Ransomware hits law firm counseling Fortune 500, Global 500 companies

Ransomware hits law firm counseling Fortune 500, Global 500 companies

Campbell Conroy & O’Neil, P.C. (Campbell), a US law firm counseling dozens of Fortune 500 and Global 500 companies, has disclosed a data breach following a February 2021 ransomware attack. Campbell’s client list includes high-profile companies from various industry sectors, including automotive, aviation, energy, insurance, pharmaceutical, retail, hospitality, and transportation. Some of its current and past clients…

US and Allies Accuse China of Global Hacking Spree, Chinese Embassy Denies

US and Allies Accuse China of Global Hacking Spree, Chinese Embassy Denies

The United States and its allies accused China on Monday of a global cyberespionage campaign, mustering an unusually broad coalition of countries to publicly call out Beijing for hacking. The United States was joined by NATO, the European Union, Australia, Britain, Canada, Japan, and New Zealand in condemning the spying, which US Secretary of State…

EXPLAINER: Target List of Israeli Hack-for-Hire Firm Widens

EXPLAINER: Target List of Israeli Hack-for-Hire Firm Widens

Human rights and press freedom activists are up in arms about a new report on NSO Group, the notorious Israeli hacker-for-hire company. The report, by a global media consortium, expands public knowledge of the target list used in NSO’s military-grade spyware. According to the report, that now not only includes journalists, rights activists and opposition…

Advisory Describes Chinese Attackers’ Tactics

Advisory Describes Chinese Attackers’ Tactics

Governance & Risk Management , IT Risk Management , Next-Generation Technologies & Secure Development Report Offers Risk Mitigation Advice, Stressing Prompt Patching Doug Olenick (DougOlenick) • July 19, 2021     Example of Chinese attackers’ tactics and techniques (Source: Joint Cybersecurity Advisory) Three federal agencies released a 31-page Joint Cybersecurity Advisory Monday that describes 50…

Overcoming Cyberthreat Intelligence-Sharing Hurdles

Overcoming Cyberthreat Intelligence-Sharing Hurdles

While some organizations are improving their ability to share cyberthreat intelligence with other entities within the same sector, cross-sector cyber intelligence collaboration is still difficult. But cyber fusion centers can help automate that process, according to Errol Weiss of the Health Information Sharing & Analysis Center and Anuj Goel of security firm Cyware. “To this…

Amazon Gets Apple to Boot App That Spots Fake Reviews From App Store

Amazon Gets Apple to Boot App That Spots Fake Reviews From App Store

Apple on Friday removed the app Fakespot from its App Store at Amazon’s request. Amazon complained Fakespot misled customers, broke App Store rules, and posed a security risk. Fakespot’s CEO said he was shocked by the turn of events. See more stories on Insider’s business page. Amazon got Apple to remove an app called Fakespot…

US Indicts 4 Chinese Nationals for Lengthy Hacking Campaign

US Indicts 4 Chinese Nationals for Lengthy Hacking Campaign

Cyberwarfare / Nation-State Attacks , Fraud Management & Cybercrime , Fraud Risk Management All Aligned With China’s Ministry of State Security Dan Gunderman (dangun127) • July 19, 2021     (Source: U.S. Department of Justice) Four Chinese nationals working with the nation’s Ministry of State Security, the civilian intelligence, security and secret police agency, have…

StopRansomware.gov brings together information on stopping and surviving ransomware attacks – Malwarebytes Labs

StopRansomware.gov brings together information on stopping and surviving ransomware attacks – Malwarebytes Labs

StopRansomware.gov is designed to be a one-stop hub for ransomware resources. The US Department of Homeland Security (DHS) and the US Department of Justice (DOJ)—along with other federal partners—have launched a new website as part of the US government’s fight against ransomware: StopRansomware.gov. StopRansomware.gov is said to be a one-stop hub for ransomware resources for…

Turns Out That Low-Risk iOS Wi-Fi Naming Bug Can Hack iPhones Remotely

Turns Out That Low-Risk iOS Wi-Fi Naming Bug Can Hack iPhones Remotely

The Wi-Fi network name bug that was found to completely disable an iPhone’s networking functionality had remote code execution capabilities and was silently fixed by Apple earlier this year, according to new research. The denial-of-service vulnerability, which came to light last month, stemmed from the way iOS handled string formats associated with the SSID input,…

Investigation uncovers global abuse of Pegasus malware to spy on journalists, activists and more

Investigation uncovers global abuse of Pegasus malware to spy on journalists, activists and more

Spyware produce by the Israeli surveillance firm NSO Group has been abused by governments to target dissenting journalists, activists, lawyers and more, an investigation by human rights groups and media organizations has found. The Pegasus spyware was produced with the intention of targeting terrorists and other criminals, but an investigation into a huge data leak…