Cybersecurity Daily News for July 21, 2021

Trending Headlines

XLoader Windows InfoStealer Malware Now Upgraded to Attack macOS Systems

Popular Windows malware, XLoader, has been modified to target MacOS systems, according to a recent report by Checkpoint. XLoader is the successor to Formbook and is known to steal credentials, collect screenshots, log keystrokes and even download files. XLoader is known for it’s Malware-as-a-service (MaaS) model that allows for less sophisticated threat actors to use it successfully.

US legal eagles representing Apple, IBM, and more take 5 months to inform clients of ransomware data breach

Law firm, Campbell Conroy & O’Neil, informs it’s clients of data breach 5 months after it was exposed in the wide-ranging attack on IT firm, Kaseya. Information includes names, phone numbers, driver’s licenses, and even SSNs. The organisation has not determined what data, or who’s data was accessed.

Saudi Aramco ‘Data Breach’ not a ransomware attack: ZeroX group used 0Day exploit on third-party servers to grab 1TB data now available on Dark Web

Saudi Aramco claims that recent data breach was not due to a ransomware attack, but instead scraped from a third-party contractor. APT group ZeroX has taken responsibility and claimed that they gained access the company’s networks and servers.

Over 68K Advocate Aurora Patients Impacted by Elekta Health Data Breach

Advocate Aurora Health, a healthcare organisation that provides access to physicians and medical professionals, has notified over 68,000 patients in Illinois of possible data exposure arising from the Elektra health data breach. Over 170 healthcare organisations were impacted by the April, 2021 attacks targeting Elektra.

Update now: TIBCO Data Virtualization software vulnerable to RCE via third-party flaws, claims researcher

Flaws in olders versions of BlazeDS and Java BeanShell libraries have allowed security researcher, Pedro Ribeiro, to find a remote code execution (RCE) on versions 8.3 and 8.4 of the TIBCO Data Visualization software. Pedro provides an excellent write-up over on Github.

Cybersecurity Daily News is a curated list of relevant Cybersecurity and Information Security news from around the globe.

#cybersecuritynews #infosecnews #ransomware #databreach #cyberattack

Brought to you by

Cybersecurity Daily News is a curated list of daily data breach, ransomware, and other cybersecurity related news articles produced by Rogue Security Intelligence Services from sources all over the world. Sign-up below to receive daily news directly to your inbox.

[ms-form id=1]

Leave a Reply