Cussins Enterprises LLC
Technology is a paint brush on the canvas of life.
What can we paint for you?
Cybersecurity News
Awareness of what is happening is the 1st to a secure system.Threat Post
Firewall Bug Under Active Attack Triggers CISA WarningOn August 23, 2022Source: Web Security – ThreatpostBy ThreatpostCategories: Vulnerabilities, Web Security CISA is warning that Palo Alto Networks’ PAN-OS is under active attack and needs to be patched ASAP.… Read more |
Fake Reservation Links Prey on Weary TravelersOn August 22, 2022Source: Web Security – ThreatpostBy Nate NelsonCategories: Malware, Web Security Fake travel reservations are exacting more pain from the travel weary, already dealing with the mise… Read more |
Google Patches Chrome’s Fifth Zero-Day of the YearOn August 18, 2022Source: Web Security – ThreatpostBy Elizabeth MontalbanoCategories: Vulnerabilities, Web Security, Google Chrome, zero-day vulnerabilities An insufficient validation input flaw, one of 11 patched in an update this week, could allow for arb… Read more |
Phishers Swim Around 2FA in Coinbase Account HeistsOn August 8, 2022Source: Web Security – ThreatpostBy Elizabeth MontalbanoCategories: Hacks, Web Security Attackers are spoofing the widely used cryptocurrency exchange to trick users into logging in so the… Read more |
Open Redirect Flaw Snags Amex, Snapchat User DataOn August 5, 2022Source: Web Security – ThreatpostBy Elizabeth MontalbanoCategories: Hacks, Vulnerabilities, Web Security Separate phishing campaigns targeting thousands of victims impersonate FedEx and Microsoft, among ot… Read more |
Universities Put Email Users at Cyber RiskOn August 2, 2022Source: Web Security – ThreatpostBy Elizabeth MontalbanoCategories: Vulnerabilities, Web Security DMARC analysis by Proofpoint shows that institutions in the U.S. have among some of the poorest prot… Read more |
Threat Actors Pivot Around Microsoft’s Macro-Blocking in OfficeOn July 28, 2022Source: Web Security – ThreatpostBy Elizabeth MontalbanoCategories: Hacks, Malware, Web Security Cybercriminals turn to container files and other tactics to get around the company’s attempt to thwa… Read more |
IoT Botnets Fuel DDoS Attacks – Are You Prepared?On July 26, 2022Source: Web Security – ThreatpostBy Sponsored ContentCategories: Sponsored, Vulnerabilities, Web Security, indusface The increased proliferation of IoT devices paved the way for the rise of IoT botnets that amplifies… Read more |
Magecart Serves Up Card Skimmers on Restaurant-Ordering SystemsOn July 20, 2022Source: Web Security – ThreatpostBy Elizabeth MontalbanoCategories: Hacks, Malware, Web Security 300 restaurants and at least 50,000 payment cards compromised by two separate campaigns against Menu… Read more |
Authentication Risks Discovered in Okta PlatformOn July 19, 2022Source: Web Security – ThreatpostBy Nate NelsonCategories: Privacy, Web Security Four newly discovered attack paths could lead to PII exposure, account takeover, even organizational… Read more |
Beeping Computer
https://www.bleepingcomputer.com/feed/ is invalid XML, likely due to invalid characters. XML error: XML_ERR_NAME_REQUIRED at line 1, column 753 |
Motherboard
https://motherboard.vice.com/en_us/rss is invalid XML, likely due to invalid characters. XML error: Undeclared entity error at line 23, column 112 |
Data Breeches
Ascension cyberattack exposed personal data of 5.6 million peopleOn December 21, 2024Source: DataBreaches.NetBy DissentCategories: Health Data, Malware Sarah Volpenhein reports: Nearly 5.6 million people were affected in the ransomware attack that hit… Read more |
Illinois Department of Human Services phishing attack affected more than 1.1M public assistance clientsOn December 21, 2024Source: DataBreaches.NetBy DissentCategories: Breach Incidents, Government Sector, Phishing Their substitute notice, as published on Effingham Radio: Springfield, IL-(Effingham Radio)- Pursuan… Read more |
