-
Umpqua Bank
June 19, 2023
•
[ hack, malware, finance ]
Umpqua Bank confirms that it was impacted by the massive cyberattack targeting the MOVEit file transfer software.
-
Colorado Department of Higher Education (CDHE)
June 19, 2023
•
[ ransomware, malware, education ]
The Colorado Department of Higher Education (CDHE) discloses a massive data breach impacting students, past students, and teachers after suffering a ransomware attack in June.
-
Informatica
June 19, 2023
Software development firm Informatica reports that the Clop ransomware gang campaign obtained some files exploiting the MOVEit CVE-2023-34362 Vulnerability.
-
Central Bank of Malta
June 18, 2023
•
[ hack, ddos, finance ]
The collective Turk Hack Team takes down the website of the Central Bank of Malta
-
Undisclosed Property Manager
June 18, 2023
•
[ hack, malware, healthcare ]
Australia's largest private health insurer Medibank Private discloses that a file containing names and contact details of staff members had been compromised after its property manager faced a cybersecurity breach due to the exploitation of the MOVEit CVE-2023-34362 vulnerability.
-
U.S. Office of Personnel Management
June 17, 2023
The U.S. Office of Personnel Management confirms to have suffered a cyber attack exploiting the MOVEit CVE-2023-34362 vulnerability.
-
BreachForums Clone
June 17, 2023
•
[ leak, misconfiguration, technology ]
In June 2023, a clone of the previously shuttered popular hacking forum "BreachForums" suffered a data breach that exposed over 4k records. The breach was due to an exposed backup of the MyBB database which included email and IP addresses, usernames and Argon2 password hashes.
-
Honeywell International
June 16, 2023
Honeywell International posts a notice on its website describing a data breach resulting from the CVE-2023-34362 vulnerability in MOVEit.
-
Milliman Solutions
June 16, 2023
Milliman Solutions files a notice of data breach after discovering that one of the company's vendors, Pension Benefit Information, experienced a data security incident involving the file sharing application MOVEit.
-
Nuance
June 16, 2023
•
[ leak, sqlinjection, technology ]
Software firm Nuance joins the list of the victims of the data breach resulting from the CVE-2023-34362 vulnerability in MOVEit.
-
MyShopCasa
June 16, 2023
•
[ leak, retail ]
MyShopCasa, an Italian e-commerce site has its database leaked.
-
U.S. Department of Agriculture
June 16, 2023
The U.S. Department of Agriculture confirms to have suffered a cyber attack exploiting the MOVEit CVE-2023-34362 vulnerability.
-
East Western Bank
June 16, 2023
•
[ leak, malware, finance ]
East Western Bank joins the list of the victims of the data breach resulting from the CVE-2023-34362 vulnerability in MOVEit.
-
Parker Wellbore
June 16, 2023
•
[ hack, energy ]
Parker Wellbore files a notice of data breach after learning that hackers gained access to confidential information that had been entrusted to the company.
-
Studio Legale Ranchino
June 16, 2023
•
[ ransomware, malware ]
The Studio Legale Ranchino, an Italian law firm suffers a ransomware attack by the 8Base gang.
-
Swiss Insurance Company
June 15, 2023
Swiss insurance company is listed in the Clop ransomware gang leak site after the attackers exploited the MOVEit CVE-2023-34362 vulnerability.
-
Corebridge Financial
June 15, 2023
•
[ leak, sqlinjection, finance ]
Corebridge Financial files a notice regarding a data breach resulting from the CVE-2023-34362 vulnerability in MOVEit.
-
Colorado Department of Health Care Policy & Financing
June 15, 2023
•
[ hack, misconfiguration, government ]
Colorado Department of Health Care Policy & Financing confirms that it is in the process of investigating an incident involving the data of state residents stolen exploiting the CVE-2023-34362 vulnerability, affecting the MOVEit file transfer tool.
-
1st Source
June 15, 2023
•
[ ransomware, malware, finance ]
1st Source, a U.S.-based financial services organization is listed in the Clop ransomware gang leak site after the attackers exploited the MOVEit CVE-2023-34362 vulnerability.
-
Transport for London (TfL)
June 15, 2023
•
[ hack, sqlinjection, government ]
Transport for London (TfL) confirms to have been hit by a cyber attack exploiting the MOVEit CVE-2023-34362 vulnerability.