Cyberattacks: Page 17
-
Ransomware festers as a top security challenge, US intel leaders say
U.S. intelligence leaders warn ransomware activity is growing, despite high profile efforts to seize threat actors’ infrastructure.
By Matt Kapko • March 12, 2024 -
CISA attacked in Ivanti vulnerabilities exploit rush
The nation’s cyber defense agency was hit “about a month ago” by widely exploited vulnerabilities in the popular remote access VPN product.
By Matt Kapko • March 11, 2024 -
Explore the Trendline➔
Getty Images
-
Ransomware attacks are hitting critical infrastructure more often, FBI says
The agency received more reports of ransomware last year, but officials remain troubled by the amount of attacks that go unreported.
By Matt Kapko • March 11, 2024 -
Microsoft’s security woes persist as Midnight Blizzard remains on the offensive
The Russia state-sponsored threat actor is using secrets it stole from Microsoft’s systems to gain or attempt to gain further access to the company’s IT infrastructure.
By Matt Kapko • March 8, 2024 -
Schweikert, John. (2022). [Photograph]. Retrieved from U.S. Courts.
Change Healthcare faces potential class action as lawsuits rack up
At least six federal lawsuits seeking class-action status were filed since the cyberattack, alleging the technology firm didn’t have reasonable cybersecurity measures.
By Emily Olsen • March 8, 2024 -
Change Healthcare says its largest claims clearinghouses are coming back online
The technology firm said more than $14 billion in claims were prepared for processing and will start flowing soon.
By Emily Olsen • Updated March 25, 2024 -
CMS rolls out provider flexibilities amid fallout from Change cyberattack
Provider groups said the government should go further to financially bolster providers during the outage at Change Healthcare.
By Emily Olsen • March 5, 2024 -
Amex cardholder data exposed in merchant processor hack
The point-of-sale attack on a merchant processor may have compromised card numbers, expiration dates and cardholder names, Amex said in a state regulatory filing.
By Caitlin Mullen • March 5, 2024 -
Change Healthcare cyberattack having ‘far-reaching’ effects on providers
Providers said the outage at the UnitedHealth-owned technology company has affected billing, eligibility checks, prior authorization requests and prescription fulfillment.
By Emily Olsen , Susanna Vogel • March 5, 2024 -
AlphV’s hit on Change Healthcare strikes a sour note for defenders
The ransomware group didn’t just regroup quickly after a law enforcement takedown. It carried out the worst attack on U.S. infrastructure to date, according to experts.
By Matt Kapko • March 4, 2024 -
In ConnectWise attacks, Play and LockBit ransomware exploits developed quickly
The incidents highlight rapid ongoing exploitation by criminal threat actors as customers are urged to patch.
By David Jones • March 4, 2024 -
Why Okta is overhauling its priorities, culture around security
CSO David Bradbury acknowledges the company’s brand is tarnished. “We need a track record of zero breaches. That’s what builds trust.”
By Matt Kapko • March 1, 2024 -
Okta reports ‘minimal’ financial impact following support portal attack
The identity and access management firm is promising to make security a top priority, even though Okta’s CFO said the attack fallout is “not quantifiable.”
By Matt Kapko • Feb. 29, 2024 -
Okta, with a bruised reputation, rethinks security from the top down
CSO David Bradbury detailed to Cybersecurity Dive what the identity and access management company got wrong and the security pledges it's making to customers.
By Matt Kapko • Feb. 27, 2024 -
LockBit group revives operations after takedown
The comeback is no surprise to experts — and some think LockBit as a brand is dead — but the reemergence underscores persistent challenges for authorities.
By Matt Kapko • Feb. 26, 2024 -
MGM Resorts’ cyberattack headache continues as regulators launch investigations
The company said it could face fines in connection with regulatory inquiries stemming from the social engineering attack.
By David Jones • Feb. 26, 2024 -
ConnectWise ScreenConnect faces new attacks involving LockBit ransomware
A variety of hackers are working to exploit a critical vulnerability in the remote desktop application.
By David Jones • Feb. 23, 2024 -
Cloud intrusions spiked 75% in 2023, CrowdStrike says
Threat actors are targeting organizations’ inconsistent cloud security systems to intrude networks and maintain persistence.
By Matt Kapko • Feb. 23, 2024 -
Change Healthcare hit by cyberattack
The UnitedHealth-owned healthcare technology company disconnected its systems after detecting an “outside threat,” according to a status update page.
By Emily Olsen • Feb. 22, 2024 -
IBM marks monumental shift in valid account attacks
X-Force identified a 71% increase in valid account credential attacks, the most common point of entry last year.
By Matt Kapko • Feb. 21, 2024 -
Critical infrastructure vendor PSI Software hit by ransomware
The Germany-based company shut down systems after it detected the intrusion, and it remains offline.
By Matt Kapko • Updated Feb. 21, 2024 -
LockBit operations dismantled following international takedown
An international group of law enforcement partners seized the infrastructure of the prolific ransomware group, obtaining decryption keys along the way.
By David Jones • Feb. 20, 2024 -
AlphV claims hit on Canada’s Trans-Northern Pipelines
The pipeline operator confirmed its internal systems, including communications, were impacted by a November cyberattack. However, the pipelines and fuel delivery were never disrupted.
By Matt Kapko • Feb. 14, 2024 -
Microsoft Azure customers hit by phishing, account takeover attacks
More than 200 organizations have been targeted via employee compromise, Proofpoint said.
By Matt Kapko • Feb. 13, 2024 -
Attackers hit more networking gear, this time a critical Fortinet CVE
The active exploits of Fortinet appliances come during a heightened period of China state-linked malicious activity targeting networking equipment.
By Matt Kapko • Feb. 12, 2024