Latest / Tech Talks With Kinsoft / Brightspeed – Crimson Collective Claims 1M+ Records
Transcript
- 0:00Imagine waking up tomorrow morning, you know,
- 0:02pouring your coffee, casually scrolling through
- 0:04your phone, and you see a headline that just
- 0:07makes your stomach completely drop. Oh yeah,
- 0:10that absolute wave of dread. Right, because you
- 0:12find out that your physical home address, your
- 0:15personal phone number, and even like specific
- 0:17records of when an internet technician visited
- 0:20your house might be sitting on the dark web.
- 0:22Just being freely traded by cyber criminals.
- 0:25Exactly. But here's the truly agonizing part.
- 0:28Your Internet provider hasn't actually confirmed
- 0:31that a breach even happened. So you're just stuck.
- 0:33Right. You are just sitting there in this incredibly
- 0:36anxious limbo caught entirely between the shadowy
- 0:40hacker groups boast on the Internet and a, you
- 0:43know, a very slow moving corporate investigation.
- 0:46It is a profoundly unsettling position to find
- 0:49yourself in. And yet this isn't some hypothetical
- 0:51sci -fi scenario we're dreaming up. No, not at
- 0:53all. It is a very real situation currently facing
- 0:56potentially over a million people. And it represents
- 1:00a massive evolution in how cyber criminals are
- 1:02operating today. Welcome to Tech Talks with Kinsoft.
- 1:05Today we are acting as your personal guides through
- 1:08a stack of recent highly detailed cybersecurity
- 1:10reports from eSecurity Planet and Security Week.
- 1:13We've got a lot of ground to cover. We really
- 1:15do. Okay. Okay, so let's unpack this. We are
- 1:17going to examine the unverified yet highly publicized
- 1:20claims made recently against the broadband provider
- 1:23BrightSpeed. Yeah, that's a fascinating case
- 1:26study in modern extortion. It really is. And
- 1:29then we are going to trace the shadowy kind of
- 1:33domino effect track record. of the group claiming
- 1:35responsibility. The Crimson Collective. Which
- 1:38is a terrifying group to look into. Completely.
- 1:41And finally, we will explore a fundamental shift
- 1:43in cybercrime overall. A shift where hackers
- 1:46are, well, they're abandoning the old strategy
- 1:48of locking up your computer systems and moving
- 1:51entirely toward pure, unadulterated extortion
- 1:53based solely on stolen data. That shift, that
- 1:56is the most critical piece of this whole puzzle.
- 1:58Because as an industry, and frankly just as consumers
- 2:01who entrust these companies with our personal
- 2:03lives, we have to learn how to soberly assess
- 2:06these. unverified extortion claims. Right. Without
- 2:09just instantly panicking. Exactly. The mechanics
- 2:12of these attacks have completely changed, which
- 2:14means our reaction to them has to change as well.
- 2:16So let's start with the target and the claim.
- 2:18The company currently in the crosshairs is Brightspeed.
- 2:21Right. And for those who might not be familiar
- 2:24with them, they are a major fiber broadband.
- 2:28provider in the U .S. They serve over one million
- 2:31business and home users across 20 states. And
- 2:34they primarily operate in rural and suburban
- 2:37communities, right? Yep. Mostly rural and suburban.
- 2:39So we are talking about a critical piece of infrastructure
- 2:43for a massive number of people who rely on them
- 2:47for their daily connectivity, their remote work,
- 2:50running their small businesses, all of it. And
- 2:52the timeline of how this unfolded is really crucial
- 2:54to understanding this new playbook we mentioned.
- 2:56In early January 2026, Bright Speed announced
- 2:59they had opened an official investigation into
- 3:01a, quote, cybersecurity event. Cybersecurity
- 3:05event. Such a beautifully vague corporate phrase.
- 3:09It is. But notice the context there. This wasn't
- 3:12because their internal alarms were blaring about
- 3:14a locked network or offline servers, right? The
- 3:17business was still running. OK, so why did they
- 3:19announce it? Because on January 4th, the group
- 3:23calling itself Crimson Collective took to Telegram.
- 3:26Ah, Telegram. I mean, it really has become the
- 3:30modern town square for cyber extortionists to
- 3:32hold their little press conferences, hasn't it?
