VERT’s Cybersecurity News for the Week of September 26, 2022

VERT’s Cybersecurity News for the Week of September 26, 2022

All of us at Tripwire’s Vulnerability Exposure and Research Team (VERT) are constantly looking out for interesting stories and developments in the infosec world. Here’s what cybersecurity news stood out to us during the week of September 26th, 2022. I’ve also included some comments on these stories. Sophos Firewall Zero-Day Exploited in Attacks on South Asian Organizations UK-based cybersecurity company Sophos has warned customers that a new zero-day vulnerability affecting some of its firewall products…

Read More

ICO Fines Four

ICO Fines Four

The UK’s privacy and data watchdog has fined four companies a total of £370,000 for breaking local privacy laws. It said the four had made over 820,000 “predatory” marketing calls to people who had registered with the Telephone Preference Service (TPS), which means they have explicitly requested not to be contacted. The issues began after a 2020 government scheme issued vouchers of up to £5000 to UK citizens, helping them to improve energy efficiency at…

Read More

See Yourself in Cyber – Five Quick Ways You Can Quickly Get Safer Online | McAfee Blog

See Yourself in Cyber – Five Quick Ways You Can Quickly Get Safer Online | McAfee Blog

With “See Yourself in Cyber” as the theme for this year’s Cybersecurity Awareness Month, the focus is on you with a look at several quick ways you can quickly get safer online.  Now in its 21st year, Cybersecurity Awareness Month marks a long-standing collaboration between the U.S. government and private industry. It’s aim, empower people to protect themselves from digital forms of crime. And that stands as a good reminder. Phishing attacks, malware, and the…

Read More

LAUSD: Hackers Have Posted Stolen Data Online

LAUSD: Hackers Have Posted Stolen Data Online

The second largest school district in the US has warned that hackers have begun posting data they claim to have stolen from the institution last month. The Los Angeles Unified School District (LAUSD), which serves over 600,000 students from kindergarten to twelfth grade, was compromised by the Vice Society group in early September. It’s unclear exactly how much or what type of data may now have been exposed by the group, although at the time…

Read More

Healthcare Company Owners Get Jail Time for $7m Fraud Scheme

Healthcare Company Owners Get Jail Time for m Fraud Scheme

An Illinois couple have been sentenced to several years behind bars after running a near decade-long fraud scheme making them millions of dollars. Registered nurse, Patricia Omorogbe, 61, and Felix Omorogbe, 71, both of Lansing, were sentenced to a combined three-and-a-half years in prison and ordered to pay restitution of over $8.2m. The $6.7m scheme ran from January 2009 to June 2018 across their three home health companies: Lansing-based A&Z Home Health Care and Dominion Home…

Read More

Mayo Clinic’s Global Security Team Works Together to Mitigate Risk

Mayo Clinic’s Global Security Team Works Together to Mitigate Risk

Mayo Clinic’s Global Security Team Works Together to Mitigate Risk | Security Magazine This website requires certain cookies to work and uses other cookies to help you have the best experience. By visiting this website, certain cookies have already been set, which you may delete and block. By closing this message or continuing to use our site, you agree to the use of cookies. Visit our updated privacy and cookie policy to learn more. …

Read More

UK Construction: Cybersecurity Experts Defend Joint Ventures

UK Construction: Cybersecurity Experts Defend Joint Ventures

After years of falling behind, the construction industry has realised the importance of its data. Construction-related businesses invested a remarkable 188% more in cybersecurity in 2018–19. Data leaks and cyberattacks have jolted sectors worldwide, affecting everyone. 55% of UK businesses experienced a cyberattack in 2019 alone, and the average damage resulting from breaches is £176,000. This is why every company needs to choose an effective cyber protection system to stop attackers from ruining all they…

Read More

Foundational Activities for Secure Software Development

Foundational Activities for Secure Software Development

Follies The Broadway Tower in Worcestershire, England is a famous structure. It’s inspiring, beautiful, and at 62 feet high, like other similar buildings, it’s a folly. While it looks grand inside and out, it serves no purpose than to be a decoration. It’s all too easy to buy a set of policies and procedures, change the company name and some other details, then present it as an application development and security program. Regrettably, there are…

Read More

Water Labbu Abuses Malicious DApps to Steal Cryptocurrency

Water Labbu Abuses Malicious DApps to Steal Cryptocurrency

Water Labbu Abuses Malicious DApps to Steal Cryptocurrency Cyber Crime The parasitic Water Labbu capitalizes on the social engineering schemes of other scammers, injecting malicious JavaScript code into their malicious decentralized application websites to steal cryptocurrency. By: Joseph C Chen, Jaromir Horejsi October 03, 2022 Read time:  ( words) We discovered a threat actor we named Water Labbu that was targeting cryptocurrency scam websites. Typically, cryptocurrency scammers use social engineering techniques,  interacting with victims to…

Read More

CISA Gov Alert: 2023-25 Plan Focuses on Unified Cybersecurity

CISA Gov Alert: 2023-25 Plan Focuses on Unified Cybersecurity

Breakdown of CISA Strategic Plan Goals & Objectives A strategy is a Litmus test for evaluating alternate plans or a guide for investing scare resources. This document plan does not meet those requirements. Instead, it lists a set of noble aspirations and goals. Goal 1: Cyber Defense, and Goal 2: Risk Reduction and Resilience, are core to CISA’s mission to protect critical infrastructure. Goal 3: Operational Collaboration and Goal 4: Agency Unification, speak to the…

Read More
1 2,739 2,740 2,741 2,742 2,743 4,178