Cyberattacks: Page 27


  • Downtown Los Angeles aerial view.
    Image attribution tooltip
    Stein Photo via Getty Images
    Image attribution tooltip

    Los Angeles school system shifts timeline of ransomware attack

    Post-breach investigations are complex. The timeline and scope of damage inflicted often change as investigations unfold.

    By Jan. 24, 2023
  • T-Mobile storefront in San Francisco.
    Image attribution tooltip
    Justin Sullivan/Getty Images via Getty Images
    Image attribution tooltip

    Experts question T-Mobile’s security culture as breach cycle churns

    The gap between the threat actor’s intrusion and T-Mobile’s detection underscores multiple unresolved challenges.

    By Jan. 20, 2023
  • An abstract photo copy background in black and white. Explore the Trendline
    Image attribution tooltip
    BNMK0819 via Getty Images
    Image attribution tooltip
    Trendline

    Top 5 stories from Cybersecurity Dive

    tk

    By Cybersecurity Dive staff
  • Pedestrians walk by a T-Mobile store
    Image attribution tooltip
    Justin Sullivan via Getty Images
    Image attribution tooltip

    T-Mobile breached again, 37M customer accounts exposed

    The incident marks the latest in a series of data breaches, the worst of which occurred in August 2021 and exposed the data of at least 76.6 million people.

    By Jan. 19, 2023
  • PayPal logo depicted on a sign.
    Image attribution tooltip
    Sean Gallup via Getty Images
    Image attribution tooltip

    PayPal warns 35,000 customers of exposure following credential stuffing attack

    Impacted customers were notified of the incident nearly a month after it was discovered. It’s unclear where or how customer account credentials were obtained.

    By Jan. 19, 2023
  • A depiction of computer hardware.
    Image attribution tooltip
    solarseven via Getty Images
    Image attribution tooltip

    World Economic Forum officials warn global instability could lead to catastrophic cyber event

    A report released at the WEF said top business leaders and security experts fear heightened geopolitical tensions could result in a major attack in the next two years.

    By Jan. 19, 2023
  • A Mailchimp logo on a phone with a larger Mailchimp in the background.
    Image attribution tooltip

    Rafael Henrique/Zumapress/Newscom

    Image attribution tooltip

    Mailchimp hit by second cyberattack in 6 months, 133 customers impacted

    The social engineering incident is similar to an August cyberattack that targeted customers in the crypto industry.

    By Jan. 19, 2023
  • Digital code data numbers and secure lock icons on hacker's hands working with keyboard computer on dark blue tone background.
    Image attribution tooltip
    Techa Tungateja via Getty Images
    Image attribution tooltip

    CircleCI probe links malware placed on engineer’s laptop to larger breach

    An unauthorized actor, after stealing a valid SSO session, was able to exfiltrate data, including customer environment variables, tokens and keys.

    By Jan. 13, 2023
  • Picture of a cybersecurity lock
    Image attribution tooltip
    iStock via Getty Images
    Image attribution tooltip

    Citrix flaw exploited in ransomware attack against small US business

    Threat actors linked to ransomware group Royal are actively exploiting a vulnerability in two Citrix products, researchers found.

    By Jan. 13, 2023
  • Connection network in dark servers data center room storage systems.
    Image attribution tooltip
    sdecoret via Getty Images
    Image attribution tooltip

    CircleCI working with AWS to identify, revoke keys impacted by security incident

    The company assured customers there is no indication that AWS accounts were accessed. CircleCI has scheduled an incident report for Jan. 17.

    By Jan. 12, 2023
  • Image attribution tooltip
    Justin Sullivan via Getty Images
    Image attribution tooltip

    Ransomware attack exposes California transit giant’s sensitive data

    Vice Society, a prolific ransomware group, leaked data it claims to have stolen from San Francisco’s Bay Area Rapid Transit.

    By Jan. 10, 2023
  • Rendered image depicting global networks.
    Image attribution tooltip
    DKosig via Getty Images
    Image attribution tooltip

    FCC revives push to speed up telecom incident disclosures

    Telecom operators are a primary target for threat actors. A change to breach reporting rules is long overdue, one analyst said.

    By Jan. 10, 2023
  • Smiling businesswoman in headphones taking notes, working with laptop and talking smartphone, blue glowing information protection icons. Padlock, cloud and digital interface. Cyber security concept - stock photo
    Image attribution tooltip
    iStock via Getty Images
    Image attribution tooltip

    Rackspace confirms ransomware attack hit a small percentage of its Hosted Exchange customers

    The cloud services firm said an investigation found no evidence the attackers read, misused or disseminated customer data or emails.

