<img src="https://secure.ruth8badb.com/159098.png" alt="" style="display:none;">

IT Security Newsletter - 10/25/22

SHARE

Breaches

Ransomware Barrage Aimed at US Healthcare Sector, Feds Warn

A CISA advisory warns that the Daixin Team ransomware group has put the US healthcare system in its crosshairs for data extortion, and provides tools to fight back. Daixin Team has actively targeted the US Healthcare and Public Health (HPH) sector since last June, according to a joint advisory issued by the FBI, Cybersecurity and Infrastructure Agency (CISA), and the Department of Health and Human Services (HHS), which provides indicators of compromise (IoCs) and tactics techniques and procedures (TTPs). READ MORE...


Car dealer group Pendragon refuses to pay $60 million to ransomware extortionists

Pendragon - the car dealership group which owns Evans Halshaw, CarStore, and Stratstone - has confirmed that its IT servers have been hacked by cybercriminals who claim to have stolen five per cent of its data. According to The Times, the LockBit 3.0 extortion gang has demanded a cryptocurrency ransom equivalent to $60 million be paid by Pendragon, which operates around 160 showrooms across the UK. READ MORE...

Hacking

Iranian government blames 'foreign country' for hack-and-leak of nuclear information

The hack-and-leak of emails and other materials this weekend related to Iran's nuclear program was the result of "unauthorized access from a specific foreign country," the Iranian government said Sunday. The statement came a day after a group calling itself "Black Reward" claimed to have hacked and stolen information related to "Iran's public and private conversations with the International Atomic Energy Agency..." READ MORE...

Trends

IoT Fingerprinting Helps Authenticate and Secure All Those Devices

For organizations struggling to protect a rapidly expanding volume of IoT devices, IoT fingerprinting could help with security and management. The growing ecosystem of Internet of Things (IoT) devices, from basic IP phones and printers to more sophisticated hardware like medical devices and manufacturing equipment, requires a more comprehensive approach to IoT security. However, businesses are struggling to adequately protect IoT devices. A July report from Barracuda Networks found 93% of organizations surveyed have had failed IoT security projects. READ MORE...

Software Updates

Google Chrome to drop support for Windows 7 / 8.1 in Feb 2023

Google announced today that the Google Chrome web browser will likely drop support for Windows 7 and 8.1 starting February 2023. After support is discontinued for these two Windows versions, the company says Chrome users must ensure that their devices are running at least Windows 10. "With the release of Chrome 110 (tentatively scheduled for February 7th, 2023), we'll officially end support for Windows 7 and Windows 8.1," Google Chrome Support Manager revealed. READ MORE...


Apple Patches Over 100 Vulnerabilities With Release of macOS Ventura 13

Apple on Monday announced the official launch of macOS Ventura 13, the 19th major release of its desktop operating system. In addition to several new features, macOS Ventura 13 brings patches for more than 100 vulnerabilities. A total of 112 CVE identifiers are listed in Apple's security advisory for macOS Ventura 13, including issues that are specific to the operating system and flaws impacting third-party components. READ MORE...

Malware

Payment terminal malware steals $3.3m worth of credit card numbers - so far

Cybercriminals have used two strains of point-of-sale (POS) malware to steal the details of more than 167,000 credit cards from payment terminals. If sold on underground forums, the haul could net the thieves upwards of $3.3 million. The backend command-and-control (C2) server that operates the MajikPOS and Treasure Hunter malware remains active, according to Group-IB's Nikolay Shelekhov and Said Khamchiev, and "the number of victims keeps growing," they said this week. READ MORE...

On This Date

  • ...in 1881, artist and co-founder of the Cubist movement Pablo Picasso is born in Malaga, Spain.
  • ...in 1957, voice actress Nancy Cartwright, best known for playing Bart Simpson and other characters on "The Simpsons", is born in Dayton, OH.
  • ...in 1960, the Rev. Dr. Martin Luther King, Jr. is sentenced to four months in jail for participating in a sit-in at a segregated lunch counter.
  • ...in 2001, Microsoft releases Windows XP.