Saturday , November 23 2024

Hot Topic

Cloudflare Blog
Cloudflare hacked using auth tokens stolen in Okta attack

Cloudflare

Cloudflare disclosed that its internal Atlassian server was breached by a suspected ‘nation-state attacker’. The attacker gained access to Cloudflare’s Confluence wiki, Jira bug database, and Bitbucket source code management system. The attacker first accessed Cloudflare’s self-hosted Atlassian server on November 14, and then accessed the company’s Confluence and Jira …

Read More »

Cybernews report
‘Mother of all Breaches’ sees 26billion records leaked online

newspaper

A database of 26 billion leaked records has been discovered called the “Mother of all Breaches.” Cybersecurity researcher Bob Dyachenko and the team at Cybernews found a huge 12-terabyte leak. The database contains both credentials and sensitive data, but it’s not clear who is responsible for it. Having your personal …

Read More »

Medibank breach
Australia imposes sanctions on Russian hacker

A Medibank branch in Sydney

Australia has imposed cyber sanctions on a Russian hacker for his alleged role in a 2022 ransomware attack. This is the country’s first use of this penalty. A cyberattack stole personal data from 9.7 million Medibank customers in Australia. The data includes names, birth dates, medical information, and Medicare numbers. …

Read More »

Swedish customers affected
Akira ransomware hits cloud service Tietoevry

TIETOEVRY

A ransomware attack on a data center run by Finnish IT company Tietoevry has caused widespread outages in Sweden, affecting healthcare, government services, retail outlets, and the largest cinema chain in the country. Tietoevry, a publicly traded company based in Espoo, Finland, reported that an attack occurred over the weekend. …

Read More »

Microsoft’s Top Execs’ Emails Breached By Russia-Linked APT Attack

Microsoft

The Microsoft security team detected a nation-state attack on our corporate systems on January 12, 2024, and immediately activated our response process to investigate, disrupt malicious activity, mitigate the attack, and deny the threat actor further access. Microsoft has identified the threat actor as Midnight Blizzard, the Russian state-sponsored actor …

Read More »

Mandiant report
“Group UNC3886” exploiting VMware bug since late 2021

vmware

Mandiant and VMware Product Security found that the UNC3886 espionage group has been exploiting CVE-2023-34048 since late 2021, even though it was publicly reported and patched in October 2023. Mandiant found new ways that UNC3886 uses to attack computer systems. They focus on technologies that don’t have EDR protection and …

Read More »

Vast Voter Data Leaks Cast Shadow Over Indonesia’s 2024 Presidential Election

Indonesia

Investigators from Resecurity’s HUNTER (HUMINT) have found that Indonesia is increasingly being targeted by cyber-threat actors who have staged attacks that pose significant long-term risks to the integrity of the country’s elections. These findings coincide with the critical and fast-approaching Indonesian presidential election set to take place in February this …

Read More »

Google’s New Email Requirements For 2024
February 1, 2024: A Date All Email Senders Should Care About

Google yahoo

If your organization sends a large number of emails to Google and Yahoo accounts, there’s an important date to remember: February 1st. On this day, it is important to be aware if you are sending more than 5000 emails daily to Google and Yahoo mailboxes. So, What Is the Issue? …

Read More »

CloudSek report
Without password, hackers access your Google account

google

Security researchers found a hack that lets cybercriminals access people’s Google accounts without needing their passwords. CloudSEK, a security firm, has discovered a highly perilous type of malware that illicitly obtains individuals’ sensitive data by exploiting third-party cookies. Disturbingly, this malicious software has already caught the attention of hacking groups, …

Read More »