    By Jan. 6, 2023
  • Digital code data numbers and secure lock icons on hacker's hands working with keyboard computer on dark blue tone background.
    Image attribution tooltip
    Techa Tungateja via Getty Images
    Image attribution tooltip

    Slack employee tokens stolen, GitHub repository breached

    The firm said the threat actor downloaded private code repositories, but none had customer data or the company’s code base.   

    By Jan. 5, 2023
  • Computer engineer working in factory with laptop computer
    Image attribution tooltip
    Thinkhubstudio via Getty Images
    Image attribution tooltip

    Freight company Wabtec discloses June cyberattack impacting US, overseas operations

    The Pittsburgh-based company began notifications in late December, months after stolen data posted on a LockBit site.

    By Jan. 4, 2023
  • School buses stand idle on December 15, 2015 in Los Angeles, California.
    Image attribution tooltip
    David McNew via Getty Images
    Image attribution tooltip

    Ransomware hit US schools at steady rate in 2022

    The true numbers are likely much greater. Not all incidents are publicly disclosed or claimed as such by threat actors on the dark web.

    By Jan. 4, 2023
  • Workers at a security operations center at Rackspace.
    Image attribution tooltip
    Courtesy of Rackspace Technology
    Image attribution tooltip

    Rackspace recovers old emails as customers await answers from ransomware probe

    The cloud-services company previously said an investigation into the ransomware incident was almost complete, but has not yet released key details. 

    By Dec. 22, 2022
  • Workers at a security operations center at Rackspace.
    Image attribution tooltip
    Courtesy of Rackspace Technology
    Image attribution tooltip

    Apple CIO steps down from Rackspace board citing new job duties

    Rackspace announced additional management changes while it recovers from a ransomware attack on its Hosted Exchange business. 

    By Dec. 19, 2022
  • Image attribution tooltip
    katleho Seisa via Getty Images
    Image attribution tooltip

    Little Rock School District approves $250K payment in ransomware settlement

    Federal agencies including the FBI discourage paying ransoms in such cyberattacks as there is no guarantee victims will recover their files. 

    By Anna Merod • Dec. 19, 2022
  • Programming scripts on laptop monitor, unauthorized remote hacking of server
    Image attribution tooltip
    Motortion via Getty Images
    Image attribution tooltip

    Rackspace executives stand by ransomware response

    Chief Product Officer Josh Prewitt said the company restored email access to more than three-quarters of its Hosted Exchange customers. But Rackspace officials pushed back on alleged connections to ProxyNotShell.

    By Dec. 16, 2022
  • Ransomware virus has encrypted data. Attacker is offering key to unlock encrypted data for money.
    Image attribution tooltip
    vchal via Getty Images
    Image attribution tooltip

    Rackspace blames ransomware attack on financially motivated threat actor

    The cloud services firm says an investigation into the Dec. 2 ransomware attack is close to wrapping up.

    By Dec. 15, 2022
  • Image depicts the implementation of cybersecurity with a lock displayed over a screen.
    Image attribution tooltip
    anyaberkut via Getty Images
    Image attribution tooltip

    Threat actors abuse legitimate Microsoft drivers to bypass security

    Researchers from Mandiant and SentinelOne say attackers have deployed malware that can allow them to get around security controls. 

    By Dec. 13, 2022
  • The California statehouse
    Image attribution tooltip
    The image by Jimmy Emerson, DVM is licensed under CC BY-ND 2.0
    Image attribution tooltip

    California authorities confirm cyber intrusion, LockBit claims ransomware hit

    Multiple state agencies are responding to support California's Department of Finance, though officials say no state funds were compromised.

    By Dec. 12, 2022
  • Digital code data numbers and secure lock icons on hacker's hands working with keyboard computer on dark blue tone background.
    Image attribution tooltip
    Techa Tungateja via Getty Images
    Image attribution tooltip

    Rackspace says more than two-thirds of customers regained email access

    The cloud company continued efforts to transition customers to Microsoft 365 following a Dec. 2 ransomware attack.

    By Dec. 12, 2022
  • Male IT Server Technician Specialist Holds Laptop and Looking on Raining Script Code in Rack Sever Cabinet.
    Image attribution tooltip
    gorodenkoff via Getty Images
    Image attribution tooltip

    Rackspace scrambles to assist customers as ransomware probe continues

    Microsoft is assisting the multicloud services firm after a ransomware attack left thousands of customers unable to access emails on Exchange.

    By Dec. 8, 2022
  • Lights in Europe are seen from space.
    Image attribution tooltip
    DKosig/iStock via Getty Images
    Image attribution tooltip

    Ransomware attacks shift beyond US borders

    U.S.-based organizations remain the top target for ransomware gangs, but the scale of that misfortune is waning, according to Moody’s.

    By Dec. 6, 2022