Monday , December 11 2023

Daily Cybersecurity Update, April 24- 2023

Black Basta ransomware claimed a new victim – Yellow Pages Canada. The threat actor ended up leaking a sample archive containing sensitive details. Speaking of ransomware, a Dutch cable TV provider fell prey to one. The attack was quite disruptive, taking offline every service. In a completely new attack tactic, threat actors are abusing Kubernetes RBAC to run miners. Read along to know everything that transpired over the weekend.


Yellow Pages Canada disclosed a cyberattack after the Black Basta ransomware group claimed responsibility and leaked the ID documents, tax documents, sales and purchase agreements, and other sensitive information on its leak site.


Dutch cable TV provider SKPNET suffered a ransomware attack that caused an outage of all services, including internet and televisionphones, and SKPNET email, among others.


The American Bar Association (ABA) recently informed around 1.5 million lawyers and others of a data breach that affected their login information. The intrusion occurred in March.


Eurocontrol has been under attack by the pro-Russian threat group Killnet since April 19, causing interruptions to the websiteweb availability, and communication systems.


A new report by Symantec revealed that apart from 3CX, the X_Trader software supply chain attack also impacted two critical infrastructure organizations in the energy sector, in the U.S. and Europe, along with two other financial institutions.


Aqua researchers spotted a massive cryptomining campaign, dubbed RBAC Buster, that has been exploiting Kubernetes Role-Based Access Control (RBAC) to create backdoors and run miners.


Tank storage firm Vopak fell victim to a ransomware attack, in which the cybercriminals stole information on the company’s tank infrastructure and systems.


Research by Secureworks revealed that the Bumblebee malware is being propagated via a new campaign using Google Ads and SEO poisoning promoting trojanized versions of popular apps.


Code security solutions provider Semgrep bagged $53 million in Series C funding led by Lightspeed Venture Partners, with participation from previous investors.


Anti-ransomware platform Halcyon raised $50 million in a Series A round led by SYN Ventures, with participation from Dell Technologies Capital and Corner Capital.

About infosecbulletin

Check Also

Daily Cybersecurity update, November 03

*About 5,000 Okta employees had their data accessed during a third-party data breach on October …

Leave a Reply

Your email address will not be published. Required fields are marked *