Hackmanac Cyber Alerts
رفتن به کانال در Telegram
🚩 Channel was restricted by Telegram
نمایش بیشتراطلاعاتی وجود ندارد
مشترکین
-624 ساعت
-567 روز
-15230 روز
آرشیو پست ها
🚨Cyberattack Alert ‼️
🇺🇸USA - Southeastern Retina Associates
The hacking group RansomHub claims to have breached Southeastern Retina Associates.
Allegedly, 500 GB of data were exfiltrated.
Ransom deadline: 15th Sept 24.
🚨Android Malware Alert ‼️
The new Android malware 'Ajina.Banker' has been targeting bank customers in the Central Asia region since at least November 2023, stealing financial data and bypassing two-factor authentication (2FA) via Telegram
https://thehackernews.com/2024/09/new-android-malware-ajinabanker-steals.html
🚨Cyberattack Alert ‼️
🇯🇵Japan - Kantsu Co., Ltd
On September 12, 2024, Kantsu Co., Ltd. detected a system issue around 6:00 PM, which was later confirmed to be a ransomware attack caused by unauthorized access to its servers.
In response, the company isolated its network from external partners to prevent further damage. A crisis management team was established, and authorities, including relevant government bodies and the police, were notified.
Source:
https://www.kantsu.com/news/6573/
🚨Cyberattack Alert ‼️
🇮🇹Italy - Technolog S.r.l, Medusa Demands $200,000
The ransomware group Medusa claims to have breached Technolog S.r.l.
Allegedly, 439.40 GB of data were exfiltrated.
Samples of the stolen data have been provided.
Ransom demand: $200,000.
Ransom deadline: 23rd Sept 24.
🚨Vulnerability (CVSS 10) Alert ‼️
CVE-2024-8522 & CVE-2024-8529 (CVSS 10): LearnPress SQLi Flaw Leaves 90K+ WordPress Sites at Risk
https://securityonline.info/cve-2024-8522-cvss-10-learnpress-sqli-flaw-leaves-90k-wordpress-sites-at-risk/
🚨Cyberattack Alert ‼️
🇯🇵Japan - HJ Holdings, Inc. (Hulu Japan)
On September 11, 2024, Hulu detected unauthorized login attempts affecting 296 accounts through credential stuffing attacks.
These attacks utilized login credentials obtained from other sources rather than a breach of Hulu's systems.
In response, Hulu has implemented password resets for the affected accounts and restricted access from suspicious IP addresses. Users are being asked to reset their passwords via an official email notification.
Source:
https://help.hulu.jp/hc/ja/articles/37599884682905--%E9%87%8D%E8%A6%81-%E4%B8%8D%E6%AD%A3%E3%82%A2%E3%82%AF%E3%82%BB%E3%82%B9%E6%A4%9C%E7%9F%A5%E3%81%AB%E3%82%88%E3%82%8B%E3%83%91%E3%82%B9%E3%83%AF%E3%83%BC%E3%83%89%E5%BC%B7%E5%88%B6%E3%83%AA%E3%82%BB%E3%83%83%E3%83%88%E5%AE%9F%E6%96%BD%E3%81%AE%E3%81%8A%E7%9F%A5%E3%82%89%E3%81%9B-9-12%E6%9B%B4%E6%96%B0
Repost from Match Systems
🇰🇵 North Korean hacker groups are practicing new methods of data theft.
🥷 The U.S. FBI warns of new hacking methods by North Korean-affiliated hacker groups. According to the information, North Korean hacker groups gain the trust of HR employees in Web3 companies by posing as job-seeking professionals, after which they send their resumes, predominantly in .ZIP format, containing malware software.
☢️ Once inside the system, this software infects your operating system, allowing the hackers access to all information on your device, including payment information and wallet data.
✍️ It is worth noting that this is not the first instance where Western companies have fallen victim to such hacking attacks. According to Elliptic, from 2017 to 2023, North Korean hacker groups have managed to steal over $3 billion in cryptocurrency assets through attacks on digital infrastructure.
❗️Be cautious, dear subscribers! Verify all incoming information and avoid clicking on suspicious links to prevent becoming a hacker's victim.
👋 Match Systems
🎉 We’ve hit the incredible milestone of 50,000 followers on X! 🎉
🙌 This is just the beginning, we’re more driven than ever to keep delivering the best insights and tools to tackle today’s cyber threats. Your engagement fuels our mission.
🔒 Get ready for even more exclusive content! We’re not slowing down, and we’re excited to have you on this journey with us.
🚀 Invite your friends and colleagues to join us on our channels:
🔗 X: https://x.com/H4ckManac
🔗 LinkedIn: https://www.linkedin.com/company/hackmanac
🔗 Telegram: https://t.me/hackmanac
🛡 Thank you for being part of this Community!
