2/29/2024

Chinese ‘Connected’ Cars Are a National Security Threat, Says Biden

Chinese PC-Maker Acemagic Customized Its Own Machines to Get Infected With Malware

New Backdoor Targeting European Officials Linked to Indian Diplomatic Events

Chinese Hackers Exploiting Ivanti VPN Flaws to Deploy New Malware

Ransomware-as-a-Service Spawns Wave of Cyberattacks in Middle East & Africa

Krebs: Calendar Meeting Links Used to Spread Mac Malware

The FBI’s New Tactic: Catching Suspects With Push Alerts

The Mysterious Case of the Missing Trump Trial Ransomware Leak

Citrix, Sophos Software Impacted by 2024 Leap Year Bugs

Brave Browser Launches Privacy-Focused AI Assistant on Android

SEC Investigating Whether OpenAI Investors Were Misled

A Government Watchdog Hacked a U.S. Federal Agency to Stress-Test Its Cloud Security
Law Firm Houser LLP Reports Data Breach Affecting More Than 325,000 People

20 Million Cutout.Pro User Records Leaked on Data Breach Forum

Healthcare Providers Hit by Frozen Payments in UnitedHealth Ransomware Outage

Change Healthcare Confirms Blackcat/AlphV Behind Ransomware Attack

Rio Hondo Community College (CA) Announces Breach After Ransomware Attack

Egyptian Health Department (IL) Cyberattack Affects Up to 100,000 Individuals

Malicious AI Models on Hugging Face Backdoor Users’ Machines

New Silver SAML Attack Evades Golden SAML Defenses in Identity Systems

GTPDOOR Linux Malware Targets Telecoms, Exploiting GPRS Roaming Networks

CISA Warns Against Using Hacked Ivanti Devices Even After Factory Resets

GitHub Enables Push Protection by Default to Stop Secrets Leak

2/28/2024

Biden Bans Rival Nations From Buying Sensitive U.S. Data—Good Luck

Cybersecurity Agencies Warn Ubiquiti EdgeRouter Users of APT28’s MooBot Threat

Japan Warns of Malicious PyPi Packages Created by North Korean Hackers

Lazarus Hackers Exploited Windows Zero-Day to Gain Kernel Privileges

Iran-Linked UNC1549 Hackers Target Middle East Aerospace & Defense Sectors

FBI Warns U.S. Healthcare Sector of Targeted BlackCat Ransomware Attacks

LockBit Ransomware Returns to Attacks With New Encryptors, Servers

Dictators Used Sandvine Tech to Censor the Internet: The U.S. Finally Did Something About It
Pharmaceutical Giant Cencora Says Data Was Stolen in a Cyberattack

Ransomware Gang Claims They Stole 6TB of Change Healthcare Data

Rhysida Ransomware Wants $3.6 Million for Lurie Children’s Hospital’s Stolen Data

Privacy-Focused Aleo Says KYC Leak Is Copy and Paste Error

Epic Games: “Zero Evidence” We Were Hacked by Mogilevich Gang

Savvy Seahorse Gang Uses DNS CNAME Records to Power Investor Scams

TimbreStealer Malware Spreading via Tax-themed Phishing Scam Targets IT Users

Anycubic Users Say Their 3D Printers Were Hacked to Warn of a Security Flaw

Kali Linux 2024.1 Released with 4 New Tools, UI Refresh

2/27/2024

UK Email Mistake Put ‘Lives at Risk’ for Afghans Who Had Worked With British Military

Industrial Cyber Espionage France’s Top Threat Ahead of 2024 Paris Olympics

Pre-Election Stress Tests Cause Internet Outages in Russia

Russian Hackers Hijack Ubiquiti Routers to Launch Stealthy Attacks

How the Pentagon Learned to Use Targeted Ads to Find Its Targets—and Vladimir Putin

The UK Is GPS-Tagging Thousands of Migrants

Change Healthcare Attack Raises Cash Concerns for Pharmacies

Nevada Sues to Deny Kids Access to Meta’s Messenger Encryption

OpenAI Says New York Times ‘Hacked’ ChatGPT to Build Copyright Lawsuit
Hessen Consumer Center Says Systems Encrypted by Ransomware

