Social Engineering a Major Factor in Cyberattack on Camera Maker Axis Communications

Stu Sjouwerman | Mar 9, 2022

Social Engineering a Major Factor in Cyberattack on Camera Maker Axis CommunicationsAs details of the February attack continue to be divulged, it becomes evident that cybercriminals were able to get past both users and security controls.

On the evening of Sunday, February 19th, Axis became the victim of a cyberattack that, according to Axis, allowed threat actors to “elevate their access and eventually gain access to directory services.” The attack was discovered when “Axis threat detection systems alerted incident staff of unusual, suspicious behavior.”

In diving into the provided details on Axis’ attack response page, we come to understand some details about the nature of the initial attack. According to Axis, “Using several combinations of social engineering, attackers were able to sign in as a user despite protective mechanisms such as multifactor authentication.”

When I hear “social engineering” and the mention of “multifactor authentication”, I assume this was a phishing attack that successfully compromised a user’s credentials either initially online or on their endpoint. It’s helpful to the cybersecurity community when victim organizations provide some level of details about the attack so we all can learn.

The good news is, according to Axis, it appears that while access was attained, no data other than (I’m guessing) detail from within their Directory Service (the response page says “Axis contact information including employee names and phone numbers”) was exfiltrated.

Moving forward, Axis needs a few obvious additions to their layered security strategy:

  1. Something to address elevation of privileges – a Privileged Access Management (PAM) solution, perhaps to isolate privileged accounts
  2. Something to address the social engineering tactics – Security Awareness Training is the right choice here to educate users on tactics used and how to spot attacks before credentials are compromised.

Ready to Build a Security Culture That Lasts?

Stop treating training like a checkbox exercise. Using 15+ years of behavioral data, our AI-powered platform personalizes training for every user to significantly reduce human risk and stop attacks before they start.

Get a Quote

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.