Cussins Enterprises LLC

Technology is a paint brush on the canvas of life. 
What can we paint for you?

Cybersecurity News

Awareness of what is happening is the 1st to a secure system.

Threat Post

Firewall Bug Under Active Attack Triggers CISA Warning

On August 23, 2022Source: Web Security – ThreatpostBy Threatpost
Categories: Vulnerabilities, Web Security

CISA is warning that Palo Alto Networks’ PAN-OS is under active attack and needs to be patched ASAP.Read more

Fake Reservation Links Prey on Weary Travelers

On August 22, 2022Source: Web Security – ThreatpostBy Nate Nelson
Categories: Malware, Web Security

Fake travel reservations are exacting more pain from the travel weary, already dealing with the miseRead more

Google Patches Chrome’s Fifth Zero-Day of the Year

On August 18, 2022Source: Web Security – ThreatpostBy Elizabeth Montalbano
Categories: Vulnerabilities, Web Security, Google Chrome, zero-day vulnerabilities

An insufficient validation input flaw, one of 11 patched in an update this week, could allow for arbRead more

Phishers Swim Around 2FA in Coinbase Account Heists

On August 8, 2022Source: Web Security – ThreatpostBy Elizabeth Montalbano
Categories: Hacks, Web Security

Attackers are spoofing the widely used cryptocurrency exchange to trick users into logging in so theRead more

Open Redirect Flaw Snags Amex, Snapchat User Data

On August 5, 2022Source: Web Security – ThreatpostBy Elizabeth Montalbano
Categories: Hacks, Vulnerabilities, Web Security

Separate phishing campaigns targeting thousands of victims impersonate FedEx and Microsoft, among otRead more

Universities Put Email Users at Cyber Risk

On August 2, 2022Source: Web Security – ThreatpostBy Elizabeth Montalbano
Categories: Vulnerabilities, Web Security

DMARC analysis by Proofpoint shows that institutions in the U.S. have among some of the poorest protRead more

Threat Actors Pivot Around Microsoft’s Macro-Blocking in Office

On July 28, 2022Source: Web Security – ThreatpostBy Elizabeth Montalbano
Categories: Hacks, Malware, Web Security

Cybercriminals turn to container files and other tactics to get around the company’s attempt to thwaRead more

IoT Botnets Fuel DDoS Attacks – Are You Prepared?

On July 26, 2022Source: Web Security – ThreatpostBy Sponsored Content
Categories: Sponsored, Vulnerabilities, Web Security, indusface

The increased proliferation of IoT devices paved the way for the rise of IoT botnets that amplifiesRead more

Magecart Serves Up Card Skimmers on Restaurant-Ordering Systems

On July 20, 2022Source: Web Security – ThreatpostBy Elizabeth Montalbano
Categories: Hacks, Malware, Web Security

300 restaurants and at least 50,000 payment cards compromised by two separate campaigns against MenuRead more

Authentication Risks Discovered in Okta Platform

On July 19, 2022Source: Web Security – ThreatpostBy Nate Nelson
Categories: Privacy, Web Security

Four newly discovered attack paths could lead to PII exposure, account takeover, even organizationalRead more

Beeping Computer

https://www.bleepingcomputer.com/feed/ is invalid XML, likely due to invalid characters. XML error: XML_ERR_NAME_REQUIRED at line 1, column 753

Motherboard

https://motherboard.vice.com/en_us/rss is invalid XML, likely due to invalid characters. XML error: Undeclared entity error at line 23, column 112

Data Breeches

Ascension cyberattack exposed personal data of 5.6 million people

On December 21, 2024Source: DataBreaches.NetBy Dissent
Categories: Health Data, Malware

Sarah Volpenhein reports: Nearly 5.6 million people were affected in the ransomware attack that hitRead more

Illinois Department of Human Services phishing attack affected more than 1.1M public assistance clients

On December 21, 2024Source: DataBreaches.NetBy Dissent
Categories: Breach Incidents, Government Sector, Phishing

Their substitute notice, as published on Effingham Radio: Springfield, IL-(Effingham Radio)- PursuanRead more

US Court Finds NSO Liable For Hacking Of WhatsApp Using Pegasus Malware

On December 21, 2024Source: DataBreaches.NetBy Dissent
Categories: Business Sector, Hack, NSO Group, Pegasus

Gursimran Kaur Bakshi reports: In a summary judgment, Judge Phyllis Hamilton of the US District CourRead more

No need to hack when it’s leaking: Rapido edition

On December 21, 2024Source: DataBreaches.NetBy Dissent
Categories: Exposure, Non-U.S.