Open-Source Xeno RAT Trojan Emerges as a Potent Threat on GitHub

Malicious Code in Tornado Cash Governance Proposal Puts User Funds at Risk

LabHost Cybercrime Service Lets Anyone Phish Canadian Bank Users

eBay, VMware, McAfee Sites Hijacked in Sprawling Phishing Operation

Black Basta, Bl00dy Ransomware Gangs Join ScreenConnect Attacks

Four Million WordPress Sites Vulnerable to LiteSpeed Plugin Flaw

WordPress Plugin Alert – Critical SQLi Vulnerability Threatens 200K+ Websites

Windows February 2024 Updates Fail to Install With 0x800F0922 Errors

2/26/2024

CISA Issues Alert on APT29’s Cloud Infiltration Tactics

North Korean Hackers Targeting Developers with Malicious npm Packages

Krebs: FBI’s LockBit Takedown Postponed a Ticking Time Bomb in Fulton County, Ga.

LockBit Cybercrime Gang Says It Is Back Online Following Global Police Bust

8,000+ Domains of Trusted Brands Hijacked for Massive Spam Operation

White House Urges Tech Industry to Eliminate Memory Safety Vulnerabilities
Hackers Exploit 14-Year-Old CMS Editor on Gov’t, Edu Sites for SEO Poisoning

Steel Giant ThyssenKrupp Confirms Cyberattack on Automotive Division

U.S. Pharmacy Outage Triggered by ‘Blackcat’ Ransomware at UnitedHealth Unit, Sources Say

Banking Trojans Target Latin America and Europe Through Google Cloud Run

New IDAT Loader Attacks Using Steganography to Deploy Remcos RAT

NIST Releases Cybersecurity Framework 2.0

2/23-25/2024

AT&T Says Outage Not Caused by Cyberattack

AT&T’s Botched Network Update Caused Major Wireless Outage

AT&T to Give Billing Credits to Consumers Impacted by Outage

Operation Cronos: Who Are the LockBit Admins

LockBit Identity Reveal a Bigger Letdown Than Game of Thrones Season 8 & Every J.J. Abrams Production

LockBit Ransomware Gang Has Over $110 Million in Unspent Bitcoin

A Vending Machine Error Revealed Secret Face Recognition Tech

PayPal Files Patent for New Method to Detect Stolen Cookies

Microsoft Releases PyRIT – A Red Teaming Tool for Generative AI
The Royal Canadian Mounted Police (RCMP) Investigating Cyber Attack as Its Website Remains Down

Malawi Immigration Dept. Halts Passport Services Amid Cyberattack

U-Haul Tells 67,000 Customers That Cyber-Crooks Drove Away With Their Personal Info

Insomniac Games Alerts Employees Hit by Ransomware Data Breach

UnitedHealth Confirms Optum Hack Behind U.S. Healthcare Billing Outage

Aquent and CIGNA Affected by Third-Party Data Breach at Prospect Medical Holdings

Dormant PyPI Package Compromised to Spread Nova Sentinel Malware

Cybercriminal Groups Actively Exploiting ‘Catastrophic’ ScreenConnect Bug

2/22/2024

AT&T Service Restored After Customers Hit by Widespread Cellular Outages in the U.S.

Verizon and T-Mobile Users Also Affected

AT&T Outage Prompts Urgent Investigation Into Possible Cyberattack

White House Says FBI, Homeland Security Dept Looking Into AT&T Outage

Russian Hackers Attack Ukrainian Media Outlets

Russian-Aligned Network Doppelgänger Targets German Elections

Leak Reveals the Unusual Path of ‘Urgent’ Russian Threat Warning

Russia Arrests Three Alleged SugarLocker Ransomware Members

Krebs: New Leak Shows Business Side of China’s APT Menace
Russian Government Software Backdoored to Deploy Konni RAT Malware

SMBs at Risk From SendGrid-Focused Phishing Tactics

Prescriptions Nationwide Impacted by Cyber Incident at Change Healthcare

ScreenConnect Servers Hacked in LockBit Ransomware Attacks

Authorities Dismantled LockBit Before It Could Unleash Revamped Variant

Ransomware Associated With LockBit Still Spreading 2 Days After Server Takedown

Zero-Click Apple Shortcuts Vulnerability Allows Silent Data Theft

Bitwarden’s New Auto-Fill Option Adds Phishing Resistance

Avast Fined $16.5 Million for ‘Privacy’ Software That Actually Sold Users’ Browsing Data

