Data Breach News, News, Vulnerabilities
December 10, 2024
883 views 14 secs 0

Multiple Cleo file transfer products being exploited by hackers; patch isn’t sufficient

Here we go again: threat actors are taking advantage of vulnerabilities in file transfer products. This time it is Cleo file transfer products. The Record reports: Cybersecurity researchers are warning that vulnerabilities in several file transfer products are being exploited by hackers, even after a patch was released by the developer. The vulnerability — CVE-2024-50623 — was […]

Data Breach News, News, Vulnerabilities
December 10, 2024
859 views 26 secs 0

US sanctions Chinese firm for hacking firewalls in ransomware attacks; $10 million reward for information

The U.S. Treasury Department has sanctioned Chinese cybersecurity company Sichuan Silence and one of its employees for their involvement in a series of Ragnarok ransomware attacks targeting U.S. critical infrastructure companies and many other victims worldwide in April 2020. BleepingComputer reports: According to the Department’s Office of Foreign Assets Control (OFAC), Sichuan Silence is a […]

Commentaries and Analyses, Legal News, News
December 10, 2024
1086 views 35 secs 0

Should regulators do more naming and shaming?

The U.K. Information Commissioner’s Office did an interesting two-year trial and the results suggest that publicly reprimanding public sector entities over breaches and data leaks is an effective strategy — even without any monetary penalties. Infosecurity Magazine reports: The publication of reprimands following data leaks has been cited as an “effective” deterrent for public authorities. […]

Data Breach News, Healthcare, News
December 10, 2024
842 views 2 mins 0

HealthAlliance of Hudson Valley Pays $550,000 to NYS; Failed to Address a Known Cybersecurity Vulnerability

New York State Attorney General Letitia James announced another data security enforcement settlement yesterday. HIPAA Journal writes: A New York healthcare provider that experienced a breach of the personal and protected health information of 242,641 New Yorkers has been ordered to pay a financial penalty of $550,000 and take steps to strengthen its data security […]

News, Consumer Alerts
December 04, 2024
1046 views 48 secs 0

Chinese hack of global telecom providers is ‘ongoing,’ officials urge people to use encrypted apps to communicate

The U.S. may not have totally kicked China-affiliated Salt Typhoon out of U.S. telecommunication systems, a new publication by CISA explains. Politico reports that CISA and the FBI are advising people to use encrypted communications: Jeff Greene, [executive assistant director of cybersecurity at the Cybersecurity and Infrastructure Security Agency], strongly urged Americans to “use your […]

Cyberattack, Data Breach News, News
December 03, 2024
830 views 28 secs 0

Russian Hackers Use Game-Changing Wi-Fi Hacking Technique to Breach US Networks

If you’re old enough to remember when neighbors “borrowed” your wi-fi or cable connection so they didn’t have to pay for services, then you may appreciate the “nearest neighbor” attack as part of cyberwar. Kyiv Post reports: Russian military spies have employed an innovative technique using neighboring Wi-Fi systems to breach secure networks in an […]

Commentaries and Analyses, Cyberattack, Data Breach News, News
December 02, 2024
973 views 44 secs 0

Vodka maker Stoli Group files for bankruptcy protection in U.S., cyberattack contributing to woes

CBS reports that the owner of Stoli brand vodka and Kentucky Owl bourbon has filed for Chapter 11 bankruptcy protection. Stoli Group (USA) “is experiencing financial difficulties,” according to the court filing.  The firm claims it has assets estimated between $100 million and $500 million, and liabilities between $50 million and $100 million. The company’s […]

Data Breach News, News
November 30, 2024
843 views 4 secs 0

T-Mobile Shares More Information on China-Linked Cyberattack

Security +Week reports that T-Mobile has shared additional information on a cyberattack believed to have been conducted by the China-linked threat group Salt Typhoon. T-Mobile’s Chief Security Officer, Jeff Simon, on Wednesday shared additional information in an attempt to clear up what the company described as “misleading media reports”.  “Many reports claim these bad actors […]

Data Breach News, Healthcare, News
November 29, 2024
837 views 14 secs 0

Ransom gang claims attack on NHS Alder Hey Children’s Hospital; Second attack on an NHS Trust this month

No ransomware gang has claimed responsiblity for the November 21 attack on the Wirral University Teaching Hospital NHS Trust but a second attack on a children’s hospital is also causing significant problems. The Register reports: The attack on Liverpool’s Alder Hey Children’s Hospital and Liverpool Heart and Chest Hospital NHS Foundation Trust is apparently unconnected […]