US govt officials’ communications compromised in recent telecom hack

November 13, 2024 at 05:37PM CISA and the FBI confirmed that Chinese hackers breached U.S. broadband networks, compromising private communications of some government officials and stealing data, including customer call records. The group, known as Salt Typhoon, had prolonged access, while Canada reported similar attacks targeting government entities. Another group, Volt Typhoon, also infiltrated ISP … Read more

FBI, CISA, and NSA reveal most exploited vulnerabilities of 2023

November 12, 2024 at 11:54AM The FBI, NSA, and Five Eyes partners identified 15 top vulnerabilities exploited in 2023, urging immediate patching and management. Zero-day exploits increased, with 12 of the 15 vulnerabilities addressed last year. Notably, CVE-2023-3519 was widely targeted, emphasizing the need for proactive security measures to mitigate risks. ### Meeting Takeaways: 1. … Read more

FBI Seeks Public Help to Identify Chinese Hackers Behind Global Cyber Intrusions

November 5, 2024 at 12:36PM The FBI is investigating cyber intrusions involving malware targeting sensitive data from companies and government networks by Chinese state-sponsored groups. Reports by Sophos reveal attacks leveraging multiple vulnerabilities, shifting from widespread to targeted attacks since 2021, compromising critical infrastructure mainly in South and Southeast Asia. ### Meeting Takeaways: 1. **FBI … Read more

FBI Seeking Information on Chinese Hackers Targeting Sophos Firewalls

November 4, 2024 at 07:30AM The FBI is requesting information regarding Chinese cyber threat actors who are attempting to compromise Sophos edge devices, impacting both private and government organizations. The alert highlights ongoing cybersecurity concerns related to these hackers’ activities. **Meeting Takeaways:** 1. **Key Topic:** The FBI is actively seeking information regarding cyber threats posed … Read more

Inside Iran’s Cyber Playbook: AI, Fake Hosting, and Psychological Warfare

November 1, 2024 at 10:39AM U.S. and Israeli cybersecurity agencies attribute Iranian group ASA, linked to the IRGC, to cyberattacks targeting the 2024 Summer Olympics, including compromising a French display provider to denounce Israel. The group employs advanced tactics and has connections to other malicious actors. Law enforcement has seized relevant domains. ### Meeting Takeaways: … Read more

In Other News: FBI’s Ransomware Disruptions, Recall Delayed Again, CrowdStrike Responds to Bloomberg Article

November 1, 2024 at 08:46AM FBI conducted over 30 ransomware disruption operations this year. The Windows Recall has been postponed until December, and CrowdStrike has issued a response to a Bloomberg article. **Meeting Takeaways:** 1. **FBI Ransomware Operations**: The FBI has conducted over 30 disruption operations related to ransomware this year, highlighting their ongoing efforts … Read more

Uncle Sam outs a Russian accused of developing Redline infostealing malware

October 29, 2024 at 07:39PM US authorities have charged Maxim Rudometov, a Russian national, for developing the Redline infostealer, which has affected millions since 2020. The FBI’s investigation involved extensive digital tracking of his online activities. The case is part of Operation Magnus, targeting cybercrime, but Rudometov remains at large in Russia. **Meeting Takeaways:** 1. … Read more

Feds investigate China’s Salt Typhoon amid campaign phone hacks

October 28, 2024 at 04:09PM The FBI is investigating cyberattacks by Chinese-linked group Salt Typhoon on US telecoms, targeting phones of prominent political figures including Kamala Harris and Donald Trump. Affected companies, like Verizon and AT&T, are under scrutiny, prompting questions from lawmakers about their security measures amid rising cyber threats linked to China. ### … Read more

US says Chinese hackers breached multiple telecom providers

October 28, 2024 at 12:09PM The FBI and CISA reported that Chinese hackers breached U.S. telecommunications providers, prompting investigations and alerts to affected entities. Emphasizing collaboration to mitigate threats, the U.S. government encourages potentially compromised organizations to report incidents. Canada also detected cyber scans by Chinese threat actors targeting government and democratic institutions, urging enhanced … Read more

US, Australia Release New Security Guide for Software Makers

October 25, 2024 at 08:46AM CISA, FBI, and ACSC have released guidance aimed at assisting software manufacturers in creating secure deployment processes. This new security guide aims to strengthen the safety and reliability of software applications. The information was shared in a report by SecurityWeek. **Meeting Takeaways:** 1. **Publication of Guidance**: CISA (Cybersecurity and Infrastructure … Read more