Security News

VX-Underground malware collective framed by Phobos ransomware
2023-11-20 20:42

A new Phobos ransomware variant frames the popular VX-Underground malware-sharing collective, indicating the group is behind attacks using the encryptor. [...]

Rhysida ransomware gang claims British Library cyberattack
2023-11-20 15:44

The Rhysida ransomware gang has claimed responsibility for a cyberattack on the British Library in October, which has caused a major ongoing IT outage. A leak of HR documents stolen from the British Library was also confirmed today by the library's press office, which warned users to reset their passwords as a precautionary measure.

Rhysida ransomware gang: We attacked the British Library
2023-11-20 12:05

The Rhysida ransomware group says it's behind the highly disruptive October cyberattack on the British Library, leaking a snippet of stolen data in the process. The Register approached the British Library for comment but it did not reply.

8Base Group Deploying New Phobos Ransomware Variant via SmokeLoader
2023-11-18 11:27

The threat actors behind the 8Base ransomware are leveraging a variant of the Phobos ransomware to conduct their financially motivated attacks. The findings come from Cisco Talos, which has...

The Week in Ransomware - November 17th 2023 - Citrix in the Crosshairs
2023-11-17 23:26

Ransomware gangs target exposed Citrix Netscaler devices using a publicly available exploit to breach large organizations, steal data, and encrypt files. November 14th 2023 LockBit ransomware exploits Citrix Bleed in attacks, 10K servers exposed.

Yamaha Motor confirms ransomware attack on Philippines subsidiary
2023-11-17 16:45

Yamaha Motor's Philippines motorcycle manufacturing subsidiary was hit by a ransomware attack last month, resulting in the theft and leak of some employees' personal information. "One of the servers managed by [.] motorcycle manufacturing and sales subsidiary in the Philippines, Yamaha Motor Philippines, Inc., was accessed without authorization by a third party and hit by a ransomware attack, and a partial leakage of employees' personal information stored by the company was confirmed," Yamaha said.

Ransomware Gang Files SEC Complaint
2023-11-17 16:31

A ransomware gang, annoyed at not being paid, filed an SEC complaint against its victim for not disclosing its security breach within the required four days. This is over the top, but is just another example of the extreme pressure ransomware gangs put on companies after seizing their data.

British Library: Ongoing outage caused by ransomware attack
2023-11-17 13:37

The British Library confirmed that a ransomware attack is behind a major outage that is still affecting services across several locations. Although the library confirmed this was caused by ransomware, it still has to link the attack to a specific operation and reveal what employee and/or user personal or financial information was accessed or stolen from its systems, if any.

How much to clean up a ransomware infection? For Rackspace, about $11M
2023-11-16 21:23

Rackspace's costs from last year's ransomware infection continue to mount. In its most recent 10-Q quarterly report to the SEC, Rackspace said it racked up $5 million in ransomware-related expenses in the year to September 30, 2023.

Rackspace racks up $12M bill in ransomware raid recovery
2023-11-16 21:23

Rackspace's costs from last year's ransomware infection continue to mount: the cloud hosting biz told America's financial watchdog, the SEC, its total expenses to date regarding that cyberattack have reached $12 million - so far. Rackspace ultimately blamed the Play crew for the intrusion, and said the miscreants broke in after exploiting CVE-2022-41080, a critical Exchange privilege escalation bug, before Microsoft could issue a fix.