- 3:34It serves their purposes perfectly, yeah. On
- 3:37Telegram, Crimson Collective publicly claimed
- 3:39to have stolen data on more than one million
- 3:42Brightspeed customers. Wow. One million. And
- 3:45they didn't just, you know, type out a threatening
- 3:47text post. They shared screenshots and small
- 3:50data samples to act as purported proof of that
- 3:53conquest. And looking at our sources, the specific
- 3:56data they claim to hold is incredibly extensive.
- 3:59Yeah, it's not just emails. No, we are talking
- 4:01about full account master records. So this includes
- 4:03names, emails, phone numbers, billing addresses,
- 4:06and physical service addresses, plus all the
- 4:09account metadata. And it gets worse. It does.
- 4:11The group is alleging that customer payment histories
- 4:14and masked payment card details may have also
- 4:17been accessed, along with actual appointment
- 4:20and service order records. See, if those claims
- 4:22are true, it's a comprehensive profile of a household
- 4:25or a business. It really is. It's not just a
- 4:28digital footprint anymore. It is a physical one.
- 4:30I mean, when you leak physical service addresses
- 4:33and exact technician appointment times, you are
- 4:36bridging the gap between cyber vulnerability
- 4:38and real world physical. security. That is such
- 4:42a creepy thought. But, and I want to make sure
- 4:45we really emphasize this for anyone following
- 4:46this story, as of mid -January, Brightspeed had
- 4:50not confirmed any data exfiltration. Right. That's
- 4:53a huge point. They had not confirmed a compromise
- 4:55of their production systems. The claims remained
- 4:57entirely unverified. Yes, strictly allegations
- 4:59at this stage. Which brings me to an analogy
- 5:02that kind of helps me wrap my head around the
- 5:04absurdity of this tactic. This feels like a hostage
- 5:07situation where the kidnappers mail a Polaroid
- 5:09to a local news station, but the police haven't
- 5:12even confirmed that anyone is actually missing
- 5:13from their homes yet. Yeah, that's exactly what
- 5:16this is. So if the Crimson Collective just claims
- 5:18they have this data, why would a company even
- 5:20publicly respond or acknowledge it before their
- 5:23own forensic team confirms it? Because of the
- 5:25psychological pressure cooker these groups rely
- 5:27on, you have to look at the leverage Crimson
- 5:29Collective is trying to manufacture here. OK.
- 5:32They didn't quietly email an executive at bright
- 5:35speed and ask for a ransom to keep things quiet.
- 5:37That is the old way of doing things. Right. The
- 5:39old behind closed doors shakedown. Exactly. Instead,
- 5:42they sent this supposed proof of possession to
- 5:45independent cybersecurity experts who actively
- 5:48monitor the dark web. They posted on Telegram
- 5:51publicly warning that a much larger data sample
- 5:54would. So they are deliberately weaponizing public
- 5:59panic. Precisely. They want the media, the security
- 6:02researchers, and most importantly, the terrified
- 6:04customers to do all the heavy lifting of pressuring
- 6:08the company into a payout. Yep. The goal is to
- 6:11make the noise so absolutely deafening that the
- 6:14company feels compelled to pay up just to stop
- 6:16the bleeding of their reputation. But practically
- 6:19speaking, I want to play devil's advocate for
- 6:21a second here. Sure. How can a CEO just sit in
- 6:24their hands while their brand is getting dragged
- 6:26all over social media and the news? Because the
- 6:29sources note that class action lawsuits followed
- 6:32almost immediately after that Telegram post.
- 6:35Yes, they did. Just based on the rumor. I mean,
- 6:37if unverified claims alone trigger massive legal
- 6:40action of brand damage, isn't silence from the
- 6:44company just as damaging as the supposed breach?
- 6:47It's a brutal dilemma for sure. But giving in
- 6:50to the panic is exactly what the attackers are
- 6:52banking on. This is why it is so critically important
- 6:55for organizations and for you listening to this
- 6:57to learn how to soberly assess these situations.
- 7:00Sober assessment over panic. Always. Because
- 7:02attackers exaggerate. They routinely inflate
- 7:05the scope of what they've stolen to maximize
- 7:07their leverage. We've seen numerous cases where
- 7:10a group like recycles old public data from a
- 7:13third party breach. Oh, like they just repackage
- 7:16old stuff? Exactly. They package it up and claim
- 7:19it's a fresh direct compromise of a new target
- 7:21company. If a CEO panics and pays out or even
- 7:26issues a statement confirming a massive breach
- 7:28before forensics are completely done, they might
- 7:30be reacting to a complete fabrication. Wow. The
- 7:33period between the claim and the confirmation
- 7:35requires absolute operational discipline. So
- 7:38Brightsby's response of basically saying, we
- 7:41are investigating, we take this seriously, but
- 7:43we haven't confirmed it, is really the only viable
- 7:46playbook while the IT team is digging through
- 7:48the logs. It's the only responsible move, yes.
