Blue Cross Blue Shield of Arizona
August 17, 2023
•[ leak, finance ]
Blue Cross Blue Shield of Arizona files a notice after discovering that TMG Health, one of the vendors used by AZ Blue, experienced a data breach affecting AZ Blue customer data
Managed Service Providers (MSPs) worldwide
August 17, 2023
•[ ransomware, finance, technology ]
Researchers from Adlumin reveal that the Play ransomware group is now hitting managed service providers (MSPs) around the globe in a cyberattack campaign to distribute ransomware to their downstream customers: midsized businesses in the finance, legal, software, shipping, law enforcement, and logistics sectors
SouthCoast Medical Group
August 17, 2023
•[ hack, malware, healthcare ]
The SouthCoast Medical Group files a notice of data breach after discovering that an unauthorized party downloaded certain files from the company's computer network.
Harris Center for Mental Health
August 17, 2023
•[ leak, sqlinjection, healthcare ]
The Harris Center for Mental Health and IDD files a notice of data breach after discovering that one of the organization's vendors experienced a data breach related to a vulnerability in the MOVEit file transfer application.
Henwood Family Dentistry
August 17, 2023
•[ hack, healthcare ]
Borgfeld Dental Center, doing business as Henwood Family Dentistry announces that the protected health information of 7,300 patients was potentially accessed by unauthorized individuals in August.
Town of Sartrouville
August 17, 2023
•[ ransomware, malware, government ]
The French town of Sartrouville is hit with a Medusa ransomware cyberattack.
Bailey Cavalieri
August 17, 2023
The Bailey Cavalieri law firm files a notice of data breach after discovering that an unauthorized party was able to access the company's computer system
U.S. military procurement system and Taiwan-based organization
August 17, 2023
•[ espionage, malware, government ]
Researchers from Lumen discover a new HiatusRAT campaign performing reconnaissance against a U.S. military procurement system, and targeting of Taiwan-based organizations.
Southeast Asian gambling industry
August 17, 2023
•[ espionage, malware, technology ]
Researchers from SentinelOne discover a second phase of the Operation ChattyGoblin carried out by a China-aligned APT group known as 'Bronze Starlight', targeting the Southeast Asian gambling industry with malware signed using a valid certificate used by the Ivacy VPN provider.
Undisclosed auction house
August 16, 2023
•[ hack, financial, retail ]
Researchers from Flare reveal that unknown attackers claim to have breached the network of a major auction house and offered access to whoever was willing to pay $120,000.
Two members of civil society from Belgrade
August 16, 2023
•[ espionage, malware ]
The SHARE Foundation reveals that two members of civil society from Belgrade were hit by the Pegasus spyware, exploiting the 'PWNYOURHOME' vulnerability.
ToyotaLift Northeast
August 16, 2023
•[ ransomware, malware, retail ]
The 8Base ransomware group lists ToyotaLift Northeast, an authorized Toyota forklift dealer, on its list of victims.
HMG Healthcare
August 15, 2023
•[ leak, healthcare ]
Healthcare services provider HMG Healthcare discloses a data breach impacting the personal health information of employees and residents at 40 affiliated nursing facilities.
RocketSwap
August 15, 2023
•[ hack, brute-force, finance ]
Decentralized exchange RocketSwap loses $870,000 in a hack due to multiple vulnerabilities, including storing user private keys on its cloud servers via a brute-force attack.
Banco Popular de Puerto Rico
August 15, 2023
•[ leak, finance ]
Banco Popular de Puerto Rico, Puerto Rico's largest bank, joins the victim list of the MOVEit attacks after the personal data of its 82,217 clients were exposed via third-party vendor PricewaterhouseCoopers (PwC).
First Farmers Bank & Trust
August 15, 2023
First Farmers Bank & Trust files a notice of data breach after discovering that an unauthorized party was able to access confidential FFBT customer information through the MOVEit vulnerability.
Postel
August 15, 2023
•[ ransomware, malware, government ]
The Medusa ransomware gang claims responsibility for a cyber attack against Postel, a company controlled by the Italian National Mail.
University of Massachusetts Chan Medical School (UMass Chan)
August 15, 2023
•[ leak, misconfiguration, education ]
University of Massachusetts Chan Medical School (UMass Chan) posts a website notice describing a data breach impacting 134,000 users and resulting from the organization's use of MOVEit.
Advance America Cash Advance Centers of Montana and Advance America Cash Advance Centers of Vermont (Advance America)
August 15, 2023
•[ hack, finance ]
Advance America Cash Advance Centers of Montana and Advance America Cash Advance Centers of Vermont (Advance America) file notices of data breach explaining that a cyber incident resulted in an unauthorized party being able to access consumers' sensitive information.
Cleveland City Schools
August 15, 2023
•[ ransomware, malware, education ]
Cleveland City Schools say they are dealing with the aftermath of a ransomware attack.