Tag: cyberattack
-
U.S. recovers $31 million stolen in 2021 Uranium Finance hack
U.S. authorities recovered $31 million in cryptocurrency stolen in 2021 cyberattacks on Uranium Finance, a Binance Smart Chain-based DeFi protocol. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/cryptocurrency/us-recovers-31-million-stolen-in-2021-uranium-finance-hack/
-
SolarWinds CISO says security execs are ‘nervous’ about individual liability for data breaches
Tim Brown didn’t call for indemnification laws, but suggested that CISOs dealing with legal implications for cyberattacks is stressful and a distraction from their core work. First seen on cyberscoop.com Jump to article: cyberscoop.com/tim-brown-solarwinds-liability-cyberlawcon/
-
Phishing-Alarm: ADAC, DocuSign, Angriffe auf Paypal und Microsoft 365-Konten
Die Tage sind mir wieder eine Reihe Phishing-Mails oder Meldungen zu Phishing untergekommen. So wird mein Postfach von DocuSign-Phishing-Mails von Amazons E-Mail-Dienst geflutet, weil 1&1 das im SPAM-Filter nicht erkennt. Auch eine ADAC-SPAM-Nachricht kam durch. Weiterhin sollten Paypal- und Microsoft … First seen on borncity.com Jump to article: www.borncity.com/blog/2025/03/01/phishing-alarm-amazon-docusign-paypal-und-co/
-
Critical infrastructure at state, local levels at heightened risk of cyberattacks
State and local governments need additional resources, shared intelligence and coordination, an MS-ISAC report showed. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/critical-infrastructure-state-local-cyber/741273/
-
Is your enterprise ‘cyber resilient’? Probably not. Here’s how other boards fixed that
Tags: backup, breach, business, ciso, cloud, compliance, control, cyber, cyberattack, cybersecurity, endpoint, finance, framework, governance, incident, metric, monitoring, nist, resilience, risk, service, strategy, supply-chain, tool, training, vulnerability, vulnerability-managementLockheed Martin: Lockheed Martin introduced its Cyber Resiliency Level (CRL) Framework and corresponding Scoreboard in 2018, illustrating a more formalized approach to measuring cyber resilience during this period. The company’s Cyber Resiliency Scoreboard includes tools like a questionnaire and dashboard for measuring the maturity levels of six categories, including Cyber Hygiene and Architecture.MIT: The Balanced Scorecard for Cyber Resilience (BSCR) provides…
-
Targeted by Ransomware, Middle East Banks Shore Up Security
As the UAE financial sector finished up its annual cyberattack exercise, its worries about ransomware compromises and geopolitical attacks are on the rise. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/targeted-ransomware-middle-east-banks-security
-
Belgium investigating alleged cyberattack on intelligence agency by China-linked hackers
Tags: access, china, cyberattack, cybersecurity, email, exploit, flaw, hacker, intelligence, softwareThe hackers reportedly exploited a flaw in US cybersecurity firm Barracuda’s software to access VSSE’s email server First seen on techcrunch.com Jump to article: techcrunch.com/2025/02/28/belgium-investigating-alleged-cyberattack-on-intelligence-agency-by-china-linked-hackers/
-
Hacker verschlüsseln Daten von rund 12.000 Patienten
Hacker haben sich Zugriff auf Daten von Tausenden Patienten aus Hamburg verschafft.Laut einem Bericht des Hamburger Abendblatt wurde das Praxisinformationssystem der MVZ Herz-Lungen-Praxis Hamburg-Bergedorf angegriffen, eine Tochter der renommierten LungenClinic Grosshansdorf. Demnach ist es den Tätern gelungen, Stamm- und Gesundheitsdaten von rund 12.000 Patienten zu verschlüsseln. Der Angriff soll bereits zum Jahreswechsel stattgefunden haben. Wie…
-
Enthüllungen zur Ransomware Black-Basta zeigen erhebliche Sicherheitslücken
