Data Breach News, News, Vulnerabilities
November 09, 2023
684 views 43 secs 0

Microsoft: SysAid zero-day flaw exploited in Clop ransomware attacks

Bleeping Computer reports: Threat actors are exploiting a zero-day vulnerability in the service management software SysAid to gain access to corporate servers for data theft and to deploy Clop ransomware. SysAid is a comprehensive IT Service Management (ITSM) solution that provides a suite of tools for managing various IT services within an organization. The Clop ransomware is notorious […]

Data Breach News, Finance
October 09, 2023
800 views 2 secs 0

Flagstar Bank third-party breach affects more than 800,000 customers

Bleeping Computer reports Flagstar Bank in Michigan is notifying 837,390 customers whose personal information, including Social Security numbers, was acquired by the Clop hacking gang in May. The breach was not of Flagstar’s systems but at FISERV, a vendor they use for payment processing and mobile banking services. FISERV was one of thousands of entities […]

Data Breach News, Education Sector
September 26, 2023
732 views 25 secs 0

MOVEit fallout continues: National Student Clearinghouse discloses for 900 schools affected

The figures for the MOVEit data breach continue to rise to alarming heights. The Record reports: The National Student Clearinghouse (NSC) reported that nearly 900 colleges and universities across the U.S. had data stolen during attacks by a Russia-based ransomware gang exploiting the popular MOVEit file-sharing tool. The nonprofit manages educational reporting, data exchange, verification, […]

Data Breach News
September 18, 2023
886 views 48 secs 0

Victims of MOVEit breach continue to emerge

One of the biggest breaches of 2023 involves the 0-day attack by Clop threat actors on file transfer software called MOVEit by Progress Software. The attack was launched in May and June. It affected more than 1,100 entities and more than 56 million people according to statistics compiled by Emsisoft. One of the most recent […]

News, New Threats
August 27, 2023
6991 views 7 mins 0

Etiology of a Breach

Most data breaches involve some level of victim human error, which theoretically employee training can address.  Human error can take the form of clicking on a link, where the email address of the sender is unknown to the person clicking on the link.  Malware then enters the scene.  Another common human error scenario involves phishing […]