<img src="https://secure.ruth8badb.com/159098.png" alt="" style="display:none;">

IT Security Newsletter - 11/22/2021

SHARE

Breaches

Utah Medical Group Discloses Data Breach Affecting Over 580,000 Patients

Farmington, Utah-based radiology medical center Utah Imaging Associates has started informing former and current patients that their information might have been compromised in a data breach. As part of the incident, which was identified on September 4, 2021, unknown threat actors accessed files that contained sensitive personal information related to patients. READ MORE...

Hacking

US SEC warns investors of ongoing govt impersonation attacks

The Securities and Exchange Commission (SEC) has warned US investors of scammers impersonating SEC officials in government impersonator schemes via phone calls, voicemails, emails, and letters. The alert comes from SEC's Office of Investor Education and Advocacy (OIEA), which regularly issues warnings to inform investors about the latest developments in investment frauds and scams. READ MORE...


The 'Zelle Fraud' Scam: How it Works, How to Fight Back

One of the more common ways cybercriminals cash out access to bank accounts involves draining the victim's funds via Zelle, a "peer-to-peer" (P2P) payment service used by many financial institutions that allows customers to quickly send cash to friends and family. Naturally, a great deal of phishing schemes that precede these bank account takeovers begin with a spoofed text message from the target's bank warning about a suspicious Zelle transfer. READ MORE...

Information Security

Some Tesla owners unable to unlock cars due to server errors

Some Tesla owners worldwide are unable to unlock or communicate with their cars using the app due to an outage of the company's servers. Starting around 4 PM EST, Tesla owners have taken to social media reporting that the Tesla app is returning a "500 server error" when attempting to communicate with the car. This outage prevents owners from using the app to get into the car and it reports an incorrect location of the car. READ MORE...


Canadian Teen Arrested Over Theft of $36 Million in Cryptocurrency

A Canadian teen has been arrested for their alleged role in the theft of roughly $36.5 million (CAD$46 million) worth of cryptocurrency from a single victim in the United States, according to the Hamilton Police in Ontario, Canada. The arrest was made following an investigation that started in March 2020 and in which the FBI and the United States Secret Service Electronic Crimes Task Force participated as well. READ MORE...

Exploits/Vulnerabilities

Microsoft Exchange servers hacked in internal reply-chain attacks

Threat actors are hacking Microsoft Exchange servers using ProxyShell and ProxyLogon exploits to distribute malware and bypass detection using stolen internal reply-chain emails. When threat actors conduct malicious email campaigns, the hardest part is to trick users into trusting the sender enough so that they open up linked to or included malware-distributing attachments. READ MORE...


Serious Vulnerabilities Found in Wi-Fi Module Designed for Critical Industrial Applications

More than 20 vulnerabilities have been identified by Cisco's Talos research and threat intelligence unit in a Lantronix Wi-Fi module designed for critical industrial and commercial applications. The affected product, the PremierWave 2050 enterprise Wi-Fi module, delivers always-on 5G Wi-Fi connectivity, and is designed for mission-critical operations. According to the vendor's website, it delivers enterprise-grade security. READ MORE...

On This Date

  • ...in 1958, actress Jamie Lee Curtis ("Halloween", "A Fish Called Wanda") is born in Santa Monica, CA.
  • ...in 1965, actor Mads Mikkelsen ("Casino Royale", "Hannibal") is born in Copenhagen, Denmark.
  • ...in 1968, The Beatles release a self-titled double album, popularly known as "The White Album" for its minimal cover design.
  • ...in 1995, Disney releases the Pixar movie "Toy Story", the first full-length animated feature film made entirely with computer-generated imagery.