Jagmeet Singh reports: Rapido, a popular ride-hailing platform in India, has fixed a security issueRead more

FTC Finalizes Order with Marriott and Starwood Requiring Them to Implement a Robust Data Security Program to Address Security Failures

On December 20, 2024Source: DataBreaches.NetBy Dissent
Categories: Business Sector, enforcement, FTC, Starwood. Marriott

The Federal Trade Commission finalized an order requiring Marriott International, Inc. and its subsiRead more

Ohio state auditor issued guidance on email scams in April; employees might be liable if they fall for a scam

On December 20, 2024Source: DataBreaches.NetBy Dissent
Categories: Miscellaneous

Corinne Colbert reports: The Ohio Auditor of State’s office issued a bulletin this past spring withRead more

CA: Ontario Provincial Police charge three former hospital employees PHIPA violations of patient privacy breaches

On December 20, 2024Source: DataBreaches.NetBy Dissent
Categories: Health Data, Insider, PHIPA

Toula Mazloum reports: Three former hospital employees have been charged following investigations inRead more

The state registers of Ukraine have suffered a large-scale cyberattack: details from the Ministry of Justice

On December 20, 2024Source: DataBreaches.NetBy Dissent
Categories: cyberwar, Non-U.S.

Svyatenko Tamara On December 19, the most extensive external cyberattack on the state registers of URead more

Romanian National Sentenced to 20 Years in Prison in Connection with NetWalker Ransomware Attacks

On December 20, 2024Source: DataBreaches.NetBy Dissent
Categories: Malware, NetWalker, ransomware

A press release from the U.S. Department of Justice: A Romanian man was sentenced today for his roleRead more

Attorney General James Secures $500,000 from Auto Insurance Company Over Data Breach

On December 19, 2024Source: DataBreaches.NetBy Dissent
Categories: Breach Incidents, auto insurance, enforcement

There’s a follow-up to a breach previously reported on DataBreaches. From the NYS Attorney GenRead more

Cyberscoop

Justice Department unveils charges against alleged LockBit developer

On December 20, 2024Source: CyberScoopBy Greg Otto
Categories: Cybercrime, Cybersecurity, Government, Ransomware, Threats, Uncategorized, Department of Justice (DOJ), LockBit

The U.S. Department of Justice revealed charges Friday against Rostislav Panev, a dual Russian and IRead more

Study finds ‘significant uptick’ in cybersecurity disclosures to SEC

On December 19, 2024Source: CyberScoopBy Greg Otto
Categories: Cybersecurity, Financial, Government, Ransomware, CDK Global, incident reporting, Paul Hastings LLP, ransomware, Securities and Exchange Commission (SEC)

However, less than 10% of the disclosures addressed the material impacts of the security incidents.Read more

Israeli court to hear U.S. extradition request for alleged LockBit developer

On December 19, 2024Source: CyberScoopBy Greg Otto
Categories: Government, Ransomware, Threats, Evil Corp, Israel, National Crime Agency, operation cronos, ransomware

Rostislav Panev allegedly served as a software developer for LockBit. The post Israeli court to hearRead more

Chinese cyber center points finger at U.S. over alleged cyberattacks to steal trade secrets

On December 19, 2024Source: CyberScoopBy Tim Starks
Categories: Geopolitics, Government, backdoors, China, Cyber Command, Microsoft Exchange, National Security Agency, National Security Agency (NSA), nsa, Salt Typhoon, telecoms, trojan

