Tag: DigitalSafety

  • Nike Investigates Alleged Cybersecurity Breach Following Data Leak Threats

    Nike Investigates Alleged Cybersecurity Breach Following Data Leak Threats

    Nike, one of the world’s most recognisable athletic brands, is currently investigating a potential cybersecurity incident after a notorious hacking group publicly claimed to have accessed its systems and threatened to release stolen data unless their demands are met.

    What Happened?

    On January 22, 2026, the WorldLeaks cybercrime gang added Nike to its darknet leak site — a platform frequently used by threat actors to list alleged victims and apply public pressure for ransom payments. The group has positioned a countdown timer, indicating that the purportedly stolen data will be published by January 24 unless negotiations occur. At the time of publishing, neither the volume nor the exact nature of the data allegedly compromised has been fully confirmed.

    Nike has issued a brief statement emphasizing its commitment to consumer privacy and data security, saying it is actively investigating the potential incident and assessing the situation.

    Who Are the Attackers?

    WorldLeaks emerged in 2025 following the dissolution of a previous ransomware syndicate known as Hunters International. Unlike traditional ransomware groups that encrypt systems and demand payment to restore access, WorldLeaks and similar outfits focus primarily on data theft and extortion — threatening to leak sensitive information unless their financial demands are met.

    Security analysts have tied WorldLeaks’ activity to broader trends in extortion-driven cybercrime, where data exfiltration and public disclosure threats have become increasingly common tactics.

    What Is at Stake?

    Details on what exactly was taken remain scarce. Cybersecurity reports suggest the leak could include internal documents, credential lists, and possibly customer or partner data — though these claims are unverified as of now. One independent report mentioned that thousands of internal records may be involved, but official confirmation from Nike remains pending.

    Threat actors like WorldLeaks often employ phishing, exploitation of exposed services, or stolen credentials to gain initial access to corporate networks, though specifics of this incident haven’t been disclosed.

    Broader Context: A Growing Trend

    This event comes amidst a spate of cybersecurity incidents affecting major brands and organisations across industries — from retail to technology and healthcare. In several recent cases, groups have either leaked or threatened to leak sensitive information after claiming access to corporate databases.

    For organisations like Nike, the implications extend beyond immediate operational risk. Public exposure of compromised data can erode customer trust, trigger regulatory scrutiny, and lead to costly remediation if personal information is involved.

    How Companies Can Respond

    In situations like this, best practices for organisations under threat include:

    • Immediate incident response activation, including forensic analysis of affected systems.
    • Transparent communication with stakeholders and affected parties without releasing sensitive internal details.
    • Engagement with experienced cybersecurity partners to guide containment and recovery.
    • Monitoring dark web channels for further threat actor activity related to the incident.

    Proactive measures such as multi-factor authentication (MFA), robust network segmentation, and regular employee security training can also reduce the likelihood of successful intrusions.

    Conclusion

    Nike’s ongoing investigation highlights the evolving tactics of cybercriminals and the tangible risks modern enterprises face in an increasingly digital business environment. While the full impact of the alleged breach remains unclear, the situation underscores the importance of robust cybersecurity posture, rapid incident response, and vigilant monitoring of emerging threats.

    Media Disclaimer: This report is based on internal and external research obtained through various means. The information provided is for reference purposes only, and users bear full responsibility for their reliance on it. Summitsystemsissp assumes no liability for the accuracy or consequences of using this information

  • Two US rusted Cybersecurity Professionals Plead Guilty in Major Ransomware Extortion Case

    Two US rusted Cybersecurity Professionals Plead Guilty in Major Ransomware Extortion Case

    Two U.S.-based cybersecurity professionals have pleaded guilty in federal court for their roles in spearheading ransomware attacks that extorted multiple victims across the United States, according to the U.S. Department of Justice.

    The defendants, Ryan Clifford Goldberg of Georgia and Kevin Tyler Martin of Texas, both formerly employed in respected cybersecurity roles, admitted to conspiring to obstruct, delay, or affect commerce through extortion by deploying the notorious ALPHV/BlackCat ransomware in 2023.

    Background & Scope of the Case

    Goldberg and Martin — who previously worked as an incident response manager and a ransomware negotiator, respectively — used their professional expertise and trusted access to identify, infiltrate, and compromise corporate networks.

    The pair operated as affiliates of the BlackCat ransomware group, paying a portion of ransom proceeds to the malware’s administrators in exchange for access to the ransomware platform.

    According to court records, the defendants and a third unnamed co-conspirator targeted numerous U.S. companies, including victims in healthcare, engineering, and technology sectors. In one instance, a Florida medical company paid over $1.2 million in Bitcoin to regain access to encrypted files — funds that were subsequently laundered.

