16-Sep-2024: Cyber Threats Surge - Medusa Hits Fortinet, 23andMe Settles Suit, Rural Hospitals Targeted
Hacked dAily16 Syys 2024

16-Sep-2024: Cyber Threats Surge - Medusa Hits Fortinet, 23andMe Settles Suit, Rural Hospitals Targeted

Welcome to Hacked dAily, the first AI-Driven Cybersecurity Podcast created by Cytadel Cyber. Tune in daily for the latest insights on critical cybersecurity threats and breaches affecting the digital world. In today's episode, we explore how cybercriminals are manipulating HTTP headers to enhance large-scale phishing attacks. These attacks are cleverly designed to trick users into revealing sensitive information, highlighting the need for improved security measures and user awareness. Next, we turn our attention to the Medusa ransomware group, which is actively exploiting a critical vulnerability in Fortinet's FortiClient EMS software. The flaw, identified as CVE-2023-48788, allows attackers to execute crippling ransomware attacks, prompting urgent calls for system updates and enhanced defenses. We also discuss 23andMe's $30 million settlement following a class-action lawsuit over privacy breaches. The genetics company faced accusations of mishandling user data, with eligible customers poised to receive compensation for these alleged violations. In other news, rural hospitals face increasing ransomware threats due to inadequate cybersecurity measures compared to larger urban centers. This alarming trend underscores the pressing need for better security protocols in rural healthcare systems. Finally, we delve into a new threat where malware is hijacking browsers to operate in kiosk mode, chiefly targeting Chrome users. This tactic traps victims in a fake web environment, leading to stolen Google credentials and compromised data integrity. Stay informed with Hacked dAily as we keep you abreast of the evolving cybersecurity landscape.This episode is sponsored by Cytadel Cyber. Specialist in Ransomware Readiness Assessments, Threat Intel-Led Red Teaming, AI DeepFakes, AI Voice Cloning and AI Vishing Simulations. Cyatdel helps you test your cyber resilience against the threats of today, keeping your data secure. Checkout cytadel.co.uk for more information.

Jaksot(500)

25-May-2024: GitLab Patches XSS Flaw, New Ransomware and Cyber Espionage Uncovered

25-May-2024: GitLab Patches XSS Flaw, New Ransomware and Cyber Espionage Uncovered

Welcome to today’s episode of "Cyber War Room," where we delve into the latest cybersecurity breaches and countermeasures. In today’s top stories, GitLab has addressed a high-severity XSS vulnerability that enabled attackers to hijack user accounts through malicious web pages. We explore how the flaw, CVE-2024-4835, found in GitLab CE and EE versions, was fixed following a bounty awarded via HackerOne. Next, we discuss a sophisticated evasion tactic uncovered by MITRE Corporation, involving the creation of rogue virtual machines by hackers. This innovative method helps attackers remain undetected, pointing to escalating challenges in cybersecurity defense. Also on the agenda, a new ransomware strain uses Microsoft's BitLocker to lock data, demanding ransoms for decryption. This exploit leverages system management tools, marking a worrying trend in the use of legitimate utilities for malicious endeavors. In other news, a significant breach involving JAVS courtroom recording software has led to the deployment of RustDoor malware, which may compromise the integrity of court recordings and legal proceedings. And finally, we cover Microsoft's latest findings on a cybercriminal group named "SmokyHorse," known for using advanced techniques to steal gift card data from retailers, blending cybercrime with espionage strategies. Stay with us as we explore these stories, providing insights and implications for cybersecurity efforts worldwide. Tune into "Cyber War Room" for your daily briefing on the digital frontlines.

