New Ransom-Based Email Scam Urges Recipients to Pay Up or Die

A new ransom-based email scam campaign is demanding that all recipients either meet the sender’s demands and pay up or die. On 11 December, Spiceworks user Dave Lass shared the campaign with other members of the professional IT industry network. … Continue reading New Ransom-Based Email Scam Urges Recipients to Pay Up or Die

5 Key Updates to Version 1.1 Draft 2 of NIST’s Cybersecurity Framework

On 11 May 2017, President Donald Trump signed an executive order that provides guidance on strengthening the United States’ digital security. The directive makes clear that each head of a U.S. federal agency or government department is ultimately… Continue reading 5 Key Updates to Version 1.1 Draft 2 of NIST’s Cybersecurity Framework

Notice of Ransomware Attack Released by National Capital Poison Center

The National Capital Poison Center (NCPC) in Washington, DC has published notice of a ransomware attack it suffered back in 2017. According to the news release (PDF), the critical health resource detected a ransomware infection on its systems in Octobe… Continue reading Notice of Ransomware Attack Released by National Capital Poison Center

Criminal Stole “a Significant Amount of Data” in Airport Hacking Attack

A criminal stole “a significant amount of data” in a hacking attack that targeted one of the busiest airports in Australia. According to The West Australian, the breach occurred in March 2016 when a Vietnamese man named Le Duc Hoang Hai abu… Continue reading Criminal Stole “a Significant Amount of Data” in Airport Hacking Attack

10 of the Most Significant Ransomware Attacks of 2017

Ransomware had a good year in 2017. For the first time ever, we saw several “cryptoworm” variants self-propagate across vulnerable workstations around the world. We also witnessed more traditional ransomware families cause remarkable damage… Continue reading 10 of the Most Significant Ransomware Attacks of 2017

Security Breach Exposed oBike Users’ Personal Information

A security breach at bicycle-sharing operation oBike has exposed the personal information of users in Singapore and 13 other countries. A spokesperson for the company said the data leak “stemmed from a gap in our [application programming interfac… Continue reading Security Breach Exposed oBike Users’ Personal Information

NiceHash Temporarily Ceases Operations Following Security Breach

NiceHash has temporarily ceased operations following a security breach in which a criminal gained unauthorized access to its Bitcoin wallet. The trouble started on 6 December when users of NiceHash, a service which enables people to exchange computing … Continue reading NiceHash Temporarily Ceases Operations Following Security Breach

Ransomware Attacker Demands $23K from Mecklenburg County

A criminal who infected the computer systems of Mecklenburg County with ransomware has demanded a ransom payment of $23,000 for the decryption key. On 5 December, the government for Mecklenburg County, North Carolina informed its Twitter followers that… Continue reading Ransomware Attacker Demands $23K from Mecklenburg County

Hacker Flooded Tourism Agency’s Facebook Page with Bizarre Posts

A hacker commandeered a tourism agency’s Facebook page and abused that unauthorized access to make a series of bizarre postings. Early in the morning on 4 December, the Facebook page for Explore Minnesota Tourism began publishing some unusual con… Continue reading Hacker Flooded Tourism Agency’s Facebook Page with Bizarre Posts

Scammers Disseminating Unverified PayPal Transaction Phishing Emails

Scammers are pushing out fake PayPal emails that use the premise of an unverified transaction to phish for customers’ personal and financial information. The attack emails lure in users with subject lines stating how PayPal couldn’t verify … Continue reading Scammers Disseminating Unverified PayPal Transaction Phishing Emails