Ransomware Group Used MOVEit Exploit to Steal Data From Dozens of Organizations

The recent MOVEit zero-day attack has been linked to a known ransomware group, which reportedly stole data from dozens of organizations.
The post Ransomware Group Used MOVEit Exploit to Steal Data From Dozens of Organizations appeared first on Security… Continue reading Ransomware Group Used MOVEit Exploit to Steal Data From Dozens of Organizations

In Other News: Government Use of Spyware, New Industrial Security Tools, Japan Router Hack 

Cybersecurity news that you may have missed this week: the spyware used by various governments, new vulnerabilities, industrial security products, and Linux router attacks.
The post In Other News: Government Use of Spyware, New Industrial Security Too… Continue reading In Other News: Government Use of Spyware, New Industrial Security Tools, Japan Router Hack 

Zero-Day in MOVEit File Transfer Software Exploited to Steal Data From Organizations

A zero-day vulnerability in Progress Software’s MOVEit Transfer product has been exploited to hack organizations and steal their data.
The post Zero-Day in MOVEit File Transfer Software Exploited to Steal Data From Organizations appeared first on Secur… Continue reading Zero-Day in MOVEit File Transfer Software Exploited to Steal Data From Organizations

Russia Blames US Intelligence for iOS Zero-Click Attacks

Kaspersky said its corporate network has been targeted with a zero-click iOS exploit, just as Russia’s FSB said iPhones have been targeted by US intelligence.
The post Russia Blames US Intelligence for iOS Zero-Click Attacks appeared first on Security… Continue reading Russia Blames US Intelligence for iOS Zero-Click Attacks

Moxa Patches MXsecurity Vulnerabilities That Could Be Exploited in OT Attacks

Critical authentication bypass and high-severity command injection vulnerabilities have been patched in Moxa’s MXsecurity product.
The post Moxa Patches MXsecurity Vulnerabilities That Could Be Exploited in OT Attacks appeared first on SecurityWeek.
Continue reading Moxa Patches MXsecurity Vulnerabilities That Could Be Exploited in OT Attacks

Organizations Warned of Salesforce ‘Ghost Sites’ Exposing Sensitive Information

Salesforce ghost sites — domains that are no longer maintained but still accessible — can expose personal information and business data.
The post Organizations Warned of Salesforce ‘Ghost Sites’ Exposing Sensitive Information appeared first… Continue reading Organizations Warned of Salesforce ‘Ghost Sites’ Exposing Sensitive Information

Organizations Warned of Backdoor Feature in Hundreds of Gigabyte Motherboards

A backdoor feature found in hundreds of Gigabyte motherboard models can pose a significant supply chain risk to organizations.
The post Organizations Warned of Backdoor Feature in Hundreds of Gigabyte Motherboards appeared first on SecurityWeek.
Continue reading Organizations Warned of Backdoor Feature in Hundreds of Gigabyte Motherboards