The CNCERT said it had “handled’ two attacks on Chinese tech companies, which it attributed to an unRead more

Ukrainian sentenced to five years in jail for work on Raccoon Stealer

On December 19, 2024Source: CyberScoopBy Greg Otto
Categories: Threats, Department of Justice (DOJ), Raccoon Infostealer

Ukrainian national Mark Sokolovsky was sentenced Wednesday to five years in federal prison for his rRead more

Russia bans cybersecurity company Recorded Future

On December 18, 2024Source: CyberScoopBy Tim Starks
Categories: Geopolitics, Money, Central Intelligence Agency, Commerce Department, Google, Kaspersky, Mastercard, Recorded Future, Russia, Ukraine

The designation won cheers from the CEO of the firm, believed to be the first information security cRead more

CISA pushes guide for high-value targets to secure mobile devices

On December 18, 2024Source: CyberScoopBy Greg Otto
Categories: Cybersecurity, Government, Threats, Android, Cybersecurity and Infrastructure Security Agency (CISA), encrpytion, FIDO, iPhone, mobile security, multi-factor authentication (MFA), Salt Typhoon, signal, SIM swapping, smartphone, Yubico

The guide comes as the government continues to deal with the fallout of the Salt Typhoon hack. The pRead more

CISA delivers new directive to agencies on securing cloud environments

On December 17, 2024Source: CyberScoopBy mbracken
Categories: Cybersecurity, cloud security, Cybersecurity and Infrastructure Security Agency (CISA), Microsoft 365, SCuBa

The cyber agency’s SCuBA guidelines were developed after pilots with 13 agencies and continue a postRead more

Playbook advises federal grant managers how to build cybersecurity into their programs

On December 17, 2024Source: CyberScoopBy Tim Starks
Categories: Government, Policy, CISA, critical infrastructure, Cybersecurity and Infrastructure Security Agency, Cybersecurity and Infrastructure Security Agency (CISA), grants, Harry Coker, Jen Easterly, National Cyber Director, National Cybersecurity Strategy, NSM-22, Office of the National Cyber Director, secure by design, semiconductors

The guidance comes from the Office of the Director of National Cybersecurity and the Cybersecurity aRead more

Clop is back to wreak havoc via vulnerable file-transfer software

On December 17, 2024Source: CyberScoopBy Greg Otto
Categories: Cybercrime, Threats, Rapid7, vulnerabilities, Intel 471, Mandiant, Huntress Labs, Clop, MOVEit Transfer, cleo

In what we can assure you is a new cybersecurity incident despite sounding incredibly similar to incRead more

Krebs On Security

The Hacker News

LockBit Developer Rostislav Panev Charged for Billions in Global Ransomware Damages

On December 21, 2024Source: The Hacker NewsBy

A dual Russian and Israeli national has been charged in the United States for allegedly being the deRead more

A dual Russian and Israeli national has been charged in the United States for allegedly being the developer of the now-defunct LockBit ransomware-as-a-service (RaaS) operation since its inception in or around 2019 through at least February 2024. Rostislav Panev, 51, was arrested in Israel earlier this August and is currently awaiting extradition, the U.S. Department of Justice (DoJ) said in a

Lazarus Group Spotted Targeting Nuclear Engineers with CookiePlus Malware

On December 20, 2024Source: The Hacker NewsBy

The Lazarus Group, an infamous threat actor linked to the Democratic People's Republic of Korea (DPRRead more

The Lazarus Group, an infamous threat actor linked to the Democratic People's Republic of Korea (DPRK), has been observed leveraging a "complex infection chain" targeting at least two employees belonging to an unnamed nuclear-related organization within the span of one month in January 2024. The attacks, which culminated in the deployment of a new modular backdoor referred to as CookiePlus, are

Rspack npm Packages Compromised with Crypto Mining Malware in Supply Chain Attack

On December 20, 2024Source: The Hacker NewsBy

The developers of Rspack have revealed that two of their npm packages, @rspack/core and @rspack/cli,Read more

