Healthcare giant Henry Schein hit twice by BlackCat ransomware

November 27, 2023 at 02:50PM Healthcare company Henry Schein has reported a second cyberattack this month by the BlackCat/ALPHV ransomware gang, following a breach in October. The company has restored its U.S. e-commerce platform and expects the platforms in Canada and Europe to be back online soon. The BlackCat gang claims to have stolen 35 … Read more

Fidelity National Financial Takes Down Systems Following Cyberattack

November 27, 2023 at 07:48AM Fidelity National Financial (FNF), a title insurance giant, is facing service disruptions due to a cyberattack. The attack has affected various services related to title insurance, escrow, mortgage transactions, and real estate technology. FNF’s subsidiary, F&G Annuities & Life, was not affected. An investigation has been launched, and law enforcement … Read more

General Electric investigates claims of cyber attack, data theft

November 25, 2023 at 05:44PM General Electric (GE) is investigating a possible cyberattack in which a threat actor breached their development environment and leaked alleged stolen data. The threat actor, known as IntelBroker, attempted to sell access to GE’s development and software pipelines on a hacking forum but later claimed to be selling the network … Read more

General Electric investigates claims of cyberattack, data theft

November 25, 2023 at 05:08PM General Electric is investigating a cyberattack where a threat actor breached the company’s development environment and leaked allegedly stolen data. The hacker, known as IntelBroker, attempted to sell access to GE’s development and software pipelines on a hacking forum. They then posted that they are now selling both the network … Read more

New ‘HrServ.dll’ Web Shell Detected in APT Attack Targeting Afghan Government

November 25, 2023 at 12:18AM An unnamed government entity in Afghanistan fell victim to a sophisticated cyber attack involving a previously unknown web shell called HrServ. The web shell exhibits advanced features and allows threat actors to control the compromised server and carry out various malicious activities. The attack involves the use of a remote … Read more

Cyberattack on IT provider CTS impacts dozens of UK law firms

November 24, 2023 at 12:16PM A cyberattack on CTS, a leading UK managed service provider (MSP) for law firms, has caused a major outage affecting numerous law firms and home buyers. CTS is working with a cyber forensics firm to investigate the incident and restore services, but cannot provide a timeline for resolution. It is … Read more

Hamas-Linked Cyberattacks Using Rust-Powered SysJoker Backdoor Against Israel

November 24, 2023 at 05:36AM Researchers have discovered a Rust version of the cross-platform backdoor SysJoker, indicating its use by a Hamas-affiliated group to target Israel. The malware has undergone significant changes, using Rust language instead of its previous version. The threat actor has also switched from Google Drive to OneDrive for storing command-and-control server … Read more

Scattered Spider Hops Nimbly From Cloud to On-Prem in Complex Attack

November 22, 2023 at 11:56AM A group known as Scattered Spider, responsible for the MGM cyberattack in September, has conducted another sophisticated ransomware attack. The group exploited a third-party service to gain access to the target organization’s on-premise network. The attack used tactics similar to the MGM attack, including social engineering and manipulation of multi-factor … Read more

Kansas Officials Blame 5-Week Disruption of Court System on ‘Sophisticated Foreign Cyberattack’

November 22, 2023 at 07:12AM The Kansas court system experienced a sophisticated cyberattack in which sensitive data was stolen and a ransomware attack was carried out. The attack disrupted access to records for over five weeks, affecting the state’s appellate courts and causing attorneys to resort to paper filings. The stolen data includes district court … Read more

Hacktivists breach U.S. nuclear research lab, steal employee data

November 21, 2023 at 04:28PM The Idaho National Laboratory (INL) has confirmed a cyberattack after hacktivist group ‘SiegedSec’ leaked stolen human resources data online. The INL is a nuclear research center with 5,700 specialists and 50 experimental nuclear reactors. The hacktivists leaked personal employee information and proof of the breach. The incident is under investigation … Read more