The Information Highway

The Information Highway

all things technology risk and cybersecurity

Fake Leather wallet app on Apple App Store is a crypto drainer

wallet

The developers of the Leather cryptocurrency wallet are warning of a fake app on the Apple App Store, with users reporting it is a wallet drainer that stole their digital assets.

Continue reading
  782 Hits

Hackers exploit WordPress plugin flaw to infect 3,300 sites with malware

back

Hackers are breaching WordPress sites by exploiting a vulnerability in outdated versions of the Popup Builder plugin, infecting over 3,300 websites with malicious code.

Continue reading
  671 Hits

Critical Fortinet flaw may impact 150,000 exposed devices

Fortinet

Scans on the public web show that approximately 150,000 Fortinet FortiOS and FortiProxy secure web gateway systems are vulnerable to CVE-2024-21762, a critical security issue that allows executing code without authentication.

Continue reading
  661 Hits

QNAP warns of critical auth bypass flaw in its NAS devices

QNAP

QNAP warns of vulnerabilities in its NAS software products, including QTS, QuTS hero, QuTScloud, and myQNAPcloud, that could allow attackers to access devices.

Continue reading
  651 Hits

UnitedHealth brings some Change Healthcare pharmacy services back online

UnitedHealth_Group

Optum's Change Healthcare has started to bring systems back online after suffering a crippling BlackCat ransomware attack last month that led to widespread disruption to the US healthcare system.

Continue reading
  719 Hits

Stealthy GTPDOOR Linux malware targets mobile operator networks

Linux_tux

Security researcher HaxRob discovered a previously unknown Linux backdoor named GTPDOOR, designed for covert operations within mobile carrier networks.

Continue reading
  658 Hits

News farm impersonates 60+ major outlets: BBC, CNN, CNBC, Guardian...

image

It's been discovered a content farm operating some 60+ domains named after popular media outlets, including the BBC, CNBC, CNN, Forbes, Huffington Post, Reuters, The Guardian, and Washington Post, among others.


Continue reading
  625 Hits

Golden Corral restaurant chain data breach impacts 183,000 people

Golden_Corral

The Golden Corral American restaurant chain disclosed a data breach after attackers behind an August cyberattack stole the personal information of over 180,000 people.

Continue reading
  842 Hits

CISA cautions against using hacked Ivanti VPN gateways even after factory resets

CISA-red-flare

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) revealed today that attackers who hack Ivanti VPN appliances using one of multiple actively exploited vulnerabilities may be able to maintain root persistence even after performing factory resets.

Continue reading
  850 Hits

Malicious AI models on Hugging Face backdoor users’ machines

evil-hacker-ai

At least 100 instances of malicious AI ML models were found on the Hugging Face platform, some of which can execute code on the victim's machine, giving attackers a persistent backdoor.

Continue reading
  752 Hits

UnitedHealth confirms Optum hack behind US healthcare billing outage

healthcare-cyber

Healthcare giant UnitedHealth Group confirmed that its subsidiary Optum was forced to shut down IT systems and various services after a cyberattack by "nation-state" hackers on the Change Healthcare platform.

Continue reading
  836 Hits

U-Haul says hacker accessed customer records using stolen creds

UHau_20240225-192118_1
U-Haul has started informing customers that a hacker used stolen account credentials to access an internal system for dealers and team members to track customer reservations.
Continue reading
  741 Hits

New ScreenConnect RCE flaw exploited in ransomware attacks

LockBit_logo

The samples seen by Sophos in this week's attacks were a buhtiRansom LockBit variant dropped on 30 different customer networks and a second payload created using the leaked Lockbit builder (and dropped by a different threat actor).


Continue reading
  801 Hits

ALPHV ransomware claims loanDepot, Prudential Financial breaches

Hacker-headpic

The ALPHV/Blackcat ransomware gang has claimed responsibility for the recent network breaches of Fortune 500 company Prudential Financial and mortgage lender loanDepot.


Continue reading
  602 Hits

New ‘Gold Pickaxe’ Android, iOS malware steals your face for fraud

iphone

A new iOS and Android trojan named 'GoldPickaxe' employs a social engineering scheme to trick victims into scanning their faces and ID documents, which are believed to be used to generate deepfakes for unauthorized banking access.


Continue reading
  659 Hits

RansomHouse gang automates VMware ESXi attacks with new MrAgent tool

Linux_tux

 The RansomHouse ransomware operation has created a new tool named 'MrAgent' that automates the deployment of its data encrypter across multiple VMware ESXi hypervisors.


Continue reading
  1036 Hits

New Fortinet RCE bug is actively exploited, CISA confirms

Fortinet2

CISA confirmed today that attackers are actively exploiting a critical remote code execution (RCE) bug patched by Fortinet on Thursday.


Continue reading
  1178 Hits

New RustDoor macOS malware impersonates Visual Studio update

mystery-hacker

A new Rust-based macOS malware spreading as a Visual Studio update to provide backdoor access to compromised systems uses infrastructure linked to the infamous ALPHV/BlackCat ransomware gang.


Continue reading
  876 Hits

New Fortinet RCE flaw in SSL VPN likely exploited in attacks

Fortine_20240210-192609_1

Fortinet is warning that a new critical remote code execution vulnerability in FortiOS SSL VPN is potentially being exploited in attacks.


Continue reading
  862 Hits

Hyundai Motor Europe hit by Black Basta ransomware attack

hyundai-ioniq

Car maker Hyundai Motor Europe suffered a Black Basta ransomware attack, with the threat actors claiming to have stolen three terabytes of corporate data.


Continue reading
  903 Hits

Top Breaches Of 2023

Customers Affected In T-Mobile Breach
Accounts Affected In MOVEit Breach
Customers Affected In MCNA Insurance Data Breach
Individuals Affected In PharMerica Data Breach
Users Affected In ChatGPT Major Data Breach
*Founder Shield End of Year 2023