2/21/2024

Russian Hackers Launch Email Campaigns to Demoralize Ukrainians

Online Dump of Chinese Hacking Documents Offers a Rare Window Into Pervasive State Surveillance

Mustang Panda Targets Asia with Advanced PlugX Variant DOPLUGS

Biden Order Seeks to Improve U.S. Port Cybersecurity

U.S. Gov’t Shares Cyberattack Defense Tips for Water Utilities

Cyber Threats Against Heavy Industry Intensify

Apple’s iMessage Is Getting Future-Resistant Encryption

U.S. Offering Rewards for Information on Leaders of LockBit Ransomware Group

LockBit Held Victims’ Data Even After Receiving Ransom Payments to Delete It

Duo Face 20 Years in Prison Over Counterfeit iPhone Scam

Over 40% of Firms Struggle With Cybersecurity Talent Shortage
U.S. Health Tech Giant Change Healthcare Hit by Cyberattack

eSentire Confirms Rhysida Ransomware Victims

Butler County (PA) Network Hacked, Data Stolen, Officials Announce

New ‘VietCredCare’ Stealer Targeting Facebook Advertisers in Vietnam

New SSH-Snake Malware Steals SSH Keys to Spread Across the Network

Hackers Abuse Google Cloud Run In Massive Banking Trojan Campaign

ScreenConnect Critical Bug Now Under Attack as Exploit Code Emerges

Joomla Fixes XSS Flaws That Could Expose Sites to RCE Attacks

New Wi-Fi Vulnerabilities Expose Android and Linux Devices to Hackers

Microsoft Finally Expands Free Purview Audit Logging—but Only for Government t Agencies

2/20/2024

Multiple Top UK Universities Recovering Following Targeted DDoS Attack From Anonymous Sudan

Critical Infrastructure Software Maker PSI Software SE Confirms Ransomware Attack

Hacked Iraqi Voter Information Found for Sale Online

Signal Finally Rolls Out Usernames, So You Can Keep Your Phone Number Private

Vietnam to Collect Biometrics – Even DNA – For New ID Cards

Carmakers Park Aging Models as U.N. Cyber Rule Comes Into Effect

Knight Ransomware Source Code for Sale After Leak Site Shuts Down

Krebs: Feds Seize LockBit Ransomware Websites, Offer Decryption Tools, Troll Affiliates

Median Ransomware Demands Grow to $600K a Pop
India’s Motilal Oswal Says Operations Unaffected by Cyber Incident

Fulton County (GA) Officials Say They Did Not Pay Ransom After Cybersecurity Attack

Prince George’s County Public Schools (MD) Says Data of 100,000 People Affected in Ransomware Attack

Insider Steals 80,000 Email Addresses From UK District Councils

Linux Malware Campaign “Migo” Targets Redis For Cryptomining

VoltSchemer Attacks Use Wireless Chargers to Inject Voice Commands, Fry Phones

New Typosquatting and Repojacking Tactics Uncovered on PyPI

Critical Flaws Found in ConnectWise ScreenConnect Software – Patch Now

VMware Urges Admins to Remove Deprecated, Vulnerable Auth Plug-in

2/19/2024

Israeli Aircraft Survive “Cyber-Hijacking” Attempts

Iranian Hackers Target Middle East Policy Experts with New BASICSTAR Backdoor

North Korean Hackers Linked to Defense Sector Supply-Chain Attack

The Danger Lurking Just Below Ukraine’s Surface

Cybercriminals Have Small Town, USA, in Their Crosshairs: How to Fight Back

LockBit Cybercrime Gang Disrupted by International Police Operation

EU Launches Investigation Into TikTok Over Child Protection and Privacy Concerns
Wyze Says Camera Breach Let 13,000 Customers Briefly See Into Other People’s Homes

Cactus Ransomware Claim to Steal 1.5TB of Schneider Electric Data

Spectrum Vision (NY) Files Notice of Breach Affecting Patients of Multiple Providers

