Cyberattacks: Page 19


  • Header image for "43% of Audit Executives Rank Cybersecurity Controls as 2023's Lead Risk"
    Image attribution tooltip
    Colin Anderson Productions pty ltd
    Image attribution tooltip

    Ivanti Connect Secure attacks part of deliberate espionage operation

    Researchers warn the previously unknown actor has developed custom malware designed to maintain persistent access on targeted networks and evade detection.

    By Jan. 12, 2024
  • cybersecurity, talent shortage, retention, leadership
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Ivanti Connect Secure devices face active exploitation, patch schedule staggered

    Unauthenticated attackers can take control of systems by exploiting the zero days, which a suspected state-linked threat actor is chaining together. 

    By Jan. 11, 2024
  • Trendline

    Top 5 stories from Cybersecurity Dive

    tk

    By Cybersecurity Dive staff
  • Rendering of digital data code in safety security technology concept.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    5 cybersecurity trends to watch in 2024

    Preventative measures remain woefully unmet, the scourge of ransomware is as bad as its ever been, and a wave of new incident reporting and compliance regulations are taking hold. Buckle up, 2024 is here.

    By , Jan. 10, 2024
  • A picture of a glass office building with a brick entrance.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Fidelity National Financial cyberattack impacts up to 1.3M customers

    While data was stolen and the company faces lawsuits, it does not consider the attack material to the business.

    By Jan. 10, 2024
  • Exclamation mark depicted over code.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    DDoS attack traffic surged in 2023, Cloudflare finds

    Elevated malicious DDoS activity coincided with mass exploits of the novel zero-day vulnerability HTTP/2 Rapid Reset, which threat actors used to launch DDoS attacks last year.

    By Jan. 9, 2024
  • Purchase agreement with model home
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    LoanDepot caught in mortgage industry cyberattack spree

    The non-bank mortgage lender is the fourth major real estate industry organization hit by a cyberattack since late October.

    By Jan. 8, 2024
  • Merck sign
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Merck reaches settlement in closely watched NotPetya insurance case

    The pharmaceutical giant previously won a New Jersey court decision involving $700 million of a $1.4 billion dispute over war-exclusions language related to the attack.

    By Jan. 8, 2024
  • Data Breach Button on Computer Keyboard
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Extent of a cyber specialist law firm’s data breach grows

    A two-week long breach exposed a trove of highly sensitive information on Orrick’s clients. The pool of victims quadrupled between its July and December disclosures.

    By Jan. 5, 2024
  • cybersecurity, talent shortage, retention, leadership
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Xerox discloses a subsidiary’s breach following ransomware claim of data theft

    Inc, a relatively new threat group, previously claimed to have stolen company data.

    By Jan. 3, 2024
  • Coin stack on international banknotes with house model on table.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    First American Financial confirms threat actors stole and encrypted data

    The title insurance giant said the cyberattack is contained, but it is still working to determine whether the incident will have a material impact.

    By Updated Jan. 4, 2024
  • Santa Claus
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Fleeting fake delivery phishing campaign targets last-minute shoppers

    Text messages disguised as urgent or failed delivery notifications can create tension between impersonated delivery service companies and legitimate customers.

    By Dec. 22, 2023
  • cybersecurity cfos evaluate and prioritize data protection
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    First American Financial takes systems offline after cyber incident

    The incident comes just weeks after the title insurance firm reached a $1 million settlement with New York state financial regulators for a massive 2019 data breach that impacted 885 million customer records.

    By Updated Dec. 27, 2023
  • Matrix background of blurred programming code.
    Image attribution tooltip
    Getty Plus via Getty Images
    Image attribution tooltip

    Notorious ransomware group tussles with law enforcement, regenerates after takedown

    The on-again, off-again appearance of AlphV’s threats on the dark web underscore the difficulties law enforcement agencies confront in their disruption efforts.

