Wednesday , August 26 2026

Daily Cybersecurity Update, June-28, 2023

In January, Atlantic General Hospital underwent a ransomware attack that compromised the PHI of thousands of people. However, according to the latest revelations, the actual number is five times greater than the initially disclosed one. In other news, the LetMeSpy Android stalkerware got hacked, exposing user information. Coming to the topic of ransomware, this relatively new ransomware, 8base, has amassed a good number of victims in just June. Read along to know more.

  • Atlantic General Hospital
    • A ransomware breach at Atlantic General Hospital in Maryland compromised the sensitive data of nearly 137,000 patients. This is five times more than the previously disclosed number of 30,700 victims.
  • LetMeSpy
    • The developer of the Android stalkerware LetMeSpy experienced a cyberattack, resulting in unauthorized access to user data. This includes email addresses, phone numbers, and message content. LetMeSpy was installed on around 10,000 devices.
  • Cl0p ransomware group
    • At least 131 organizations appear to have been impacted by the Cl0p ransomware group’s attacks against MOVEit Transfer. The threat actor listed 108 organizations, including seven U.S. universities.
  • 8Base ransomware group
    • The 8Base ransomware group has experienced a significant increase in activity since June. They have targeted multiple organizations worldwide and engaged in double-extortion attacks. So far, they have listed 35 victims on their extortion site.
  • Triada trojan
    • Check Point discovered a modified version of the Telegram Messenger app that contains the Triada trojan. This trojan can perform various malicious actions, such as stealing login credentials and signing up the user for paid subscriptions.
  • Ukrainian cyber police
    • Ukrainian cyber police raided nine fraudulent call centers involving over 200 operators running vishing campaigns. These operators were impersonating bank and other financial institution employees to obtain credit and debit card data.
  • ThirdEye info-stealer
    • FortiGuard Labs spotted ThirdEye, a new info-stealer that collects information from compromised Windows machines. This information could potentially be used in future cyberattacks.
  • UAE and Israel cybersecurity project
    • The UAE and Israel are collaborating on a cybersecurity project called “Crystal Ball”. This project aims to create a digital platform for sharing information. The project also involves Microsoft, Rafael Advanced Defense Systems, and CPX, with the participation of other countries.
  • Cyera funding round
    • Data security startup Cyera bagged a whopping $100 million in a Series B round led by Accel. Sequoia, Cyberstarts, and Redpoint Ventures also participated in the round.
  • Astrix Security funding round
    • Astrix Security, an access management platform for third-party app integrations, raised $25 million in a Series A funding round led by CRV. Bessemer Venture Partners and F2 Venture Capital also participated in the round.

Crack 85 Accounts and Steal 2,500+ Records
8-Agent AI Framework Used to Compromise Gov’t Entities in Asia

A cyberattack using open-source AI tools almost ran on its own. It affected government systems in Asia, compromised into 85...
Read More
Crack 85 Accounts and Steal 2,500+ Records  8-Agent AI Framework Used to Compromise Gov’t Entities in Asia

270+ Zimbra servers compromised in continuous attacks

Threat actors have already compromised more than 270 Zimbra instances in attacks that let them run code remotely. These attacks...
Read More
270+ Zimbra servers compromised in continuous attacks

Singapore Approves 200MW Data-Centre Expansion Under Second Call

Singapore has picked four data-centre plans for a total of 200MW of power in its second Data Centre Call for...
Read More
Singapore Approves 200MW Data-Centre Expansion Under Second Call

Chameleon SEO Poisoning
Hackers poison Bing and Google search results to deliver phishing banking pages

Bank customers looking for a login page can now fall into a trap before getting a strange email or text....
Read More
Chameleon SEO Poisoning  Hackers poison Bing and Google search results to deliver phishing banking pages

Mysterious AI model “Ox Alpha” with free 100 trillion tokens a day for coders

A mysterious AI model dubbed "Ox Alpha" has surfaced online and created noise within the developer community after releasing on...
Read More
Mysterious AI model “Ox Alpha” with free 100 trillion tokens a day for coders

After BDJobs, Directorate of Secondary and Higher Education 390k data surfaced online

A group of hackers named “Madarax” claims they have stolen and are offering to sell the personal information of about...
Read More
After BDJobs, Directorate of Secondary and Higher Education 390k data surfaced online

Researchers show new technique to bypass AI safety guardrails in Grok and Gemini

A new hacking technique has been demonstrated to steal data from Elon Musk's Grok AI. It uses a simple trick...
Read More
Researchers show new technique to bypass AI safety guardrails in Grok and Gemini

About thousands of leaked AWS keys Held Full Admin Rights

More than 9,300 AWS access keys that were made public from August 2022 to August 2026 are still active, says...
Read More
About thousands of leaked AWS keys Held Full Admin Rights

US Bank investigates LockBit’s Data Breach Claims

US Bank is looking into LockBit's claims about a breach and stolen data. The ransomware group says they will share...
Read More
US Bank investigates LockBit’s Data Breach Claims

Five new malware families actively targeting Asian Gov.t infra

Central Asian government agencies have been attacked in a cyber spy operation that used a small but different range of...
Read More
Five new malware families actively targeting Asian Gov.t infra

Check Also

Chromium

Security Update: RoguePlanet, BitLocker Bypass, Chromium Zero-Day, and More Critical Threats Uncovered

Cybersecurity experts found several serious flaws this week in Windows, Chromium, OpenSSL, Microsoft Exchange, and …