IT Security Newsletter

IT Security Newsletter - 12/10/2024

Written by Cadre | Tue, Dec 10, 2024

$50 Million Radiant Capital Heist Blamed on North Korean Hackers

A North Korean threat actor was responsible for the $50 million heist that Radiant Capital fell victim to in October, the decentralized finance (DeFi) project says. The incident occurred on October 16, after three developers got infected with malware and their devices were used to sign fraudulent transactions during a routine multi-signature emissions adjustment process. READ MORE...

Sprawling 'Operation Digital Eye' Attack Targets European IT Orgs

Chinese hackers almost breached critical European supply chain companies by disguising their malicious activities behind native Microsoft technologies. It happened during a three-week period, from late June to July, according to researchers from SentinelLabs. A threat actor tied to China's diverse and thriving cyberattack scene targeted large business-to-business (B2B) IT service providers throughout southern Europe, such as cybersecurity vendors and data and infrastructure solutions providers. READ MORE...

Microsoft NTLM Zero-Day to Remain Unpatched Until April

Microsoft has released fresh guidance to organizations on how to mitigate NTLM relay attacks by default, days after researchers reported finding a NTLM hash disclosure zero-day in all versions of Windows Workstation and Server, from Windows 7 to current Windows 11 versions. However, it was not immediately clear if the two developments are related or purely coincidental in terms of timing. In any event, the bug, which doesn't yet have a CVE or CVSS score, is not expected to be patched for months. READ MORE...

Romanian energy supplier Electrica hit by ransomware attack

?Electrica Group, a key player in the Romanian electricity distribution and supply market, is investigating a ransomware attack that was still "in progress" earlier today. The company serves over 3.8 million users with nationwide coverage for electricity supply, maintenance, and energy services, distributing electricity to customers across Transilvania and Muntenia. READ MORE...

New 'Termite' ransomware group claims responsibility for Blue Yonder cyberattack

Anewly formed ransomware group known as Termite has claimed responsibility for a ransomware attack on Blue Yonder, which disrupted operations at several major companies, including Starbucks and leading U.K. grocery chains Morrisons and Sainsbury's. Blue Yonder, headquartered in Arizona, disclosed on Nov. 21 that it was experiencing disruptions within its managed services-hosted environment due to the attack. READ MORE...

Microsoft Bets $10,000 on Prompt Injection Protections of LLM Email Client

Microsoft is offering $10,000 in prizes as part of a new hacking challenge focused on breaking the protections of a realistic simulated LLM-integrated email client. The client, LLMail, includes an assistant that uses an instruction-tuned large language model (LLM) to answer questions based on emails and perform specific actions on behalf of the user. There are four awards in total, of $4,000, $3,000, $2,000, and $1,000, and a live scoreboard will be displayed throughout the event. READ MORE...

Cisco Says Flaws in Industrial Routers, BGP Tool Remain Unpatched 8 Months After Disclosure

Cisco's threat intelligence and research unit Talos has disclosed the details of several apparently unpatched vulnerabilities in an MC Technologies industrial router and the GoCast BGP tool. Talos published advisories for the vulnerabilities last month, and on Monday released a blog post announcing that they have yet to be patched, despite being responsibly disclosed to vendors roughly eight months ago. READ MORE...

Fully patched Cleo products under renewed 'zero-day-ish' mass attack

Researchers at security shop Huntress are seeing mass exploitation of a vulnerability affecting three Cleo file management products, even on patched systems. Cleo issued patches for CVE-2024-50623, an unauthenticated remote code execution (RCE) bug affecting Harmony, VLTrader, and LexiCom running version 5.8.0.21 - marketed as secure file integration and transfer products - back in October. READ MORE...

  • ...in 1815, mathematician and writer Ada Lovelace, regarded by many as the world's first computer programmer, is born in Nottingham, England.
  • ...in 1884, Mark Twain's satirical novel "Adventures of Huckleberry Finn" is first published.
  • ...in 1901, the first Nobel Prize ceremony is held in Stockholm, Sweden, on the fifth anniversary of founder Alfred Nobel's death.
  • ...in 1978, Richard Donner's "Superman" starring Christopher Reeve, Margot Kidder, and Gene Hackman premieres at the Kennedy Center.