    Consequences & Legal Outcomes

    Goldberg and Martin have entered guilty pleas to federal charges of conspiracy to commit extortion. They face up to 20 years in prison, and sentencing has been scheduled for March 12, 2026.

    In addition to potential incarceration, both defendants are expected to forfeit proceeds derived from the illicit scheme as part of their plea agreements.

    Industry Impact & Lessons Learned

    This case marks a sobering reminder that insider threats — even from experienced cybersecurity professionals — pose real and evolving risks to organizations. It underscores several key imperatives for businesses and security teams:

    • Vetting & Oversight: Robust background screening and continuous monitoring of personnel with privileged system access is essential.
    • Ethics & Accountability: Strong ethical codes and enforceable professional standards in cybersecurity can deter misuse of skills for illicit ends.
    • Third-Party Risk Management: Organizations must evaluate not only their internal teams but also the trustworthiness of external partners, especially those engaged in incident response and threat mitigation services.

    Closing Thought

    While ransomware remains a pervasive global threat, cases like this highlight the deep importance of integrity in the cybersecurity profession. Upholding trustworthiness and ethical conduct isn’t just best practice — it’s foundational to protecting businesses, clients, and digital infrastructure.

    Media Disclaimer: This report is based on internal and external research obtained through various means. The information provided is for reference purposes only, and users bear full responsibility for their reliance on it. Summitsystemsissp assumes no liability for the accuracy or consequences of using this information

  • EDO CYBERSECURITY SUMMIT 2025

    EDO CYBERSECURITY SUMMIT 2025

    #SpeakerSpotlightSeries
    We’re excited to feature Joy Orilade-Nofa in this edition of our #SpeakerSpotlightSeries for the #EdoCybersecuritySummit2025!
    Stay tuned to learn more about his role, insights, and what to expect from his session at the summit!

    JOY ORILADE -NOFA
    Cybersecurity Analyst | Admin & Training Professional | Founder, Cyber Future Initiative | Advocate for Digital & Social Inclusion
    Joy Orilade is a dedicated cybersecurity analyst and human development advocate with a proven track record in security operations, GRC (Governance, Risk & Compliance), and community empowerment. She has worked with Summit Systems ISSP, where she led a Cybersecurity Gap Assessment using the NIST CSF 2.0 for Pear SDC, identifying critical vulnerabilities and recommending strategic improvements. She also facilitated training for interns on policy development and compliance with cybersecurity best practices. She also facilitated internal training for student and new interns, particularly on GRC training and policy development, implementation, and security governance, ensuring they aligned with best practices.
    Joy is the Founder of the Cyber Future Initiative (CFI) — a visionary movement committed to empowering children, teenagers, and young adults with the knowledge and tools to navigate the digital world safely, confidently, and responsibly. Through cyber awareness education, capacity building, community engagement, advocacy, and inclusive mentorship, the initiative promotes digital safety, career readiness, and proactive online behavior in both urban and underserved communities.


    In her previous role as Admin Manager at Genius Hub, Joy coordinated operations and led impactful programs in life skills facilitation, youth coaching, TVET, and anti-human trafficking advocacy. She has facilitated over a dozen social impact projects funded by organizations like GIZ, IOM, and the UK Cabinet Office, including digital safety campaigns across the three senatorial districts in Edo State and digital entrepreneurship training for over 130 beneficiaries in Lagos State and over 2,500 in Edo State.
    Her extensive experience spans:
    Cybersecurity Training & Awareness Campaigns
    Human Resource Management & Procurement
    Community Education on Human Trafficking & Migration
    Life Skills Facilitation (Self-esteem, Emotional Intelligence, and Mental Health and Psychosocial Support)
    Mentorship & Leadership for Vulnerable Youths and Women
    Digital Branding, Product Photography, and E-commerce Coaching


    With strong communication and leadership skills, Joy is passionate about bridging the digital divide, especially for young women, children, and the less privileged. She believes in the power of safe digital environments and is on a mission to build a cyber-aware generation across Nigeria and Africa.

    With strong communication and leadership skills, Joy is passionate about bridging the digital divide, especially for young women, children, and the less privileged. She believes in the power of safe digital environments and is on a mission to build a cyber-aware generation across Nigeria and Africa.
    Want to hear Joy Orilade Nofa’s perspective on Online Safety: Our Collective Responsibility?

    Join us on July 22nd at the Edo Cybersecurity Summit 2025 in Benin City!

