Phishing Watchdog – Stay Safe with Instant Alerts

Jack Daniel’s-Maker Suffers REvil Ransomware Breach

17th August 2020 | Target: Jack Daniel’s | Reported Here
 

US wine and spirits giant Brown-Forman has become the most current big-name model to put up with a really serious ransomware-connected data breach, cyber-criminals have claimed.

The Jack Daniel’s-maker has released few particulars about the incident but claimed it productively prevented attackers from encrypting its documents.


 

[above via The Cyber Security post] Update 1 

 

Looting Causes Data Breach at Walgreens

14th August 2020 | Target: Walgreens | Reported Here
 

The personal health information (PHI) of over 72,000 Walgreens customers has been exposed after looters broke into nearly 200 stores and stole prescriptions.

America’s second-largest pharmaceutical chain contacted impacted customers in July to disclose the data breach. Walgreens spokesperson Jim Cohn told the Philadelphia Inquirer that 180 Walgreens stores had been looted but declined to state which specific ones.


 

[above via Nationalcybersecuritynews post]

 

Hacker Steals $12M from DeFi Platform

11th August 2020 | Target: DeFi Platform | Reported Here
 

For most of the 13-year life of cryptocurrencies, exchanges were the epicentre for cyberheists. Now, a bigger hacking risk in the growing sector has exploded into view: peer-to-peer crypto platforms.

One such site, Poly Network, was at the centre of a $610 million (roughly Rs. 4,530 crores) cryptocurrency theft last week, one of the biggest ever. Within days of the heist, the decentralised finance (DeFi) platform said the “white hat” hacker or hackers had returned nearly all the loot.

DeFi Platform


 

[above via Gadgets NDTV post] Update 1 

 

Capital One Fined $80m for 2019 Breach

6th August 2020 | Target: Capital One | Reported Here
 

Capital One has been fined $80m following its breach last year.

According to a statement from the Office of the Comptroller of the Currency (OCC), these actions were taken against Capital One “based on the bank’s failure to establish effective risk assessment processes prior to migrating significant information technology operations to the public cloud environment and the bank’s failure to correct the deficiencies in a timely manner”.


 

[above via Infosecurity post] Update 1 / Update 2

 

Online Exam Tool Suffers Data Breach

6th August 2020 | Target: ProctorU | Reported Here
 

A malware author has pleaded guilty to conspiracy for his role in a transnational cybercrime organization responsible for stealing over $568m.

Valerian Chiochiu, a.k.a. “Onassis,” “Flagler,” “Socrate,” and “Eclessiastes,” admitted being involved with one of the largest cyber-fraud enterprises ever created that victimized Americans in all 50 states and millions globally.


 

[above via Hackread post] Update 1

 

Malware Author Admits Role in $568m Cyber-Fraud

3rd August 2020 | Target: Multiple Businesses and Individuals | Reported Here
 

A malware author has pleaded guilty to conspiracy for his role in a transnational cybercrime organization responsible for stealing over $568m.

Valerian Chiochiu, a.k.a. “Onassis,” “Flagler,” “Socrate,” and “Eclessiastes,” admitted being involved with one of the largest cyber-fraud enterprises ever created that victimized Americans in all 50 states and millions globally.


 

[above via Cyberreport post]

 

Havenly Breach Hits In excess of 1.3 Million Accounts

2nd August 2020 | Target: Havenly | Reported Here
 

Havenly has become the latest online firm to suffer a serious breach of customer data after hackers published the information for free on the dark web.

Notorious dark web trader ShinyHunters was spotted last week posting the data of nearly 1.4 million accounts online.

They’re said to be part of a much bigger 386 million record trove including data from customers of Dave, Promo and HomeChef, which has been previously disclosed.


 

[above via Infosecurity post] Update 1

 

Business giant Dussmann Group’s data leaked after ransomware attack

30th July 2020 | Target: Dussmann Group | Reported Here
 

Dussmann Group has confirmed that one of their subsidiaries, Dresdner Kühlanlagenbau GmbH (DKA), recently suffered a ransomware attack and data was stolen.

Dussmann Group is the largest multi-service provider in Germany having subsidiaries focusing on facility management, corporate childcare, nursing and care for the elderly, and business systems solutions, including HVAC, electrical work, and elevators.


 

[above via Cybersafe post] Update 1

 

Drizly Breach Hits 2.5 Million Customer Accounts

29th July 2020 | Target: Drizly | Reported Here
 

Alcohol delivery startup Drizly has suffered a major breach of customer data, with nearly 2.5 million accounts compromised in an incident discovered earlier this month.

The firm — which describes itself as the world’s largest marketplace for beers, wines and spirits — partners with retail stores in over 100 North American cities.


 

[above via Infosecurity post] Update 1 / Update 2

 

Promo Data Breach Hits 14.6 Million User Accounts

29th July 2020 | Target: Promo | Reported Here
 

Promo.com, a video creation platform for businesses and agencies, has confirmed a data breach after bad actors posted a database containing 22 million user records on a hacking forum.

The award-winning video maker, which is partnered with social media venues such as Facebook and Instagram, allows users to create an unlimited number of promotional videos that can be shared online.


 

[above via Securityboulevard post]

 

Twitter Confirms 130 Accounts Hacked

17th July 2020 | Target: Canadians | Reported Here
 

Twitter said late on Thursday that hackers targeted about 130 accounts during the cyberattack this week, an incident in which profiles of many prominent personalities and organizations were compromised.

Hackers had accessed Twitter’s internal systems to hijack some of the platform’s top voices, including U.S. presidential candidate Joe Biden, reality TV star Kim Kardashian, former U.S. President Barack Obama, and billionaire Elon Musk, and used them to solicit digital currency.


 

[above via Venturebeat post] Update 1