The Information Highway

The Information Highway

all things technology risk and cybersecurity

Shadow PC warns of data breach as hacker tries to sell gamers' info

shadow

Shadow PC, a provider of high-end cloud computing services, is warning customers of a data breach that exposed customers' private information, as a threat actor claims to be selling the stolen data for over 500,000 customers. 

Continue reading
  913 Hits

New WordPress backdoor creates rogue admin to hijack websites

0_WordPres_20231014-202126_1

A new malware has been posing as a legitimate caching plugin to target WordPress sites, allowing threat actors to create an administrator account and control the site's activity. 

Continue reading
  983 Hits

Microsoft Defender now auto-isolates compromised accounts

Microsoft-Defender_for_Endpoint

Microsoft Defender for Endpoint now uses automatic attack disruption to isolate compromised user accounts and block lateral movement in hands-on-keyboard attacks with the help of a new 'contain user' capability in public preview. 

Continue reading
  958 Hits

Microsoft: State hackers exploiting Confluence zero-day since September

Atlassian_headpic

Microsoft says a Chinese-backed threat group tracked as 'Storm-0062' (aka DarkShadow or Oro0lxy) has been exploiting a critical privilege escalation zero-day in the Atlassian Confluence Data Center and Server since September 14, 2023. 

Continue reading
  941 Hits

LinkedIn Smart Links attacks return to target Microsoft accounts

hacker-holding-linkedin

Hackers are once again abusing LinkedIn Smart Links in phishing attacks to bypass protection measures and evade detection in attempts to steal Microsoft account credentials. 

Continue reading
  964 Hits

Microsoft warns of incorrect BitLocker encryption errors

Window_20231014-193248_1

Microsoft warned customers this week of incorrect BitLocker drive encryption errors being shown in some managed Windows environments. 

Continue reading
  1100 Hits

Mirai DDoS malware variant expands targets with 13 router exploits

Botnet

A Mirai-based DDoS (distributed denial of service) malware botnet tracked as IZ1H9 has added thirteen new payloads to target Linux-based routers and routers from D-Link, Zyxel, TP-Link, TOTOLINK, and others. 

Continue reading
  952 Hits

D.C. Board of Elections confirms voter data stolen in site hack

DC_Board_of_Elections

The District of Columbia Board of Elections (DCBOE) is currently probing a data leak involving an unknown number of voter records following breach claims from a threat actor known as RansomedVC. 

Continue reading
  958 Hits

Genetics firm 23andMe says user data stolen in credential stuffing attack

dna

23andMe has confirmed that it is aware of user data from its platform circulating on hacker forums and attributes the leak to a credential-stuffing attack. 

Continue reading
  996 Hits

China-linked cyberspies backdoor semiconductor firms with Cobalt Strike

motherboard-cpu-bios

Hackers engaging in cyber espionage have targeted Chinese-speaking semiconductor companies with TSMC-themed lures that infect them with Cobalt Strike beacons. 

Continue reading
  934 Hits

NSA and CISA reveal top 10 cybersecurity misconfigurations

Hacker

The National Security Agency (NSA) and the Cybersecurity and Infrastructure Security Agency (CISA) revealed today the top ten most common cybersecurity misconfigurations discovered by their red and blue teams in the networks of large organizations. 

Continue reading
  909 Hits

Lyca Mobile investigates customer data leak after cyberattack

lyca-white

Lyca Mobile has released a statement about an unexpected disruption on its network caused by a cyberattack that may have also compromised customer data. 

Continue reading
  1013 Hits

Apple emergency update fixes new zero-day used to hack iPhones

Apple

Apple released new emergency security updates on Wednesday to patch two new zero-day vulnerabilities known to be exploited in attacks. 

Continue reading
  912 Hits

Microsoft: Hackers target Azure cloud VMs via breached SQL servers

MSSQL

Hackers have been observed trying to breach cloud environments through Microsoft SQL Servers vulnerable to SQL injection. 

Continue reading
  1122 Hits

Sony confirms data breach impacting thousands in the U.S.

SONY

Sony Interactive Entertainment (Sony) has notified current and former employees and their family members about a cybersecurity breach that exposed personal information. 

Continue reading
  883 Hits

New Microsoft Azure AD CTS feature can be abused for lateral movement

microsoft-azure-headpic

Microsoft's new Azure Active Directory Cross-Tenant Synchronization (CTS) feature, introduced in June 2023, has created a new potential attack surface that might allow threat actors to more easily spread laterally to other Azure tenants. 

Continue reading
  1101 Hits

Cloudflare DDoS protections ironically bypassed using Cloudflare

cloudflare-ddos

Cloudflare's Firewall and DDoS prevention can be bypassed through a specific attack process that leverages logic flaws in cross-tenant security controls. 

Continue reading
  1013 Hits

Exploit released for Microsoft SharePoint Server auth bypass flaw

SharePoint

Proof-of-concept exploit code has surfaced on GitHub for a critical authentication bypass vulnerability in Microsoft SharePoint Server, allowing privilege escalation. 

Continue reading
  1091 Hits

Microsoft breach led to theft of 60,000 US State Dept emails

Hacker_world_map

Chinese hackers stole tens of thousands of emails from U.S. State Department accounts after breaching Microsoft's cloud-based Exchange email platform in May. 

Continue reading
  1145 Hits

Bing Chat responses infiltrated by ads pushing malware

bing-chat-header-blue

Malicious advertisements are now being injected into Microsoft's AI-powered Bing Chat responses, promoting fake download sites that distribute malware. 

Continue reading
  1113 Hits

Top Breaches Of 2023

Customers Affected In T-Mobile Breach
Accounts Affected In MOVEit Breach
Customers Affected In MCNA Insurance Data Breach
Individuals Affected In PharMerica Data Breach
Users Affected In ChatGPT Major Data Breach
*Founder Shield End of Year 2023