IT Security firm Qualys extorted by Clop gang after data breach

By Waqas
Qualys has confirmed that the Clop ransomware gang is behind the cyber attack that exploited Accellion exploit.
This is a post from HackRead.com Read the original post: IT Security firm Qualys extorted by Clop gang after data breach
Continue reading IT Security firm Qualys extorted by Clop gang after data breach

Card Skimmers Powered by Chip Cards, Silver Sparrow Mac Malware, Accellion Zero-Days

This week co-host Kevin Johnson joins Tom Eston to discuss new card skimmers found in the wild, the Accellion zero-days, and a new type of Mac malware called “Silver Sparrow”. ** Links mentioned on the show ** Checkout Skimmers Powered by Chip Cards ht… Continue reading Card Skimmers Powered by Chip Cards, Silver Sparrow Mac Malware, Accellion Zero-Days

Cl0p ransomware gang hits Aviation giant Bombardier, leaks sensitive data

By Waqas
The Cl0p ransomware gang has leaked sensitive data belonging to Bombardier on its official website on the dark web accessible through Tor.
This is a post from HackRead.com Read the original post: Cl0p ransomware gang hits Aviation giant Bombar… Continue reading Cl0p ransomware gang hits Aviation giant Bombardier, leaks sensitive data

Plane-maker Bombardier discloses breach after stolen data surfaces

Hackers have exposed data about employees, customers and suppliers of Bombardier, a Canadian plane manufacturer, in what appears to be the latest ripple effect from a larger security incident humming through the private sector in North America.  A forensic analysis revealed that “confidential” information originating at Bombardier was stolen in a recent incident, the company said Tuesday. The Montreal-based Bombardier, which reported $16 billion in revenue in 2018, did not specify exactly what happened or when, though it did say the breach was the result of a “vulnerability affecting a third-party file-transfer application.” “The ongoing investigation indicates that the unauthorized access was limited solely to data stored on the specific servers,” the company said. “Manufacturing and customer support operations have not been impacted or interrupted.” The Bombardier news appears to be a reference to Accellion, an IT services provider victimized last year in an incident that is continuing to have […]

The post Plane-maker Bombardier discloses breach after stolen data surfaces appeared first on CyberScoop.

Continue reading Plane-maker Bombardier discloses breach after stolen data surfaces

Accellion FTA attacks, extortion attempts might be the work of FIN11

Mandiant/FireEye researchers have tentatively linked the Accellion FTA zero-day attacks to FIN11, a cybercrime group leveraging CLOP ransomware to extort targeted organizations. Accellion has also confirmed on Monday that “out of approximately 30… Continue reading Accellion FTA attacks, extortion attempts might be the work of FIN11

FireEye IDs hacking group suspected in Accellion, Kroger breach

Security investigators have identified the hacking group suspected to be behind a data breach of an IT firm that has affected a number of corporations, law firms and other organizations in recent months.  Accellion, a software firm that provides file transfer services to more than 3,000 clients, on Monday said that UNC2546, a “criminal” attacker, had exploited multiple vulnerabilities in Accellion software to install malware. The group appeared to infiltrate an Accellion tool to gather information from Accellion clients, then contact victims, threatening to publish their stolen data. Mandiant, the incident response arm of the security vendor FireEye, made the determination that UNC3546 was behind the incident.  The breach at Accellion, uncovered on Dec. 23, involved an attacker leveraging a zero-day vulnerability to break into the Palo Alto-based cloud company’s secure file transfer application, or FTA.  “The motivation of UNC2546 was not immediately apparent, but starting in late January 2021, […]

The post FireEye IDs hacking group suspected in Accellion, Kroger breach appeared first on CyberScoop.

Continue reading FireEye IDs hacking group suspected in Accellion, Kroger breach

Accellion to retire enterprise file-sharing product targeted in recent attacks

U.S.-based cloud solutions company Accellion will soon retire FTA, its legacy enterprise file-sharing solution, vulnerabilities in which have recently been exploited by attackers to breach a variety of organizations, including the Australian Securities… Continue reading Accellion to retire enterprise file-sharing product targeted in recent attacks

Accellion Secures $120 Million In Financing Led By Bregal Sagemount To Accelerate Adoption Of The Enterprise Content Firewall

Company Delivers Consolidated Solution to Secure 3rd Party Communications Across Email, File Sharing, Enterprise Apps, Web Forms, SFTP, MFT, and Mobile   Palo Alto, CA | April 7, 2020 Accellion, Inc., provider of the enterprise content firewa… Continue reading Accellion Secures $120 Million In Financing Led By Bregal Sagemount To Accelerate Adoption Of The Enterprise Content Firewall

New infosec products of the week​: March 2, 2018

Demisto brings visibility into SOC metrics Demisto’s latest release of its Security Operations Platform enables customers to leverage the incident metrics through customizable dashboards and reports. CISOs can measure SOC health and business risk… Continue reading New infosec products of the week​: March 2, 2018

Key elements of a secure, sensitive information sharing strategy

It’s been said, data is like the new oil. What does this mean exactly? Like oil, data is a commodity. But unlike oil, the value of data isn’t susceptible to supply and demand. Data is always in demand. Why? Data provides understanding. And the conclusions that are drawn from understanding can be optimized or, even better, monetized. Take for example an online retailer of baby products. If a customer buys infant pajamas, the retailer can … More Continue reading Key elements of a secure, sensitive information sharing strategy