Hackmanac Cyber Alerts
Ir al canal en Telegram
Sin datos
Suscriptores
-624 horas
-567 días
-15230 días
Archivo de publicaciones
+3
🟧 #HackTuesday 🟧
Hack Tuesday: Week 15 - 21 January 2025
⚠️405 cyber attacks across 64 countries ⚠️
➡️The most active threat actor last week was NoName057(16) claiming responsibility for 74 cyber attacks.
➡️The USA is the most affected country, accounting for 22.2% of incidents, with 90 cyber attacks.
➡️The Gov / Mil / LE sector is the most impacted, accounting for 16.1% of incidents with 65 cyber attacks.
➡️The estimated Critical cyber attacks account to 70(17.3% of the total).
➡️Overall, the claimed compromised data amounts to approximately 15.8 TB.
Follow the link for the list of attacks (claimed or disclosed):
https://hackmanac.com/news/hack-tuesday-week-15-21-january-2025
#Hackmanac #HT #Cybersecurity
🚨Cyberattack Alert ‼️
🇮🇳India - Supreme Group
RansomHub ransomware group claims to have breached Supreme Group.
Allegedly, 102 GB of financial data were exfiltrated.
Ransom deadline: 29th Jan 25.
🚨Cyberattack Alert ‼️
🇩🇿Algeria - Clinique Inaya
Space Bears hacking group claims to have breached Clinique Inaya.
Allegedly, sensitive information (databases, reports, employees, patients, etc.) was exfiltrated.
Ransom deadline: 25th Jan 25.
🚨Cyberattack Alert ‼️
🇩🇴Dominican Republic - Cana Group Corp
Sarcoma ransomware group claims to have breached Cana Group Corp.
🚨Cyberattack Alert ‼️
🇺🇸USA - MassDevelopment
BianLian hacking group claims to have breached MassDevelopment.
Allegedly, 4 TB of accounting, budget, financial data, personal data, contract data and NDAs, accidents, files from CFO PC, operational and business files, and email and message archives were exfiltrated.
Here we are with our new #RiskFriday of the week! 🚀
Discover with us the evolution of:
📈 Global Average ESIX© score
🔄 ESIX© changes compared to the previous week
🏭 Top 5 impacted industries (with highest average ESIX©)
🌍 Top 5 impacted countries (with highest average ESIX©)
📆 Weekly, monthly, and quarterly ESIX© variations
Stay informed with our actionable strategic intelligence insights discovering how the global threat landscape evolves and impacts different industries and regions.
👉 Explore this week's insights⤵️
#RF #CyberThreatIntelligence #StrategicCyberThreatIntelligence #ESIX #Hackmanac #CyberSecurity
🚨DDoS Alert 🚨
🇺🇸USA - NASA
A hacktivist group called "Sky Cat Network" claimed a DDoS attack on NASA.
🚨Cyberattack Alert ‼️
🇮🇹Italy - Lynx Spa
Morpheus hacking group claims to have breached Lynx Spa.
Allegedly, confidential documents, sales data, finance documents, business plans, resumes, personal data of employees, Oracle, Microsoft SQL database backups, full GitLab backup, and technical data such as network scheme, Remote Desktop Manager backup, etc. were exfiltrated.
🚨Cyberattack Alert ‼️
🇮🇹Italy - VOLT Infrastructure
Everest hacking group claims to have breached VOLT Infrastructure.
Allegedly, 536 GB of internal and confidential information, as well as contract information, were exfiltrated.
Ransom deadline: 26th Jan 25.
🚨Cyberattack Alert ‼️
🇪🇸Spain - HOFF
Everest hacking group claims to have breached HOFF.
Allegedly, the data of 630,000 customers, including full names, email addresses, physical addresses, phone numbers, etc., were exfiltrated.
Additionally, the group states that they have 63GB of internal documents and files, including the complete email PST database of the CEO.
Ransom deadline: 26th Jan 25.
🚨DDoS Alert 🚨
🇯🇵Japan: tenki.jp, DDoS attacks continue
tenki.jp, has been experiencing accessibility issues since January 15, 2025, at 7:51 AM JST due to a DDoS attack causing network congestion.
The tenki.jp app is also affected, with some web-based content being difficult to load.
Source:
https://www.jwa.or.jp/wp-content/uploads/2025/01/88c0c1f6e1f2366059ec8be2bf41c208.pdf
🚨Cyber Attack Alert 🚨
🇪🇸Spain - Equipo Postal
SafePay ransomware group claims to have breached Equipo Postal.
Allegedly, 75 GB of data were exfiltrated.
🚨Cyberattack Alert ‼️
🇧🇷Brazil - Dona Formosa
Sarcoma ransomware group claims to have breached Dona Formosa.
Ransom deadline: 25th Jan 25.
🚨🚨 A Python-based backdoor is now used in RansomHub ransomware attacks after initial access via a fake browser update.
https://thehackernews.com/2025/01/python-based-malware-powers-ransomhub.html
🚨Cyberattack Alert ‼️
🇪🇬Egypt - Maritime Transport & Logistics Sector (MTLS)
FunkSec hacking group claims to have breached Maritime Transport & Logistics Sector.
Ransom demand: $1,000,000
Ransom deadline: 01st Feb 25
🚨Cyberattack Alert ‼️
🇫🇷France - Access Capital Partners
Lynx ransomware group claims to have breached Access Capital Partners
🚨Cyberattack Alert ‼️
🇮🇹Italy - BSE Group SRL
RansomHub ransomware group claims to have breached BSE Group SRL.
Allegedly, 142 GB of data were exfiltrated.
Ransom deadline: 30th Jan 25.
🚨Hackers leak configs and VPN credentials for 15,000 FortiGate devices 🚨
Kevin Beaumont says that the leak is believed to be linked to a 2022 zero-day tracked as CVE-2022–40684 that was exploited in attacks before a fix was released.
https://www.bleepingcomputer.com/news/security/hackers-leak-configs-and-vpn-credentials-for-15-000-fortigate-devices/
🚨New Amazon Ransomware Attack—‘Recovery Impossible’ Without Payment 🚨
https://www.forbes.com/sites/daveywinder/2025/01/14/new-amazon-ransomware-attack-recovery-impossible-without-payment/
🚨🚨CVE-2023-37936 (CVSS 9.6): Urgent Patch Needed for FortiSwitch Vulnerability
https://securityonline.info/cve-2023-37936-cvss-9-6-urgent-patch-needed-for-fortiswitch-vulnerability/
