IT Security Newsletter - 11/6/2024
Canadian Man Arrested in Snowflake Data Extortions
A 26-year-old man in Ontario, Canada has been arrested for allegedly stealing data from and extorting more than 160 companies that used the cloud data service Snowflake. On October 30, Canadian authorities arrested Alexander Moucka, a.k.a. Connor Riley Moucka of Kitchener, Ontario, on a provisional arrest warrant from the United States. Bloomberg first reported Moucka's alleged ties to the Snowflake hacks on Monday. READ MORE...
Ransomware Attack Disrupts Georgia Hospital's Access to Health Records
Memorial Hospital and Manor in Bainbridge, Georgia, can no longer access its Electronic Health Record system after falling victim to a ransomware attack. The attack, the small rural hospital said in a social media post, was discovered early Saturday morning, after receiving alerts from its malware protection software. According to the medical and surgical hospital services provider, its operations were not affected by the attack. READ MORE...
Microchip Technology Reports $21.4 Million Cost From Ransomware Attack
Microchip Technology (NASDAQ: MCHP) revealed in its latest financial report on Tuesday that expenses related to the recent cybersecurity incident reached $21.4 million. The incident came to light in August, when the US-based semiconductor supplier found suspicious activity on its network. The intrusion resulted in disruptions at some of Microchip's manufacturing facilities. The Play ransomware group took credit for the attack roughly one week later, claiming to have stolen gigabytes of data. READ MORE...
China's Volt Typhoon reportedly breached Singtel in 'test-run' for US telecom attacks
Chinese government cyberspies Volt Typhoon reportedly breached Singapore Telecommunications over the summer as part of their ongoing attacks against critical infrastructure operators. The digital break-in was discovered in June, according to Bloomberg, citing "two people familiar with the matter" who told the news outlet that the Singtel breach was "a test run by China for further hacks against US telecommunications companies." READ MORE...
Cyberattackers stole Microlise staff data following DHL, Serco disruption
Telematics tech biz Microlise says an attack that hit its network likely did not expose customer data, although staff aren't so lucky. "Some limited employee data" was compromised in the incident, Microlise told the London Stock Exhchange today, without going into any great detail about the nature of the data or how many staff members were affected. Microlise initially disclosed the break-in on October 31, after which time the AIM-listed company's share price dropped 16 percent. READ MORE...
Update your Android: Google patches two zero-day vulnerabilities
Google has announced patches for several high severity vulnerabilities. In total, 51 vulnerabilities have been patched in November's updates, two of which are under limited, active exploitation by cybercriminals. If your Android phone shows patch level 2024-11-05 or later then the issues discussed below have been fixed. The updates have been made available for Android 12, 12L, 13, 14, and 15. READ MORE...
Android Botnet 'ToxicPanda' Bashes Banks Across Europe, Latin America
Researchers have designated a new botnet on the scene - initially suspected to be a part of the Toxic banking Trojan family - as a whole new spinoff strain with its own moniker, ToxicPanda. The ToxicPanda banking bot has turned up on at least 1,500 individual devices across Italy, Portugal, Spain, and Latin America, actively trying to steal money from at least 16 different financial institutions, according to new findings from Cleafy. READ MORE...
Cyberattacks hit 1 in 3 SMBs last year
One-third of small- to medium-sized businesses were hit by a cyberattack in the past year, Microsoft Security said Thursday in a report conducted by research firm Bredin. The average total cost of a cyberattack on SMBs was nearly $255,000, but some incidents cost as much as $7 million, the report found. The highest average costs were attributed to investigation and recovery, and the reputational impact on a SMB in the wake of an attack. READ MORE...
Attacker Hides Malicious Activity in Emulated Linux Environment
Among the many constantly evolving tactics that threat actors are using to target organizations is a new one involving emulated Linux environments to stage malware and conceal malicious activity. Researchers at Securonix spotted an attacker using the novel approach to maintain a stealthy presence on target systems and harvest data from them undetected by conventional antivirus and malware detection systems. READ MORE...
- ...in 1860, Abraham Lincoln is elected as the 16th president of the United States.
- ...in 1917, Bolsheviks led by Vladimir Lenin launch a nearly bloodless coup against Russia's ineffectual Provisional Government.
- ...in 1947, "Meet the Press" debuts on the NBC. It continues to hold the record as the longest-running television program in history.
- ...in 1958, comedian and puppeteer Trace Beaulieu, best known as Crow T. Robot and the evil Dr. Forrester on "Mystery Science Theater 3000", is born in Minneapolis, MN.