Hackmanac Cyber Alerts
رفتن به کانال در Telegram
🚩 Channel was restricted by Telegram
نمایش بیشتراطلاعاتی وجود ندارد
مشترکین
-624 ساعت
-567 روز
-15230 روز
آرشیو پست ها
🚨 Cyberattack Alert Update ‼️
🇯🇵Japan - Kantsu Co., Ltd. (株式会社関通)
Kantsu Co., Ltd. reported that it suffered a cyber attack, resulting in unauthorized access to its systems. The breach, discovered through an external network connection, led to the encryption of several servers and caused disruptions to its goods storage and retrieval systems.
The attack impacted both Kantsu and its business partners, delaying operational processes. Some of the affected servers contained personal information, prompting the company to file a report with the Personal Information Protection Commission. The potential exposure involves customer and employee data.
Source:
https://www.kantsu.com/news/6615/
🚨Cyberattack Alert ‼️
🇫🇷France - Asobo Studio
Stormous hacking group claims to have breached Asobo Studio, a French company dedicated to video game development.
Allegedly, 12 GB of data were exfiltrated.
🚨Cyberattack Alert ‼️
🇺🇸USA - Weiser Memorial Hospital
Embargo hacking group claims to have breached Weiser Memorial Hospital.
Allegedly, 200 GB of data were exfiltrated.
Ransom deadline: 04th Oct 24.
🚨 Cyberattack Update
🇰🇼Kuwait Health Ministry restoring systems after cyberattack takes down hospitals, healthcare app
https://therecord.media/kuwait-ministry-restoring-systems-cyberattack
🚨 Cyberattack Alert‼️
🇯🇵Japan - Zacros (Fujimori Kogyo co. ltd.)
On September 14, 2024, 藤森工業ZACROS, identified a ransomware attack that affected some servers in its production management and core systems, encrypting stored information.
Despite receiving a ransom demand, the company has chosen not to comply. They have isolated the affected systems, begun forensic investigations, and implemented a backup system to resume production and operations.
There have been delays in production and shipping as a result of the incident.
Disclosure:
https://ssl4.eir-parts.net/doc/7917/tdnet/2505075/00.pdf
⚠️Over 75,000 exposed CUPS daemons have been found on the Internet.⚠️
The vulnerability, which impacts all GNU/Linux systems and possibly others, enables unauthenticated remote code execution (RCE). Major industry players such as Canonical and Red Hat have recognized its severity, assigning it a CVSS score of 9.9 out of 10.
https://www.shodan.io/search/report?query=product%3Acups
🚨Cyberattack Alert ‼️
🇺🇸USA - Shenango Area School District, Rhysida Demands 20 BTC
Rhysida hacking group claims to have breached Shenango Area School District.
Ransom demand: 20 BTC (approx. $1,300,000).
Ransom deadline: 03rd Oct 24.
🚨Cyberattacks Alert ‼️
🇯🇵Japan - Naniwa Pump Manufacturing and Tokiwa Sangyo
RansomHub hacking group claims to have hit two Japanese companies:
- Naniwa Pump Manufacturing (31 GB allegedly exfiltrated)
- Tokiwa Sangyo (87 GB allegedly exfiltrated)
For both attacks, the cybercriminal group has published samples, and the ransom deadlines are set for October 3.
🚨Severe Unauthenticated RCE Flaw (CVSS 9.9) in GNU/Linux Systems Awaiting Full Disclosure 🚨
https://securityonline.info/severe-unauthenticated-rce-flaw-cvss-9-9-in-gnu-linux-systems-awaiting-full-disclosure/
🚨Cyberattack Alert ‼️
🇩🇪Germany - Schäfer Dein Bäcker
Akira ransomware group claims to have breached Schäfer Dein Bäcker, a food production company based out of Langer Kornweg
Allegedly, 14 GB of data were exfiltrated, including personal information of employees, financial data, partner details, contracts, and agreements.
LOL players beware: Fake League of Legends download ads spread Lumma Stealer malware.
https://hackread.com/fake-league-of-legends-download-ads-lumma-stealer/
🚨Cyberattack Alert ‼️
🇧🇪Belgium - LolaLiza
Black Suit hacking group claims to have breached LolaLiza, a Belgian fashion brand
🚨Cyberattack Alert ‼️
🇺🇸USA - English Construction Company
Lynx hacking group claims to have breached English Construction Company.
🚨Data Leak Alert ‼️
🇮🇱Israel - The hacktivist group Handala claims to have leaked 60,000 "secret" emails from Israel's Ministry of Foreign Affairs and has made available 3 GB of data divided into two archives.
Handala also stated, "This data is only a small part of our data lake about Gabi Ashkenazi, former Minister of Foreign Affairs and Chief of General Staff of the regime's armed forces!"
The confirmation or denial of these claims has yet to be verified.
🚨Cyberattack Alert ‼️
🇪🇸Spain - TOLSA
Abyss hacking group claims to have breached Tolsa.
At the time of writing, Tolsa's website appears to be down.
Allegedly, 5.1 TB of data were exfiltrated.
Ransom deadline: 03rd Oct 24.
⚠️A vulnerability in the memory feature of #OpenAI's #ChatGPT app for macOS, known as "SpAIware," may have let attackers insert spyware, potentially exposing user data from multiple conversations. ⚠️
https://thehackernews.com/2024/09/chatgpt-macos-flaw-couldve-enabled-long.html
🚨Cyberattack Alert ‼️
🇯🇵Japan - Ransomware Hits Takano Sogo (高野総合会計事務所), Potential Data Risk for Sumitomo Mitsui Trust Bank (三井住友信託銀行株式会社)
On September 25, 2024, Sumitomo Mitsui Trust Bank disclosed that Takano Sogo Consulting Co., Ltd., a company to which they outsource services, was the victim of a ransomware attack.
There is a potential risk of personal information leakage of the bank's employees, including former employees, which was entrusted to Takano Sogo for outsourced work.
Currently, there is no confirmed evidence of data leakage or public disclosure, but some external communication traces were identified, meaning a leak cannot be entirely ruled out.
The bank advises employees to report any suspicious inquiries immediately.
Source:
https://www.smtb.jp/-/media/tb/business/pdf/240925.pdf
+3
🚨 Truflation ecosystem users are urged to revoke all contract approvals to protect their funds 🚨
On September 25th, 2024, Truflation detected abnormal activity from a malware attack, prompting immediate action to secure funds.
If you lost any funds due to the recent compromise you can check reimbursement eligibility below:
https://truflation.support/reimbursements
⚠️ A critical SQL injection vulnerability has been identified in the 'The Events Calendar' WordPress plugin (CVE-2024-8275), with a CVSS score of 9.8. ⚠️
https://securityonline.info/critical-sql-injection-vulnerability-discovered-in-the-events-calendar-wordpress-plugin-cve-2024-8275/