#Hackmanac #50KFollowers #CyberThreatMonitoring #StayCyberSafe #CyberSecurity
🚨Data Leak Alert ‼️
🇨🇱 Chile - Instituto Nacional de Deportes de Chile, 1.7 million users reportedly affected
According to a post on a hacking forum, the leaked information includes full names, email addresses, phone numbers, usernames, and hashed passwords.
All the allegedly stolen data has been leaked.
The confirmation or denial of these claims has yet to be verified, but in the meantime, users of the Instituto Nacional de Deportes de Chile are advised to remain vigilant against potential phishing attempts.
🚨Data Breach Alert ‼️
Fortinet: Threat Actor Claims Data Breach, While Company Confirms Unauthorized Access to a Third-Party Service
A potential data breach at Fortinet has been detected on a hacking forum.
The threat actor claims that their Azure SharePoint was leaked, with 440 GB of data.
Today, Fortinet told Cyber Daily that a threat actor gained unauthorized access to a third-party service it used.
"An individual gained unauthorized access to a limited number of files stored on Fortinet's instance of a third-party cloud-based shared file drive, which included limited data related to a small number of Fortinet customers, and we have communicated directly with customers as appropriate," said a company spokesperson.
The incident reportedly affected customers within the Asia-Pacific region
https://www.cyberdaily.au/security/11098-fortinet-suffers-third-party-data-breach-affecting-asia-pacific-customers
Whether the post from the threat actor on the hacking forum is connected remains to be verified.
Have you ever played Pokémon GO?
Well, a defense ministry official from Belarus has claimed that Pokémon GO was a tool of Western intelligence agencies.
https://www.theregister.com/2024/09/12/pokemongo_spying_belarusclaims/
🚨Cyberattack Alert ‼️
🇺🇸USA - Mechdyne Corporation
The hacking group RansomHub claims to have breached Mechdyne Corporation.
Allegedly, 700 GB of data, including non-disclosure agreements and financial data were exfiltrated.
Ransom deadline: 20th Sept 24.
Cyber attack forces TfL to suspend all Oyster card renewals
https://insidecroydon.com/2024/09/11/cyber-attack-forces-tfl-to-suspend-all-oyster-card-renewals/
🚨Cyeberattack Update ‼️
🇯🇵 Japan - Sanyo Bussan Co.
Sanyo Bussan Co., announced on September 6, 2024, that it had experienced unauthorized access to its internal server, potentially leading to the leak of personal information concerning customers, partners, and employees.
While no misuse of the data has been confirmed, the breach was discovered on August 27, 2024, when several servers were found encrypted.
The company has taken steps to block access and scan systems for security. Authorities were notified on August 28, and an investigation is ongoing.
Sanyo Bussan Co. Communication:
http://www.sanyo-bussan.co.jp/news.html#23
🚨Cyberattack Alert ‼️
🇯🇵Japan - Yamato Holdings
Yamato Holdings announced that its subsidiary in Singapore, Yamato Transport Singapore (YTS), experienced unauthorized access to its server on September 4, 2024.
The company immediately restricted access and reported the breach to relevant authorities.
Source:
https://www.yamato-hd.co.jp/important/info_240912.html
Adobe Patch Tuesday security updates fixed multiple critical issues in the company’s products
https://securityaffairs.com/168313/security/adobe-patch-tuesday-sept-2024.html
+1
🚨Cyberattack Alert ‼️
🇯🇵Japan - The Kobe Steel Health Insurance Society and the Kansai Information Center have both reported potential personal data breaches following cyberattacks involving their contractor, Hirokei. In the case of Kobe Steel Health Insurance Society, unauthorized access to a server managed by Hirokei compromised the personal data of 86,936 individuals, including names and addresses, but sensitive information like health records or My Number details were not affected. The breach, discovered on August 22, 2024, is under investigation, and authorities have been notified.
Similarly, the Kansai Information Center reported a cyberattack in April 2024, where vulnerabilities in Hirokei’s servers and VPN router were exploited to install Phobos ransomware.
While no evidence of data leakage has been confirmed, investigations are ongoing.
Source:
https://www.kenpo.gr.jp/kobeseikou/contents/topics/2024/0911.html
https://www.kiis.or.jp/wp-content/uploads/2024/09/20240906jiko.pdf
🚨Cyberattack Alert ‼️
🇨🇴Colombia - Nuevo Hospital de Bocagrande
The hacking group LockBit 3.0 claims to have breached Nuevo Hospital de Bocagrande.
Allegedly, 341 GB of data were exfiltrated.
Ransom deadline: 25th Sept 24.
🚨Cyberattack Alert ‼️
🇨🇲Cameroon - CNPS Cameroun
The hacking group Space Bears claims to have breached CNPS Cameroun, a Cameroonian public institution.
Allegedly, exfiltrated data include financial documents, accounting reports, backups, customer database, Huawei network structure, personal data of employees and citizens, including insurance archived data, and future network modernization projects.
Ransom deadline: 22nd Sept 24.
