Monday , August 24 2026

Daily Cybersecurity update, July-8, 2023

In the realm of healthcare, an unsettling surge of data breaches has put at risk the privacy and security of numerous patient records. The sensitive information of more than 165,000 patients was compromised in a breach that impacted Henry Ford Health. The Phoenician Medical Center experienced a second breach that affected approximately 162,000 patients’ PHI. In a new campaign, FIN8 has resurfaced, this time deploying a redesigned backdoor to unleash the malicious BlackCat ransomware, putting organizations at risk once again.

Read along for more:

Researchers show new technique to bypass AI safety guardrails in Grok and Gemini

A new hacking technique has been demonstrated to steal data from Elon Musk's Grok AI. It uses a simple trick...
Read More
Researchers show new technique to bypass AI safety guardrails in Grok and Gemini

About thousands of leaked AWS keys Held Full Admin Rights

More than 9,300 AWS access keys that were made public from August 2022 to August 2026 are still active, says...
Read More
About thousands of leaked AWS keys Held Full Admin Rights

US Bank investigates LockBit’s Data Breach Claims

US Bank is looking into LockBit's claims about a breach and stolen data. The ransomware group says they will share...
Read More
US Bank investigates LockBit’s Data Breach Claims

Five new malware families actively targeting Asian Gov.t infra

Central Asian government agencies have been attacked in a cyber spy operation that used a small but different range of...
Read More
Five new malware families actively targeting Asian Gov.t infra

T-Mobile Cuts Cables to Remove Chiness Salt Typhoon Hackers from Network

T-Mobile’s cybersecurity team reportedly physically cut a network cable connecting compromised infrastructure to the outside world. According to Bloomberg, the move...
Read More
T-Mobile Cuts Cables to Remove Chiness Salt Typhoon Hackers from Network

Splunk, Zyxel Patch Multiple Flaws Enabling RCE and Root Command Execution

Splunk has issued security fixes for 17 weaknesses in different apps and add-ons, such as Splunk MCP Server, Splunk AI...
Read More
Splunk, Zyxel Patch Multiple Flaws Enabling RCE and Root Command Execution

“Zombie Card” attack revels expired Visa card may be used for contactless payments

Security experts have shown that expired credit cards can still be used. A study from the University of Massachusetts Amherst,...
Read More
“Zombie Card” attack revels expired Visa card may be used for contactless payments

Critical Zimbra RCE Flaw Actively Exploited in the Wild

CERT Polska has alerted that bad actors are actively exploiting a security flaw in Zimbra Collaboration Suite to execute code...
Read More
Critical Zimbra RCE Flaw Actively Exploited in the Wild

Operation CameraSwarm
A single hacker compromise 1400+ Dahua camera worldwide 

Operation CameraSwarm compromised 14,500+ Dahua IP cameras mostly in Ukraine and Russia. The operation lasted for at least 35 days...
Read More
Operation CameraSwarm  A single hacker compromise 1400+ Dahua camera worldwide 

Cl0p Ransomware Listed 40+ Victims of PTC Windchill Campaign

The Cl0p ransomware group has listed over 40 organizations that they say they targeted in a recent attack. This attack...
Read More
Cl0p Ransomware Listed 40+ Victims of PTC Windchill Campaign

Henry Ford Health in Detroit experienced a data breach caused by an email phishing scam. This unfortunate incident has put at risk the personal information of approximately 168,000 patients. The compromised data consists of personal information such as name, gender, date of birth, lab results, and medical record numbers.

The Phoenician Medical Center of Arizona recently revealed a significant cybersecurity breach that resulted in the disruption of multiple IT systems. The breach affected the privacy and security of 162,500 patient files. These files contained sensitive information like state identification numbers, medical record numbers, diagnosis details, and treatment information.

VirusTotal unintentionally revealed the names and email addresses of 5,600 individuals from prominent defense and intelligence agencies worldwide, including those from the U.S. Cyber Command, the NSA, Pentagon, FBI, and military branches are all involved in enhancing national security.

A non-password-protected database was found exposing 2.3 million records from multiple dating apps, including explicit images and personal information. Most of the records are related to the 419 Dating – Chat & Flirt platform.

Symantec observed the financially-motivated FIN8 threat group using a reworked version of the Sardonic backdoor to deliver the BlackCat ransomware.

CISA has published an informative factsheet that offers valuable resources and expert advice aimed at empowering network defenders, cybersecurity professionals, and incident response analysts. With these free tools and guidance, they can effectively mitigate the dangers of information exposure, data theft, as well as encryption and extortion attacks.

Rapid7 has issued a warning regarding the active exploitation of two vulnerabilities in Adobe ColdFusion. These vulnerabilities allow hackers to bypass authentication and gain control over servers by executing remote commands to install malicious webshells.

Researchers have recently discovered evidence of a new ransomware operation called NoEscape, which appears to be a revamped version of the previously discontinued Avaddon ransomware. The latter had shut down and issued decryption keys in 2021.

Malicious actors have been found exploiting Android’s WebAPK feature to deceive users into unknowingly installing harmful web applications that can compromise their personal data. The attack starts with victims receiving text messages prompting them to update a mobile banking app.

Netcraft, a leading provider of cybercrime detection and disruption services based in Britain, has recently received a substantial $100 million investment from Spectrum Equity. This significant funding will fuel Netcraft’s rapid growth and ambitious plans for global expansion.

Check Also

Chromium

Security Update: RoguePlanet, BitLocker Bypass, Chromium Zero-Day, and More Critical Threats Uncovered

Cybersecurity experts found several serious flaws this week in Windows, Chromium, OpenSSL, Microsoft Exchange, and …