US Court Finds NSO Liable For Hacking Of WhatsApp Using Pegasus MalwareOn December 21, 2024Source: DataBreaches.NetBy DissentCategories: Business Sector, Hack, NSO Group, Pegasus Gursimran Kaur Bakshi reports: In a summary judgment, Judge Phyllis Hamilton of the US District Cour… Read more |
No need to hack when it’s leaking: Rapido editionOn December 21, 2024Source: DataBreaches.NetBy DissentCategories: Exposure, Non-U.S. Jagmeet Singh reports: Rapido, a popular ride-hailing platform in India, has fixed a security issue… Read more |
FTC Finalizes Order with Marriott and Starwood Requiring Them to Implement a Robust Data Security Program to Address Security FailuresOn December 20, 2024Source: DataBreaches.NetBy DissentCategories: Business Sector, enforcement, FTC, Starwood. Marriott The Federal Trade Commission finalized an order requiring Marriott International, Inc. and its subsi… Read more |
Ohio state auditor issued guidance on email scams in April; employees might be liable if they fall for a scamOn December 20, 2024Source: DataBreaches.NetBy DissentCategories: Miscellaneous Corinne Colbert reports: The Ohio Auditor of State’s office issued a bulletin this past spring with… Read more |
CA: Ontario Provincial Police charge three former hospital employees PHIPA violations of patient privacy breachesOn December 20, 2024Source: DataBreaches.NetBy DissentCategories: Health Data, Insider, PHIPA Toula Mazloum reports: Three former hospital employees have been charged following investigations in… Read more |
The state registers of Ukraine have suffered a large-scale cyberattack: details from the Ministry of JusticeOn December 20, 2024Source: DataBreaches.NetBy DissentCategories: cyberwar, Non-U.S. Svyatenko Tamara On December 19, the most extensive external cyberattack on the state registers of U… Read more |
Romanian National Sentenced to 20 Years in Prison in Connection with NetWalker Ransomware AttacksOn December 20, 2024Source: DataBreaches.NetBy DissentCategories: Malware, NetWalker, ransomware A press release from the U.S. Department of Justice: A Romanian man was sentenced today for his role… Read more |
Attorney General James Secures $500,000 from Auto Insurance Company Over Data BreachOn December 19, 2024Source: DataBreaches.NetBy DissentCategories: Breach Incidents, auto insurance, enforcement There’s a follow-up to a breach previously reported on DataBreaches. From the NYS Attorney Gen… Read more |
Cyberscoop
Justice Department unveils charges against alleged LockBit developerOn December 20, 2024Source: CyberScoopBy Greg OttoCategories: Cybercrime, Cybersecurity, Government, Ransomware, Threats, Uncategorized, Department of Justice (DOJ), LockBit The U.S. Department of Justice revealed charges Friday against Rostislav Panev, a dual Russian and I… Read more |
Study finds ‘significant uptick’ in cybersecurity disclosures to SECOn December 19, 2024Source: CyberScoopBy Greg OttoCategories: Cybersecurity, Financial, Government, Ransomware, CDK Global, incident reporting, Paul Hastings LLP, ransomware, Securities and Exchange Commission (SEC) However, less than 10% of the disclosures addressed the material impacts of the security incidents.… Read more |
Israeli court to hear U.S. extradition request for alleged LockBit developerOn December 19, 2024Source: CyberScoopBy Greg OttoCategories: Government, Ransomware, Threats, Evil Corp, Israel, National Crime Agency, operation cronos, ransomware Rostislav Panev allegedly served as a software developer for LockBit. The post Israeli court to hear… Read more |
Chinese cyber center points finger at U.S. over alleged cyberattacks to steal trade secretsOn December 19, 2024Source: CyberScoopBy Tim StarksCategories: Geopolitics, Government, backdoors, China, Cyber Command, Microsoft Exchange, National Security Agency, National Security Agency (NSA), nsa, Salt Typhoon, telecoms, trojan The CNCERT said it had “handled’ two attacks on Chinese tech companies, which it attributed to an un… Read more |
Ukrainian sentenced to five years in jail for work on Raccoon StealerOn December 19, 2024Source: CyberScoopBy Greg OttoCategories: Threats, Department of Justice (DOJ), Raccoon Infostealer Ukrainian national Mark Sokolovsky was sentenced Wednesday to five years in federal prison for his r… Read more |
