The Breach News

Threat Actors Exploiting Microsoft SQL Servers to Distribute FreeWorld Ransomware

Threat actors are increasingly targeting inadequately secured Microsoft SQL (MS SQL) servers to deliver Cobalt Strike and a specific ransomware variant known as FreeWorld. This concerning trend has been highlighted by cybersecurity firm Securonix, which has labeled the ongoing operation as DB#JAMMER. This campaign is notable for its sophisticated use…

Read MoreThreat Actors Exploiting Microsoft SQL Servers to Distribute FreeWorld Ransomware

Man Arrested for Snowflake Hacking Operation Faces Extradition to the US

The recent investigation by Mandiant, a cybersecurity arm of Google, has unveiled significant insights regarding the breach incidents attributed to a hacker identified as UNC5537. Austin Larsen, a threat intelligence analyst at Mandiant, characterizes this hacker as “one of the most consequential threat actors of 2024.” The repercussions of these…

Read MoreMan Arrested for Snowflake Hacking Operation Faces Extradition to the US

New Bolster CEO Talks About AI-Powered Fraud Prevention and Data Security

Bolster Appoints Rod Schultz as CEO to Address Internal Data Security and AI-Driven Threats Rod Schultz has been appointed as the new CEO of Bolster, a Silicon Valley-based brand security startup, with a mandate to expand the company’s focus from protecting brands against external threats to addressing internal data security…

Read MoreNew Bolster CEO Talks About AI-Powered Fraud Prevention and Data Security

Atos Divests Unit Amid Ongoing Nationalization Discussions by Lawmakers

Governance & Risk Management, Managed Security Service Provider (MSSP) French Ministry Confirms Ongoing Negotiations for Cybersecurity Unit Acquisition Akshaya Asokan (asokan_akshaya) • November 5, 2024 Image: Shutterstock French IT consultancy Atos has announced the divestiture of its power grid consulting and engineering services unit. This decision comes amidst pressure from…

Read MoreAtos Divests Unit Amid Ongoing Nationalization Discussions by Lawmakers

Caution: New SideTwist Backdoor and Agent Tesla Variant Discovered in Phishing Campaigns

Iranian Threat Actor APT34 Launches Phishing Campaign Featuring SideTwist Backdoor Recent cybersecurity reports indicate that the Iranian threat group known as APT34 has initiated a new phishing campaign directed at various sectors, leading to the deployment of a backdoor variant named SideTwist. This latest tactic highlights the group’s sophistication in…

Read MoreCaution: New SideTwist Backdoor and Agent Tesla Variant Discovered in Phishing Campaigns

Could Clinicians Face New Cyber Regulations in the Future?

Healthcare Sector Faces New Cybersecurity Expectations Amid Medicare 2025 Rule Proposal In a significant development for the healthcare industry, federal regulators are hinting at the introduction of enhanced cybersecurity requirements tied to Medicare participation. The Centers for Medicare and Medicaid Services (CMS) recently included a brief announcement in its expansive…

Read MoreCould Clinicians Face New Cyber Regulations in the Future?

FTC Imposes $7 Million Fine on Mental Health Startup Cerebral for Significant Privacy Breaches

Cerebral Fined Over Major Privacy Violations in Telehealth Services The U.S. Federal Trade Commission (FTC) has taken decisive action against Cerebral, a mental telehealth company, prohibiting it from utilizing or sharing personal medical data for advertising purposes. The company has also been levied a hefty fine exceeding $7 million in…

Read MoreFTC Imposes $7 Million Fine on Mental Health Startup Cerebral for Significant Privacy Breaches