-
City of Del Rio
January 15, 2019
•
[ ransomware, malware, government ]
Officials based at the City of Del Rio, in Texas, are forced to abandon electronic services and switch to pen and paper after a ransomware attack effectively closed down City Hall servers.
-
Redbanc
January 15, 2019
•
[ hack, malware, finance ]
Flashpoint analysts believe that the Lazarus Group is behind the recent intrusion suffered by Chilean interbank network Redbanc via carried out via the PowerRatankba malware.
-
South Korea Defense Acquisition Program Administration
January 15, 2019
Alleged state-sponsored actors compromise 30 PCs at the South Korea Defense Acquisition Program Administration which is the office that manages the military procurement. In 10 of them data was leaked.
-
Cryptopia
January 14, 2019
•
[ financial, finance ]
Cryptopia currency exchange pulls its website and services offline, citing a "security breach" resulting in "significant losses." Apparently the equivalent of $1.2 million is transferred to an unknown address.
-
Sunderland City Council
January 14, 2019
•
[ hack, phishing, ddos ]
Sunderland City Council reveals to have been hit with phishing and spoofing emails, and at least one Distributed Denial of Service (DDoS) attack, back in November.
-
Faben Obstetrics and Gynecology
January 14, 2019
•
[ ransomware, malware, healthcare ]
Faben Obstetrics and Gynecology notifies more than 6,000 patients after a GandCrab ransomware attack occurred in November 2018.
-
The Shift News
January 14, 2019
•
[ hack, ddos, technology ]
The Shift News suffers a DDoS attack, following the publication of a series of investigative stories on a hospitals deal.
-
Italian organization operating in the Oil&Gas sector
January 11, 2019
•
[ hack, malware, energy ]
Researchers from Cybaze-Yoroi ZLab reveal a campaign against an undisclosed Italian organization in the Oil and Gas sector, exploiting CVE-2017-11882 to distribute the AVE_MARIA malware.
-
Tecnimont SpA
January 11, 2019
•
[ financial, phishing, energy ]
The Indian subsidiary of Tecnimont SpA falls prey to a fraud wherein $18.6 million (INR 130 crore) were being stolen by a group of Chinese hackers pretending to be trading an acquisition in China.
-
Discountmugs
January 10, 2019
•
[ hack, malware, retail ]
Another victim of Magecart. Discountmugs.com reveals that anyone who used a credit between August 5, 2018, and November 16, 2018 may have had their information compromised.
-
Sacred Heart Rehabilitation Center
January 10, 2019
•
[ social, phishing, healthcare ]
Sacred Heart Rehabilitation Center notifies patients of a phishing incident occurred in early April.
-
Salisbury Police Department
January 9, 2019
•
[ ransomware, malware, government ]
The Salisbury Police Department is hit by a ransomware attack.
-
Hanover County
January 9, 2019
•
[ financial, misconfiguration, government ]
Another victim of the Click2Gov breach. Officials disclose that an unauthorized party stole credit card information between Aug. 1, 2018 and Jan. 9, 2019.
-
Caddo Parish School System
January 8, 2019
•
[ financial, phishing, education ]
The Caddo Parish School System is scammed out of nearly $1 million in tax payer money after a phishing attack.
-
Bridgeport School District
January 8, 2019
•
[ ransomware, malware, education ]
The Bridgeport, Connecticut, School District is hit with a ransomware
-
Kent County Community Mental Health
January 8, 2019
•
[ social, phishing, healthcare ]
Kent County Community Mental Health Authority notifies 2,284 patients after phishing attack
-
OXO International
January 7, 2019
•
[ financial, malware, manufacturing ]
OXO International discloses a data breach that spans numerous periods over two years. Customer and payment information may have been exposed. The attack was most likely a MageCart attack.
-
Ethereum Classic
January 7, 2019
Coinbase detects a "deep chain reorganization" of the Ethereum Classic (ETC) blockchain. The equivalent of $1.1M is double spent, but the attacker reportedly returns $100,000 to cryptocurrency exchange Gate.io.
-
Collection #1
January 7, 2019
In January 2019, a large collection of credential stuffing lists (combinations of email addresses and passwords used to hijack accounts on other services) was discovered being distributed on a popular hacking forum. The data contained almost 2.7 billion records including 773 million unique email addresses alongside passwords those addresses had used on other breached services. Full details on the incident and how to search the breached passwords are provided in the blog post The 773 Million Record "Collection #1" Data Breach.
-
Linda Frum's Twitter account
January 6, 2019
•
[ hack, government ]
Conservative Senator Linda Frum's Twitter account is hacked. The attackers share personal information including her drivers license and post racial tweets.