- 7:51But that leads us to a really important question.
- 7:53If threat actors bluff so frequently, why is
- 7:56the cybersecurity world taking the Crimson Collective's
- 7:59claims so seriously in the first place? Why assume
- 8:02there's fire behind all this smoke? Well, the
- 8:05concern stems from their resume. This aggressive,
- 8:08highly public pressure tactic isn't happening
- 8:10in a vacuum. It is the signature move of a group
- 8:13with a proven, very recent, and incredibly damaging
- 8:17track record. And that track record is just a
- 8:19history of terrifying domino effects. Yeah, let's
- 8:21look at the timeline. Let's trace this back just
- 8:23a few months to October 2025. Crimson Collective
- 8:27pulled off a massive breach of a Red Hat GitLab
- 8:30instance. Our sources show they exfiltrated roughly
- 8:33570 gigabytes of data across 28 ,000 private
- 8:38internal development repositories. And they primarily
- 8:41hit Red Hat's consulting division. And pulling
- 8:43that volume of data out of a highly sophisticated
- 8:47enterprise environment like Red Hat, that is
- 8:49a significant technical feat. But wait, I have
- 8:52to push back on the severity of this for a second.
- 8:54Okay. Red Hat is famously known for open source
- 8:56software development. If these GitLab repositories
- 8:59are basically just software code, why is this
- 9:03level of theft considered such a devastating
- 9:05blow? It's not like they stole a giant database
- 9:08of Social Security numbers. That assumption is
- 9:10exactly what makes targeting source code so insidious.
- 9:13How so? The danger isn't necessarily the code
- 9:16itself. It is the supply chain vulnerability
- 9:18it creates. We have to look at the mechanics
- 9:21of what is actually inside those repositories.
- 9:23Right, because it was the consulting division.
- 9:25Exactly. These aren't public open source tools.
- 9:28These repositories often contain the literal
- 9:30architecture of other companies' networks. Oh,
- 9:33I see. They hold configuration files, deployment
- 9:35scripts, and critically hard -coded credentials
- 9:38or API keys that are meant to integrate different
- 9:41corporate environments together. Oh, wow. Okay,
- 9:44so to use an analogy, it's not like the thieves
- 9:48broke into a parking garage and stole a bunch
- 9:50of cars. It's like they broke into the valet
- 9:52stand, smashed open the master lockbox. and stole
- 9:55the keys to every single car that happens to
- 9:58be parked there. That is the absolute perfect
- 10:00way to visualize it. You now have the keys to
- 10:02environments you weren't even originally targeting.
- 10:04That's terrifying. And we saw the real world
- 10:07fallout of this valet key theft almost immediately.
- 10:11In December 2025, just two months after the Red
- 10:15Hat breach, the Japanese automaker Nissan had
- 10:17to come forward. Right, the Nissan breach. They
- 10:19confirmed that the personal information of 21
- 10:21,000 of their Japanese customers was exposed,
- 10:24and the root cause. It was specifically traced
- 10:27back to those compromised Red Hat repositories.
- 10:30So they didn't hack Nissan directly at first.
- 10:32Nope. The Crimson Collective stole from Red Hat,
- 10:35and the credentials hidden within that stolen
- 10:37data provided the direct avenue to break into
- 10:40Nissan's customer database. That is the domino
- 10:43effect in action right there. Yeah. You hack
- 10:45Company A, not because you want Company A's data,
- 10:48but to get the leverage or the access keys to
- 10:50hit Company B, C, and D. Exactly. And our sources
- 10:54show that Crimson Collective's tactics are only
- 10:57escalating, and they're expanding their network
- 11:00to do it. They don't work in isolation anymore.
- 11:02No. they're building alliances. Yeah, they partnered
- 11:04up with the Scattered Labs as Hunters Collective.
- 11:06They utilized the Shiny Hunters leak site to
- 11:08amplify their extortion threats. They're building
- 11:10a genuine syndicate. Which raises an important
- 11:12point about their technical capabilities. Security
- 11:15researchers have linked this specific group to
- 11:18highly sophisticated attacks on Amazon Web Services
- 11:22or AWS environments. AWS is huge. Massive. Yeah.