    By Dec. 20, 2023
  • FBI seal displayed on a wall
    Image attribution tooltip
    Chip Somodevilla/Getty Images via Getty Images
    Image attribution tooltip

    US leads AlphV ransomware infrastructure takedown

    Law enforcement released a decryptor for the prolific threat group and ransomware affiliate service behind some of 2023’s most high-profile attacks.

    By Dec. 19, 2023
  • Image attribution tooltip
    Justin Sullivan via Getty Images
    Image attribution tooltip

    Comcast’s Xfinity discloses massive data breach linked to CitrixBleed vulnerability

    The breach, involving 35.9 million customers, took place just a week after Citrix released a patch for a critical flaw.

    By Dec. 19, 2023
  • People walk past the exterior of a Timberland storefront.
    Image attribution tooltip
    Matthew Eisman/Getty Images for Pandora Media via Getty Images
    Image attribution tooltip

    Cyberattack on VF Corp. disrupts order fulfillment

    The attack on the company last week, which owns Vans and The North Face, also resulted in data theft. 

    By Laurel Deppen • Dec. 18, 2023
  • Coin stack on international banknotes with house model on table.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Mr. Cooper cyberattack hits every current — and former — customer

    The mortgage servicer expects vendor expenses related to its response and recovery to reach $25 million this quarter. Almost 14.7 million people were impacted.

    By Dec. 18, 2023
  • Brightly colored digital lock with central computer processor and futuristic circuit board.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    State-linked cyber actors behind SolarWinds plant seeds for new malicious campaign

    U.S. authorities are raising alarms that the 2020 Sunburst attack threat actors are exploiting a CVE in JetBrains TeamCity in preparation for future supply chain compromises.

    By Dec. 15, 2023
  • Overhead side view of bottles of Heinz Ketchup
    Image attribution tooltip
    Scott Olson via Getty Images
    Image attribution tooltip

    Kraft Heinz probes ransomware attack claim

    The food and beverage company attributed the potential attack to a decommissioned marketing site and said internal systems are operating normally.

    By Dec. 15, 2023
  • Binary code abstract background with US $100 dollar banknotes.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Credit unions recover from outages caused by third-party ransomware attack

    While Ongoing Operations said some of its data was compromised and notified impacted customers, credit unions have yet to disclose damages downstream.

    By Dec. 14, 2023
  • SolarWinds
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Check Point Software in SEC settlement talks in connection with SolarWinds probe

    The cybersecurity firm provided documents and other information related to the 2020 supply chain hack of the SolarWinds Orion platform.

    By Dec. 13, 2023
  • A brick building with a sign that says "Henry Schein Inc."
    Image attribution tooltip
    Bruce Bennett via Getty Images
    Image attribution tooltip

    Henry Schein says 29K people affected in September cyberattack

    The ransomware group AlphV/BlackCat claimed responsibility for the data breach and a second incident involving the company.

    By Susan Kelly • Dec. 11, 2023
  • An exterior image of a hotel and signage.
    Image attribution tooltip
    Retrieved from Red Roof on July 25, 2023
    Image attribution tooltip

    Red Roof claims cybersecurity incident did not involve guest data

    The hotel company experienced a ransomware attack in September that targeted personal data.

    By Jenna Graber • Dec. 11, 2023
  • A medical team takes a patient into the isolation ward in the emergency department of a full-service acute hospital facility.
    Image attribution tooltip
    Lisa Maree Williams via Getty Images
    Image attribution tooltip

    Norton Healthcare ransomware attack exposes 2.5M people

    Ransomware attacks are soaring in the healthcare sector, impacting more than 88 million people in the first 10 months of 2023, according to HHS.

    By Dec. 11, 2023
  • Anne Neuberger deputy national security advisor for cyber and emerging technologies, speaks at the Billington Cybersecurity Summit with Brad Medairy, EVP, Booz Allen.
    Image attribution tooltip
    Courtesy of Billington CyberSecurity Summit
    Image attribution tooltip

    White House wants to set minimum cyber standards for hospitals, healthcare

    The sector has faced a wave of ransomware linked to the critical CitrixBleed vulnerability, which has led to major attacks from LockBit and other threat groups.

    By Dec. 11, 2023