Tuesday , September 10 2024

Daily Cybersecurity Update, June-28, 2023

In January, Atlantic General Hospital underwent a ransomware attack that compromised the PHI of thousands of people. However, according to the latest revelations, the actual number is five times greater than the initially disclosed one. In other news, the LetMeSpy Android stalkerware got hacked, exposing user information. Coming to the topic of ransomware, this relatively new ransomware, 8base, has amassed a good number of victims in just June. Read along to know more.

  • Atlantic General Hospital
    • A ransomware breach at Atlantic General Hospital in Maryland compromised the sensitive data of nearly 137,000 patients. This is five times more than the previously disclosed number of 30,700 victims.
  • LetMeSpy
    • The developer of the Android stalkerware LetMeSpy experienced a cyberattack, resulting in unauthorized access to user data. This includes email addresses, phone numbers, and message content. LetMeSpy was installed on around 10,000 devices.
  • Cl0p ransomware group
    • At least 131 organizations appear to have been impacted by the Cl0p ransomware group’s attacks against MOVEit Transfer. The threat actor listed 108 organizations, including seven U.S. universities.
  • 8Base ransomware group
    • The 8Base ransomware group has experienced a significant increase in activity since June. They have targeted multiple organizations worldwide and engaged in double-extortion attacks. So far, they have listed 35 victims on their extortion site.
  • Triada trojan
    • Check Point discovered a modified version of the Telegram Messenger app that contains the Triada trojan. This trojan can perform various malicious actions, such as stealing login credentials and signing up the user for paid subscriptions.
  • Ukrainian cyber police
    • Ukrainian cyber police raided nine fraudulent call centers involving over 200 operators running vishing campaigns. These operators were impersonating bank and other financial institution employees to obtain credit and debit card data.
  • ThirdEye info-stealer
    • FortiGuard Labs spotted ThirdEye, a new info-stealer that collects information from compromised Windows machines. This information could potentially be used in future cyberattacks.
  • UAE and Israel cybersecurity project
    • The UAE and Israel are collaborating on a cybersecurity project called “Crystal Ball”. This project aims to create a digital platform for sharing information. The project also involves Microsoft, Rafael Advanced Defense Systems, and CPX, with the participation of other countries.
  • Cyera funding round
    • Data security startup Cyera bagged a whopping $100 million in a Series B round led by Accel. Sequoia, Cyberstarts, and Redpoint Ventures also participated in the round.
  • Astrix Security funding round
    • Astrix Security, an access management platform for third-party app integrations, raised $25 million in a Series A funding round led by CRV. Bessemer Venture Partners and F2 Venture Capital also participated in the round.

Hacker to exploite GeoServer Vulnerability to Deploy Malware

Researchers at Fortinet unveiled hackers to exploit GeoServer RCE vulnerability deploying malware relating to the vulnerability tracked as “CVE-2024-36401, has...
Read More
Hacker to exploite GeoServer Vulnerability to Deploy Malware

IMB unveils multiple vulnerabilities in it’s webMethods Integration

Multiple vulnerabilities have been published by IBM in its webMethods Integration Server which cloud allow attackers to execute arbitrary commands...
Read More
IMB unveils multiple vulnerabilities in it’s webMethods Integration

Progress LoadMaster exposed to a critical 10/10 vulnerability

Progress Software released an emergency fix for a critical vulnerability (10/10) in its Loadmaster and LoadMaster Multi-Tenant Hypervisor products, which...
Read More
Progress LoadMaster exposed to a critical 10/10 vulnerability

Cisco released security updates for two critical security flaws

CISCO released security updates for two critical security flaws impacting its smart Licensing Utility that could allow unauthenticated, remote attackers...
Read More
Cisco released security updates for two critical security flaws

OpenBAS: Cutting-edge breach and attack simulation platform

OpenBAS is a platform that helps organizations to plan, schedule, and conduct crisis exercises, adversary simulations, and breach simulations. OpenBAS...
Read More
OpenBAS: Cutting-edge breach and attack simulation platform

Critical Security Flaws Patched in Zyxel Networking Devices

Zyxel has released software updates to fix a serious security issue in certain access point (AP) and security router versions....
Read More
Critical Security Flaws Patched in Zyxel Networking Devices

CVE-2024-38811: CEV In VMware Fusion Unveiled

VMware released a security advisory for a major vulnerability in the VMware Fusion product. This vulnerability could be exploited by...
Read More
CVE-2024-38811: CEV In VMware Fusion Unveiled

CERT-IN Warns Vulnerabilities in Palo Alto Networks applications

Indian Computer Emergency Response Team (CERT-IN) issued advisories about multiple vulnerabilities in various Palo Alto Networks applications. Attackers could exploit...
Read More
CERT-IN Warns Vulnerabilities in Palo Alto Networks applications

How Malaysia’s Data Centre Industry Poised for Growth

Malaysia is quickly becoming a leading choice for investing in data centers. It aims to generate RM3.6 billion (US$781 million)...
Read More
How Malaysia’s Data Centre Industry Poised for Growth

RansomHub exfiltrated data over 210 victims: US alert

US authorities have issued a cybersecurity advisory about a ransomware group called RansomHub. The group is thought to have stolen data...
Read More
RansomHub exfiltrated data over 210 victims: US alert

Check Also

DAILY CYBER KEY

Daily Cybersecurity update, May 27, 2024

Infosecbulletin’s daily cyber security update is a daily basis security updates across the globe. This …

Leave a Reply

Your email address will not be published. Required fields are marked *