German Hospital Hit by Ransomware, Patient Dies After Being Redirected

A patient died after being redirected to another medical facility as the result of a German hospital having suffered a ransomware infection. On September 17, the Associated Press reported that a woman who needed urgent medical attention died after bein… Continue reading German Hospital Hit by Ransomware, Patient Dies After Being Redirected

Maze Gang Distributed Ransomware Payload Inside VM

The gang responsible for the Maze ransomware family conducted an attack in which they distributed their malware payload inside of a virtual machine (VM). Sophos’ Managed Threat Response (MTR) observed the technique in action while investigating an atta… Continue reading Maze Gang Distributed Ransomware Payload Inside VM

New Smishing Campaign Using USPS as Its Disguise

A new SMS-based phishing (“smishing”) campaign is using the United States Postal Service (USPS) as a disguise to target mobile users. On September 15, SlickRockWeb CEO Eric JN Eliason tweeted out two examples of the operation. Both attack SMS messages … Continue reading New Smishing Campaign Using USPS as Its Disguise

Report: No Organization’s Security Culture Has Received ‘Excellent’ Score

Security culture matters to executives, but these individuals are struggling to implement it. In a November 2019 study commissioned by KnowBe4, 94% of individuals with managerial duties or higher in security or risk management said that security cultur… Continue reading Report: No Organization’s Security Culture Has Received ‘Excellent’ Score

Security Incident at VA Exposed 46K Veterans’ Information

The Office of Management at the U.S. Department of Veterans Affairs (VA) disclosed a security incident involving the personal data of 46,000 veterans. The VA detailed the data breach in a statement published on its website on September 14. According to… Continue reading Security Incident at VA Exposed 46K Veterans’ Information

Over 18K COVID-19 Patients’ Data Mistakenly Exposed by NHS Trust

A National Health Service (NHS) Trust revealed that it had mistakenly uploaded the personal information of over 18,000 people who had previously tested positive for coronavirus 2019 (COVID-19). On September 14, Public Health Wales announced in a web st… Continue reading Over 18K COVID-19 Patients’ Data Mistakenly Exposed by NHS Trust

Gearing Towards Your Next Audit – Understanding the Difference Between Best Practice Frameworks and Regulatory Compliance Standards

Security configuration management (SCM) can help organizations do much more than just harden their attack surfaces against intrusions. This fundamental control also has the ability to make your audits flow more smoothly. Indeed, it allows organizations… Continue reading Gearing Towards Your Next Audit – Understanding the Difference Between Best Practice Frameworks and Regulatory Compliance Standards

O365 Phishing Attack Used Real-Time Validation against Active Directory

A phishing attack used real-time validation against an organization’s Active Directory in order to steal users’ Office 365 credentials. According to Armorblox, the phishing attack targeted an executive working at an American brand that was named one of… Continue reading O365 Phishing Attack Used Real-Time Validation against Active Directory

Pakistani Electric Supply Company Struck by Netwalker Ransomware

An electric supply company based in Karachi, Pakistan suffered a Netwalker ransomware infection that disrupted its billing and online services. Bleeping Computer learned of the attack through Ransom Leaks, a ransomware researcher who received word from… Continue reading Pakistani Electric Supply Company Struck by Netwalker Ransomware

DoppelPaymer Gang Claims Responsibility for Newcastle University Issues

The DoppelPaymer ransomware gang claimed responsibility for a digital security incident that affected Newcastle University’s network and systems. In a news release published on its website, Newcastle University revealed that it had begun experiencing i… Continue reading DoppelPaymer Gang Claims Responsibility for Newcastle University Issues