25 Touko 20242min

24-May-2024: Cybersecurity Woes: Ransomhub, Victoria Centers & CentroMed Under Threat

24-May-2024: Cybersecurity Woes: Ransomhub, Victoria Centers & CentroMed Under Threat

Welcome to "Cyber War Room," your daily exploration into the evolving world of cybersecurity. In today’s episode, we delve into numerous pressing issues starting with a significant breach involving the hacking group Ransomhub, which has targeted SCADA systems across various industrial sectors, prompting urgent calls for tighter defense strategies. We also discuss a distressing cyberattack on a Texas ophthalmology practice, where over 80,000 patients' sensitive data was compromised, leading to comprehensive security overhauls and provision of identity protection services. Further, we examine the troubling data breach at CentroMed impacting around 400,000 patients, with an ongoing investigation as the healthcare provider enhances its cybersecurity measures. In a broader scope, our episode also covers the activities of the Ikaruz Red Team, exposing severe threats within the Philippines' cybersecurity defenses, urging enhanced national security protocols. Finally, we address the emerging threat where cybercriminals misuse Microsoft’s BitLocker tool for ransomware attacks, urging for immediate action and improved security practices within the Windows environments. Join us as we dissect these stories, uncover insights, and discuss the implications on global cybersecurity on "Cyber War Room."

24 Touko 20242min

23-May-2024: LockBit & Hackers Hit London Drugs, Qatar Bank, and French Hospital

23-May-2024: LockBit & Hackers Hit London Drugs, Qatar Bank, and French Hospital

Welcome to today's episode of "Cyber War Room", where we delve into the latest cyber warfare and security challenges faced globally. In this episode: 1. We begin with an alarming situation regarding the LockBit cybercriminal group targeting the Canadian pharmacy chain, London Drugs. The group's attack has led to threats of releasing stolen corporate and employee data after a fallout in a $25 million ransom negotiation. 2. We then move to the Middle East, where Qatar National Bank, one of the region's largest financial institutions, fell victim to hackers. Sensitive customer data and financial records are at risk, prompting an intensive security review by the bank. 3. Our focus then shifts to France, where a hospital in Cannes suffered data leakage at the hands of LockBit, impacting patient and operational data. This breach is a stark reminder of the escalating ransomware threats targeting the healthcare sector. Switching to other significant updates: - Microsoft has decided to retire VBScript, urging users to transition to modern scripting languages like JavaScript and PowerShell for better security and efficiency. Lastly: - We cover a report on Unfading Sea Haze, a covert threat actor associated with China, known for its long-standing cyber espionage activities targeting military and government entities in the South China Sea. Stay tuned as we analyze these developments and explore solutions to combat these sophisticated cyber threats.

23 Touko 20243min

22-May-2024: Ransomware Hits London Drugs & Atlas, YouTube Faces Cyber Threats

22-May-2024: Ransomware Hits London Drugs & Atlas, YouTube Faces Cyber Threats

Welcome to today's episode of "Cyber War Room." Today, we delve into two critical ransomware attacks and the burgeoning wave of cyber threats on YouTube. First up, London Drugs faces a ransomware predicament as the LockBit group demands a hefty $25 million ransom. With a tight 48-hour deadline, the group threatens to sell stolen data if their demands are not met. London Drugs is exploring recovery options within legal compliances, avoiding ransom payment despite the looming threat. Moving on, the Blackbasta group has targeted Atlas, one of America's principal fuel distributors, claiming a theft of 730GB data, including sensitive corporate and employee information. The cyber gang, known for their blackmail tactics, has yet to receive a public acknowledgment from Atlas concerning this security breach. Additionally, YouTube has become the latest vector for cyber attackers, with escalating instances of phishing and deepfake threats. Renowned channels with substantial subscribers find themselves hijacked, pushing deceptive cryptocurrency scams. In other news, increased ransomware and AI-powered threats are pushing businesses to enhance their cybersecurity infrastructures aggressively. And finally, a major security flaw discovered in GitHub Enterprise Server could allow attackers to access private codebases illicitly. GitHub has swiftly responded with necessary patches to mitigate potential damages. Stay informed and safe. Tune into the next episode of "Cyber War Room" for more updates on the ongoing cyber war.

22 Touko 20242min