Wednesday , February 19 2025

Daily Cybersecurity update, July-8, 2023

In the realm of healthcare, an unsettling surge of data breaches has put at risk the privacy and security of numerous patient records. The sensitive information of more than 165,000 patients was compromised in a breach that impacted Henry Ford Health. The Phoenician Medical Center experienced a second breach that affected approximately 162,000 patients’ PHI. In a new campaign, FIN8 has resurfaced, this time deploying a redesigned backdoor to unleash the malicious BlackCat ransomware, putting organizations at risk once again.

Read along for more:

150 Gov.t Portal affected
Black-Hat SEO Poisoning Indian “.gov.in, .ac.in” domain

Indian government and educational websites, along with reputable financial brands, have experienced SEO poisoning, causing user traffic to be redirected...
Read More
150 Gov.t Portal affected  Black-Hat SEO Poisoning Indian “.gov.in, .ac.in” domain

CVE-2018-19410 Exposes 600 PRTG Instances in Bangladesh

The Cyber Threat Intelligence Unit of BGD e-GOV CIRT has found 600 vulnerable PRTG instances in Bangladesh, affected by the...
Read More
CVE-2018-19410 Exposes 600 PRTG Instances in Bangladesh

Builder claims Rs 150 cr for data loss; AWS faces FIR In Bengaluru

Amazon Web Services (AWS) has been named in an FIR after a builder claimed damages to the tune of Rs...
Read More
Builder claims Rs 150 cr for data loss;  AWS faces FIR In Bengaluru

CISA Warns Active Exploitation of Apple iOS Security Flaw

CISA has issued an urgent warning about a critical zero-day vulnerability in Apple iOS and iPadOS, known as CVE-2025-24200, which...
Read More
CISA Warns Active Exploitation of Apple iOS Security Flaw

Massive IoT Data Breach Exposes 2.7 Billion Records

A major IoT data breach has exposed 2.7 billion records, including Wi-Fi network names, passwords, IP addresses, and device IDs....
Read More
Massive IoT Data Breach Exposes 2.7 Billion Records

SonicWall Firewall Auth Bypass Vulnerability Exploited in Wild

A serious authentication bypass vulnerability in SonicWall firewalls, called CVE-2024-53704, is currently being exploited, according to cybersecurity firms. The increase...
Read More
SonicWall Firewall Auth Bypass Vulnerability Exploited in Wild

AMD Patches High-Severity SMM Vulns Affecting EPYC and Ryzen Processors

AMD has released security patches for two high-severity vulnerabilities in its System Management Mode (SMM). If exploited, these could let...
Read More
AMD Patches High-Severity SMM Vulns Affecting EPYC and Ryzen Processors

Lazarus Group Unleashes New Malware Against Developers Worldwide

Lazarus Group has initiated a complex global campaign aimed at software developers and cryptocurrency users. Operation Marstech Mayhem uses the...
Read More
Lazarus Group Unleashes New Malware Against Developers Worldwide

Daily Security Update Dated : 15.02.2025

Every day a lot of cyberattack happen around the world including ransomware, Malware attack, data breaches, website defacement and so...
Read More
Daily Security Update Dated : 15.02.2025

Salt Typhoon to target Bangladeshi Universities, One identified

RedMike (Salt Typhoon) targeted university devices in Bangladesh, likely to access research in telecommunications, engineering, and technology, especially from institutions...
Read More
Salt Typhoon to target Bangladeshi Universities, One identified

Henry Ford Health in Detroit experienced a data breach caused by an email phishing scam. This unfortunate incident has put at risk the personal information of approximately 168,000 patients. The compromised data consists of personal information such as name, gender, date of birth, lab results, and medical record numbers.

The Phoenician Medical Center of Arizona recently revealed a significant cybersecurity breach that resulted in the disruption of multiple IT systems. The breach affected the privacy and security of 162,500 patient files. These files contained sensitive information like state identification numbers, medical record numbers, diagnosis details, and treatment information.

VirusTotal unintentionally revealed the names and email addresses of 5,600 individuals from prominent defense and intelligence agencies worldwide, including those from the U.S. Cyber Command, the NSA, Pentagon, FBI, and military branches are all involved in enhancing national security.

A non-password-protected database was found exposing 2.3 million records from multiple dating apps, including explicit images and personal information. Most of the records are related to the 419 Dating – Chat & Flirt platform.

Symantec observed the financially-motivated FIN8 threat group using a reworked version of the Sardonic backdoor to deliver the BlackCat ransomware.

CISA has published an informative factsheet that offers valuable resources and expert advice aimed at empowering network defenders, cybersecurity professionals, and incident response analysts. With these free tools and guidance, they can effectively mitigate the dangers of information exposure, data theft, as well as encryption and extortion attacks.

Rapid7 has issued a warning regarding the active exploitation of two vulnerabilities in Adobe ColdFusion. These vulnerabilities allow hackers to bypass authentication and gain control over servers by executing remote commands to install malicious webshells.

Researchers have recently discovered evidence of a new ransomware operation called NoEscape, which appears to be a revamped version of the previously discontinued Avaddon ransomware. The latter had shut down and issued decryption keys in 2021.

Malicious actors have been found exploiting Android’s WebAPK feature to deceive users into unknowingly installing harmful web applications that can compromise their personal data. The attack starts with victims receiving text messages prompting them to update a mobile banking app.

Netcraft, a leading provider of cybercrime detection and disruption services based in Britain, has recently received a substantial $100 million investment from Spectrum Equity. This significant funding will fuel Netcraft’s rapid growth and ambitious plans for global expansion.

Check Also

Daily Security Update Dated: 18.12.2024

Every day a lot of cyberattack happen around the world including ransomware, Malware attack, data …

Leave a Reply

Your email address will not be published. Required fields are marked *