Meta Warns of 8 Spyware Firms Targeting iOS, Android, and Windows Devices

Anatsa Banking Trojan Resurfaces, Targets European Banks

Hackers Exploit Critical RCE Flaw in Bricks WordPress Site Builder

Over 28,500 Exchange Servers Vulnerable to Actively Exploited Bug

2/16-18/2024

FBI Director Says China Cyberattacks on U.S. Infrastructure Now at Unprecedented Scale

Russian APT ‘Winter Vivern’ Targets European Government, Military

U.S. State Government Network Breached via Former Employee’s Account

KeyTrap Attack: Internet Access Disrupted with One DNS Packet

North Korean Hackers Now Launder Stolen Crypto via YoMix Tumbler

Hackers Exploit EU Agenda in Spear Phishing Campaigns

Hacker Arrested for Selling Bank Accounts of U.S., Canadian Users

FBI’s Most-Wanted Zeus and IcedID Malware Mastermind Pleads Guilty
Wyze Security Cameras Are Coming Back Online After an Outage Cut Off Access

Wyze Cameras Let Some Owners See Into a Stranger’s Home — Again

ALPHV Ransomware Claims loanDepot, Prudential Financial Breaches

Alpha Ransomware Linked to NetWalker Operation Dismantled in 2021

Virginia Farm Bureau Notifies 261,187 of October 2022 Data Breach

CISA Warning: Akira Ransomware Exploiting Cisco ASA/FTD Vulnerability

SolarWinds Fixes Critical RCE Bugs in Access Rights Audit Solution

2/15/2024

Pentagon Launches Nuke-Spotting Satellites Amid Russian Space Bomb Rumors

U.S. Conducted Cyberattack on Suspected Iranian Spy Ship

DOJ Disrupts Russian Hacking Campaign That Infiltrated Homes, Small Businesses

Russian Turla Hackers Target Polish NGOs with New TinyTurla-NG Backdoor

GoldPickaxe Trojan Blends Biometrics Theft and Deepfakes to Scam Banks

Nginx Core Developer Quits Project in Security Dispute, Starts “Freenginx” Fork

OpenAI Blocks State-Sponsored Hackers From Using ChatGPT

Neuberger: Defining Espionage vs. Pre-Positioning for Attacks Is Key to Battling State Actors

U.S. Offers Up to $15 Million for Tips on ALPHV/Blackcat Ransomware Gang
LockBit Claims Ransomware Attack on Fulton County, Georgia

LockBit Claims Cyberattack on Indian Broker Motilal Oswal

Kadac Australia Hit by Medusa Ransomware Attack, Threat Group Demands $100K

“TicTacToe Dropper” Malware Distribution Tactics Revealed

New Qbot Malware Variant Uses Fake Adobe Installer Popup for Evasion

AWS SNS Hijackings Fuel Cloud Smishing Campaign

RansomHouse Gang Automates VMware ESXi Attacks With New MrAgent Tool

Over 13,000 Ivanti Gateways Vulnerable to Actively Exploited Bugs

Microsoft: New Critical Exchange Bug Exploited as Zero-Day

2/14/2024

Microsoft and OpenAI Say Criminal & Nation-State Hackers Are Using ChatGPT to Improve Cyberattacks

China, Russia, and Iran

Generative AI Financial Scammers Are Getting Very Good at Duping Work Email

‘AI Girlfriends’ Are a Privacy Nightmare

Iranian Hackers Target Israel and U.S. to Sway Public Opinion in Hamas Conflict

China’s Volt Typhoon Spies Broke Into Emergency Network of ‘Large’ U.S. City

Financial Firms Expect Big Changes from European Cyber Rules

DuckDuckGo Browser Gets End-to-End Encrypted Sync Feature
Trans-Northern Pipelines Investigating ALPHV Ransomware Attack Claims

Krebs: Minnesota-Based U.S. Internet Leaked Years of Internal, Customer Emails

Colorado Public Defender’s Office Disrupted by Cyberattack

Romanian Hospital Ransomware Crisis Attributed to Third-Party Breach: Hipocrate Information System

Ubuntu ‘command-not-found’ Tool Could Trick Users into Installing Rogue Packages

New Critical Microsoft Outlook RCE Bug Is Trivial to Exploit

Zoom Patches Critical Privilege Elevation Flaw in Windows Apps

Microsoft Exchange Update Enables Extended Protection by Default

2/13/2024

U.S., UK and India Among the Countries Most At Risk of Election Cyber Interference