- 11:26And the mechanism of how they operate within
- 11:27AWS is deeply concerning. They aren't just sending
- 11:31phishing emails hoping an employee clicks a bad
- 11:33link. They are actively exploiting exposed credentials
- 11:37to create rogue identity and access management
- 11:40or IAM accounts. Wait, let me stop you there
- 11:43because I want to make sure I understand the
- 11:44mechanics of this. How are they creating rogue
- 11:47admin accounts without tripping every single
- 11:50security alarm in the building? That's sneaky.
- 11:52I mean, if I try to install an unapproved app
- 11:54on my work laptop, my IT department knows in
- 11:57about three seconds. How does a hacker secretly
- 12:01create an entire administrator account? It comes
- 12:04down to manipulating permission policies and
- 12:07hiding within the noise of automated systems.
- 12:09Okay. They often don't create an account that
- 12:12looks like a human user like, you know, John
- 12:14in accounting. Instead, they target non -human
- 12:17identities, what we call service accounts. Service
- 12:20accounts. Yeah. These are accounts used by applications
- 12:22to talk to other applications, which often have
- 12:24incredibly high privileges, but just aren't monitored
- 12:27the same way human logins are. Oh, because it's
- 12:29just software talking to software. Exactly. So
- 12:32by exploiting misconfigurations, they grant these
- 12:35service accounts hidden permissions, they establish
- 12:38persistent invisible backdoors inside the cloud
- 12:41environment, escalate their privileges quietly,
- 12:44and then systematically steal data at scale,
- 12:47entirely blending in with normal automated cloud
- 12:50traffic. So they're setting up their own administrative
- 12:52access right under the nose of the company's
- 12:55IT department, disguised as routine software
- 12:57communication. Precisely. But you know what stands
- 13:00out to me the most about all of these incidents?
- 13:03The AWS attacks, the Red Hat supply chain breach,
- 13:07the alleged BraitSpeed incident. None of them
- 13:10involve ransomware in the traditional sense.
- 13:12No, they don't. It is a striking pattern, and
- 13:14it really defines the modern threat landscape.
- 13:17I mean, no one's computers were locked. There
- 13:19were no encrypted hard drives with a red skull
- 13:21and crossbones on the screen demanding Bitcoin
- 13:23just to turn the servers back on. Right. And
- 13:26that leads us directly into what our sources
- 13:28identify as the data centric extortion era. We
- 13:31are witnessing a fundamental paradigm shift in
- 13:34the business model of cybercrime. It's wild.
- 13:37For years, the absolute gold standard for threat
- 13:40actors was encryption based ransomware. The playbook
- 13:44was simple. You break in, you encrypt the servers,
- 13:47you bring the company's daily operations to a
- 13:49grinding halt, and you demand a massive ransom
- 13:53in exchange for the decryption key. Right. But
- 13:56that modder has become increasingly difficult,
- 13:59expensive, and risky for the attackers to maintain,
- 14:02hasn't it? Extremely. Here's where it gets really
- 14:04interesting to me. Why go through all the trouble
- 14:07of building and deploying complex encryption
- 14:09malware? It's incredibly noisy. It trips antivirus
- 14:13and behavioral alarms. It requires a massive
- 14:15amount of technical overhead to maintain. And
- 14:17honestly, half the time the decryptor tools the
- 14:20hackers give you don't even work properly anyway.
- 14:22Right, which completely ruins their quote unquote
- 14:24reputation as reliable extortionists. So they're
- 14:28just abandoning the encryption part entirely.
- 14:30It is purely a matter of return on investment.
- 14:32Why build out complex encryption software when
- 14:34you can just quietly steal the most sensitive
- 14:36data you can find? They don't want the hassle
- 14:39of locking the networks anymore. They just use
- 14:42the threat of public disclosure or selling that
- 14:45data to other criminals. as their sole point
- 14:48of leverage. It's like a burglar realizing they
- 14:51don't need to go through the effort of changing
- 14:52the deadbolts on your house to keep you out.
- 14:55They just need to sneak in through an open window,
- 14:57steal your private diary, and then threaten to
- 15:00stand on the sidewalk and read it through a megaphone
- 15:02to your entire neighborhood unless you pay them.
