Thursday , October 10 2024

Daily Cybersecurity Update, September 15, 2023

LockBit strikes once more! Two non-profit hospitals in New York have been targeted by a ransomware group, plunging them into a difficult struggle for recovery. The Scattered Spider threat group targeted yet another casino and hotel chain, unleashing a devastating ransomware attack. Caesars Entertainment’s loyalty program database was breached by the attackers. The consequences of previous data breaches have a way of haunting us in the present. Last year’s breach has led to a similar situation for LastPass users. Here are the top 10 highlights from the past 24 hours.

  • In a recent cyberattack, the notorious LockBit ransomware group successfully infiltrated two prominent hospitals in New York: the Carthage Area Hospital and Claxton-Hepburn Medical Center. The aftermath of this malicious breach has gravely disrupted their crucial services, compelling them to divert patients and reschedule vital appointments.

ALSO READ:

Palo Alto Networks issues fix for security flaws, Including CVE-2024-9463

Palo Alto Networks released a security advisory (PAN-SA-2024-0010) about several high-severity vulnerabilities in its Expedition migration tool, with CVSS scores...
Read More
Palo Alto Networks issues fix for security flaws, Including CVE-2024-9463

Microsoft October 2024 Patch: 5 Zero-Days, 118 flaw

In its recent Patch Tuesday release, Microsoft fixed 118 vulnerabilities, including five zero-day flaws, two of which are currently being...
Read More
Microsoft October 2024 Patch: 5 Zero-Days, 118 flaw

BD CIRT alert
Lumma C2 malware attack Bangladeshi several websites

The Cyber Threat Intelligence (CTI) Unit at BGD e-GOV CIRT has discovered a malware campaign involving the Lumma Stealer family....
Read More
BD CIRT alert  Lumma C2 malware attack Bangladeshi several websites

Qualcomm Patched Multi Flaws, Including 0-day

Qualcomm's October 2024 Security Bulletin reveals critical vulnerabilities in several chipsets, including the popular Snapdragon mobile platforms and FastConnect solutions....
Read More
Qualcomm Patched Multi Flaws, Including 0-day

BD CIRT announce “Cyber Drill 2024”: Registration open

BGD e-GOV CIRT is excited to announce the Financial Institutions and Critical Information Infrastructure (CII) Cyber Drill 2024, designed for...
Read More
BD CIRT announce “Cyber Drill 2024”: Registration open

First Half Of 2024 Report
Bangladeshi 32.4% government websites face cyber attack: NAS report

National Attack Surface (NAS) report for the first half of 2024 reveals that 56.6% of cyberattacks in Bangladesh targeted educational...
Read More
First Half Of 2024 Report  Bangladeshi 32.4% government websites face cyber attack: NAS report

Prince Ransomware Hits UK and US

A new ransomware campaign is targeting individuals and organizations in the UK and US. The "Prince Ransomware" attack uses a...
Read More
Prince Ransomware Hits UK and US

CISA warns active exploit of Zimbra & Ivanti endpoint manager Vulns

CISA has issued an urgent alert about critical vulnerabilities being exploited in Synacor’s Zimbra Collaboration and Ivanti’s Endpoint Manager (EPM)....
Read More
CISA warns active exploit of Zimbra & Ivanti endpoint manager Vulns

A summary of “2024 State of Cybersecurity survey” by ISACA

ISACA 2024 survey report reveals that 66% of cybersecurity professionals find their jobs more stressful now than five years ago....
Read More
A summary of “2024 State of Cybersecurity survey” by ISACA

ISACA reveals
64% of Australian cybersecurity professionals feel increasing stress

A recent study by ISACA shows that almost two-thirds of cybersecurity professionals report increasing job stress. The 2024 State of...
Read More
ISACA reveals  64% of Australian cybersecurity professionals feel increasing stress

MGM hacker hit at least 100 organizations

  • According to Trend Micro, the threat groups responsible for RedLine and Vidar have been employing identical techniques to propagate both ransomware and info-stealers. The attackers are using Extended Validation (EV) code signing certificates to sign the malware.
  • LastPass users are in danger of falling victim to a highly persuasive phishing email, which resembles the aftermath of last year’s security breach. The email asks users to verify their personal data or risk losing access to certain features.
  • The personal information of thousands of officers from Greater Manchester Police in the U.K. has been compromised due to a ransomware attack on a third-party supplier. Although sensitive details such as financial information and home addresses remained untouched, there is a possibility that the personal information of undercover officers was compromised.

Check Also

vulnarabilities

CERT-In Flags Critical Vulnerabilities in Adobe, IBM WebSphere, and Joomla

The Indian Computer Emergency Response Team (CERT-In) has warned Adobe users about a high-risk cybersecurity …

Leave a Reply

Your email address will not be published. Required fields are marked *