Cyberattacks: Page 23


  • Password input field
    Image attribution tooltip
    Getty via Getty Images
    Image attribution tooltip

    LastPass CEO admits disclosure mistakes, pledges improved communications

    The criticism leveled at LastPass has grown as the password manager shared more alarming details on the compromise.

    By March 1, 2023
  • A photo illustration of LastPass logos on a hard drive disk held in someone's hand.
    Image attribution tooltip
    Leon Neal via Getty Images
    Image attribution tooltip

    LastPass compromise grew worse after DevOps engineer targeted for encryption key

    A threat actor used data from multiple breaches and a vulnerability on a high-level employee’s home computer to steal customer passwords.

    By Feb. 28, 2023
  • palm trees line Melrose Avenue in Los Angeles.
    Image attribution tooltip
    David McNew/Getty Images via Getty Images
    Image attribution tooltip

    Los Angeles school district confirms sensitive student data leaked

    Highly sensitive health records, including psychological evaluations, of about 2,000 students were leaked as a result of the ransomware attack that hit the Los Angeles Unified School District last year.

    By Feb. 27, 2023
  • Ukrainian parliament building
    Image attribution tooltip
    Sean Gallup/Getty Images via Getty Images
    Image attribution tooltip

    Ukraine discovers lingering breaches 1 year into Russia invasion

    Multiple Ukraine government website breaches were discovered on the eve of the one-year mark of Russia’s invasion.

    By Feb. 24, 2023
  • GoDaddy logo depicted on the floor of the New York Stock Exchange
    Image attribution tooltip
    Spencer Platt/Getty Images via Getty Images
    Image attribution tooltip

    For GoDaddy customers, a long dwell time means all could be victims

    The web hosting provider has not shared additional details outlining the extent of the breach, but experts are highlighting the incident's multiple red flags.

    By Feb. 23, 2023
  • Image attribution tooltip
    Justin Sullivan via Getty Images
    Image attribution tooltip

    Dole hit by ransomware, North America operations briefly disrupted

    The attack against the produce giant marks the latest in a series of cybersecurity threats targeting the food industry.

    By Feb. 23, 2023
  • Gulls swarm to eat fishing waste from vessel.
    Image attribution tooltip
    Matt Cardy / Stringer via Getty Images
    Image attribution tooltip

    Attackers reduce complexity to catch more potential victims

    Palo Alto Networks warns attackers are building economies of scale by conducting more efficient operations and complementing their skills with commercially available tools.

    By Feb. 23, 2023
  • Illustrated man with fishing hook stealing key
    Image attribution tooltip
    stefanovsky via Getty Images
    Image attribution tooltip

    Phishing, king of compromise, remains top initial access vector

    IBM Security X-Force’s annual threat intelligence report highlights what makes phishing such a dangerous and persistent point of entry.

    By Feb. 22, 2023
  • A man looks at lines of code depicted on a computer screen
    Image attribution tooltip
    sestovic via Getty Images
    Image attribution tooltip

    Companies grapple with post-breach disclosure risks

    The concerns leading organizations to withhold information are aplenty, including reputational damage and financial impacts.

    By Feb. 16, 2023
  • A digital padlock icon on a virtual interface screen
    Image attribution tooltip
    KanawatTH via Getty Images
    Image attribution tooltip

    IT security budgets triple as businesses confront more cyberattacks across Europe, US

    Five-year data from Hiscox shows businesses are facing more frequent and more costly attacks.

    By Feb. 16, 2023
  • Technician services a cloud server.
    Image attribution tooltip
    anandaBGD via Getty Images
    Image attribution tooltip

    What’s known about the ESXiArgs ransomware hitting VMware servers

    An initial strain affected thousands of devices before a new variant emerged. The latest burst of attacks hit Saturday.

    By Feb. 15, 2023
  • Digital technology vector background depicting a cyberattack.
    Image attribution tooltip
    WhataWin via Getty Images
    Image attribution tooltip

    VMware ransomware was on the rise leading up to ESXiArgs spree, research finds

    Recorded Future analysis underscores a growing ransomware threat confronting organizations using VMware ESXi.

    By Feb. 13, 2023
  • Double exposure shot of backside of a computer and red binary codes.
    Image attribution tooltip
    Suebsiri via Getty Images
    Image attribution tooltip

    VMware ransomware evolves to evade data recovery, reinfects servers

    The new ESXiArgs strain has reinfected more than 1,150 VMware servers and represents more than 4 in 5 live infections, according to open-source ransomware data.

