CVE-2021-37708
CVE-2021-37708
The Lactalis Group, one of the world’s largest food products groups, said it was hit by a cyberattack during which the intruders gained access to some of its computer systems. “The Lactalis Group has detected an intrusion on part of its computer network. We immediately took steps to contain this attack and have notified the…
The White House said it was reaching out to victims of a wide-ranging ransomware outbreak that is centred on IT company Kaseya and has had an impact on hundreds of businesses worldwide. Kaseya has said that fewer than 60 of its customers had been “directly affected” by the attack. But the full impact of the…
Fraud Management & Cybercrime , Social Engineering Zscaler: Malware Buries Itself Into TeamViewer Theo Nassiokas, Head of Technology, Governance & Risk Controls, Westpac Group • February 24, 2021 Attack flow for Minebridge malware (Source: Zscaler) The operators behind the Minebridge remote-access Trojan have updated the malware, which is targeting security researchers by using…
WordPress has released version 5.7.1 of its popular content management system (CMS), which brings more than 25 bug fixes, including patches for two security vulnerabilities. One of the patched security flaws is an XML External Entity (XXE) vulnerability in the ID3 library in PHP 8, which is used by WordPress. Tracked as CVE-2021-29447, the vulnerability…
U.S. insurance giant CNA Financial reportedly paid $40 million to a ransomware gang to recover access to its systems following an attack in March, making it one of the most expensive ransoms paid to date. The development was first reported by Bloomberg, citing “people with knowledge of the attack.” The adversary that staged the intrusion…
Cyberwarfare / Nation-State Attacks , Fraud Management & Cybercrime , Governance & Risk Management Security Experts Size Up Impact of US Rush to Leave Afghanistan Doug Olenick (DougOlenick) • August 17, 2021 It’s unlikely that the U.S. abandoning its embassy and other facilities in Afghanistan poses cyber risks, thanks to the emergency planning…