Jefit
August 11, 2020
•[ hack, misconfiguration, technology ]
In August 2020, the workout tracking app Jefit suffered a data breach. The data was subsequently sold within the hacking community and included over 9 million email and IP addresses, usernames and passwords stored as either vBulletin or argon2 hashes. Several million cracked passwords later appeared in broad circulation.
Olympia House Rehab
August 10, 2020
•[ ransomware, malware, healthcare ]
Olympia House Rehab is hit by Netwalker ransomware.
The Center for Fertility and Gynecology
August 10, 2020
•[ ransomware, malware, healthcare ]
The Center for Fertility and Gynecology is hit by Netwalker ransomware.
Undisclosed construction company
August 10, 2020
•[ ransomware, malware ]
The gang behind the Avaddon ransomware launches a data leak site to extort victims and published the data of a construction company.
Ashley County Medical Center
August 10, 2020
•[ insider, misconfiguration, healthcare ]
Ashley County Medical Center is investigating a former employee who they claim inappropriately accessed medical records. It appears that the information was viewed out of curiosity and has not been shared with a third-party.
Virtu Financial
August 10, 2020
•[ financial, phishing, finance ]
High-speed trading firm Virtu Financial says it lost $6.9 million in a business email compromise scam in May.
Piedmont Orthopedics
August 10, 2020
•[ ransomware, malware, healthcare ]
Piedmont Orthopedics has been hit Pysa (Mespinoza) and have 3.5 GB of their data dumped by the threat actors.
SPIE Group
August 10, 2020
Researchers from threat intelligence firm Cyble reported that Nefilim ransomware operators allegedly hacked The SPIE Group, an independent European leader in multi-technical services.
Buffalo and Erie County Public Library
August 10, 2020
•[ hack, education ]
The Buffalo and Erie County Public Library discloses to have been hit by hackers earlier this year.
Defcon
August 9, 2020
•[ hack, misconfiguration, technology ]
The defcon.org forum is attacked with CVE-2019-16759 (targeting vBulletin), three hours after it is disclosed.
ProctorU
August 9, 2020
•[ hack, misconfiguration, education ]
ProctorU confirms a data breach after a threat actor released a stolen database of user records on a hacker forum.
Boyce Technologies
August 9, 2020
•[ ransomware, malware, manufacturing ]
The FDA-approved Coronavirus ventilator manufacturer Boyce Technologies has been targeted by ransomware launched by the DoppelPaymer gang, who are threatening to leak data from the company.
Southeastern Pennsylvania Transportation Authority
August 8, 2020
•[ hack, malware, government ]
The Southeastern Pennsylvania Transportation Authority is hit with a malware attack.
National Trust
August 7, 2020
Britain's National Trust is the latest data breach victim to be affected by the Blackbaud hack.
Reddit
August 7, 2020
•[ hack, technology ]
Tens of Reddit channels have been hacked and defaced to show messages in support of Donald Trump's reelection campaign.
Canon
August 6, 2020
•[ ransomware, malware, manufacturing ]
Canon has suffered a ransomware attack and reportedly has 10 TB of data stolen.
Cuyahoga Community College Foundation
August 6, 2020
•[ ransomware, malware, education ]
The Cuyahoga Community College Foundation notifies to be among the organizations affected by the Blackbaud ransomware attack.
SANS
August 6, 2020
•[ social, phishing, education ]
The SANS cybersecurity training organization has suffered a data breach after one of their employees fell victim to a phishing attack.
Forsee Power
August 6, 2020
•[ ransomware, malware ]
The Netwalker ransomware operators attack Forsee Power.
Interactive Data
August 6, 2020
•[ hack, financial, finance ]
Interactive Data, a data broker, is hacked and fuels fraudulent small business loans and unemployment insurance benefits from COVID-19 economic relief efforts