attacker used those stolen credentials

Carl B. Johnson Aug 31, 2026 5 min read
Phishing Email

Phishing Email Attacks: What Actually Works in 2026

One Phishing Email Cost This Company $100 Million In 2023, MGM Resorts was brought to its knees — not by a sophisticated zero-day exploit, but by a phishing email and a follow-up phone call. Threat actors from the Scattered Spider group used social engineering to trick an IT help desk employee,

Carl B. Johnson Aug 30, 2026 6 min read
Multi-Factor Authentication

Multi-Factor Authentication Setup: A Practical Guide

In March 2024, a threat actor breached a major healthcare provider's network using a single compromised password — no second factor required. The organization had purchased MFA licenses two years prior but never enforced enrollment. That gap cost them months of remediation and exposed the records of over 100,

Carl B. Johnson Aug 30, 2026 5 min read
Cybersecurity for Financial Services

Cybersecurity for Financial Services: A 2026 Guide

In 2023, a single MOVEit vulnerability gave threat actors access to data from over 2,500 organizations — and financial institutions were among the hardest hit. Banks, credit unions, wealth management firms, and insurance companies collectively reported hundreds of millions of compromised records. If you work in finance, you already know

Carl B. Johnson Aug 29, 2026 6 min read
Cyber Incident Reporting

How to Report a Cyber Incident: A Step-by-Step Guide

In 2023, the FBI's Internet Crime Complaint Center received over 880,000 complaints with potential losses exceeding $12.5 billion — a 22% increase in losses over the previous year. And those are just the incidents that were actually reported. In my experience, for every cyber incident that gets

Carl B. Johnson Aug 29, 2026 5 min read