Cyber Incident Victim: Globes
Date:
Jul 2024
Location:
Israel
Summary
A media outlet experienced a cyberattack attributed to a sophisticated international criminal gang, described as an economic terror incident, disrupting certain internal systems and potentially limiting services. The organization, which had previously repelled increased attacks amid regional conflict, implemented restricted computer access while continuing journalism operations through its website and print editions. Security partners and authorities collaborated to investigate consequences and enhance protective measures, with planned maintenance expected to cause temporary service interruptions. Ongoing updates were communicated via digital platforms, alongside public advisories to avoid suspicious messages requesting personal data or clicks.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 1 motive | 1 technique |
| Threat Actors | Type | Location |
|---|---|---|
| 0 actors | Available to members | Available to members |
Description
The cyber incident at "Globes" began on or before July 18, 2024, when the organization publicly acknowledged it was coping with a cyberattack affecting its operational capabilities. Initial impacts included restricted access to internal computer systems, which disrupted normal workflows and threatened to limit service availability that day. By July 23, Globes confirmed the event constituted an economic terror attack orchestrated by a sophisticated international criminal gang, though full consequences remained under investigation at that stage. The organization emphasized its ongoing collaboration with professional cybersecurity consultants and relevant authorities to contain the incident, analyze its scope, and manage fallout. This attack occurred against a backdrop of heightened cyber threats targeting Israeli entities since October 2023, with Globes noting it had previously repelled multiple attacks during the Swords of Iron war period through routine security investments.

Despite infrastructure compromises, Globes maintained partial operations by continuing to publish content through its website and print newspaper. On July 25, the organization announced additional protective measures and scheduled maintenance to upgrade internet-facing systems, warning readers about potential temporary service disruptions during remediation efforts. They advised vigilance against suspicious communications purporting to originate from Globes, particularly unsolicited messages requesting personal information or containing links. No specific data theft or encryption details were disclosed, though the criminal motive and international perpetrator profile were explicitly stated. Globes committed to providing further updates through official channels while reinforcing its defensive posture against persistent threat activity targeting Israeli economic entities.
