Security News

Yodel parcel company confirms cyberattack is disrupting delivery
2022-06-21 22:43

Services for the U.K.-based Yodel delivery service company have been disrupted due to a cyberattack that caused delays in parcel distribution and tracking orders online. Cybersecurity researcher Kevin Beaumont today said that there are rumors about Yodel being hit by a ransomware attack, a plausible theory considering that these threat actors typically avoid to encrypt victim computers on weekdays, when the process is more likely to be discovered.

Info on 1.5m people stolen from US bank in cyberattack
2022-06-21 20:53

A US bank has said at least the names and social security numbers of more than 1.5 million of its customers were stolen from its computers in December. In a statement to the office of Maine's Attorney General this month, Flagstar Bank said it was compromised between December and April 2021.

72% of middle market companies expect to experience a cyberattack
2022-06-16 04:00

There is good news as the number of breaches reported in the last year among middle market companies slightly decreased with protections becoming more available and executives understanding the consequences related to potential incidents. Twenty-two percent of middle market leaders claimed that their company experienced a data breach in the last year, representing a drop from 28% in last year's survey, suggesting that even with enhanced protections in place and the decrease in attacks, companies cannot afford to let their guard down.

U.S. Water Utilities Prime Cyberattack Target, Experts
2022-06-10 13:27

Water may be the greatest vulnerability in our national infrastructure, said Samantha Ravich, chair of CCTI. Much of the problem lies in just how decentralized water systems are, she explained. Water treatment plants are a ripe target because the majority of them serve smaller communities of fewer than 50,000 residents.

Italian city of Palermo shuts down all systems to fend off cyberattack
2022-06-06 14:13

The municipality of Palermo in Southern Italy suffered a cyberattack on Friday, which appears to have had a massive impact on a broad range of operations and services to both citizens and visiting tourists. Palermo is home to about 1.3 million people, the fifth most populous city in Italy.

Novartis says no sensitive data was compromised in cyberattack
2022-06-03 19:30

Pharmaceutical giant Novartis says no sensitive data was compromised in a recent cyberattack by the Industrial Spy data-extortion gang. Yesterday, the hacking group began selling data allegedly stolen from Novartis on their Tor extortion marketplace for $500,000 in bitcoins.

CISA adds 41 vulnerabilities to list of bugs used in cyberattacks
2022-05-24 17:50

The Cybersecurity & Infrastructure Security Agency has added 41 vulnerabilities to its catalog of known exploited flaws over the past two days, including flaws for the Android kernel and Cisco IOS XR. The added vulnerabilities come from a wide range of years, with the oldest disclosed in 2016 and the most recent being a Cisco IOS XR vulnerability fixed last Friday. CISA has given federal agencies until June 13th, 2022, to apply security updates for the Android and Cisco vulnerabilities.

Half of global CISOs feel their organization is unprepared to deal with cyberattacks
2022-05-17 09:01

Half of global CISOs feel their organization is unprepared to deal with cyberattacks. As part of Proofpoint's "2022 Voice of the CISO" report, it was revealed that 50% of 1,400 CISOs surveyed feel their company is unequipped to deal with a cyberattack, and 48% feel that their organization is at risk of suffering a material cyberattack within the next year.

You Can’t Eliminate Cyberattacks, So Focus on Reducing the Blast Radius
2022-05-12 11:57

Tony Lauro, director of security technology and strategy at Akamai, discusses reducing your company's attack surface and the "Blast radius" of a potential attack. So how can you reduce the blast radius once malware is inside?

Government Agencies Warn of Increase in Cyberattacks Targeting MSPs
2022-05-11 23:43

Multiple cybersecurity authorities from Australia, Canada, New Zealand, the U.K., and the U.S. on Wednesday released a joint advisory warning of threats targeting managed service providers and their customers. Key among the recommendations include identifying and disabling accounts that are no longer in use, enforcing multi-factor authentication on MSP accounts that access customer environments, and ensuring transparency in ownership of security roles and responsibilities.