    By Feb. 10, 2023
  • Smiling businesswoman in headphones taking notes, working with laptop and talking smartphone, blue glowing information protection icons. Padlock, cloud and digital interface. Cyber security concept - stock photo
    Image attribution tooltip
    iStock via Getty Images
    Image attribution tooltip

    Unsophisticated ransomware campaign targeting VMware ripe for copycats

    Ransomware doesn’t typically hit thousands of potential victims at once. “All of it’s very strange,” one security researcher said.

    By Feb. 8, 2023
  • Ransomware spelled out in a creative depiction.
    Image attribution tooltip
    Just_Super via Getty Images
    Image attribution tooltip

    Ransomware attack spree hits thousands of VMware servers

    Cyber authorities linked the attacks, dubbed ESXiArgs, to a two-year-old VMware vulnerability. At least 2,250 machines have been compromised.

    By Feb. 6, 2023
  • An image of Federal Bureau of Investigation Director Christopher Wray at a press conference.
    Image attribution tooltip
    Kevin Dietsch/Getty Images via Getty Images
    Image attribution tooltip

    Hive takedown puts ‘small dent’ in ransomware problem

    Successful law enforcement actions against ransomware can only do so much. The threat is omnipresent, lucrative and largely in the shadows.

    By Feb. 6, 2023
  • Pedestrians walk by a T-Mobile store
    Image attribution tooltip
    Justin Sullivan via Getty Images
    Image attribution tooltip

    T-Mobile CEO spins recent breach, says its cybersecurity chops ‘showed up’

    “Our systems and policies protected the most sensitive kinds of customer data,” Mike Sievert said on an earnings call. “We take this issue very seriously.”

    By Feb. 1, 2023
  • Double exposure shot of backside of a computer and red binary codes.
    Image attribution tooltip
    Suebsiri via Getty Images
    Image attribution tooltip

    GitHub resets code signing certificates following breach

    The incident closely follows a series of indirect source code repository breaches impacting Slack and Okta.

    By Feb. 1, 2023
  • The red lock and its structure explode in a digital computer setting.
    Image attribution tooltip
    TU IS via Getty Images
    Image attribution tooltip

    Exchange Server under pressure as opportunistic actors step up attacks

    Bitdefender Labs warns threat actors are using the ProxyNotShell/OWASSRF exploit chains to launch attacks.

    By Jan. 25, 2023
  • Connection network in dark servers data center room storage systems.
    Image attribution tooltip
    sdecoret via Getty Images
    Image attribution tooltip

    Breach hits GoTo, the parent company of LastPass

    Damage caused by a cyberattack on a shared cloud storage service is adding to the fallout for both companies.

    By Jan. 24, 2023
  • Downtown Los Angeles aerial view.
    Image attribution tooltip
    Stein Photo via Getty Images
    Image attribution tooltip

    Los Angeles school system shifts timeline of ransomware attack

    Post-breach investigations are complex. The timeline and scope of damage inflicted often change as investigations unfold.

    By Jan. 24, 2023
  • T-Mobile storefront in San Francisco.
    Image attribution tooltip
    Justin Sullivan/Getty Images via Getty Images
    Image attribution tooltip

    Experts question T-Mobile’s security culture as breach cycle churns

    The gap between the threat actor’s intrusion and T-Mobile’s detection underscores multiple unresolved challenges.

    By Jan. 20, 2023
  • Pedestrians walk by a T-Mobile store
    Image attribution tooltip
    Justin Sullivan via Getty Images
    Image attribution tooltip

    T-Mobile breached again, 37M customer accounts exposed

    The incident marks the latest in a series of data breaches, the worst of which occurred in August 2021 and exposed the data of at least 76.6 million people.

    By Jan. 19, 2023
  • PayPal logo depicted on a sign.
    Image attribution tooltip
    Sean Gallup via Getty Images
    Image attribution tooltip

    PayPal warns 35,000 customers of exposure following credential stuffing attack

    Impacted customers were notified of the incident nearly a month after it was discovered. It’s unclear where or how customer account credentials were obtained.

    By Jan. 19, 2023
  • A depiction of computer hardware.
    Image attribution tooltip
    solarseven via Getty Images
    Image attribution tooltip

    World Economic Forum officials warn global instability could lead to catastrophic cyber event

    A report released at the WEF said top business leaders and security experts fear heightened geopolitical tensions could result in a major attack in the next two years.

    By Jan. 19, 2023