Russia bans cybersecurity company Recorded FutureOn December 18, 2024Source: CyberScoopBy Tim StarksCategories: Geopolitics, Money, Central Intelligence Agency, Commerce Department, Google, Kaspersky, Mastercard, Recorded Future, Russia, Ukraine The designation won cheers from the CEO of the firm, believed to be the first information security c… Read more |
CISA pushes guide for high-value targets to secure mobile devicesOn December 18, 2024Source: CyberScoopBy Greg OttoCategories: Cybersecurity, Government, Threats, Android, Cybersecurity and Infrastructure Security Agency (CISA), encrpytion, FIDO, iPhone, mobile security, multi-factor authentication (MFA), Salt Typhoon, signal, SIM swapping, smartphone, Yubico The guide comes as the government continues to deal with the fallout of the Salt Typhoon hack. The p… Read more |
CISA delivers new directive to agencies on securing cloud environmentsOn December 17, 2024Source: CyberScoopBy mbrackenCategories: Cybersecurity, cloud security, Cybersecurity and Infrastructure Security Agency (CISA), Microsoft 365, SCuBa The cyber agency’s SCuBA guidelines were developed after pilots with 13 agencies and continue a post… Read more |
Playbook advises federal grant managers how to build cybersecurity into their programsOn December 17, 2024Source: CyberScoopBy Tim StarksCategories: Government, Policy, CISA, critical infrastructure, Cybersecurity and Infrastructure Security Agency, Cybersecurity and Infrastructure Security Agency (CISA), grants, Harry Coker, Jen Easterly, National Cyber Director, National Cybersecurity Strategy, NSM-22, Office of the National Cyber Director, secure by design, semiconductors The guidance comes from the Office of the Director of National Cybersecurity and the Cybersecurity a… Read more |
Clop is back to wreak havoc via vulnerable file-transfer softwareOn December 17, 2024Source: CyberScoopBy Greg OttoCategories: Cybercrime, Threats, Rapid7, vulnerabilities, Intel 471, Mandiant, Huntress Labs, Clop, MOVEit Transfer, cleo In what we can assure you is a new cybersecurity incident despite sounding incredibly similar to inc… Read more |
Krebs On Security
The Hacker News
LockBit Developer Rostislav Panev Charged for Billions in Global Ransomware DamagesOn December 21, 2024Source: The Hacker NewsByA dual Russian and Israeli national has been charged in the United States for allegedly being the de… Read more A dual Russian and Israeli national has been charged in the United States for allegedly being the developer of the now-defunct LockBit ransomware-as-a-service (RaaS) operation since its inception in or around 2019 through at least February 2024.
Rostislav Panev, 51, was arrested in Israel earlier this August and is currently awaiting extradition, the U.S. Department of Justice (DoJ) said in a |
Lazarus Group Spotted Targeting Nuclear Engineers with CookiePlus MalwareOn December 20, 2024Source: The Hacker NewsByThe Lazarus Group, an infamous threat actor linked to the Democratic People's Republic of Korea (DPR… Read more The Lazarus Group, an infamous threat actor linked to the Democratic People's Republic of Korea (DPRK), has been observed leveraging a "complex infection chain" targeting at least two employees belonging to an unnamed nuclear-related organization within the span of one month in January 2024.
The attacks, which culminated in the deployment of a new modular backdoor referred to as CookiePlus, are |
Rspack npm Packages Compromised with Crypto Mining Malware in Supply Chain AttackOn December 20, 2024Source: The Hacker NewsByThe developers of Rspack have revealed that two of their npm packages, @rspack/core and @rspack/cli,… Read more The developers of Rspack have revealed that two of their npm packages, @rspack/core and @rspack/cli, were compromised in a software supply chain attack that allowed a malicious actor to publish malicious versions to the official package registry with cryptocurrency mining malware.
