CISA: Federal civilian agency hacked by nation-state and criminal hacking groups

The vulnerability used in the attack against the federal agency is well-known and among the top exploits in 2021.

The post CISA: Federal civilian agency hacked by nation-state and criminal hacking groups appeared first on CyberScoop.

Continue reading CISA: Federal civilian agency hacked by nation-state and criminal hacking groups

Federal court system suffered previously undisclosed breach, congressional committee says

The breach is separate from the SolarWinds fallout and had not been previously publicly disclosed.

The post Federal court system suffered previously undisclosed breach, congressional committee says appeared first on CyberScoop.

Continue reading Federal court system suffered previously undisclosed breach, congressional committee says

U.S. Cyber Command exposes malware targeting Ukrainian entities

The details are part of an effort to help defend critical infrastructure “and our democratic values and institutions,” a spokesperson said.

The post U.S. Cyber Command exposes malware targeting Ukrainian entities appeared first on CyberScoop.

Continue reading U.S. Cyber Command exposes malware targeting Ukrainian entities

Security researchers suggest naming state-harbored hackers ‘privateers’

The ransomware-induced disruption of Colonial Pipeline, which supplies 45% of fuel consumed on the East Coast, has already forced big changes to U.S. government policies on pipeline security and brought heightened scrutiny of organizations’ decisions to pay hackers ransoms. Now, the incident has factored into one prominent security firm’s decision to change how it publicly classifies the relationship between criminal hacking groups and the governments that host them. Talos, the threat intelligence unit of Cisco, said Wednesday that it would begin using the term “privateers” to describe hacking groups that aren’t controlled by governments but which “benefit from government decisions to turn a blind eye toward their activities.” Other cybersecurity executives have compared the safe havens that some governments provide cybercriminals today with 17th century piracy. “If it were the 17th century, and pirates harassing the English merchant fleet were ducking into Dutch harbors, at what point would the Dutch […]

The post Security researchers suggest naming state-harbored hackers ‘privateers’ appeared first on CyberScoop.

Continue reading Security researchers suggest naming state-harbored hackers ‘privateers’

Colonial’s Ransom Payment Indicates Severity of Threats

Last week Joseph Blount, the CEO of Colonial Pipeline, told The Wall Street Journal that he authorized the ransom payment of $4.4. million to the hackers who broke into computer systems and caused major disruption to the East Coast’s gas supply. In th… Continue reading Colonial’s Ransom Payment Indicates Severity of Threats

The Week in Breach News: 05/12/21 – 05/18/21

It’s the all ransomware edition featuring huge breaches at Toshiba & the VA plus a special report on the state of phishing security in 2021.
The post The Week in Breach News: 05/12/21 – 05/18/21 appeared first on Security Boulevard.
Continue reading The Week in Breach News: 05/12/21 – 05/18/21

The Week in Breach News: 04/28/21 – 05/04/21

Huge Codecov breach creates risk shockwave, selling security to budget-minded clients & your customer retention blueprint.
The post The Week in Breach News: 04/28/21 – 05/04/21 appeared first on Security Boulevard.
Continue reading The Week in Breach News: 04/28/21 – 05/04/21

Lessons Learned from the Global Year in Breach: Supply Chain Cybersecurity Risk is Swamping Businesses

Clients love the ID Agent Digital Risk Protection Platform. But don’t take our word for it – hear from them directly in 2 new case studies!
The post Lessons Learned from the Global Year in Breach: Supply Chain Cybersecurity Risk is Swamping Businesses … Continue reading Lessons Learned from the Global Year in Breach: Supply Chain Cybersecurity Risk is Swamping Businesses

The Week in Breach News: 04/14/21 – 04/20/21

Huge Codecov breach creates risk shockwave, selling security to budget-minded clients & your customer retention blueprint.
The post The Week in Breach News: 04/14/21 – 04/20/21 appeared first on Security Boulevard.
Continue reading The Week in Breach News: 04/14/21 – 04/20/21