<img src="https://secure.ruth8badb.com/159098.png" alt="" style="display:none;">

IT Security Newsletter - 7/29/2022

SHARE

Breaches

Federal court system suffered previously undisclosed breach, congressional committee says

The U.S. federal court system faced "an incredibly significant and sophisticated cybersecurity breach" dating to early 2020 that has "had lingering impacts" on the Department of Justice and other agencies, House Judiciary Chairman Rep. Jerrold Nadler said Thursday. The committee learned in March 2022 about the "startling breadth and scope of the court's document management system's security failure," Nadler said. READ MORE...

Hacking

Entrust acknowledges June cyberattack, remains tight-lipped on the details

Entrust confirmed it was hit by a cyberattack on June 18, which resulted in an intrusion of internal operations systems, but in a statement related to the attack the company remained tight-lipped. The cybersecurity vendor said it has found no indication to date that its dozens of security products for identity and access management, ID and passport issuance, payments, cloud security and data processing were impacted and remain operational. READ MORE...


Radioactivity monitoring and warning system hacked, disabled by attackers

The Spanish police arrested two people under the accusation of tampering with the Red de Alerta a la Radiactividad (RAR). The RAR is part of the Spanish national security systems and in use to monitor gamma radiation levels across the country. The network is managed, operated and maintained by the General Directorate of Civil Protection and Emergencies (DGPCE) of the Ministry of internal affairs. READ MORE...

Software Updates

Patch Now: Atlassian Confluence Bug Under Active Exploit

A critical Atlassian Confluence vulnerability that was disclosed last week is now being actively exploited in the wild, researchers are warning. According to researchers at Rapid7, the bug in question (CVE-2022-26138, one of three patched last week) is due to a hardcoded password in the Questions for Confluence app, which would allow cyberattackers to gain complete access to data within the on-premises Confluence Server and Confluence Data Center platforms. READ MORE...

Information Security

Breach Exposes Users of Microleaves Proxy Service

Microleaves, a ten-year-old proxy service that lets customers route their web traffic through millions of Microsoft Windows computers, recently fixed a vulnerability in their website that exposed their entire user database. Microleaves claims its proxy software is installed with user consent, but data exposed in the breach shows the service has a lengthy history of being supplied with new proxies by affiliates incentivized to distribute the software any which way they can - such as by secretly bundling it with other titles. READ MORE...

Exploits/Vulnerabilities

Microsoft SQL servers hacked to steal bandwidth for proxy services

Threat actors are generating revenue by using adware bundles, malware, or even hacking into Microsoft SQL servers, to convert devices into proxies that are rented through online proxy services. To steal a device's bandwidth, the threat actors install software called 'proxyware' that allocates a device's available internet bandwidth as a proxy server that remote users can use for various tasks, like testing, intelligence collection, content distribution, or market research. READ MORE...

On This Date

  • ...in 1588, the Spanish Armada is defeated off the coast of Gravelines, France by British naval forces.
  • ...in 1909, the Buick Motor Company acquires the Cadillac Motor Company on behalf of General Motors for $4.5 million.
  • ...in 1953, Rush lead singer and bassist Gary Lee Weinrib, AKA Geddy Lee, is born in North York, Ontario.
  • ...in 1958, the US space agency NASA (National Aeronautics and Space Administration) is created as the successor to the National Advisory Committee for Aeronautics (NACA).