    Register now: https://lnkd.in/d9JTbthF

  • EDO CYBERSECURITY SUMMIT 2025

    EDO CYBERSECURITY SUMMIT 2025

    #SpeakerSpotlightSeries
    We’re excited to feature Adams Osarenmwinda in this edition of our #SpeakerSpotlightSeries for the #EdoCybersecuritySummit2025!
    Stay tuned to learn more about his role, insights, and what to expect from his session at the summit!

    Adams Osarenmwinda,

    With about a decade experience in the finance sector, Adams Osarenmwinda is an experienced Wealth Manager with special skills in helping Clients and Organizations build a solid and balanced investment portfolio. As a stakeholder also in the retail banking sector, he helps small and medium businesses transform their underperforming operations into successful enterprises using resourcefulness and high-level business acumen.

    As a Wealth Coach, Adams spends a great deal of his time educating thousands on how they can build a solid relationship with money, utilizing their ordinary income as a great tool for super monetary returns. He is the Founder of the Sabì Investors Tribe, where he utilizes the platform to inform and inspire people to financial greatness. With about a decade experience in the finance sector, Adams Osarenmwinda is an experienced Wealth Manager with special skills in helping Clients and Organizations build a solid and balanced investment portfolio. As a stakeholder also in the retail banking sector, he helps small and medium businesses transform their underperforming operations into successful enterprises using resourcefulness and high-level business acumen. As a Wealth Coach, Adams spends a great deal of his time educating thousands on how they can build a solid relationship with money, utilizing their ordinary income as a great tool for super monetary returns. He is the Founder of the Sabì Investors Tribe, where he utilizes the platform to inform and inspire people to financial greatness.

    Want to hear Adams Osarenmwinda’s perspective on Online Safety: Our Collective Responsibility?

    Join us on July 22nd at the Edo Cybersecurity Summit 2025 in Benin City!

    Register now: https://lnkd.in/d9JTbthF

     

  • EDO CYBERSECURITY SUMMIT 2025

    EDO CYBERSECURITY SUMMIT 2025

    #SpeakerSpotlightSeries
    We’re excited to feature Daniel Ose Edwin in this edition of our #SpeakerSpotlightSeries for the #EdoCybersecuritySummit2025!
    Stay tuned to learn more about his role, insights, and what to expect from his session at the summit!

    Daniel Ose Edwin

    Daniel is a certified digital marketing specialist and growth hacker who has been helping businesses across B2B, B2C, and SaaS markets achieve success online since 2018.

    He is talented in marketing strategy and growth hacking using techniques such as social media marketing, search engine marketing, digital advertising, email marketing, content marketing, offline activation, and marketing analytics.

    He’s great at taking brands from good to irresistible with cutting-edge marketing strategies. His personal work philosophy is to become a catalyst for growth and transformation in any system he enters. His career focus presently ties in with growth, product, and commerce. 

    ‘A flair for helping people run more profitable businesses and lead extraordinary lives’ is the best phrase to capture the essence of Daniel Edwin’s work and personality. His passion lies at the intersection between marketing, technology, and the happy customer.

    Daniel is focused on helping brands and businesses, especially in the tech and commerce sectors ideate, construct and implement business, product, and marketing strategies for growth in their market.

    He is also a lover and part-time writer of crime thriller fiction.

    Want to hear Daniel Ose Edwin’s perspective on Online Safety: Our Collective Responsibility?

    Join us on July 22nd at the Edo Cybersecurity Summit 2025 in Benin City!

    🔗 Register now: https://lnkd.in/d9JTbthF

  • EDO CYBERSECURITY SUMMIT 2025

    EDO CYBERSECURITY SUMMIT 2025

    #SpeakerSpotlightSeries
    We’re excited to feature John Iyoha in this edition of our #SpeakerSpotlightSeries for the #EdoCybersecuritySummit2025!
    Stay tuned to learn more about his role, insights, and what to expect from his session at the summit!

    John Iyoha is a business developer, personal development tutor and business trainer, coach, and facilitator with a manifest ability at helping businesses start, grow, sustain, and succeed. Some common subjects he is renowned for teaching are corporate and personal branding, organizational development, business continuity, effective communication and public speaking.

    John is certified by The German Agency for International Cooperation (GIZ) and GOPA Worldwide Consultants as a Trainer/Facilitator/Coach in Entrepreneurship and Employability. He is also a GIZ-SEDIN/Green Innovation Hub certified Organizational Development trainer and facilitator.  

    Want to hear John Iyoha‘s perspective on Online Safety: Our Collective Responsibility?

    Join us on July 22nd at the Edo Cybersecurity Summit 2025 in Benin City!

    Register now: https://lnkd.in/dwFQksDk