- 15:05That's exactly it. The leverage isn't denying
- 15:07you access to your own house. The leverage is
- 15:10entirely based on public humiliation, brand destruction,
- 15:14and the inevitable regulatory fines. That analogy
- 15:17perfectly captures the shift in leverage. And
- 15:20because the attackers are explicitly targeting
- 15:22identities and cloud infrastructure to steal
- 15:24that diary rather than trying to break the house
- 15:27itself, our entire defensive posture has to change.
- 15:30Because the old tools don't work. Right. You
- 15:33can't fight data extortion with the same tools
- 15:35you use to fight ransomware. The sources we are
- 15:37looking at outline a defense strategy built heavily
- 15:40on zero trust principles. I hear zero trust.
- 15:44thrown around a lot as an industry buzzword.
- 15:46But let me wrestle with what that actually means
- 15:48practically. So zero trust isn't just a bigger,
- 15:51better firewall. No, not at all. If I'm understanding
- 15:54this right, you're treating the inside of your
- 15:57network as if it's already compromised. Every
- 15:59single time a user or an application tries to
- 16:03access a file, you check their ID at the door.
- 16:06It's like turning every single file folder into
- 16:09a heavily guarded border crossing. You've hit
- 16:11the nail on the head. Because groups like Crimson
- 16:14Collective are using legitimate, albeit stolen
- 16:16or manipulated, credentials like those AWS service
- 16:20accounts we discussed, you cannot rely on a strong
- 16:22perimeter defense. Right, because they already
- 16:24have the key. Exactly. Once they are inside,
- 16:27they look like they belong there. Therefore,
- 16:29companies must prioritize hardening their IAM
- 16:31configurations. Okay, so strictly enforcing least
- 16:34privilege access. Yes. A marketing intern's account.
- 16:38or an automated billing script should absolutely
- 16:40never have the technical permissions to even
- 16:42view the core customer database, let alone download
- 16:46it. And you have to constantly rotate those credentials
- 16:49to render stolen valet keys useless. The sources
- 16:52also talk a lot about data loss prevention, or
- 16:55DLP, and egress controls. Oh, yes, crucial. If
- 16:59the attacker's entire business model is to exfiltrate
- 17:02data -like, to physically copy it and move it
- 17:05out of your network to their own servers. You
- 17:07have to watch the exit doors just as closely,
- 17:10if not more closely, than the entrance. Exactly.
- 17:13DLP tools act like a security guard checking
- 17:15bags on the way out of the building. If a cloud
- 17:18server that normally sends say a few megabytes
- 17:20of routine telemetry data a day suddenly tries
- 17:23to export 500 gigabytes of compressed customer
- 17:25records to an unknown IP address in another country,
- 17:28the egress controls need to be configured to
- 17:30automatically sever that connection. Cut it off
- 17:32immediately. But preventing the theft is only
- 17:34half the battle. The sources heavily emphasize
- 17:37that visibility is equally critical. You need
- 17:39to maintain immutable, centralized logs. Immutable,
- 17:42meaning they are mathematically locked. They
- 17:44cannot be altered, edited, or deleted, not even
- 17:48by someone holding an administrator account.
- 17:50Right. But why is that specific feature the silver
- 17:55bullet? in this scenario remember our discussion
- 17:58earlier about soberly assessing unverified claims
- 18:01and bluffs yeah avoiding the panic exactly when
- 18:04a group like crimson collective posts on telegram
- 18:06and says we just stole 1 million customer records
- 18:09you need to know immediately unequivocally if
- 18:13they are lying ah i see If your access logs are
- 18:16centralized and immutable, your forensics team
- 18:19can look at the exact timeline and say, no, it
- 18:21is mathematically impossible for that volume
- 18:23of data to have left our network in that time
- 18:25frame. Or conversely, yes, we see the exact rogue
- 18:29IAM account they used and we know exactly what
- 18:32they took. Wow. OK. Without those immutable logs,
- 18:34you are flying completely blind during a massive
- 18:37crisis, which leaves right back to panic. Which
- 18:39brings us to the human element of this crisis
- 18:41management. For you, the listener, or for any
- 18:44company leader who might face this scenario,
- 18:46how do you actually prepare for the PR nightmare
- 18:50of an extortion -driven breach? Because if the
- 18:54servers are never locked, it's not just an IT
- 18:56problem anymore. That is the core vulnerability
- 18:58most companies haven't addressed. IT recovery,
- 19:01meaning restoring systems from offline backups,
- 19:04isn't enough anymore because your systems were
- 19:06never down in the first place. The business kept
- 19:09running while the data was stolen. Exactly. Companies
- 19:11must fundamentally update their incident response
- 19:13plans. The sources recommend tabletop exercises,
- 19:17which are highly realistic role -playing simulations
- 19:19for the executive team. But these exercises must
- 19:23focus entirely on data disclosure. Right. So
- 19:26the simulation shouldn't be the main servers
- 19:28are encrypted and offline. Yeah. The simulation
- 19:30should be a hacker just tweeted a screenshot
- 19:33of our VIP customer database and is demanding
- 19:35$5 million. The press is calling. Go. Precisely.
