Phishing Watchdog

 

Samsung confirms hackers stole Galaxy devices source code

7th March 2022 | Target: Samsung Electronics | Reported Here Samsung said on Monday that hackers breached its internal company data, gaining access to some source codes of Galaxy-branded devices like smartphones. The statement from the South Korean electronics giant comes after hacking group Lapsus$ claimed over the weekend via its Telegram channel that it has stolen 190 gigabytes of confidential Samsung source code.

[above via CNBC post] Update 1 
 

Rompetrol gas station network hit by Hive ransomware

7th March 2022 | Target: Rompetrol gas | Reported Here KMG subsidiary Rompetrol today declared it had been hit by a “complex cyberattack” last night that forced it to suspend some services at stations and shut down its websites.

[above via Cyber News post]  
 

Toyota suspends all Japan factory operations after suspected cyberattack

1st March 2022 | Target: Toyota Motors | Reported Here Toyota Motor will restart domestic production from Wednesday after a cyberattack on a supplier ground the automaking giant’s factories to a one-day halt, sparking concerns about vulnerability in Japan Inc’s supply chain. No information was available about who was behind the attack, nor the motive. It came just after Japan joined Western allies in clamping down on Russia in response to the invasion of Ukraine, although it was unclear whether the attack was related.

[above via CNN post] Update 1 
 

AON hit by a cyberattack

28th February 2022 | Target: Aon Insurance company | Reported Here Global insurance and reinsurance broker Aon was hit by a cyber attack on February 25th, 2022, according to an 8-K filed with the Securities and Exchange Commission (SEC) in the U.S. In its filing, Aon states that it identified a cyber incident impacting a limited number of systems.

[above via Reinsurancene post] Update 1
 

Moscow Exchange Downed by Cyber-Attack

28th February 2022 | Target: Moscow Exchange | Reported Here The website for the Moscow Stock Exchange was offline and inaccessible on Monday. A crowdsourced community of hackers endorsed by Kyiv officials has claimed responsibility for the outage. The Ukraine IT Army posted a message on Telegram that it had taken just five minutes to render the site inaccessible.

[above via Info Security post]
 

Chipmaker Nvidia investigates potential cyberattack

25th February 2022 | Target: Nvidia | Reported Here U.S chipmaker Nvidia Corp (NVDA.O) said on Friday it was investigating a potential cyberattack, following a news report that said the attack may have had taken parts of its business offline for two days. A malicious network intrusion caused outages in Nvidia’s email systems and developer tools over the last two days, the Telegraph reported earlier on Friday, but said it was unclear if any data was stolen or deleted.

[above via Reuters post] Update 1 / Update 2
 

Iranian State Broadcaster IRIB Hit by Destructive Wiper Malware

21st February 2022 | Target: Islamic Republic of Iran Broadcasting (IRIB) | Reported Here An investigation into the attack that hit the Islamic Republic of Iran Broadcasting (IRIB) in late January, revealed the involvement of a disruptive wiper malware along with other custom-made backdoors, and scripts and configuration files used to install and configure the malicious executables. Researchers from CheckPoint that investigated the attack reported that the attackers used a wiper malware to disrupt the state’s broadcasting networks, damaging both TV and radio networks.

[above via Security Affairs post] Update 1
 

New Banking Trojan Xenomorph Spread Malware via Google Play Store

21st February 2022 | Target: Multiple Banks | Reported Here A new malware called Xenomorph distributed through Google Play Store has infected more than 50,000 Android devices to steal banking information. Still in early development stage, Xenomorph is targeting users of dozens of financial institutions in Spain, Portugal, Italy, and Belgium.

[above via Bleeping Computer post] Update 1
 

Cookware giant Meyer discloses cyberattack

21st February 2022 | Target: Meyer Corporation | Reported Here The largest cookware distributor in the US and the second largest globally, Mayer Corporation has notified the US Attorney General’s offices about a data breach affecting thousands of its employees. Mayer became the victim of a cyberattack on October 25, 2021, according to a notification letter shared with the US Attorney General’s offices for Maine and California.

[above via News Dolakha post]
 

Expeditors Targeted in Cyber-attack

20th February 2022 | Target: Expeditors | Reported Here Seattle-based logistics and freight forwarding company Expeditors International has been targeted in a cyberattack over the weekend that forced the organization to shut down most of its operations worldwide. With annual gross revenue of around $10 billion, Expeditors has 350 locations and over 18,000 employees worldwide, providing critical logistics solutions for its customers. Its services include supply chain, warehousing and distribution, transportation, customs and compliance.

[above via Bleeping Computer post] Update 1
 

World’s largest NFT marketplace OpenSea hacked

20th February 2022 | Target: OpenSea | Reported Here A hacker or hackers are actively stealing and flipping high-valued NFTs from users on OpenSea, the world’s largest NFT exchange, causing chaos and confusion in the broader NFT community. The current mechanism for the hack is currently unknown, but OpenSea placed a red banner at the top of its site Saturday night saying “We are actively investigating rumors of an exploit associated with OpenSea related smart contracts. This appears to be a phishing attack originating outside of OpenSea’s website. Do not click links outside of opensea.io.”

[above via Vice post] Update 1 / Update 2
 

Iranian Hackers Targeting VMware Horizon Log4j Flaws to Deploy Ransomwarek

17th February 2022 | Target: VMware | Reported Here An Iranian-aligned hacking group tracked as TunnelVision was spotted exploiting Log4j on VMware Horizon servers to breach corporate networks in the Middle East and the United States. Security analysts at SentinelLabs who have been tracking the activity chose that name due to the group’s heavy reliance on tunneling tools, which help them hide their activities from detecting solutions.

[above via Bleeping Computer post] Update 1
 

Axis Communications working to recover from cyberattack

16th February 2022 | Target: Axis Communications | Reported Here Video surveillance solutions manufacturer Axis Communications this week has been working to recover from a cyberattack that was first discovered on their network on Sunday. Although company officials don’t believe that any sensitive customer or partner data was compromised, the attack, which was first reported by IPVM, has still wreaked havoc on many of the company’s services.

[above via Security Infowatch post] Update 1
 

Ukraine: Military defense agencies and banks hit by cyberattack

15th February 2022 | Target: Ukraine’s Military and Banks | Reported Here The Ministry of Defense and the Armed Forces of Ukraine and two of the country’s state-owned banks, Privatbank (Ukraine’s largest bank) and Oschadbank (the State Savings Bank), are being hammered by Distributed Denial-of-Service (DDoS) attacks. Today, Ukraine’s Cyberpolice also reported that bank customers received text messages claiming that bank ATMs were down, adding that they were “part of an information attack and do not correspond to reality.”

[above via Bleeping Computer post] Update 1 / Update 2
 

Internet Society’s Member Details Exposed in Data Breach

15th February 2022 | Target: Internet Society | Reported Here The personal data of up to 80,000 members of The Internet Society (ISOC) was left exposed to the internet after one of its third-party technology partners failed to correctly secure a Microsoft Azure Blob repository. ISOC is one of the longest established internet non-profits, set up in 1992 with a mission to ensure the open development of the internet worldwide, with a particular focus on reducing the digital divide and making the web more accessible.

[above via Computer Weekly post] Update 1 / Update 2