The developers of Rspack have revealed that two of their npm packages, @rspack/core and @rspack/cli, were compromised in a software supply chain attack that allowed a malicious actor to publish malicious versions to the official package registry with cryptocurrency mining malware. Following the discovery, versions 1.1.7 of both libraries have been unpublished from the npm registry. The latest

Sophos Issues Hotfixes for Critical Firewall Flaws: Update to Prevent Exploitation

On December 20, 2024Source: The Hacker NewsBy

Sophos has released hotfixes to address three security flaws in Sophos Firewall products that couldRead more

Sophos has released hotfixes to address three security flaws in Sophos Firewall products that could be exploited to achieve remote code execution and allow privileged system access under certain conditions. Of the three, two are rated Critical in severity. There is currently no evidence that the shortcomings have been exploited in the wild. The list of vulnerabilities is as follows -

Hackers Exploiting Critical Fortinet EMS Vulnerability to Deploy Remote Access Tools

On December 20, 2024Source: The Hacker NewsBy

A now-patched critical security flaw impacting Fortinet FortiClient EMS is being exploited by maliciRead more

A now-patched critical security flaw impacting Fortinet FortiClient EMS is being exploited by malicious actors as part of a cyber campaign that installed remote desktop software such as AnyDesk and ScreenConnect.  The vulnerability in question is CVE-2023-48788 (CVSS score: 9.3), an SQL injection bug that allows attackers to execute unauthorized code or commands by sending specially crafted

CISA Adds Critical Flaw in BeyondTrust Software to Exploited Vulnerabilities List

On December 20, 2024Source: The Hacker NewsBy

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical securiRead more

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical security flaw impacting BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) products to the Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The vulnerability, tracked as CVE-2024-12356 (CVSS score: 9.8), is a command injection flaw that

Thousands Download Malicious npm Libraries Impersonating Legitimate Tools

On December 19, 2024Source: The Hacker NewsBy

Threat actors have been observed uploading malicious typosquats of legitimate npm packages such as tRead more

Threat actors have been observed uploading malicious typosquats of legitimate npm packages such as typescript-eslint and @types/node that have racked up thousands of downloads on the package registry. The counterfeit versions, named @typescript_eslinter/eslint and types-node, are engineered to download a trojan and retrieve second-stage payloads, respectively. "While typosquatting attacks are

Juniper Warns of Mirai Botnet Targeting SSR Devices with Default Passwords

On December 19, 2024Source: The Hacker NewsBy

Juniper Networks is warning that Session Smart Router (SSR) products with default passwords are beinRead more

Juniper Networks is warning that Session Smart Router (SSR) products with default passwords are being targeted as part of a malicious campaign that deploys the Mirai botnet malware. The company said it's issuing the advisory after "several customers" reported anomalous behavior on their Session Smart Network (SSN) platforms on December 11, 2024. "These systems have been infected with the Mirai

Fortinet Warns of Critical FortiWLM Flaw That Could Lead to Admin Access Exploits

On December 19, 2024Source: The Hacker NewsBy

Fortinet has issued an advisory for a now-patched critical security flaw impacting Wireless LAN ManaRead more

Fortinet has issued an advisory for a now-patched critical security flaw impacting Wireless LAN Manager (FortiWLM) that could lead to disclosure of sensitive information. The vulnerability, tracked as CVE-2023-34990, carries a CVSS score of 9.6 out of a maximum of 10.0. It was originally fixed by Fortinet back in September 2023, but without a CVE designation. "A relative path traversal [CWE-23]

CISA Mandates Cloud Security for Federal Agencies by 2025 Under Binding Directive 25-01

On December 19, 2024Source: The Hacker NewsBy

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued Binding Operational DireRead more

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued Binding Operational Directive (BOD) 25-01, ordering federal civilian agencies to secure their cloud environments and abide by Secure Cloud Business Applications (SCuBA) secure configuration baselines. "Recent cybersecurity incidents highlight the significant risks posed by misconfigurations and weak security controls,

How Can We Help?

6 + 2 =

Share This