U.S. Needs to Take China’s Cyber-Threat to Infrastructure More Seriously

As Online Romance Scams Rise, Banks Ask For Help to Save Victims Billions

Hackers Steal $290 Million in Crypto From PlayDapp Gaming Platform

200,000 Facebook Marketplace User Records Leaked on Hacking Forum

Meta Says Risk of Account Theft After Phone Number Recycling Isn’t Its Problem to Solve

Cyber Vendors See Signs of Market Recovery

Hackers Used New Windows Defender Zero-Day to Drop DarkMe Malware

Krebs: Fat Patch Tuesday, February 2024 Edition

Microsoft February 2024 Patch Tuesday Fixes 2 Zero-Days, 73 Flaws
Bank of America Customers at Risk After Vender Infosys McCamish Systems Data Breach

Prudential Financial Breached in Data Theft Cyberattack

Integris Health Says Data Breach Impacts 2.4 Million Patients

Fertility Tracker Glow Fixes Bug That Exposed Users’ Personal Data

Southern Water Notifies Customers and Employees of Data Breach

German Battery Maker Varta Says Five Plants Hit by Cyberattack

Glupteba Botnet Evades Detection with Undocumented UEFI Bootkit

PikaBot Resurfaces with Streamlined Code and Deceptive Tactics

Notorious Bumblebee Malware Re-emerges with New Attack Methods

Ivanti Vulnerability Exploited to Install ‘DSLog’ Backdoor on 670+ IT Infrastructures

2/12/2024

U.S. Government Accountability Office Agency Says It Was Alerted to Breach by Contractor CGI Federal

China Targets U.S. Hacking Ops in Media Offensive

A Backroom Deal Looms Over a High-Stakes U.S. Surveillance Fight

The Hidden Injustice of Cyberattacks

FCC Gets Tough: Telcos Must Now Tell You When Your Personal Info Is Stolen

Rhysida Ransomware Cracked, Free Decryption Tool Released

United Nations Digging Into DPRK Crypto Cyberattacks Totaling $3B
Ransomware Attack Forces 21 Romanian Hospitals to Go Offline

Sophisticated Cyber-Attack Hits Islamic Charity in Saudi Arabia

Jet Engine Dealer to Airlines Willis Lease Finance Corporation Discloses ‘Unauthorized Activity’

Caravan and Motorhome Club Admits Wide Array of Personal Data Potentially Accessed

City of Haysville (KS) Email Account Compromised

Malicious Campaign Impacts Hundreds of Microsoft Azure Accounts

CISA: Roundcube Email Server Bug Now Exploited in Attacks

2/9-11/2024

Ukraine Telecom CEO Describes Russian Attack That Wiped Thousands of Computers

AI-Powered Robocalls Banned by FTC Ahead of U.S. Election

Americans Lost Record $10 Billion to Fraud in 2023, FTC Warns

Canada Declares Flipper Zero Public Enemy No. 1 in Car-Theft Crackdown

U.S. DoJ Dismantles Warzone RAT Infrastructure, Arrests Key Operators

UK to Replace Physical Biometric Immigration Cards With E-visas

Middle East Cybersecurity Teams Want More Budget

How ‘Big 4′ Nations’ Cyber Capabilities Threaten the West

A Celebrated Cryptography-Breaking Algorithm Just Got an Upgrade
‘World’s Biggest Casino’ App WinStar Exposed Customers’ Personal Data

Krebs: Juniper Support Portal Exposed Customer Device Info

Connecticut College Discloses Data Breach From 11 Months Ago

Vail-Summit Orthopaedics & Neurosurgery (CA) Notifies Patients of Recent Data Breach

