Skip to main content
News

Cyber News Rundown: BlackCat ransomware claims Seiko data breach

  • August 25, 2023
  • 5 replies
  • 83 views
Cyber News Rundown: BlackCat ransomware claims Seiko data breach
Forum|alt.badge.img+7

The threat actors behind the BlackCat/ALPHV ransomware group have claimed responsibility for the recent data breach of the Japanese watchmaker, Seiko, and posted the stolen data to their dark web leak site. Officials for Seiko confirmed the data breach on August 10th and revealed that their systems had been infiltrated several weeks prior, leading to an exfiltration of an unknown amount of sensitive data. It is believed the stolen data includes scans of employee passports, production information and confidential design drafts for watches, which falls under the umbrella of protected intellectual property (IP).

Cyberattack forces Mississippi healthcare system offline

Late last week, officials for the Singing River Health System (SRHS) in Mississippi were forced to take several critical systems after identifying unauthorized activity on their network, stemming from an undefined cyberattack. While there are continued efforts to restore normal operations, staff are resigned to keeping paper records at dozens of hospitals and clinics along the Gulf Coast. Officials for SRHS have yet to confirm if this incident was the result of ransomware, or if any plans were being made to pay a ransom or attempt to restore their systems from backups.

Researchers find multiple vulnerabilities in smart lightbulbs

Collaborating academic researchers from both Italy and the UK have discovered 4 vulnerabilities in TP-Link smart lightbulbs that could be used by threat actors to obtain local network data and gain authenticated access between the smart lightbulb and the controlling mobile app, Tapo. They also found that any attacker within a reasonable distance of the lightbulb and connected Wi-Fi network could exploit the communication between the two and obtain login credentials for the Tapo app and the Wi-Fi network it was connected to. Fortunately, the researchers informed the manufacturer of the vulnerabilities and they have already begun working to correct the issues.

Teenage Lapsus$ members convicted in British court

Recently, a British court found two teens guilty of direct involvement in hacking a series of tech companies, including Rockstar Games and Uber, in connection with the Lapsus$ hacking group. The first teen independently gained illicit access to Rockstar Games’ systems and began leaking previously unreleased images and documentation on the upcoming Grand Theft Auto 6 video game. The second teen was complicit in blackmailing BT telecommunications and breaching the network of tech manufacturer, NVIDIA, in relation to a Lapsus$ group campaign.

Department of Defence South Africa suffers data breach

The Snatch ransomware group has recently published a data trove of 1.6TB to their dark web leak site, that came from a cyberattack on the Department of Defence South Africa in July. While the authenticity of the data trove has yet to be proven, there has also been no indication from the Department of Defence South Africa of a data breach. It is believed that the data trove includes sensitive information on personnel and military contracts.

5 replies

ProTruckDriver
Moderator

Healthcare and hospitals again. Miscreants have no compassion for the sick.  Thank you Connor for the articles.


Jasper_The_Rasper
Moderator
Forum|alt.badge.img+54

Thank you Connor, a great article as usual.
Healthcare always seems to be a target, I hope when the time comes the crims are shown a similar amount of compassion when they need it.


TripleHelix
Moderator
Forum|alt.badge.img+63
  • Moderator
  • August 25, 2023

Thanks Conner as Dave and Jeff said above Healthcare attacks again and again. 😡


russell.harris
Popular Voice
Forum|alt.badge.img+5

Cheers @ConnorM 

healthcare just doesn’t stand a chance


tasystems
New Voice
Forum|alt.badge.img+8
  • New Voice
  • September 2, 2023

As many have mentioned, healthcare should be one of those place that people should respect… more so when you consider nearly everyone will have to use their services at some point in their lives. One real issue with security in the hospital sector is the poor understanding of the staff about keeping their passwords and data secure. Even now, post it notes with passwords are easy to find, and many place still have the A4 sheet of paper with a list of accounts and passwords on them… I wish I was joking about that, but I see it in so many different places!