-- Leo's gemini proxy

-- Connecting to gemini.tuxmachines.org:1965...

-- Connected

-- Sending request

-- Meta line: 20 text/gemini;lang=en-GB

Tux Machines


Security Leftovers and Plenty of Windows Breaches (Ransomware)


Posted by Roy Schestowitz on May 12, 2023


today's howtos

Games: Godot, Steam, and More



Hackers attempt to extort Dragos and its executives in suspected ransomware attempt


↺ Hackers attempt to extort Dragos and its executives in suspected ransomware attempt


> The industrial cyber company revealed details of the incident that began on Monday with an employee's compromised personal email.



OpenSSF Welcomes New Members, Veteran Cybersecurity Expert as General Manager, and New Funding


↺ OpenSSF Welcomes New Members, Veteran Cybersecurity Expert as General Manager, and New Funding


> The Open Source Security Foundation (OpenSSF), a cross-industry organization hosted at the Linux Foundation that brings together the world's most important software supply chain security initiatives, welcomes four new members from leading technology firms. New OpenSSF general members include Hitachi, Lockheed Martin, Salesforce, and SAP. Technical communities continue to prioritize investment in open source security and recognize the role of supporting and sustaining open source communities in maintaining a healthy, vibrant, and secure open source ecosystem.



Security updates for Thursday [LWN.net]


↺ Security updates for Thursday [LWN.net]


> Security updates have been issued by Debian (firefox-esr and nvidia-graphics-drivers-legacy-390xx), Fedora (firefox, java-11-openjdk, LibRaw, moodle, python-django3, and vtk), Slackware (mozilla), SUSE (buildah, cloud-init, container-suseconnect, firefox, golang-github-prometheus-prometheus, kernel, and ntp), and Ubuntu (heat, linux-azure-fde-5.15, linux-raspi, linux-oem-5.17, linux-oem-6.0, linux-raspi, linux-raspi-5.4, linux-raspi2, neutron, openvswitch, and sqlparse).



A harbinger of bad things to come?


↺ A harbinger of bad things to come?


> DataBreaches emailed an inquiry to ResultsCX asking for their response to the claimed attack. No reply was immediately available, so this is unconfirmed at this point. This post will be updated when more information becomes available.



Some Cornwall Community Hospital services still impacted by cyber incident


↺ Some Cornwall Community Hospital services still impacted by cyber incident


> It’s been a month since a cyber incident brought down the Cornwall Community Hospital’s computer systems.


> In response to a requested update, CCH posted one Thursday on its website and social-media channels, indicating many of its services are now back to expected activity volumes and it’s resumed its standard approach to victim care. The statement specifically mentions resumption of typical activities in the emergency, inpatient, and surgical departments.


> Delays in patient access to some areas, specifically diagnostic imaging (X-Rays, CT scans, MRIs, ultrasounds), continue.



#StopRansomware: Malicious Actors Exploit CVE-2023-27350 in PaperCut MF and NG


↺ #StopRansomware: Malicious Actors Exploit CVE-2023-27350 in PaperCut MF and NG



Brightly warns of SchoolDude data breach exposing credentials


↺ Brightly warns of SchoolDude data breach exposing credentials


> U.S. tech company and Siemens subsidiary Brightly Software is notifying customers that their personal information and credentials were stolen by attackers who gained access to the database of its SchoolDude online platform.


> SchoolDude is a cloud-based platform for managing work orders used by over 7,000 colleges, universities, and K-12 schools from school districts of up to 600,000 students.



Methodist Family Health discloses breach potentially involving sensitive info on children


↺ Methodist Family Health discloses breach potentially involving sensitive info on children


> Whether the same individual really was responsible for either attack or both attacks is unknown to DataBreaches. But at some point, the MFH listing was removed from Avos Locker’s site. Whether it was removed because MFH paid ransom or whether it was removed because Avos Locker regretted what the affiliate had done and removed it is unknown to DataBreaches.



Ransomware Encryption Rates Reach New Heights


↺ Ransomware Encryption Rates Reach New Heights



Uintah Basin Healthcare notifies patients of data breach discovered in November


↺ Uintah Basin Healthcare notifies patients of data breach discovered in November


> Uintah Basin Healthcare (“UBH”) in Utah became aware of unusual activity in their network on November 7, 2022. They are first notifying patients who received care at UBH between March 2012 and November 2022 and whose information may have been accessed or acquired.



Gaston College still investigating February cyberattack; personal information stolen still being determined


↺ Gaston College still investigating February cyberattack; personal information stolen still being determined


> Gaston College is a victim of a ransomware attack that prompted the school to take critical systems offline for caution.


> A college spokesperson said the it discovered the security issue Feb. 22.


> The school provided alternative links for students and staff, so campus operations and classes could continue.



Japan's ubiquitous convenience stores now serving up privacy breaches


↺ Japan's ubiquitous convenience stores now serving up privacy breaches


> Japan's minister for digital transformation and digital reform, Taro Kono, has apologized after a government app breached citizens' privacy.


> The app is called the "Certificate Issuing Server" and, as explained by the municipal government of Kodaira City, allows residents to print documents such as certificates that prove they've paid taxes.



Half of North Korean missile program funded by cyberattacks and crypto theft, White House says


↺ Half of North Korean missile program funded by cyberattacks and crypto theft, White House says


> About half of North Korea’s missile program has been funded by cyberattacks and cryptocurrency theft, a White House official said Tuesday.


> A sweeping US federal government effort is ongoing to understand how “a country like [North Korea] is so darn creative in this space,” Anne Neuberger, deputy national security adviser for cyber and emerging technology, said at an event hosted by the nonprofit Special Competitive Studies Project.


> US intelligence agencies are working to identify North Korean operatives and the Treasury is tracing stolen cryptocurrency, Neuberger said, adding that the Biden administration is “putting a lot of time and thought” into the problem.




gemini.tuxmachines.org

-- Response ended

-- Page fetched on Thu Jun 13 15:27:26 2024