October 2025 News & Tips | Cybercriminal Gangs, Windows 10 & Jaguar Breach Update

October 2025 News & Tips | Cybercriminal Gangs, Windows 10 & Jaguar Breach Update
View this email in your browser
Welcome back to the TCE Strategy monthly technology and cybersecurity newsletter! The mission of this publication is to cut through the clutter of cybersecurity news stories and provide you with the most important, relevant and actionable cybersecurity information.

If this newsletter adds value, fantastic! That is the goal. Please forward it on to friends/colleagues. If not, no hard feelings. Please look to the bottom for an easy to click "unsubscribe" button.
Subscribe
In this issue:
Month's News in Review
Upcoming Speaking Events
TCE Strategy in the News
Must Read Articles This Month
Cybersecurity Tip of the Month
Enjoy this month's newsletter? You can use this link to post on social media or send to friends! Thanks for sharing!
This Month's News in Review

Welcome back to the monthly TCE Strategy newsletter! From a BBC reporter being recruited by a cybercriminal gang to 11 death sentences for leaders of a scam center in Myanmar to Windows 10 support coming to an end, October has given us a lot to review. Let’s see how this month’s cybersecurity news can help us make better decisions about what is Secure Enough for us, the companies we work for, and our families.


11 cybercriminal leaders sentenced to death, 12 others jailed for 5+ years

Myanmar, Laos and Cambodia have become hotbeds of organized cybercriminal activity, with a total annual revenue of $40 billion USD. The crimes these groups focus on are not the usual ransomware attacks that make so much press, but rather in wire transfer fraud, fake technical support scams, and “pig butchering”, where cybercriminals start fake investment scams, often by luring in victims via online romance relationships. In a rather shocking takedown, the Chinese government collaborated with Myanmar and Thailand to shut down some very large centers that were running these scams, often with workers being forced to run these rackets against their will. A total of 7000 workers (which appear to be prisoners of the cybercriminal ringleaders in this case) were freed, and 11 leaders were sentenced to death. 12 other leaders received prison sentences ranging from 5 to 24 years.

Takeaway: The business model of these organized crime gangs is extremely strong. This appears to be a win for the good guys, but until people become more aware of these scams (so they don’t fall for them), this is going to be a game of whack-a-mole as other centers open up elsewhere. If your computer sends you an alert stating that you have been infected by a virus and need to call a phone number to get help, it’s a scam. If you get unsolicited connection requests from social media, they are often scammers. If you get a call from your local sheriff’s office, hang up and find the correct number online to call them back to verify it’s not a scam. NEVER invest money with someone you haven’t met face-to-face (unless they are  with a very well-known investment company such as Vanguard). Scammers will take everything you have if you let them.


BBC reporter recruited by a cybercriminal gang

I don’t know if this falls under the category of brazen or foolish cybercriminal activity, or maybe it’s somewhere in between. A few weeks ago, a BBC reporter named Joe Tidy received a Signal message from someone claiming to be from the ransomware gang called Medusa, stating, "If you are interested, we can offer you 15% of any ransom payment if you give us access to your PC." He then upped his offer, stating "We aren't sure how much the BBC pays you but what if you took 25% of the final negotiation as we extract 1% of the BBC's total revenue? You wouldn't need to work ever again." Getting a foothold into an organization is a strong first step in committing a ransomware attack. Apparently the BBC has very strong cybersecurity best practices, as this is an extremely generous offer for an employee’s credentials that isn’t an IT person with “domain administrator” access. After Tidy refused the offer, he began getting hundreds of requests to reset his password, which is a technique that cybercriminals use called MFA bombing. He was smart enough not to fall for it, and to involve his IT team to help put additional protections on his account.

Takeaway: This reporter was asked to do something illegal, and if he had chosen to live the rest of his life in a country that doesn’t extradite suspected criminals to the UK, he may (or may not) have received enough money to be comfortable for the rest of his life. It is important to educate your employees on these sorts of scams, and how they should reach out to your cybersecurity team in the event that they are targeted with this type of proposal.


Windows 10 comes to an end

Windows 10 has been a terrific operating system, but Microsoft has formally deemed it end-of-life as of October 14th. This has very serious repercussions for business and home users alike. Every month, Microsoft releases patches to fix vulnerabilities in Windows. Sometimes these are just “best practice” to install, but other times (such as this month), they fix vulnerabilities that are being actively exploited on the Internet. Windows 10 will no longer receive updates unless organizations pay for them. Individual users have a one-year reprieve if they enroll into a free one-year extension program that Microsoft recently announced (previously they stated that individual users would have to pay for updates just like larger companies, but they backtracked on this). Your options are as follows:

  1. Update your computer to Windows 11.

  2. If your computer can’t run Windows 11, purchase a new one.

  3. Sign up for Microsoft’s one-year extended support.

  4. Pay Microsoft for updates.

None of these options are terrific, as there isn’t a compelling reason to abandon Windows 10 other than the artificial end-of-life decision made by Microsoft. That being said, it is hard to keep older operating systems safe, as the risks on the Internet continue to evolve.

Takeaway: If you have a Windows 10 computer, it is time to find a path forward using one of the four options above. Doing nothing is a recipe for a cybercriminal to take advantage of you.