Following the discovery, versions 1.1.7 of both libraries have been unpublished from the npm registry. The latest |
Sophos Issues Hotfixes for Critical Firewall Flaws: Update to Prevent ExploitationOn December 20, 2024Source: The Hacker NewsBySophos has released hotfixes to address three security flaws in Sophos Firewall products that could… Read more Sophos has released hotfixes to address three security flaws in Sophos Firewall products that could be exploited to achieve remote code execution and allow privileged system access under certain conditions.
Of the three, two are rated Critical in severity. There is currently no evidence that the shortcomings have been exploited in the wild. The list of vulnerabilities is as follows - |
Hackers Exploiting Critical Fortinet EMS Vulnerability to Deploy Remote Access ToolsOn December 20, 2024Source: The Hacker NewsByA now-patched critical security flaw impacting Fortinet FortiClient EMS is being exploited by malici… Read more A now-patched critical security flaw impacting Fortinet FortiClient EMS is being exploited by malicious actors as part of a cyber campaign that installed remote desktop software such as AnyDesk and ScreenConnect.
The vulnerability in question is CVE-2023-48788 (CVSS score: 9.3), an SQL injection bug that allows attackers to execute unauthorized code or commands by sending specially crafted |
CISA Adds Critical Flaw in BeyondTrust Software to Exploited Vulnerabilities ListOn December 20, 2024Source: The Hacker NewsByThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical securi… Read more The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical security flaw impacting BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) products to the Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild.
The vulnerability, tracked as CVE-2024-12356 (CVSS score: 9.8), is a command injection flaw that |
Thousands Download Malicious npm Libraries Impersonating Legitimate ToolsOn December 19, 2024Source: The Hacker NewsByThreat actors have been observed uploading malicious typosquats of legitimate npm packages such as t… Read more Threat actors have been observed uploading malicious typosquats of legitimate npm packages such as typescript-eslint and @types/node that have racked up thousands of downloads on the package registry.
The counterfeit versions, named @typescript_eslinter/eslint and types-node, are engineered to download a trojan and retrieve second-stage payloads, respectively.
"While typosquatting attacks are |
Juniper Warns of Mirai Botnet Targeting SSR Devices with Default PasswordsOn December 19, 2024Source: The Hacker NewsByJuniper Networks is warning that Session Smart Router (SSR) products with default passwords are bein… Read more Juniper Networks is warning that Session Smart Router (SSR) products with default passwords are being targeted as part of a malicious campaign that deploys the Mirai botnet malware.
The company said it's issuing the advisory after "several customers" reported anomalous behavior on their Session Smart Network (SSN) platforms on December 11, 2024.
"These systems have been infected with the Mirai |
Fortinet Warns of Critical FortiWLM Flaw That Could Lead to Admin Access ExploitsOn December 19, 2024Source: The Hacker NewsByFortinet has issued an advisory for a now-patched critical security flaw impacting Wireless LAN Mana… Read more Fortinet has issued an advisory for a now-patched critical security flaw impacting Wireless LAN Manager (FortiWLM) that could lead to disclosure of sensitive information.
The vulnerability, tracked as CVE-2023-34990, carries a CVSS score of 9.6 out of a maximum of 10.0. It was originally fixed by Fortinet back in September 2023, but without a CVE designation.
"A relative path traversal [CWE-23] |
CISA Mandates Cloud Security for Federal Agencies by 2025 Under Binding Directive 25-01On December 19, 2024Source: The Hacker NewsByThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued Binding Operational Dire… Read more The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued Binding Operational Directive (BOD) 25-01, ordering federal civilian agencies to secure their cloud environments and abide by Secure Cloud Business Applications (SCuBA) secure configuration baselines.
"Recent cybersecurity incidents highlight the significant risks posed by misconfigurations and weak security controls, |