Salt Typhoon Hits T-Mobile as Part of Telecom Attack Spree

November 19, 2024 at 11:31AM T-Mobile USA has confirmed being targeted by the Chinese cyber threat group Salt Typhoon, part of a larger espionage campaign affecting multiple telecoms. While T-Mobile found no evidence of data breaches, federal agencies report sensitive information may have been accessed. Experts warn of further attacks and cybersecurity vulnerabilities. ### Meeting … Read more

Russian Phobos Ransomware Operator Extradited to US

November 19, 2024 at 10:33AM SecurityWeek Network offers comprehensive resources on cybersecurity news, covering topics such as malware, cybercrime, ransomware, and data protection. It features events like the ICS Cybersecurity Conference and provides newsletters for updates on threats and expert insights in the cybersecurity field. Subscriptions can be managed easily. ### Meeting Takeaways 1. **Cybersecurity … Read more

Navigating third-party risks

November 19, 2024 at 09:42AM SailPoint is hosting a webinar on December 3rd at 11 AM ET, focusing on managing third-party risks to enhance security and compliance. Key topics include identifying vulnerabilities, effective access controls, and fostering a culture of compliance. Attendees will receive actionable insights to improve defenses against external threats. ### Meeting Takeaways … Read more

Hackers Hijack Unsecured Jupyter Notebooks to Stream Illegal Sports Broadcasts

November 19, 2024 at 09:42AM Malicious actors are exploiting misconfigured JupyterLab and Jupyter Notebooks to facilitate sports piracy by hijacking unauthenticated notebooks. They use FFmpeg to capture and illegally stream live sports events. The campaign poses serious risks, including data theft and operational disruption, according to a report by Aqua’s threat intelligence director. **Meeting Takeaways … Read more

Threat Actor Turns Thousands of IoT Devices Into Residential Proxies

November 19, 2024 at 08:53AM SecurityWeek offers a range of cybersecurity resources, including news on malware, data breaches, and threat intelligence. It features webcasts, events, and a daily briefing newsletter covering various topics like cloud security, risk management, and industrial cybersecurity. Users can subscribe for updates or unsubscribe at any time. ### Meeting Takeaways 1. … Read more

Akira Ransomware Drops 30 Victims on Leak Site in One Day

November 19, 2024 at 07:21AM SecurityWeek offers comprehensive cybersecurity news, webcasts, and virtual events, covering topics such as malware, cyberwarfare, ransomware, and various security domains. Their resources include a daily briefing newsletter and opportunities for industry engagement through conferences and forums. Subscribers receive updates on the latest threats and insights. ### Meeting Takeaways 1. **Cybersecurity … Read more

Ford Investigating Potential Breach After Hackers Claim Data Theft

November 19, 2024 at 06:34AM Ford is investigating claims by hackers, IntelBroker and EnergyWeaponUser, who assert they stole 44,000 customer records, primarily from dealerships. While the leaked data appears to include non-sensitive information, Ford is actively looking into the potential breach and the hackers’ history of exaggerating claims against other companies. ### Meeting Takeaways: 1. … Read more

New ‘Helldown’ Ransomware Variant Expands Attacks to VMware and Linux Systems

November 19, 2024 at 05:45AM Cybersecurity researchers have identified a new Linux variant of the Helldown ransomware, derived from LockBit 3.0. This group targets virtualized infrastructures, exploiting Zyxel security flaws. Helldown employs double extortion tactics, attacking various sectors. Additionally, a new ransomware, Interlock, has emerged, targeting similar sectors with advanced operations. ### Meeting Takeaways on … Read more

Palo Alto Patches Firewall Zero-Day Exploited in Operation Lunar Peek

November 19, 2024 at 04:40AM SecurityWeek Network offers comprehensive cybersecurity news, covering topics like malware, cybercrime, data breaches, and more. It features webcasts, virtual events, and resources for professionals, including newsletters and forums for CISOs. Subscribe for updates on the latest threats and expert insights, with the option to unsubscribe anytime. **Meeting Notes Takeaways:** 1. … Read more

iOS 18 added secret and smart security feature that reboots iThings after three days

November 19, 2024 at 03:38AM Apple’s iOS 18 introduces a security feature that reboots devices after 72 hours of inactivity, enhancing data protection by keeping files encrypted in Before First Unlock (BFU) mode. This reduces access risks for stolen devices, impacting both criminals and forensic analysts, while emphasizing the urgency for law enforcement data extraction. … Read more