British Clothing Retailer Fat Face Discloses Data Breach

British Clothing Retailer Fat Face Discloses Data Breach

Breach Notification , Incident & Breach Response , Security Operations Employee and Customer Information Compromised in January Attack; ICO Investigating Mathew J. Schwartz (euroinfosec) • March 23, 2021     The Fat Face store inside the Putney Exchange shopping center in London (Photo: Edward Hands via Wikimedia Commons) British clothing and accessories retailer Fat Face…

SolarWinds Attackers Manipulated OAuth App Certificates

SolarWinds Attackers Manipulated OAuth App Certificates

Forensics , Fraud Management & Cybercrime , Fraud Risk Management Proofpoint Update Describes the Fraud Tactics Prajeet Nair (@prajeetspeaks) • March 23, 2021     The SolarWinds supply chain attackers manipulated OAuth app certificates to maintain persistence and access privileged resources including email, according to researchers at Proofpoint. See Also: Top 50 Security Threats …

Disgruntled IT Contractor Sentenced in Retaliatory …

Disgruntled IT Contractor Sentenced in Retaliatory …

Former contractor deleted 1,200 user accounts in revenge. A disgruntled IT contractor worker was sentenced today in federal court for hacking into the server of a Carlsbad, Calif., company and deleting over 1,200 Microsoft user accounts in retaliation for a bad performance review. The unnamed company had to shutter for two days while it dealt…

Shell Says It Was Impacted by Accellion Cyber Security Breach

A Shell logo sits on a totem sign at a Royal Dutch Shell Plc petrol filling station in Cobham, U.K., on Wednesday, Sept. 30, 2020. Royal Dutch Shell Plc will cut as many as 9,000 jobs as Covid-19 accelerates a company-wide restructuring into low-carbon energy. Photographer: Chris Ratcliffe/Bloomberg , Bloomberg (Bloomberg) — Royal Dutch Shell…

Microsoft Exchange servers now targeted by Black Kingdom ransomware

Microsoft Exchange servers now targeted by Black Kingdom ransomware

Another ransomware operation known as ‘Black Kingdom’ is exploiting the Microsoft Exchange Server ProxyLogon vulnerabilities to encrypt servers. Over the weekend, security researcher Marcus Hutchins, aka MalwareTechBlog, tweeted that a threat actor was compromising Microsoft Exchange servers via the ProxyLogon vulnerabilities to deploy ransomware. Based on the logs from his honeypots, Hutchins states that the threat actor…

CopperStealer Malware Attacks Facebook and Instagram Business Accounts

CopperStealer Malware Attacks Facebook and Instagram Business Accounts

CopperStealer Malware Attacks Facebook and Instagram Business Accounts | IT Security News 23. March 2021 The cybersecurity researchers at Proofpoint have recently issued all the details regarding a new undocumented malware, which is dubbed as “CopperStealer.” According to the report, the threat actors are spreading this undocumented malware via fake software that continuously destroying the…

Swiss Firm Says It Accessed SolarWinds Attackers’ Servers

Swiss Firm Says It Accessed SolarWinds Attackers’ Servers

Cybercrime , Forensics , Fraud Management & Cybercrime Prodaft: APT Group Uses ‘Unprecedented Malware Detection Sandbox’ Prajeet Nair (@prajeetspeaks) • March 22, 2021     SolarWinds attack timeline (Source: Prodaft) Swiss cybersecurity firm Prodaft says it has accessed several servers used by an advanced persistent threat group tied to the SolarWinds supply chain attack. These…

Parliament House security who let Brittany Higgins and ‘rapist’ in reveals what really happened

Parliament House security who let Brittany Higgins and ‘rapist’ in reveals what really happened

A security guard who let Brittany Higgins and her alleged rapist into Parliament House says she later found her passed out naked on a couch. Ms Higgins, then 24, claims a high-flying senior Liberal Party staffer raped her on that couch in the office of Defence Minister Linda Reynolds’ office in March 2019.  The colleagues…