New Coyote Trojan Targets 61 Brazilian Banks with Nim-Powered Attack

MoqHao Android Malware Evolves with Auto-Execution Capability

New RustDoor macOS Malware Impersonates Visual Studio Update

ExpressVPN Bug Has Been Leaking Some DNS Requests for Years

Fortinet Warns of Critical FortiOS SSL VPN Flaw Likely Under Active Exploitation

2/8/2024

UN Experts Investigate 58 Cyberattacks Worth $3 Bln by North Korea

Kimsuky’s New Golang Stealer ‘Troll’ and ‘GoBear’ Backdoor Target South Korea

Iran-Israel Cyber War Goes Global

Krebs: From Cybercrime Saul Goodman to the Russian GRU

Generative AI Pushed Cyber, Business Teams Closer at E-Commerce Giant Zalando

London Underground Is Testing Real-Time AI Surveillance Tools to Spot Crime

Fake LastPass Lookalike Made It Into Apple App Store

U.S. Offers $10 Million for Tips on Hive Ransomware Leadership
Data Breaches at Viamedis and Almerys Impact 33 Million in France

Hyundai Motor Europe Hit by Black Basta Ransomware Attack

Funerals Reportedly Canceled Due to Ransomware Attack on Austrian Town

Android XLoader Malware Can Now Auto-Execute After Installation

Raspberry Robin Evolves With Stealth Tactics, New Exploits

HijackLoader Evolves: Researchers Decode the Latest Evasion Methods

Critical Patches Released for New Flaws in Cisco, Fortinet, VMware Products

Ivanti: Patch New Connect Secure Auth Bypass Bug Immediately

2/7/2024

U.S.: Chinese Hacking Campaign Aimed At Critical Infrastructure Goes Back Five Years

Chinese Embassy in Netherlands: China Would Never Allow Cyberattacks

Researchers: Chinese Firm Behind ‘News’ Websites Pushes Pro-Beijing Content Globally

Meta to Introduce Labeling for AI-Generated Images Ahead of U.S. Election

Governments and Tech Giants Unite Against Commercial Spyware

Ransomware Payments Hit a Record $1.1 Billion in 2023

3 Million Smart Toothbrushes Were Not Used in a DDoS Attack After All, but It Could Happen

Las Vegas Gears Up for Super Bowl Cyber Challenge

Half of Polled Infosec Pros Say Their Degree Was Less Than Useful for Real-World Work
Cyber Attack on Washington County (PA) Now Considered Ransomware Attack

California State Worker Union Targeted by Ransomware

HopSkipDrive (CA) Notifies Over 155k of Breach Involving Their Sensitive Information

After FBI Takedown, KV-Botnet Operators Shift Tactics in Attempt to Bounce Back

Critical Bootloader Vulnerability in Shim Impacts Nearly All Linux Distros

Critical Cisco Bug Exposes Expressway Gateways to CSRF Attacks

Fortinet Warns of New FortiSIEM RCE Bugs in Confusing Disclosure

Experts Detail New Flaws in Azure HDInsight Spark, Kafka, and Hadoop Services

Google Tests Blocking Side-Loaded Android Apps With Risky Permissions

2/6/2024

Chinese Hackers Infect Dutch Military Network With Malware

Google Says Spyware Vendors Behind Most Zero-Days It Discovers

U.S. Border Agency to Hire 50 AI Experts to Crack Down on Drugs, Child Abuse -Document

WhatsApp Chats Will Soon Work With Other Encrypted Messaging Apps

Meta’s Oversight Board Urges a Policy Change After a Fake Biden Video

Explicit Comments on School App After Apparent Hack

Malware-as-a-Service Now the Top Threat to Organizations

Mozilla Adds Paid-for Data-Deletion Tier to Monitor, Its Privacy-Breach Radar
Verizon Insider Data Breach Hits Over 63,000 Employees

Hackers Steal Data of 2 Million in SQL Injection, XSS Attacks

Data Breach at French Healthcare Services Firm Puts Millions at Risk

J.D. Gilmour (CA) Breached by Unauthorized Access to Employee Email Account

ResumeLooters Gang Raids Retail and Job Site Data

Beware: Fake Facebook Job Ads Spreading ‘Ov3r_Stealer’ to Steal Crypto and Credentials

JetBrains Warns of New TeamCity Auth Bypass Vulnerability

Mitsubishi Electric Factory Automation Flaws Expose Engineering Workstations

2/5/2024

Philippines Wards off Cyber Attacks From China-Based Hackers

Pegasus Spyware Targeted iPhones of Journalists and Activists in Jordan

U.S. Rolls Out Visa Restriction Policy on People Who Misuse Spyware to Target Journalists, Activists

UK Court Backlog Blocks Attempts to Fight Fraud Epidemic

Murder Suspect Mistakenly Released From Jail After ‘Cybersecurity Incident’

