Data Breach News, Malware Ransomware
July 23, 2024
930 views 34 secs 0

Heads-Up: Threat Actor Uses Fake CrowdStrike Recovery Manual to Deliver Unidentified Stealer

Following up on recent reports that threat actors were capitalizing on the CrowdStrike glitch by using phishing attacks to obtain credentials or spread malware, CrowdStrike reported yesterday: On July 22, 2024, CrowdStrike Intelligence identified a Word document containing macros that download an unidentified stealer now tracked as Daolpu. The document impersonates a Microsoft recovery manual.1 Initial analysis […]

Data Breach News, Legal News, News
July 18, 2024
898 views 15 secs 0

SolarWinds beats most of U.S. SEC lawsuit over Russia-linked cyberattack

It’s been a rough time for federal agencies. First the Supreme Court undid 40 years of Chevron deference. Now a federal judge has gutted the Security and Exchange Commission’s lawsuit against SolarWinds. Reuters reports: A U.S. judge dismissed most of a Securities and Exchange Commission lawsuit accusing software company SolarWinds (SWI.N), opens new tab of defrauding investors […]

Data Breach News
July 16, 2024
936 views 9 secs 0

American Hacker in Turkey Linked to Massive AT&T Breach

404 Media reports: John Binns, a U.S. citizen who has been incarcerated in Turkey, is linked to the massive data breach of metadata belonging to nearly all of AT&T’s customers that the telecommunications giant announced on Friday, three sources independently told 404 Media. The breach, in which hackers stole call and text records from a […]

Data Breach News
July 16, 2024
984 views 47 secs 0

AI hacktivists target Disney in massive data leak

The Verge reports that self-described hacktivists claim to have snagged internal messages from Disney: Over a terabyte of data supposedly obtained from Disney’s internal messaging channels has been leaked online by a self-proclaimed “hacktivist group,” including login credentials, code, images, and information about unreleased projects. The anonymous group calling itself Nullbulge has claimed responsibility for the […]

Data Breach News, Commentaries and Analyses, News
July 16, 2024
368 views 3 mins 0

AT&T Allegedly Pays Ransom After Snowflake Account Breach

“What will it take for victims of ransomware, extortion and other types of cybercrime to stop directly funding their attackers?” That’s the great question posed by BankInfoSecurity after WIRED reported AT&T paid hackers $370,000 to delete the data they had stolen. BankinfoSecurity reports: How many of the approximately 165 victims of the campaign targeting Snowflake […]

Data Breach News
July 12, 2024
848 views 9 secs 0

Data breach exposes millions of mSpy spyware customers

In May 2024, mSpy suffered a data breach when unknown individuals managed to steal millions of customer support tickets. Customer data from the phone tracking app back to 2014 was involved. TechCrunch analyzed the leaked dataset — more than 100 gigabytes of Zendesk records — and reports: Some of the email addresses belong to unwitting […]

Data Breach News, Cyberattack, News
July 09, 2024
397 views 20 mins 0

The President Ordered a Board to Probe a Massive Russian Cyberattack. It Never Did.

by Craig Silverman, ProPublica ProPublica is a Pulitzer Prize-winning investigative newsroom. Sign up for The Big Story newsletter to receive stories like this one in your inbox. This story was originally published on ProPublica. Series: Zero Trust:Inside Microsoft’s Cybersecurity Failures Investigating how the world’s largest software provider handles the security of its own ubiquitous products. […]

Data Breach News
July 08, 2024
942 views 2 mins 0

Nearly 39 Million Records Were Exposed Online by Legal Services and Technology Company

vpnMentor reports: Cybersecurity Researcher, Jeremiah Fowler, discovered and reported to vpnMentor about a non-password-protected database that contained 38.6 million records belonging to Rapid Legal — a legal support services company that offers court filing, process serving, and document retrieval services for law firms, legal departments, and self-represented litigants. The database contained court documents, service agreements, and payment […]