- 19:39Who drafts the regulatory response? Which legal
- 19:43team is on standby? How do we communicate with
- 19:46customers to protect them before the panic sets
- 19:48in? And who handles the legal ramifications if
- 19:51class action lawsuits are filed based purely
- 19:53on a rumor? Yes, the corporate response has to
- 19:56be as coordinated, rapid, and sophisticated as
- 19:59the attack itself. So what does this all mean
- 20:01for the situation at hand? To summarize, we are
- 20:05all currently in a waiting game. We have to wait
- 20:08for Bright Speed's internal investigation to
- 20:10conclude. We do. We have to wait and see if the
- 20:13Crimson Collective's claim of holding one million
- 20:15customer records is actually true, or if it is
- 20:18a highly calculated recycled bluff designed to
- 20:21force a quick payout. But whether verified or
- 20:23not, the mechanics of this incident perfectly
- 20:26encapsulate the terrifying shift toward pure
- 20:28data -centric extortion. It absolutely does.
- 20:31And if we follow the logic of this evolution,
- 20:33it leaves us with a rather chilling path forward.
- 20:35Chilling how? Well, if threat actors are completely
- 20:38moving away from extorting the company to purely
- 20:41leveraging the stolen data, what happens when
- 20:44they realize they can just cut out the corporate
- 20:46middleman entirely? Wait, what do you mean cut
- 20:49the company out of the extortion? Think about
- 20:51the highly specific metadata that Crimson Collective
- 20:54claimed to have stolen from Brightspeed. OK.
- 20:57It wasn't just generic names and emails. It was
- 20:59session IDs. It was specific service appointment
- 21:02times. What is stopping these syndicates from
- 21:05automating their extortion? Oh, no. Imagine them
- 21:08using artificial intelligence to parse that massive
- 21:11database of metadata and automatically send highly
- 21:14convincing, deeply personalized ransom demands
- 21:17directly to one million individual users. A text
- 21:21message that says, we know you have an Internet
- 21:23service appointment at your home at 2 p .m. on
- 21:25Thursday. Pay us $50 in Bitcoin or we release
- 21:29your browsing session IDs and payment history
- 21:31to everyone in your contact list. That is insane.
- 21:34No corporate negotiations, no million dollar
- 21:37demands to a CEO. Just one million micro extortions
- 21:42executed automatically and simultaneously. That
- 21:45is the next logical step in data centric cybercrime.
- 21:48That is horrifying. And it really brings us back
- 21:51to that opening thought. The kidnappers Polaroid
- 21:54mailed to the news station. Except in this near
- 21:56future. The burglar doesn't just read your diary
- 21:59with a megaphone to the neighborhood. They use
- 22:01an automated system to call every single person
- 22:03you know simultaneously, demanding a few dollars
- 22:06from you to stay quiet. It's a completely different
- 22:09scale of threat. The next time you see a headline
- 22:11about a massive data breach, you'll know exactly
- 22:14what's happening behind the scenes. You won't
- 22:15just see a company under attack. You'll recognize
- 22:17the bluffs, the zero trust failures, and this
- 22:20inevitable shift toward data extortion. It makes
- 22:23the need for proactive zero trust defense not
- 22:26just a corporate priority, but an absolute societal
- 22:29necessity. It requires constant vigilance. We
- 22:33have to secure that data before the megaphone
- 22:35is ever picked up. Absolutely. And that is exactly
- 22:38why we explore these sources, so you aren't caught
- 22:40off guard when the tactics change. If you are
- 22:42looking to harden your own systems against these
- 22:44modern threats, visit www .kinsoft .com .au to
- 22:48discuss your security and IT needs. Thank you
- 22:51for joining us on Tech Talks with Kinsoft. We
- 22:53hope this gives you a clearer lens through which
- 22:54to view the headlines. Stay safe out there, keep
- 22:57an eye on your data, and we will catch you on
- 22:59the next one.