Ein kürzliches Datenleck hat die internen Chat-Protokolle der Ransomware-Gruppe Black-Basta offengelegt und zeigt alarmierende Sicherheitslücken in Unternehmensnetzwerken auf. Die geleakten Informationen bieten seltene Einblicke in die Angriffstaktiken der Gruppe und verdeutlichen gravierende Schwachstellen, die von Cyberkriminellen gezielt ausgenutzt werden. Zielgerichtete Angriffe auf bekannte Schwachstellen und Fehlkonfigurationen Black-Basta nutzt systematisch ungeschützte RDP-Server, schwache Authentifizierungsmechanismen sowie […]…
-
Diese Unternehmen hat es schon erwischt
Lesen Sie, welche Unternehmen in Deutschland aktuell von Cyberangriffen betroffen sind.Sie denken, Ihre Sicherheitsmaßnahmen können Sie langfristig vor Cyberangriffen schützen? Oder dass Ihr Unternehmen zu klein und damit uninteressant für Hacker ist? Egal, ob Sie dem Mittelstand angehören, an der Börse gelistet sind oder zu den kritischen Infrastrukturen gehören: Jedes Unternehmen hat Daten, die Cyberkriminelle…
-
What is zero trust? The security model for a distributed and risky era
Tags: access, ai, authentication, best-practice, breach, business, ceo, cloud, compliance, computer, computing, control, corporate, credentials, cyberattack, data, detection, framework, government, guide, identity, infrastructure, intelligence, jobs, login, monitoring, network, nist, office, password, ransomware, regulation, risk, saas, service, technology, threat, tool, vpn, zero-trustHow zero trust works: To visualize how zero trust works, consider a simple case: a user accessing a shared web application. Under traditional security rules, if a user was on a corporate network, either because they were in the office or connected via a VPN, they could simply click the application and access it; because…
-
Device Code Phishing in Entra ID – Aktive Phishing-Angriffe auf Microsoft-Konten mittels Device Code Login
First seen on security-insider.de Jump to article: www.security-insider.de/phishing-kampagne-microsoft-device-code-login-a-2af2eb8eb798dfa789e756632f4ed63a/
-
Winos4.0 Malware Targets Windows Users Through Malicious PDF Files
A new wave of cyberattacks leveraging the Winos4.0 malware framework has targeted organizations in Taiwan through malicious PDF attachments disguised as tax inspection alerts, according to a January 2025 threat analysis by FortiGuard Labs. The campaign employs multi-stage payload delivery, anti-forensic techniques, and automated security bypass mechanisms to establish persistent access to victim networks while…
-
Hohe Präzision – Neue Cyberangriffe auf WLAN mit Jamming-Attacken möglich
Tags: cyberattackFirst seen on security-insider.de Jump to article: www.security-insider.de/-cyberkriminalitaet-neue-methode-gezielte-angriffe-wifi-geraete-a-3e6334cf86870cbb2e3ddb20f298b548/
-
North Korean Hackers Deploy RustDoor and Koi Stealer to Target Cryptocurrency Developers on macOS
A recent cybersecurity report from Unit 42 has revealed a new wave of North Korean-linked cyberattacks targeting macOS First seen on securityonline.info Jump to article: securityonline.info/north-korean-hackers-deploy-rustdoor-and-koi-stealer-to-target-cryptocurrency-developers-on-macos/
-
Cyberangriffe abwehren: Wie Windows-Architekturen widerstandsfähiger werden
Die weltweiten Computerstörungen im Sommer 2024 durch ein fehlerhaftes Cybersicherheits-Update hatten weitreichende Folgen. Das Bundesamt für Sicherheit in der Informationstechnik (BSI), Crowdstrike und Microsoft haben den Vorfall intensiv aufgearbeitet und jetzt umfassende Maßnahmen zur Stärkung der Systemresilienz vorgestellt. First seen on itsicherheit-online.com Jump to article: www.itsicherheit-online.com/news/security-management/cyberangriffe-abwehren-wie-windows-architekturen-widerstandsfaehiger-werden/
-
Cyberattack on Australia’s Genea: Stolen Patient Data Hits the Dark Web
