Kaspersky Comment: Critical Microsoft vulnerability is failed to be patched – leaves devices at significant risk

Kaspersky Comment: Critical Microsoft vulnerability is failed to be patched – leaves devices at significant risk

Kaspersky Comment: Critical Microsoft vulnerability is failed to be patched – leaves devices at significant risk Security researchers have found that, despite recent efforts by Microsoft, a critical windows vulnerability has failed to be patched, allowing hackers to take full control of computers and servers. In early June, Microsoft patched a Windows vulnerability that it…

Microsoft shares mitigations for Windows PrintNightmare zero-day bug

Microsoft shares mitigations for Windows PrintNightmare zero-day bug

Microsoft has provided mitigation guidance to block attacks on systems vulnerable to exploits targeting the Windows Print Spooler zero-day vulnerability known as PrintNightmare. This remote code execution (RCE) bug—now tracked as CVE-2021-34527—impacts all versions of Windows per Microsoft, with the company still investigating if the vulnerability is exploitable on all of them. CVE-2021-34527 allows attackers to take over affected…

Ransomware Breach at Florida IT Firm Kaseya Hits 200 Businesses

Ransomware Breach at Florida IT Firm Kaseya Hits 200 Businesses

Hundreds of American businesses were hit Friday by an unusually sophisticated ransomware attack that hijacked widely used technology management software from a Miami-based supplier called Kaseya. The attackers changed a Kaseya tool called VSA, used by companies that manage technology at smaller businesses. They then encrypted the files of those providers’ customers simultaneously. Security firm…

Kaseya is Focus of New Supply Chain Ransomware Attack

Kaseya is Focus of New Supply Chain Ransomware Attack

3rd Party Risk Management , Breach Notification , Critical Infrastructure Security REvil Malware Suspected of Infecting Scores of IT Management Companies, Clients Akshaya Asokan (asokan_akshaya) • July 3, 2021     UPDATED July 3, 11:30 a.m. EDT See Also: Rapid Digitization and Risk: A Roundtable Preview IT management software vendor Kaseya sustained a suspected…

Ransomware hits hundreds of US companies, security firm says

Ransomware hits hundreds of US companies, security firm says

WASHINGTON — A ransomware attack paralyzed the networks of at least 200 U.S. companies on Friday, according to a cybersecurity researcher whose company was responding to the incident. The REvil gang, a major Russian-speaking ransomware syndicate, appears to be behind the attack, said John Hammond of the security firm Huntress Labs. He said the criminals…

700 Million ‘Scraped’ LinkedIn User Records Offered for Sale

700 Million ‘Scraped’ LinkedIn User Records Offered for Sale

Fraud Management & Cybercrime , Governance & Risk Management , Privacy Social Media Platform Says No Private Data Exposed Rashmi Ramesh • July 1, 2021     Some 700 million records of LinkedIn users have been offered for sale on the hacker forum RaidForum, the news website PrivacySharks reports. The social media platform, and several…

Babuk Ransomware Is Back Targeting Corporate Networks With A New Version

Babuk Ransomware Is Back Targeting Corporate Networks With A New Version

After the Babuk ransomware operators have announced that they decided to close the affiliate program and move to data theft extortion, the group seems to have returned to their previous methods of encrypting corporate systems. At this time, the hackers are employing a new version of their file-encrypting malware and have shifted the operation to…

REvil ransomware attacks systems using Kaseya’s remote IT management software

REvil ransomware attacks systems using Kaseya’s remote IT management software

Just in time to ruin the holiday weekend, ransomware attackers have apparently used Kaseya — a software platform designed to help manage IT services remotely — to deliver their payload. Sophos director and ethical hacker Mark Loman tweeted about the attack earlier today, and now reports that affected systems will demand $44,999 to be unlocked….

REvil’s Ransomware Success Formula: Constant Innovation

REvil’s Ransomware Success Formula: Constant Innovation

Cybercrime , Cybercrime as-a-service , Fraud Management & Cybercrime Affiliate-Driven Approach and Regular Malware Refinements Are Key, Experts Say Mathew J. Schwartz (euroinfosec) • July 2, 2021     Sodinokibi/REvil ransom note (Source: Malwarebytes) Just as cloud services have taken the business world by storm, the same can be said for ransomware, including one of…