23 Oct QNAP takes down server behind widespread brute-force attacks QNAP took down a malicious server used in widespread brute-force attacks targeting Internet-exposed NAS (network-attached storage) devices with weak passwords. […]
23 Oct City of Philadelphia discloses data breach after five months The City of Philadelphia is investigating a data breach after attackers “may have gained access” to City email accounts containing personal and protected health information five months ago, in May. […]
21 Oct American Family Insurance confirms cyberattack is behind IT outages Insurance giant American Family Insurance has confirmed it suffered a cyberattack and shut down portions of its IT systems after customers reported website outages all week. […]
21 Oct The Week in Ransomware – October 20th 2023 – Fighting Back This was a bad week for ransomware, with the Trigona ransomware suffering a data breach and law enforcement disrupting the RagnarLocker ransomware operation. […]
21 Oct International Criminal Court systems breached for cyber espionage The International Criminal Court provided additional information about the cyberattack five weeks ago, saying that it was a targeted operation for espionage purposes. […]
20 Oct Cisco discloses new IOS XE zero-day exploited to deploy malware implant Cisco disclosed a new high-severity zero-day (CVE-2023-20273) today, actively exploited to deploy malicious implants on IOS XE devices compromised using the CVE-2023-20198 zero-day unveiled earlier this week. […]
20 Oct Okta says its support system was breached using stolen credentials Okta says attackers accessed files containing cookies and session tokens uploaded by customers to its support management system after breaching it using stolen credentials. […]
20 Oct Ragnar Locker ransomware developer arrested in France Law enforcement agencies arrested a malware developer linked with the Ragnar Locker ransomware gang and seized the group’s dark web sites in a joint international operation. […]
20 Oct Critical RCE flaws found in SolarWinds access audit solution Security researchers found three critical remote code execution vulnerabilities in the SolarWinds Access Rights Manager (ARM) product that remote attackers could use to run code with SYSTEM privileges. […]
20 Oct Kwik Trip finally confirms cyberattack was behind ongoing outage Two weeks into an ongoing IT outage, Kwik Trip finally confirmed that it’s investigating a cyberattack impacting the convenience store chain’s internal network since October 9. […]