Affirm admits customer info pwned in ransomware raid at Evolve Bank

July 2, 2024 at 09:23AM The breach at Evolve Bank & Trust has impacted its partners Wise and Affirm, with personal data of Affirm Card holders potentially stolen. The scale of the breach is still unclear, and Wise confirmed that some of its users may have been affected. Evolve faces additional scrutiny due to previous … Read more

The NYSE’s $10M Wake-up Call

June 24, 2024 at 10:03AM The recent settlement between the US Securities and Exchange Commission (SEC) and Intercontinental Exchange Inc. (ICE) emphasizes cybersecurity and corporate accountability issues. The severe cyberattack on ICE’s subsidiary exposed sensitive information and highlighted inadequate cybersecurity measures. The SEC’s proactive investigation and the $10 million settlement underscore the need for robust … Read more

Visa warns of new JSOutProx malware variant targeting financial orgs

April 4, 2024 at 07:03PM Visa issued a security alert warning about increased detections of the JsOutProx malware targeting financial institutions in South and Southeast Asia, the Middle East, and Africa. The malware provides remote access and can execute various malicious activities. Mitigation actions and indicators of compromise were recommended, and the campaign involved phishing … Read more

Banking Trojans Target Latin America and Europe Through Google Cloud Run

February 26, 2024 at 05:15AM Cybersecurity researchers are cautioning about a surge in email phishing campaigns utilizing Google Cloud Run to distribute banking trojans Astaroth, Mekotio, and Ousaban. Malware distribution campaigns using the same Google Cloud storage bucket have been observed since September 2023. Phishing activities are further facilitated by the availability of phishing kits … Read more

Australia declares ‘nationally significant cyber incident’ after port attack

November 12, 2023 at 07:50PM Australia’s National Cyber Security Coordinator has labeled an attack on DP World, a logistics company, as a “nationally significant cyber incident.” The attack caused DP World’s technology infrastructure at four Australian ports to go offline, resulting in the closure of the facilities. DP World handles 40 percent of the containers … Read more

FTC orders non-bank financial firms to report breaches in 30 days

October 30, 2023 at 04:01PM The U.S. Federal Trade Commission (FTC) has amended the Safeguards Rules to require non-banking financial institutions, such as mortgage brokers and investment firms, to report data breaches within 30 days. The goal is to enhance data security and protect customer information. Companies must disclose incidents impacting 500 or more consumers, … Read more