<img src="https://secure.ruth8badb.com/159098.png" alt="" style="display:none;">

IT Security Newsletter - 6/18/2025

SHARE

Breaches

Data Breach at Healthcare Services Firm Episource Impacts 5.4 Million People

Healthcare services firm Episource has been targeted in a cyberattack that resulted in a data breach impacting more than 5.4 million individuals. Episource provides medical coding and risk adjustment services to doctors, health plans, and other types of healthcare organizations. The firm revealed in a data breach notice that it detected unauthorized access to its systems in early February. READ MORE...


Scammers hijack websites of Bank of America, Netflix, Microsoft, and more to insert fake phone number

Cybercriminals frequently use fake search engine listings to take advantage of our trust in popular brands, and then scam us. It often starts, as with so many attacks, with a sponsored search result on Google. In the latest example of this type of scam, we found tech support scammers hijacking the results of people looking for 24/7 support for Apple, Bank of America, Facebook, HP, Microsoft, Netflix, and PayPal. READ MORE...


Iran's Bank Sepah disrupted by cyberattack claimed by pro-Israel hacktivist group

Bank Sepah's website is offline following a hacktivist group's claimed attack on the Iran state-owned bank. The group, known as Predatory Sparrow - or Gonjeshke Darande in Persian - said in a social media post early Tuesday that it "destroyed the data of the Islamic Revolutionary Guard Corps' Bank Sepah." Iran-focused media outlets report Bank Sepah branches are closed, customers are unable to access accounts and payment processing is down. READ MORE...

Hacking

Researchers unearth keyloggers on Outlook login pages

Unknown threat actors have compromised internet-accessible Microsoft Exchange Servers of government organizations and companies around the world, and have injected the organizations' Outlook on the Web (OWA) login page with browser-based keyloggers, Positive Technologies researchers have warned. The researchers haven't been able to pinpoint how the attackers gained access to the compromised servers. READ MORE...


Instagram ads mimicking BMO, EQ Banks are finance scams

Instagram ads impersonating financial institutions like Bank of Montreal (BMO) and EQ Bank (Equitable Bank) are being used to target Canadian consumers with phishing scams and investment fraud. Some ads use AI-powered deepfake videos in an attempt to collect your personal information, while others use official branding to drive traffic outside of the platform to lookalike illicit domains that are not affiliated with banks. READ MORE...

Software Updates

Critical Vulnerability Patched in Citrix NetScaler

Citrix on Tuesday announced patches for four vulnerabilities across three products, including a critical-severity issue in NetScaler ADC and NetScaler Gateway. The critical flaw, tracked as CVE-2025-5777 (CVSS score of 9.3), is described as an out-of-bounds memory read caused by insufficient input validation. Only NetScaler deployments configured as Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or as Authentication, Authorization, and Accounting virtual server are affected. READ MORE...

Exploits/Vulnerabilities

New Veeam RCE flaw lets domain users hack backup servers

Veeam has released security updates today to fix several Veeam Backup & Replication (VBR) flaws, including a critical remote code execution (RCE) vulnerability. Tracked as CVE-2025-23121, this security flaw was reported by security researchers at watchTowr and CodeWhite, and it only impacts domain-joined installations. As Veeam explained in a Tuesday security advisory, the vulnerability can be exploited by authenticated domain users in low-complexity attacks. READ MORE...


Sitecore CMS flaw let attackers brute-force 'b' for backdoor

Security researchers have issued a warning about a pre-authentication exploit chain affecting a CMS used by some of the biggest companies in the world. Sitecore Experience Platform is a content management system (CMS) used by United Airlines, Procter & Gamble, Microsoft, Fujitsu, and more. Today, the team at watchTowr disclosed three distinct vulnerabilities that could be chained together to achieve full system takeover. READ MORE...

On This Date

  • ...in 1812, the United States declares war on the United Kingdom, beginning the War of 1812.
  • ...in 1815, British and Prussian forces led by Wellington and Blucher defeat Napoleon Bonaparte's army at Waterloo.
  • ...in 1942, singer-songwriter Paul McCartney is born in Liverpool, England.
  • ...in 1983, astronaut Sally Ride becomes the first American woman in space, aboard the STS-7 mission.