Cyber Security News


  • What happens if you ‘cover up’ a ransomware infection? For Blackbaud, a $3m charge

    March 10, 2023

    Blackbaud has agreed to pay $3 million to settle charges that it made misleading disclosures about a 2020 ransomware infection in which crooks stole more than a million files on around 13,000 of the cloud software slinger’s customers. According to America’s financial watchdog, the SEC, Blackbaud will cough up the cash – without admitting or denying ...

  • Canada: Cyber attack hits engineering giant with contracts for military bases, power plants

    March 9, 2023

    A Canadian engineering giant whose work involves critical military, power and transportation infrastructure across the country has been hit with a ransomware attack. Toronto-based Black & McDonald has so far refused to publicly comment on the cyberattack, while the Department of National Defence and other clients of the company have downplayed any impact or damage. Read more… Source: ...

  • IceFire ransomware now encrypts both Linux and Windows systems

    March 9, 2023

    Threat actors linked to the IceFire ransomware operation now actively target Linux systems worldwide with a new dedicated encryptor. SentinelLabs security researchers found that the gang has breached the networks of several media and entertainment organizations around the world in recent weeks, starting mid-February, according to a report shared in advance with BleepingComputer. Read more… Source: Bleeping Computer  

  • Significant hack potentially exposes US lawmakers’ personal data

    March 9, 2023

    A serious breach at a healthcare administrator serving the U.S. House of Representatives has potentially exposed the personal data of hundreds of lawmakers and their staff, top representatives and a senior Congressional official said in letters circulated on Wednesday. One of the letters, which the House’s Chief Administrative Officer Catherine Szpindor (CAO) sent to members of ...

  • Suspected Chinese cyber spies target unpatched SonicWall devices

    March 9, 2023

    Suspected Chinese cyber criminals have zeroed in on unpatched SonicWall gateways and are infecting the devices with credential-stealing malware that persists through firmware upgrades, according to Mandiant. The spyware targets the SonicWall Secure Mobile Access (SMA) 100 Series – a gateway device that provides VPN access to remote users. Read more… Source: The Register  

  • Examining Ransomware Payments From a Data-Science Lens

    March 9, 2023

    Ransomware has come a long way since the Internet’s pre-cryptocurrency days. The advent of cryptocurrency was an important turning point in the evolution of this cyberthreat, as malicious actors are now no longer confined to available local or regional payment options when collecting ransom payments. The operation costs and monetization models of a ransomware group can be ...

  • ECB: The Quick and the Dead – building up cyber resilience in the financial sector

    March 8, 2023

    The proliferation of cyber threat actors combined with an increase in remote working and greater digital interconnectedness is raising the risk, frequency and severity of cyberattacks. Increasingly, cyber criminals are launching ransomware attacks and demanding payment in crypto. Cyberattacks related to geopolitical developments – Russia’s aggression against Ukraine in particular – have also become a more common ...

  • Fortinet warns of new critical unauthenticated RCE vulnerability

    March 8, 2023

    Fortinet has disclosed a “Critical” vulnerability impacting FortiOS and FortiProxy, which allows an unauthenticated attacker to execute arbitrary code or perform denial of service (DoS) on the GUI of vulnerable devices using specially crafted requests. This buffer underflow vulnerability is tracked as CVE-2023-25610 and has a CVSS v3 score of 9.3, rating it critical. This type ...

  • These DrayTek routers are under actual attack – and there’s no patch

    March 8, 2023

    If you’re still using post-support DrayTek Vigor routers it may be time to junk them, or come up with some other workaround, as a cunning malware variant is setting up shop in the kit. The operators behind the Hiatus malware campaign are hijacking DrayTek Vigor router models 2960 and 3900 powered by MIPS, i386 and Arm-based ...

  • TSA issues new cybersecurity requirements for airport and aircraft operators

    March 7, 2023

    Today, the Transportation Security Administration (TSA) issued a new cybersecurity amendment on an emergency basis to the security programs of certain TSA-regulated airport and aircraft operators, following similar measures announced in October 2022 for passenger and freight railroad carriers. This is part of the Department of Homeland Security’s efforts to increase the cybersecurity resilience of U.S. critical infrastructure and ...

  • One Month to Go: UK Cyber Week Event Will Help Businesses Fight Back Against Cyber Crime

    March 7, 2023

    Over 100 world-class speakers, hackers and disruptors working together to bridge knowledge gap between cyber and business communities London, UK, 7 March 2023 – Award winning event organiser, ROAR B2B, today announces the launch of UK Cyber Security Week event on 4th and 5th April at the Business Design Centre, London. Free attendee registration is open ...