Colonial CEO at Senate Hearing Details Ransomware Attack

Colonial CEO at Senate Hearing Details Ransomware Attack

Critical Infrastructure Security , Cybercrime , Cybercrime as-a-service Company’s IT Team Was Unaware the VPN Exploited to Gain Entry Existed Doug Olenick (DougOlenick) • June 8, 2021     Colonial Pipeline Co. CEO Joseph Blount testifying on Tuesday before the Senate Homeland Security and Governmental Affairs Committee Colonial Pipeline Co. CEO Joseph Blount defended his…

Here’s what we learned from the Colonial Pipeline CEO’s testimony today

Here’s what we learned from the Colonial Pipeline CEO’s testimony today

In recent weeks, cybercriminals have increasingly targeted organizations that play critical roles across broad swaths of the US economy. The fallout from those attacks show how hackers are now causing chaos for everyday Americans at an unprecedented pace and scale. Energy Secretary Jennifer Granholm on Sunday warned that “very malign actors” had the US in their sights…

NCSC Warns of Surge in Ransomware Attacks Against Schools

NCSC Warns of Surge in Ransomware Attacks Against Schools

Critical Infrastructure Security , Cybercrime , Cybercrime as-a-service Agency Notes Attacks Have Spiked Since February Akshaya Asokan (asokan_akshaya) • June 8, 2021     Ransomware actors continue to target schools and universities across the U.K., and attacks have surged since February, a new report by the U.K’s National Cyber Security Center warns. The agency has…

Latvian National Indicted for Helping Develop and Spread Trickbot Malware – HOTforSecurity

Latvian National Indicted for Helping Develop and Spread Trickbot Malware – HOTforSecurity

US authorities charged Alla Witte for helping build TrickBot, a type of malware that was active for many years in a worldwide campaign, defrauding numerous people. Taking down much of TrickBot was a group effort involving multiple countries and coordination that doesn’t usually happen with similar threats. While all of Trickbot’s infrastructure was eventually primarily…

US recovers most of Colonial Pipeline bitcoin ransom

US recovers most of Colonial Pipeline bitcoin ransom

The chief executive of the massive fuel pipeline hit by ransomware last month is expected to detail his company”s response to the cyberattack and to explain his decision to authorise a multimillion-dollar payment when he testifies before Congress this week. Colonial Pipeline CEO Joseph Blount will face the Senate Homeland Security Committee on Tuesday, one…

Department of Justice Reclaims Millions of Dollars Paid to Colonial’s Attackers

Department of Justice Reclaims Millions of Dollars Paid to Colonial’s Attackers

The US Justice Department has recovered most of the multimillion-dollar ransom payment The Guardian reports.   The operation to recover cryptocurrency from the Russian-based hacking group is the first carried out by the Biden administration’s task force specializing in ransomware. Moreover, it reflects what officials say is an increasingly aggressive approach to dealing with a…

US Prosecutors Charge Latvian Woman in Trickbot Gang Case

US Prosecutors Charge Latvian Woman in Trickbot Gang Case

Cybercrime , Cybercrime as-a-service , Cyberwarfare / Nation-State Attacks Case Is First Test for DOJ’s Ransomware and Digital Extortion Task Force Scott Ferguson (Ferguson_Writes) • June 7, 2021     A 55-year-old Latvian woman has been charged with helping to develop code for the Trickbot cybercriminal gang as well as allegedly stealing banking credentials from…

Windows Container Malware Targets Kubernetes Clusters

Windows Container Malware Targets Kubernetes Clusters

New malware that has been active for over a year has compromised Windows containers in order to further hack Kubernetes clusters and install backdoors in them with the aim of further malicious activity. Originally developed by Google and now maintained by the Cloud Native Computing Foundation, Kubernetes is an open-source system for automating the deployment,…

Four Security Vulnerabilities Were Found In Microsoft Office

Four Security Vulnerabilities Were Found In Microsoft Office

Four Security Vulnerabilities Were Found In Microsoft Office | IT Security News Android App Android App with push notifications Sponsors Endpoint Cybersecurity www.endpoint-cybersecurity.com – Consulting in building your security products– Employee awareness training– Security tests for applications and pentesting… and more. Daily Summary Categories CategoriesSelect Category(ISC)2 Blog  (323)(ISC)2 Blog infosec  (13)(ISC)² Blog  (370)2020-12-08 – Files for an ISC…

CVE-2021-28810

CVE-2021-28810

If exploited, this vulnerability allows an attacker to access resources which are not otherwise accessible without proper authentication. Roon Labs has already fixed this vulnerability in the following versions: Roon Server 2021-05-18 and later.