 

Update to the Jaguar Land Rover cyberattack

Last month, this newsletter covered the massive cyberattack that has disrupted Jaguar Land Rover operations in several of their manufacturing facilities. How is their recovery going? Not a lot of data is coming out about it, but the UK government gave them a loan of £1.5 billion ($2 Billion USD), which suggests that they have had a devastating hit from this breach.

Takeaway: Reactive cybersecurity is expensive. Very, very expensive. Proactive cybersecurity measures to prevent these sorts of breaches from taking place are much less costly. You can’t put your seatbelt on after the car accident and have it do any good. Ransomware is a preventable crime, and it’s all about the basics. Strong passwords. Multi-factor authentication. System patching. Annual penetration tests. It isn’tnhard to do, but sometimes it is hard to make time for. Imagine how much time is being sucked up at Jaguar Land Rover because of their breach.


Finally, I’d like to give a shout-out to my colleague and fellow professional speaker, Jamie Champagne from Honolulu, HI. She has written a terrific book called The Business Analyst’s Career Master Plan, available on Amazon or at Packt. I found it very informative and recommend you check it out.


Until next month, stay safe!

Upcoming Speaking Events

Here is a list of the cities that I will be in over the next several months. Please reach out if you have an event in mind!

October 29-30, Boston, MA

December 1-5, Key West, FL

December 11-15, Phoenix, AZ

December 22-26, Ft. Myers, FL

March 8-17, 2026, Cairns, Australia

June 19-26, 2026, Hayward, WI

TCE Strategy in the News

Thank you to Kent Erdahl and the KARE11 team for the opportunity to be interviewed about the AWS meltdown on October 20th.

Interesting Articles

Well, that's one way to get executives to care about cybersecurity. "Group CEO Vanessa Hudson will see her pay slashed by A$250,000 ($163,000), while five other executives on the Qantas leadership team will lose a combined A$550,000."
 
Kids, don't hack your school. It's a great way to mess a good chunk of your life at far too early an age.
"The lawsuit against Norfolk sheds light on just how frequently drivers’ movements are recorded without a warrant for that information ... 176 cameras across the city logged his location 526 times between Feb. 19 and July 2, according to a Monday court filing. That’s about four times per day."
Do you have a Samsung mobile device? PATCH THE FIRMWARE!!! CISA just put out an alert saying that this issue is being actively exploited.
Cybersecurity Tip of the Month

October is Cybersecurity Awareness Month! CISA's theme for this year is "Building a Cyber Strong America". Here are some tips taken directly from their Cybersecurity Awareness Month webpage where you can also find a collection of other helpful resources as well as access to their toolkit with more information and details on these recommendations. 

Cover Down on the Basics: Four Essentials to Protect Your Business or Government


Cybercriminals look for easy targets. Businesses and organizations without basic precautions make an easier target for cyber attacks. Start with these four essential steps to safeguard your data and enable your employees to stop attacks before they happen. 

1) Teach Employees to Avoid Phishing Scams: Phishing tricks employees into opening malicious attachments or sharing sensitive information. Train staff to recognize and report suspicious activity.

2) Require Strong Passwords: Strong passwords are a simple but powerful way to block criminals from accessing your accounts through guessing or automated attacks. Make them mandatory for all users.

3) Require Multifactor Authentication: MFA adds an extra layer of security beyond passwords. Require it to make accounts significantly safer. Use phishing-resistant MFA where available.

4) Update Business Software: Outdated software can contain exploitable flaws. Promptly install security updates and patches to keep your systems protected. 

Next Step: Level Up Your Defenses


5) Use Logging on Your Systems: Log activity so your team can monitor signs that threat actors may be trying to access your systems. Learn how to monitor key information.

6) Back Up Data: Incidents happen, but when you back up critical information, recovery is faster and less stressful. Put a backup plan in place that aligns with your organization’s recovery point objective to protect your systems and keep things running smoothly.

7) Encrypt Data: Encrypting your data and devices strengthens your defense against attacks. Even if criminals gain access to your files, information stays locked and unreadable. Make encryption part of your security strategy.

Additional Practices

8) Share Cyber Incident Information with CISA: When organizations and CISA share threat information, everyone is safer. Report incidents to help CISA warn others and get information in return to help you stay ahead of threats: cisa.gov/report

9) Migrate to the .Gov Domain (if your organization is eligible): CISA ensures that only legitimate government entities can use a .gov web address. Migrate your website and email to increase public trust and reduce the chance of impersonation attacks. Check your eligibility and learn more at get.gov

https://www.cisa.gov/resources-tools/resources/cybersecurity-awareness-month-toolkit
LinkedIn
Twitter
Facebook
Website
Forward Forward
We want your feedback!

< On a scale of 10, how helpful was this newsletter?>

lowest 1   2   3   4   5   6   7   8   9   10   highest

Copyright © 2025 TCE Strategy, All rights reserved.
You are receiving this email because you are on Bryce Austin's contact list

Our mailing address is:
TCE Strategy
18268 Java Trl
Lakeville, MN 55044

Add us to your address book


Want to change how you receive these emails?
You can update your preferences or unsubscribe from this list

You can reach Bryce at bryce@bryceaustin.com

Email Marketing Powered by Mailchimp
Subscribe to Newsletter

Browse newsletter archives: