Cyberattacks: Page 20
-
IBM file transfer service under active exploit, security researchers warn
Ransomware groups are still exploiting a vulnerability in unpatched versions of Aspera Faspex almost four months after IBM issued a patch.
By Matt Kapko • March 31, 2023 -
Supply chain attack against 3CX communications app could impact thousands
Researchers warn a state-linked actor has launched malicious activity against a voice application widely used by major corporate customers.
By David Jones • March 30, 2023 -
Trendline
Top 5 stories from Cybersecurity Dive
A wave of rules, regulations and federal action is putting pressure on businesses to shore up security amid a backdrop of emboldened threat actors has a nice ring to it.
By Cybersecurity Dive staff -
Australiaās Crown Resorts hit in Clop ransomware spree
The company’s investigation into the attack is ongoing and it’s unable to confirm the type or amount of data potentially compromised.
By Matt Kapko • March 30, 2023 -
White House eyes the next frontier of cybersecurity ā space
The focus comes more than a year into the Ukraine war, which led to nation state attacks on commercial satellites.
By David Jones • March 30, 2023 -
Lumen Technologies says ransomware attack disrupted call centers
The company has restored basic services, and is working to get operations fully back to normal.
By David Jones • March 29, 2023 -
Clop ransomware group triggers new attack spree, hitting household brands
A patch has been available for a vulnerability in GoAnywhere since early February, but a threat actor continues to claim additional victims.
By Matt Kapko • March 28, 2023 -
Lumen Technologies hit with 2 separate security incidents
The company, in the same filing with the SEC, said a ransomware incident and a separate malware attack led to a limited amount of data being stolen.
By David Jones • March 28, 2023 -
CISA summons outside tips to alert victims of early-stage ransomware
Post-breach notifications might seem too late for victim organizations, but swift action can prevent ransomware and data exfiltration.
By Matt Kapko • March 27, 2023 -
Ransomware gangs incite fear in victims to fuel attacks
Attacks involving data theft nearly doubled and harassment spiked 20 times by late 2022, Palo Alto Networks Unit 42 said.
By Matt Kapko • March 21, 2023 -
Ransomware hit critical infrastructure hard in 2022, FBI says
Many ransomware attacks go unreported to law enforcement, making it difficult for authorities to assess the full scope of impact.
By Matt Kapko • March 15, 2023 -
MKS Instruments hit by class-action litigation following ransomware attack
The company, a supplier to the semiconductor industry, has begun to recover its production capabilities and is working to upgrade its cyber defenses.
By David Jones • March 15, 2023 -
Dole doesnāt expect to recover full costs of ransomware attack
The complex insurance market means the ability to recover financially in many cases is difficult, but Dole said the overall impact of the incident was limited.
By David Jones • March 8, 2023 -
Insurance holding company Group 1001 says operations restored after ransomware attack
The company did not pay a ransom following a February attack that disrupted operations at several of its member companies.
By David Jones • March 7, 2023 -
LastPass aftermath leaves long to-do list for business customers
Organizations using the password manager are exposed after a major breach compromised credentials and, potentially, business secrets.
By Matt Kapko • March 6, 2023 -
MKS Instruments says February ransomware attack will clip $200M from revenue
The technology supplier for semiconductor manufacturing and advanced electronics had to temporarily halt some of its operations, disrupting its supply chain, following the attack.
By David Jones • March 2, 2023 -
LastPass breach timeline: How a monthslong cyberattack unraveled
A threat actor evaded detection for months and blended in with legitimate activity after targeting 1 of 4 engineers with access to keys to the kingdom.
By Matt Kapko • Updated March 3, 2023 -
LastPass CEO admits disclosure mistakes, pledges improved communications
The criticism leveled at LastPass has grown as the password manager shared more alarming details on the compromise.
By Matt Kapko • March 1, 2023 -
LastPass compromise grew worse after DevOps engineer targeted for encryption key
A threat actor used data from multiple breaches and a vulnerability on a high-level employee’s home computer to steal customer passwords.
By Matt Kapko • Feb. 28, 2023 -
Los Angeles school district confirms sensitive student data leaked
Highly sensitive health records, including psychological evaluations, of about 2,000 students were leaked as a result of the ransomware attack that hit the Los Angeles Unified School District last year.
By Matt Kapko • Feb. 27, 2023 -
Ukraine discovers lingering breaches 1 year into Russia invasion
Multiple Ukraine government website breaches were discovered on the eve of the one-year mark of Russia’s invasion.
By Matt Kapko • Feb. 24, 2023 -
For GoDaddy customers, a long dwell time means all could be victims
The web hosting provider has not shared additional details outlining the extent of the breach, but experts are highlighting the incident's multiple red flags.
By Matt Kapko • Feb. 23, 2023 -
Dole hit by ransomware, North America operations briefly disrupted
The attack against the produce giant marks the latest in a series of cybersecurity threats targeting the food industry.
By David Jones • Feb. 23, 2023 -
Attackers reduce complexity to catch more potential victims
Palo Alto Networks warns attackers are building economies of scale by conducting more efficient operations and complementing their skills with commercially available tools.
By Matt Kapko • Feb. 23, 2023 -
Phishing, king of compromise, remains top initial access vector
IBM Security X-Force’s annual threat intelligence report highlights what makes phishing such a dangerous and persistent point of entry.
By Matt Kapko • Feb. 22, 2023 -
Companies grapple with post-breach disclosure risks
The concerns leading organizations to withhold information are aplenty, including reputational damage and financial impacts.
By Matt Kapko • Feb. 16, 2023