Ptechhub
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
PtechHub
No Result
View All Result

Why Insider Threats Are Worse Than You Think: CrowdStrike Services Chief

CRN by CRN
February 7, 2025
Home News
Share on FacebookShare on Twitter


As insider attacks get more insidious, partners have major opportunities to help customers adapt to the new threats, CrowdStrike’s Thomas Etheridge tells CRN.

While threats from internal employees have been increasingly taken seriously in recent years, insider threats continue to evolve and are now more sophisticated and frequent than many organizations realize, according to CrowdStrike’s Thomas Etheridge.

Risk from insiders, Etheridge said, has moved “to a whole different level” with recently discovered campaigns from groups such as Famous Chollima. This threat actor tied to North Korea has infiltrated U.S. tech companies through a brazenly direct route — by inventing fictional “employees” and getting them hired for remote positions at the companies.

[Related: CrowdStrike’s Adam Meyers On ‘Up-Leveled’ Hacking By China, Threats To MSPs]

In August, CrowdStrike revealed that Famous Chollima had managed to get its fake workers hired at more than 100 companies.

“It really is eye-opening to see the advancement of some of these threats,” said Etheridge, chief global professional services officer at CrowdStrike. “These threat actors are now able to simply be provisioned access to the infrastructure that they’re trying to take advantage of, versus having to break in.”

Without a doubt, he said, “that’s pretty scary.”

Beyond these particular attacks, insider threats in general are also now a more-prevalent phenomenon than many organizations might realize. Etheridge pointed to Ponemon Institute research showing that the majority of surveyed organizations — 71 percent — were impacted by more than 20 insider-related incidents in 2023. Some reported seeing more than 40 insider incidents that year.

For organizations with global and remote workforces, it’s not hard to grasp why these issues are so widespread now. “Being able to monitor and understand where activity is good and beneficial and productive activity — versus what might be considered malicious — is getting harder and harder,” Etheridge said.

The ubiquitous use of SaaS-based applications is also a factor, given that it can be challenging to access logging and data from SaaS, he noted.

The advancement of insider threats prompted CrowdStrike to recently launch its new Insider Risk Services offering, which utilizes CrowdStrike threat intelligence and incident response capabilities to help counter insider attacks.

The services are ideal for delivery in tandem with services from partners, Etheridge said. While CrowdStrike can point out some of the gaps for organizations and share intelligence, many partners are “in the best position to help organizations actually take those gaps and fill them,” he said.

That can include helping organizations with developing insider threat programs and policies, and making sure that the customers are doing the right kind of auditing and monitoring for insider-related risks, Etheridge said.

Ultimately, when it comes to defending against insider threats of all types, CrowdStrike is looking to work with partners to “really take organizations to the next level and help them operationalize that,” he said.



Source link

Tags: CybersecurityEndpoint Securitynetwork security
CRN

CRN

Next Post
Tech companies brace after UK demands back door access to Apple cloud | Computer Weekly

Tech companies brace after UK demands back door access to Apple cloud | Computer Weekly

Recommended.

Ericsson announces participation in the OCUDU Ecosystem Foundation to advance open, secure, and flexible network innovation

Ericsson announces participation in the OCUDU Ecosystem Foundation to advance open, secure, and flexible network innovation

March 1, 2026
Centric Software Launches Breakthrough Mobile PLM to Power Faster, More Agile Product Creation from Anywhere and Anytime

Centric Software Launches Breakthrough Mobile PLM to Power Faster, More Agile Product Creation from Anywhere and Anytime

July 28, 2025

Trending.

Chai AI Announces Upcoming Rollout of Apple and Google Age Verification APIs to Enhance Platform Safety

Chai AI Announces Upcoming Rollout of Apple and Google Age Verification APIs to Enhance Platform Safety

March 10, 2026
Huawei lanceert Next Generation FAN-oplossing

Huawei lanceert Next Generation FAN-oplossing

March 7, 2026
Baidu Announces Fourth Quarter and Fiscal Year 2025 Results

Baidu Announces Fourth Quarter and Fiscal Year 2025 Results

February 26, 2026
Half of Google’s software development now AI-generated | Computer Weekly

Half of Google’s software development now AI-generated | Computer Weekly

February 5, 2026
How Ceros Gives Security Teams Visibility and Control in Claude Code

How Ceros Gives Security Teams Visibility and Control in Claude Code

March 19, 2026

PTechHub

A tech news platform delivering fresh perspectives, critical insights, and in-depth reporting — beyond the buzz. We cover innovation, policy, and digital culture with clarity, independence, and a sharp editorial edge.

Follow Us

Industries

  • AI & ML
  • Cybersecurity
  • Enterprise IT
  • Finance
  • Telco

Navigation

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Subscribe to Our Newsletter

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Copyright © 2025 | Powered By Porpholio

No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs

Copyright © 2025 | Powered By Porpholio