Security News

Okta investigating claims of customer data breach from Lapsus$ group
2022-03-22 07:15

Okta, a leading provider of authentication services and Identity and access management solutions says it is investigating claims of data breach.On Tuesday, data extortion group Lapsus$ posted screenshots in their Telegram channel of what it alleges to be Okta's customer data.

Microsoft Investigating Claim of Breach by Extortion Gang
2022-03-21 13:19

Microsoft is investigating claims that an extortion-focused hacking group that has previously compromised massive companies such as Ubisoft and Nvidia has gained access to internal Microsoft systems, according to a statement from the company.The hacking group, which goes by the self-designated name LAPSUS$, has successfully breached a wave of corporations recently. The group has so far not made any public demands against Microsoft. On Sunday, LAPSUS$ posted a screenshot of what appeared to be an internal Microsoft developer account to their Telegram channel. Shortly after posting the screenshot, an administrator of LAPSUS$’s Telegram channel deleted the image.

Hackers claim to breach TransUnion South Africa with 'Password' password
2022-03-18 15:32

TransUnion South Africa has disclosed that hackers breached one of their servers using stolen credentials and demanded a ransom payment not to release stolen data. TransUnion South Africa says they have engaged with cybersecurity experts and digital forensic experts to investigate the incident.

Russia-linked attackers breach NGO by exploiting MFA, PrintNightmare vuln
2022-03-16 15:30

The US Cybersecurity and Infrastructure Security Agency and FBI issued a joint alert on March 15 warning organizations that state-backed criminals could use the MFA defaults and flaw to access networks. In this case, the unnamed cybercriminal gang took advantage of a misconfigured account to set default MFA protocols at the NGO. The bad actors enrolled a new device for MFA and accessed the NGO's network and then exploited the PrintNightmare flaw - tracked as CVE-2021-34527 - to run malicious code and gain system privileges, giving them access to email accounts and enabling them to move laterally to the organization's cloud environment and to steal documents.

FTC to fine CafePress for cover up of massive data breach
2022-03-15 18:25

The U.S. Federal Trade Commission wants to slap the former owner of the CafePress custom t-shirt and merchandise site with a $500,000 fine for failing to secure its users' data and attempting to cover up a significant data breach impacting millions. As the consumer protection watchdog explained, CafePress' former owner, Residual Pumpkin Entity, stored its customers' Social Security numbers and password reset answers in plain text, and their data longer than necessary.

How to contain a privileged access breach and make sure it doesn’t happen again
2022-03-14 06:30

This is all too common-74% of breached organizations have admitted the attack involved access to a privileged account-and organizations need a better way to combat privileged access attacks. Thus, removing the standing privileged access that attackers require to maintain a presence and gain lateral movement is a quick way to contain a breach.

E-commerce giant Mercado Libre confirms source code data breach
2022-03-08 11:51

Argentinian e-commerce giant Mercado Libre has confirmed "Unauthorized access" to a part of its source code this week. Mercado additionally says data of around 300,000 of its users was accessed by threat actors.

Samsung Confirms Data Breach After Hackers Leak Galaxy Source Code
2022-03-08 09:51

Samsung on Monday confirmed a security breach that resulted in the exposure of internal company data, including the source code related to its Galaxy smartphones. "According to our initial analysis, the breach involves some source code relating to the operation of Galaxy devices, but does not include the personal information of our consumers or employees," the electronics giant told Bloomberg.

Nvidia’s breach might help cybercriminals run malware campaigns
2022-03-08 00:40

Code-signing certificate theft - more common than you might think. The compromise of signing certificates is an old technique that's been used in the past by several cybercriminals to sign their malware.

Adafruit suffers GitHub data breach – don’t let this happen to you
2022-03-07 19:47

Popular open-source computer hardware company Adafruit Industries accidentally exposed customer data. The inadvertent disclosure involved an auditing data set used for employee training becoming public, on a GitHub repository associated with an inactive former employee's account who was learning data analysis.