In computer security, a vulnerability is a weakness which allows an attacker to reduce a system 's information assurance. Vulnerability is the intersection of three elements: a system susceptibility or flaw, attacker access to the flaw, and attacker capability to exploit the flaw. To exploit vulnerability, an attacker must have at least one applicable tool or technique that can connect to a system weakness. In this frame, vulnerability is also known as the attack surface. (Wikipedia).
With this previous definition we can assume that a threat occurs when a weakness is Identified and attacked from an outside source for malicious purposes. By doing things like threat assessments we can tell the best course of action to take before the problem gets too far out of hand. There is no such thing as a common threat; everyone and anything can be a threat, from former employees, to current disgruntled ones. The same goes for viruses and malware, they are always evolving and becoming stronger this making it harder and harder to combat and detect.
Common ways of preventing things like this is by having a knowledgeable CSIRT also known as (Computer Security Incident Response Team). A Computer Security Incident Response Team (CSIRT, pronounced "see-sirt") is an organization that receives reports of security breaches, conducts analyses of the reports and responds to the senders. A CSIRT may be an established group or an ad hoc assembly (Cyber Threat Source Descriptions).
FLAME- “Also known as Skywiper and Flamer, Flame is a modular computer malware that was discovered in 2012 as a virus used to attacks computer systems in Middle Eastern countries that run on Microsoft Windows as their operating system. Used by hackers for espionage purposes, i...

... middle of paper ... Anonymous, a leaderless group of internet-based hacktivist that originated from 4chan. The Project Chanology originated from the church’s attempt to remove the material from the highly-publicized interview of Tom Cruise, a prominent member of the church, in the internet in January 2008. It started with a YouTube “Message to Scientology” on January 21, 2008 and was followed by distributed denial of service attacks (DDoS), prank calls, black faxes and other methods due to their views of internet censorship implemented by Scientology (list25)”.
These are just a few of the major attacks that have happened over the prior years, as you can see having a good CSIRT is almost one of the most important things a company or organization can have. Without the proper security personal in place the average company is at risk for many attacks and potential data/information theft.

