5 BCDR Oversights That Leave You Exposed to Ransomware

November 14, 2024 at 07:15AM Ransomware poses a significant threat to businesses, with increasing sophistication and frequency of attacks. Organizations must implement effective backup and disaster recovery (DR) strategies, focusing on data audits, system resilience, and comprehensive recovery testing. Common oversights leave businesses vulnerable, necessitating robust solutions like Unitrends Unified Backup for enhanced protection against … Read more

US indicts Snowflake hackers who extorted $2.5 million from 3 victims

November 13, 2024 at 01:52PM The Department of Justice has unsealed an indictment against two suspected hackers who compromised over 165 organizations using Snowflake cloud storage services. **Meeting Notes Takeaways:** 1. **Indictment Unsealed**: The Department of Justice has publicly released the indictment against two suspected hackers. 2. **Nature of Breach**: The hackers are believed to … Read more

Canadian Authorities Arrest Attacker Who Stole Snowflake Data

November 5, 2024 at 05:56PM Canadian authorities arrested Alexander “Connor” Moucka for allegedly compromising 165 Snowflake accounts. Known online as “Judische” and “Waifu,” he boasted about the hacks on Telegram. The breaches, linked to UNC5537, exploited credentials from previous infections, targeting companies like Ticketmaster and AT&T, with ransom demands up to $5 million. ### Meeting … Read more

Suspect behind Snowflake data-theft attacks arrested in Canada

November 5, 2024 at 10:22AM Canadian authorities arrested Alexander “Connor” Moucka for allegedly stealing data from hundreds of millions by targeting over 165 organizations using compromised customer credentials via malware. This attack, affecting major companies, highlights vulnerabilities in multi-factor authentication at Snowflake, which has since implemented stricter security measures. Moucka awaits extradition hearing. **Meeting Takeaways:** … Read more

Researchers Discover Severe Security Flaws in Major E2EE Cloud Storage Providers

October 21, 2024 at 03:12AM Cybersecurity researchers identified serious cryptographic vulnerabilities in end-to-end encrypted cloud storage platforms (Sync, pCloud, Icedrive, Seafile, Tresorit) that allow malicious servers to leak sensitive data, tamper with files, and access plaintext. Some providers acknowledged the issues, while Icedrive has not taken corrective action. ### Meeting Takeaways: October 21, 2024 **Topic: … Read more

Google Cloud Document AI flaw (still) allows data theft, despite bounty payout

September 17, 2024 at 04:24PM Google Cloud’s Document AI service has a vulnerability that could be exploited by attackers to access and steal sensitive data from Cloud Storage buckets. Despite being reported, Google has yet to fully address the issue, leaving the attack vector open. The nature of the vulnerability and back-and-forth with Google regarding … Read more

Pure Storage confirms data breach after Snowflake account hack

June 11, 2024 at 08:48AM Pure Storage confirmed a security breach in its Snowflake workspace, exposing telemetry data and customer names, usernames, and email addresses. The company took steps to secure its systems and has not found malicious activity on customer infrastructure. The attack was linked to a financially motivated threat actor, targeting organizations without … Read more

Snowflake account hacks linked to Santander, Ticketmaster breaches

May 31, 2024 at 01:36PM A threat actor claimed to have breached Santander and Ticketmaster, stealing data from employee accounts at Snowflake, a cloud storage provider, with the intent to extort $20 million. Snowflake refuted the claims, attributing the breaches to poorly secured customer accounts. The company is investigating unauthorized access and advises customers to … Read more

Google One VPN axed for everyone but Pixel loyalists … for now

April 12, 2024 at 04:31PM Google is discontinuing its VPN service for Google One subscribers and Pixel smartphone owners, with the VPN set to be taken offline later this year due to low demand. The service, introduced in 2020, will still be available to Pixel 7 and newer phone owners. The decision aligns with Google’s … Read more

The best Windows 11 features added in 2023

January 8, 2024 at 08:54PM Windows 11’s 2023 update brings back drag and drop for the taskbar, introduces Windows Copilot AI assistant, and modernizes File Explorer. Aiming to address early feedback, Microsoft plans to enhance Copilot in 2024. The 2024 update is expected to focus on AI, with features including upgraded weather updates, printing management, … Read more