-
KeyBank
July 5, 2022
•
[ hack, finance ]
Attackers steal personal data including Social Security numbers, addresses and account numbers of home mortgage holders at KeyBank, after successfully breaching the insurance services provider Overby-Seawell.
-
Multiple organizations in Japan
July 5, 2022
•
[ espionage, malware, technology ]
The Japan CERT (JPCERT) discover a new version of the VSingle malware, used by the Lazarus Group, able to retrieve the C2 servers information from GitHub.
-
Donetsk Administration
July 5, 2022
•
[ hack, ddos, government ]
The official website of the administration of a Ukrainian city of was subjected to a powerful DDoS attack.
-
Gresco
July 5, 2022
Lorenz executed exfiltration of data and ransomeware in targeted network. Data presented on dark web "leak site"
-
Mangatoon
July 5, 2022
•
[ hack, misconfiguration, technology ]
Comic reading platform Mangatoon suffers a data breach that exposed information belonging to 23 million user accounts after a hacker stole it from an unsecured Elasticsearch database.
-
Southwest Health Center
July 5, 2022
•
[ leak, healthcare ]
Southwest Health Center discloses a data security incident that may have involved the personal and protected health information belonging to certain current and former employees.
-
Military entities in Bangladesh
July 5, 2022
•
[ espionage, malware, government ]
Researchers from Secuinfra reveal that an advanced persistent threat (APT) operating under the name of 'Bitter' continues to conduct cyber-attacks against military entities in Bangladesh.
-
College of the Desert
July 5, 2022
•
[ hack, ddos, education ]
College of the Desert suffers from a cyberattack that brings down the school's online services and campus phone lines.
-
Reiter Affiliated Companies
July 4, 2022
•
[ hack, healthcare ]
Reiter Affiliated Companies reports a data breach with the U.S. Department of Health and Human Services Office for Civil Rights after sensitive consumer information entrusted to the company was accessed by an unauthorized party.
-
Shanghai National Police (SHGA)
July 4, 2022
An anonymous threat actor, under the handle of ChinaDan, sells several databases they claim to contain more than 22 terabytes of stolen information on roughly 1 billion Chinese citizens for 10 bitcoins (approximately $195,000).
-
-
Cedar Rapids Community School District
July 4, 2022
•
[ hack, education ]
A cyberattack discovered over the holiday weekend causes the Cedar Rapids Community School District to suspend summer programming until July 11.
-
FAAC Group
July 4, 2022
•
[ ransomware, malware, manufacturing ]
The Italian manufacturer of automatic gates FAAC Group is the first known victim of the LockBit 3.0 ransomware group.
-
Kokikai Yasue Hospital
July 4, 2022
•
[ leak, healthcare ]
Kokikai Yasue Hospital announces that the personal information of up to 111,991 patients may have been leaked due to unauthorized access to the hospital computers.
-
Mass Transit System Ltd
July 4, 2022
•
[ hack, government ]
According to the Iran's semi official Fars News Agency, a militant Palestinian group launched a cyber attack against Mass Transit System Ltd, a company involved in the construction of the Tel Aviv metro.
-
Vectalia group
July 4, 2022
•
[ ransomware, malware ]
Vice Society encrypts network and threatens to leak data on their dark web portal.
-
Supply website of the Norwegian National Security Agency
July 4, 2022
A Norwegian provider of websites was subjected to a DDoS attack. The websites of a number of client organizations were also affected by the DDoS and unaccessible to users.
-
Tutu
July 4, 2022
An unknown threat actor conducted a hack and leak operation against a Russian company selling tickets for Russian public transport.
-
La Poste Mobile
July 4, 2022
•
[ ransomware, financial, technology ]
In July 2022, the French telecommunications company La Poste Mobile was the target of an attack by the LockBit ransomware which resulted in company data being published publicly. The impacted data included 533k unique email addresses along with names, physical addresses, phone numbers, dates of births, genders and banking information. 10 days after the attack, the La Poste Mobile website remained offline.
-
Crema Finance
July 3, 2022
Decentralized finance platform Crema Finance announces that it was hacked and had about $8.8 million stolen during the attack. Few days after the attacker returns $8 million in stolen funds, and they are awarded a $1.68 million bounty.