Monday , October 5 2026

Daily Cybersecurity Update, June-28, 2023

In January, Atlantic General Hospital underwent a ransomware attack that compromised the PHI of thousands of people. However, according to the latest revelations, the actual number is five times greater than the initially disclosed one. In other news, the LetMeSpy Android stalkerware got hacked, exposing user information. Coming to the topic of ransomware, this relatively new ransomware, 8base, has amassed a good number of victims in just June. Read along to know more.

  • Atlantic General Hospital
    • A ransomware breach at Atlantic General Hospital in Maryland compromised the sensitive data of nearly 137,000 patients. This is five times more than the previously disclosed number of 30,700 victims.
  • LetMeSpy
    • The developer of the Android stalkerware LetMeSpy experienced a cyberattack, resulting in unauthorized access to user data. This includes email addresses, phone numbers, and message content. LetMeSpy was installed on around 10,000 devices.
  • Cl0p ransomware group
    • At least 131 organizations appear to have been impacted by the Cl0p ransomware group’s attacks against MOVEit Transfer. The threat actor listed 108 organizations, including seven U.S. universities.
  • 8Base ransomware group
    • The 8Base ransomware group has experienced a significant increase in activity since June. They have targeted multiple organizations worldwide and engaged in double-extortion attacks. So far, they have listed 35 victims on their extortion site.
  • Triada trojan
    • Check Point discovered a modified version of the Telegram Messenger app that contains the Triada trojan. This trojan can perform various malicious actions, such as stealing login credentials and signing up the user for paid subscriptions.
  • Ukrainian cyber police
    • Ukrainian cyber police raided nine fraudulent call centers involving over 200 operators running vishing campaigns. These operators were impersonating bank and other financial institution employees to obtain credit and debit card data.
  • ThirdEye info-stealer
    • FortiGuard Labs spotted ThirdEye, a new info-stealer that collects information from compromised Windows machines. This information could potentially be used in future cyberattacks.
  • UAE and Israel cybersecurity project
    • The UAE and Israel are collaborating on a cybersecurity project called “Crystal Ball”. This project aims to create a digital platform for sharing information. The project also involves Microsoft, Rafael Advanced Defense Systems, and CPX, with the participation of other countries.
  • Cyera funding round
    • Data security startup Cyera bagged a whopping $100 million in a Series B round led by Accel. Sequoia, Cyberstarts, and Redpoint Ventures also participated in the round.
  • Astrix Security funding round
    • Astrix Security, an access management platform for third-party app integrations, raised $25 million in a Series A funding round led by CRV. Bessemer Venture Partners and F2 Venture Capital also participated in the round.

Citrix NetScaler SAML 0-Day Flaw Under Attack

Citrix has put out emergency security updates for a NetScaler SAML flaw that hackers are using. Known as CVE-2026-88779, this...
Read More
Citrix NetScaler SAML 0-Day Flaw Under Attack

Major Danish university breached, 200,000 users at risk

Hackers got into the identity and access management system at the Technical University of Denmark (DTU) and downloaded a lot...
Read More
Major Danish university breached, 200,000 users at risk

Microsoft’s X account hijacked to promote Clippy crypto scam

Microsoft's official X account was taken over to promote an unapproved Clippy-themed cryptocurrency. The tech giant’s X account, with 13...
Read More
Microsoft’s X account hijacked to promote Clippy crypto scam

Critical cPanel, GitLab AI Gateway and Dell CSM Flaws Enable RCE And Admin Hijacking

CPanel has put out security updates to fix three problems in cPanel & WHM. These problems could let attackers take...
Read More
Critical cPanel, GitLab AI Gateway and Dell CSM Flaws Enable RCE And Admin Hijacking

Nearly 100,000 email addresses exposed in first AI-related data breach in Singapore

Nearly 100,000 Bee Cheng Hiang customers had their email addresses leaked when an employee used an AI tool to generate...
Read More
Nearly 100,000 email addresses exposed in first AI-related data breach in Singapore

Hackers Exploit Zimbra Mail Servers: TeamViewer patched 5 critical flaws

Hackers to exploit a flaw in Zimbra mail servers that are connected to the Internet. They send special emails that...
Read More
Hackers Exploit Zimbra Mail Servers: TeamViewer patched 5 critical flaws

Google Warns of Hackers Actively Exploiting Citrix 0-Day Flaws

Google has said that hackers are using two serious Citrix NetScaler security holes to get root access, set up hidden...
Read More
Google Warns of Hackers Actively Exploiting Citrix 0-Day Flaws

CISA Warns Critical MikroTik RouterOS Flaw While Cisco SD-WAN Zero-Day Exploited in Attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is alerting people about a major flaw in MikroTik RouterOS. This could...
Read More
CISA Warns Critical MikroTik RouterOS Flaw While Cisco SD-WAN Zero-Day Exploited in Attacks

Apple Zero-Day Exploited: Pentagon Data Breach Reportedly Exposes Sensitive Data of 3 Million People

Apple has launched iOS 26.7.1 and iPadOS 26.7.1 to fix a serious zero-day flaw that it believes might have been...
Read More
Apple Zero-Day Exploited: Pentagon Data Breach Reportedly Exposes Sensitive Data of 3 Million People

JadePuffer Agentic AI targets and destroys Azure’s cloud resources

The JadePuffer ransomware group is attacking Azure users with agent-based attacks that gather information, steal passwords, and damage key components. The...
Read More
JadePuffer Agentic AI targets and destroys Azure’s cloud resources

Check Also

Chromium

Security Update: RoguePlanet, BitLocker Bypass, Chromium Zero-Day, and More Critical Threats Uncovered

Cybersecurity experts found several serious flaws this week in Windows, Chromium, OpenSSL, Microsoft Exchange, and …