Finance Worker Pays Out $25 Million After Video Call With Deepfake ‘Chief Financial Officer’

Teens Committing Scary Cybercrimes: What’s Behind the Disturbing Trend?
HPE Investigates New Breach After Data for Sale on Hacking Forum

City of Jacksonville Beach (FL) Releases Statement on Last Week’s ‘Cybersecurity Event’

Emmanuel College (MA) Reports Data Breach Affecting the Personal Information of 89k Individuals

Patchwork Using Romance Scam Lures to Infect Android Devices with VajraSpy Malware

New Mispadu Banking Trojan Exploiting Windows SmartScreen Flaw

Newest Ivanti SSRF Zero-Day Now Under Mass Exploitation

Microsoft Outlook December Updates Trigger ICS Security Alerts

2/2-4/2024

Russian APT28 Hackers Targeting High-Value Orgs with NTLM Relay Attacks

U.S. Unveils Sanctions Targeting Iran Drone, Cyber Programs in Wake of Deadly Proxy Strike

Myanmar Hands Over Mob Bosses in Cyber-Fraud Bust

Rubrik Plans April Listing Amid U.S. Probe Into Former Employee -Sources

Teen Chatting App Wizz Removed from Apple and Google Stores for Sextortion Concerns

BTC-e Server Admin Indicted for Laundering Ransom Payments, Stolen Crypto

Check if You’re in Google Chrome’s Third-Party Cookie Phaseout Test

Microsoft Is Bringing the Linux Sudo Command to Windows Server

Mastodon Vulnerability Allows Hackers to Hijack Any Decentralized Account

Researchers Remotely Exploit Devices Used to Manage Safe Aircraft Landings and Takeoffs
Russian Hackers Believed to be Behind Cyber Attack on Iceland’s Reykjavík University

Lurie Children’s Hospital (IL) Took Systems Offline After Cyberattack

Northern Light Health (ME) Computer Servers Hacked, No Patient Information Leaked

Pennsylvania Courts’ Website Target of Cyber Attack

FBI Joins Investigation Into City of Germantown (TN) Cyberattack

Clackamas Community College (OR) Still Recovering After ‘Ransomware Attack’

Knight Barry Provides Notice of Data Breach to Consumers Following Cyberattack

Clorox Says Cyberattack Caused $49 Million in Expenses

AnyDesk Hacked: Popular Remote Desktop Software Mandates Password Reset

Leaky Vessels Flaws Allow Hackers to Escape Docker, Runc Containers

2/1/2024

Cloudflare Says State-Backed Hackers Tried to Burrow Into Its Global Network

Using Auth Tokens Stolen in Okta Attack

U.S. Agencies Failure to Oversee Ransomware Protections Threaten White House Cyber Goals

Aviation Industry to Tackle GPS Security Concerns

A Startup Allegedly ‘Hacked the World.’ Then Came the Censorship—and Now the Backlash

Ex-CIA Software Engineer Sentenced to 40 Years for Giving Secrets to WikiLeaks

Krebs: Arrests in $400M SIM-Swap Tied to Heist at FTX?

Interpol-Led Initiative Targets 1300 Suspicious IPs

Palo Alto Networks Must Pay Centripetal $151.5 Million in Patent Dispute

Rise of Deepfake Threats Means Biometric Security Measures Won’t Be Enough

FTC Orders Blackbaud to Boost Security After Massive Data Breach
Football Australia Investigating ‘Possible Data Breach’

Encore Bank Data Breach After Hackers Access an Employee Email Account

More Android Apps Riddled With Malware Spotted on Google Play

PurpleFox Malware Infects Thousands of Computers in Ukraine

FritzFrog Returns with Log4Shell and PwnKit, Spreading Malware Inside Your Network

Exposed Docker APIs Under Attack in ‘Commando Cat’ Cryptojacking Campaign

HeadCrab 2.0 Goes Fileless, Targeting Redis Servers for Crypto Mining

Warning: New Malware Emerges in Attacks Exploiting Ivanti VPN Vulnerabilities

New Windows Event Log Zero-Day Flaw Gets Unofficial Patches

CISA Orders Federal Agencies to Disconnect Ivanti VPN Appliances by Saturday