News – November 2023


  • Judge rules it’s fine for car makers to intercept your text messages

    November 9, 2023

    A federal judge has refused to bring back a class action lawsuit that alleged four car manufacturers had violated Washington state’s privacy laws by using vehicles’ on-board infotainment systems to record customers’ text messages and mobile phone call logs. Car manufacturers Honda, Toyota, Volkswagen, and General Motors were facing five related privacy class action suits. One ...

  • Law firm Allen & Overy hit by ‘data incident’

    November 9, 2023

    Allen & Overy has suffered a “data incident”, the London-founded law firm said on Thursday, after social media posts suggested it had been hacked by the Lockbit cybercrime gang. The attack, first reported by the Financial Times, comes after seven countries, including the U.S. and Britain, in June named Lockbit as the world’s top ransomware threat. Read ...

  • Sandworm Disrupts Power in Ukraine Using a Novel Attack Against Operational Technology

    November 9, 2023

    In late 2022, Mandiant responded to a disruptive cyber physical incident in which the Russia-linked threat actor Sandworm targeted a Ukrainian critical infrastructure organization. This incident was a multi-event cyber attack that leveraged a novel technique for impacting industrial control systems (ICS) / operational technology (OT). The actor first used OT-level living off the land (LotL) ...

  • OpenAI Blames ChatGPT’s Intermittent Outages On ‘Abnormal Traffic’ That Suggests Potential Cyber Attack

    November 9, 2023

    ChatGPT continued to face intermittent outages late Wednesday, which the platform’s maker OpenAI blamed on a potential cyberattack, hours after the AI chatbot platform recovered from a wide outage that the company initially attributed to a surge in interest for its new features. Early on Thursday, OpenAI’s service status page displayed a notification saying both ChatGPT ...

  • SysAid warns customers to patch after ransomware gang caught exploiting new zero-day flaw

    November 9, 2023

    Software maker SysAid is warning customers that hackers linked to a notorious ransomware gang are exploiting a newly discovered vulnerability in its widely used IT service automation software. SysAid chief technology officer Sasha Shapirov confirmed in a blog post Wednesday that attackers are exploiting a zero-day flaw affecting its on-premises software. A vulnerability is considered a ...

  • FBI: Ransomware Actors Continue to Gain Access through Third Parties and Legitimate System Tools

    November 8, 2023

    The Federal Bureau of Investigation (FBI) is releasing this Private Industry Notification to highlight ransomware initial access trends and encourage organizations to implement the recommendations in the “Mitigations” section to reduce the likelihood and impact of ransomware incidents. Threat As of July 2023, the FBI noted several trends emerging or continuing across the ransomware environment and ...

  • Cyber Security & Cloud Expo Set to Convene Leading Experts in Cybersecurity and Cloud Technologies.

    November 8, 2023

    LONDON, November 8, 2023 – In just three weeks, Olympia London will host the Cyber Security & Cloud Expo, a prestigious gathering of industry leaders and innovators. Taking place from 30th November to 1st December, this event promises to be an unmissable opportunity for professionals in the fields of cybersecurity and cloud technology. The Cyber Security ...

  • Identifying Group Policy attacks

    November 8, 2023

    In this post Sophos researchers will be discussing Group Policy attacks, basing the threat hunt on a ransomware investigation undertaken by the Sophos X-Ops Incident Response team earlier this year. They will cover malicious behaviors associated with Active Directory and Group Policy attacks, showing you how to investigate and remediate some of these threats. Read more… Source: ...

  • UK: Cyber attack hits island council computer systems

    November 8, 2023

    A suspected ransomware attack has caused significant disruption to IT systems at Western Isles local authority, Comhairle nan Eilean Siar. The council said access to its systems had been affected. The Scottish government and computer company Dell have been helping Comhairle nan Eilean Siar deal with the situation. Read more… Source: MSN News  

  • Indian hackers launch cyber attacks on Qatar to avenge death penalty of former Navy officers

    November 8, 2023

    An Indian hacker group, named ‘Indian Cyber Force’ launched cyber attacks on Qatar in response to the death sentence handed to eight former Indian Navy officers by a Qatari court in Espionage case. The Indian hackers claimed of carrying out cyber attacks on Qatar on November 7. They also alleged of executing unauthorised server access, leaked ...