LATEST POST

FEATURE

Ransomware gangs are loving this dumb but deadly make-me-admin ESXi vulnerability

Vulnerabilities
249 views 26 secs

An article in The Register begins with a simple question: Do you have your VMware ESXi hypervisor joined to Active Directory? If you don’t know what The Register is even talking about, pass this article to your IT department directly. The Register explains the significance of a recently patched vulnerability, and why you should patch […]

FEATURE

Cost of a data breach up 10% to almost $5 million — IBM report

Data Breach News
383 views 2 mins

IBM’s new cost of a data breach report is out, and the numbers are not encouraging. By the numbers: $4.88 million — The global average cost of a data breach in 2024—a 10% increase over last year and the highest total ever. The highest average cost was $9.77 million for the healthcare sector. The industrial sector […]

FEATURE

Average Cost of Data Breaches in India hits over USD 2 million; Phishing tops list of cyber threats

Data Breach News
678 views 3 secs

Because so many firms outsource to India, it is interesting to note the average cost of a data breach in India may be less than in the U.S., but still significant. Financial Express Online reports: According to a report from the Reserve Bank of India (RBI) released on Monday, the average cost of a data […]

FEATURE

Software Maker MCG Health Settles Data Breach Suit for $8.8M

Data Breach News
912 views 3 mins

GovInfoSecurity reports that software vendor MCG Health has agreed to pay $8.8 million to settle a consolidated proposed federal class action lawsuit involving a 2020 hacking incident. The Seattle-based firm provides patient care guidelines to providers and health care plans. In a June 2022 announcement, they claimed that on March 25, 2022, they determined that an […]

FEATURE

CrowdStrike Outage: Critical Lessons for Third-Party Vendor Risk Management

Vendor News
800 views 2 mins

It wasn’t a cyberattack, but it was an incident that took down businesses globally. Last week, people all over the world turned on their work PCs only to see something they probably hadn’t seen in a while: the notorious Windows Blue Screen of Death error message. Flights had to be canceled, and at least one […]

FEATURE

Heads-Up: Threat Actor Uses Fake CrowdStrike Recovery Manual to Deliver Unidentified Stealer

Data Breach News
807 views 34 secs

Following up on recent reports that threat actors were capitalizing on the CrowdStrike glitch by using phishing attacks to obtain credentials or spread malware, CrowdStrike reported yesterday: On July 22, 2024, CrowdStrike Intelligence identified a Word document containing macros that download an unidentified stealer now tracked as Daolpu. The document impersonates a Microsoft recovery manual.1 Initial analysis […]

FEATURE

Devastating ransomware attack continues to disrupt services at Los Angeles Superior Court

News
1 views 20 secs

Another ransomware attack on a government agency shuts down services. The Los Angeles Times reports: The Los Angeles County Superior Court, the biggest trial court in the country, remained closed Monday as it sought to recover from a ransomware attack on its systems, officials said. The attack was detected Friday and doesn’t appear to be […]

FEATURE

Widespread IT Outage Due to CrowdStrike Update

News
718 views 2 mins

While the widespread outage due to a CrowdStrike update glitch was not a cyberattack, criminals quickly acted to take advantage of it, using phishing attacks. CISA has been posting updates. The most recent was yesterday evening. Check for later updates at CISA.gov. CrowdStrike’s most recent update on Falcon Content Update for Windows Hosts was early […]