The Termite ransomware group has allegedly leaked sensitive patient data following the Genea cyberattack, targeting one of Australia’s leading fertility providers. On February 26, 2025, the Termite ransomware group claimed responsibility for breaching Genea Pty Ltd’s systems. First seen on thecyberexpress.com Jump to article: thecyberexpress.com/genea-cyberattack/
-
Gcore Radar Report Angriffe steigen um 56 Prozent
First seen on security-insider.de Jump to article: www.security-insider.de/2024-ddos-angriffe-bericht-gcore-a-53b99c3d45136c245da7d575c77ef7a9/
-
2,850+ Ivanti Connect Secure Devices Exposed to Potential Cyberattacks
Tags: cyber, cyberattack, cybersecurity, data-breach, exploit, flaw, government, infrastructure, ivanti, network, risk, vpn, vulnerabilityA sweeping cybersecurity alert has emerged as researchers identify 2,850+ unpatched Ivanti Connect Secure devices worldwide, leaving organizations vulnerable to exploitation through the critical flaw designated CVE-2025-22467. The findings, published by cybersecurity watchdog Shadowserver Foundation, reveal systemic risks to virtual private network (VPN) infrastructures relied upon by enterprises and government agencies for secure remote access. Vulnerability Scope and…
-
Geopolitical tensions fuel surge in OT and ICS cyberattacks
New Russian group focused on Ukraine: The second new group to launch attack campaigns against industrial organizations last year, dubbed GRAPHITE, has overlaps with APT28 activities. Also known as Fancy Bear or Pawn Storm, APT28 is believed to be a unit inside Russia’s General Staff Main Intelligence Directorate (GRU).GRAPHITE launched constant phishing campaigns against hydroelectric,…
-
Cyberattacks Hits Leading Russian IT Service Provider’s Subsidiaries
First seen on scworld.com Jump to article: www.scworld.com/brief/cyberattacks-hits-leading-russian-it-service-providers-subsidiaries
-
Cyberattack hits leading Russian IT service provider’s subsidiaries
First seen on scworld.com Jump to article: www.scworld.com/brief/cyberattack-hits-leading-russian-it-service-providers-subsidiaries
-
Cyberangriffe: Zunahme auf Produktionsbetriebe weltweit
Tags: cyberattackFirst seen on datensicherheit.de Jump to article: www.datensicherheit.de/cyberangriffe-zunahme-produktionsbetriebe
-
CISA Confirms Microsoft Partner Center Flaw Exploited In Attacks
A ‘critical’ vulnerability in Microsoft’s partner program website has seen exploitation in cyberattacks, according to CISA. First seen on crn.com Jump to article: www.crn.com/news/security/2025/cisa-confirms-microsoft-partner-center-flaw-exploited-in-attacks
-
DOGE must halt all ‘negligent cybersecurity practices,’ House Democrats tell Trump
The Trump administration should “cease all DOGE activities that create serious cybersecurity vulnerabilities, expose government networks to cyberattacks, and risk disclosures of sensitive and personal information,” Democrats from the House Oversight Committee said in a letter to the White House. First seen on therecord.media Jump to article: therecord.media/doge-cybersecurity-house-democrats-letter-trump
-
Industrial System Cyberattacks Surge as OT Stays Vulnerable
Nearly a third of organizations have an operational system connected to the Internet with a known exploited vulnerability, as attacks by state and non-state actors increase. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/industrial-system-cyberattacks-surge-ot-vulnerable
-
Over 35,000 Websites Hacked to Inject Malicious Scripts Redirecting Users to Chinese Websites
In a widespread cyberattack, over 35,000 websites have been compromised by a malicious campaign that injects harmful scripts into their codebase. The injected scripts redirect users to Chinese-language gambling platforms, primarily under the >>Kaiyun
-
Bedarf an Versicherungen wächst – Cyberangriffe werden immer teurer
Tags: cyberattackFirst seen on security-insider.de Jump to article: www.security-insider.de/studie-cybersicherheit-versicherung-kosten-cyberangriffe-a-353bcce2376361362574cc29bf63d552/

