#France - Baromètre sur les fuites de données 2020 - #databreach #ransowmare #cyber
https://www.forum-fic.com/Data/DO/tgBloc/29904/fr/params/file/BAROMETRE-DATA-BREACH-VDEF.pdf
Extensions pour navigateurs permettant de récupérer une page web et de la transformer en Markdown
It was probably inevitable that the two dominant #cybersecurity threats of the day - #supply #chain attacks and ransomware would combine to wreak havoc.
« This is SolarWinds, but with ransomware » (Brett Callow, Threat Analyst at Emsisoft )
Attackers have been able to distribute their #malware bundle to MSPs, which includes the #ransomware itself as well as a copy of #Windows Defender and an expired but legitimately signed certificate that has not yet been revoked. #wormable
https://www.wired.com/story/kaseya-supply-chain-ransomware-attack-msps/
CVE-2021-1675 (PrintNightmare) : RCE in Windows Spooler Service
Coop Sweden, one of biggest supermarket chains said Saturday it had to temporarily close around 800 stores nationwide after a cyberattack blocked access to its checkouts.
https://www.wionews.com/world/major-swedish-supermarket-chain-hit-by-cyberattack-395556
Common windows functions via rundll user32 and control panel
https://gist.github.com/gabe31415/fe2a7bd7213739b2bc407ecf0e100f9a
WSSC Water (wsscwater.com
), a water company in Maryland, is investigating a ransomware attack that hit parts of its business in May 2021. WSSC Water has notified the FBI, Maryland Attorney General and state and Local Homeland Security officials and will cooperate with any investigation.
Michigan Public School District's #ransomware attack results in it and phone systems disruption - FBI assisting Monroe schools in #cyber attack
QSure, a big player in South Africa's #insurance #industry, has been hit by a #databreach in which bank account numbers and other sensitive information were compromised by a third party.
https://techcentral.co.za/data-breach-hits-major-south-african-insurance-player/108637/
#Cyber reinsurance rates are skyrocketing due to a spate of devastating #ransomware attacks on major companies
Pure PowerShell implementation of CVE-2021-1675 (PrintNightmare) Print Spooler Local Privilege Escalation
CVE-2021-3520 : There is a flaw in lz4. An attacker who submits a crafted file to an application linked with lz4 may be able to trigger an integer overflow, leading to calling of memmove() on a negative size argument, causing an 💥 out-of-bounds write and/or a crash. The greatest impact of this flaw is to availability, with some potential impact to confidentiality and integrity as well. #informatique
A new #Windows ransomware family : Diavol
https://www.fortinet.com/blog/threat-research/diavol-new-ransomware-used-by-wizard-spider
Multiples vulnérabilités dans Zimbra 9.0.x versions antérieures à 9.0.0
https://blog.zimbra.com/2021/06/new-zimbra-patches-9-0-0-patch-16-and-8-8-15-patch-23/
200 businesses have been hit by #ransomware attacks following an incident at #US IT firm Kaseya in Miami #REvil
#supply #chain attack : #REvil ransomware gang appears to have gained access to the infrastructure of Kaseya, a provider of remote #management #solutions, and is using a malicious #update for the VSA #software to deploy ransomware on #enterprise #networks. The malicious Kaseya update is reaching VSA on-premise servers, from where, using the internal scripting engine, the #ransomware is deployed to all connected client systems. This incident, believed to have impacted thousands of companies across the world.
https://therecord.media/revil-ransomware-executes-supply-chain-attack-via-malicious-kaseya-update/
A new #DDoS #botnet « Mirai_ptea » is spreading using a KGUARD DVR #exploit and launching attacks against various targets #ptea
https://blog.netlab.360.com/mirai_ptea-botnet-is-exploiting-undisclosed-kguard-dvr-vulnerability-en/
After focusing almost exclusively on delivering ransomware for the past year, the code changes could indicate that** TrickBot** is getting back into the bank-fraud game.
https://threatpost.com/trickbot-banking-trojan-module/167521/
sc(r)apy | full metal packets
> We Are the Borg
> You Will be Assimilated
> Resistance is Futile