{"id":9293,"date":"2024-09-24T09:47:43","date_gmt":"2024-09-24T06:47:43","guid":{"rendered":"https:\/\/cyberone.bg\/?p=9293"},"modified":"2024-09-24T09:48:32","modified_gmt":"2024-09-24T06:48:32","slug":"weekly-cybersecurity-report-week-38-2024","status":"publish","type":"post","link":"https:\/\/cyberone.bg\/en\/weekly-cybersecurity-report-week-38-2024","title":{"rendered":"Weekly Cybersecurity Report | Week 38, 2024"},"content":{"rendered":"<p>As your dedicated cybersecurity services provider,<strong>\u00a0<a href=\"https:\/\/cyberone.bg\/\">Cyberone<\/a><\/strong>\u00a0equips you with timely and in-depth information about current cyber attacks. Discover a weekly cybersecurity report of the latest exploits and breaches shaping the ever-evolving cybersecurity landscape.<\/p>\n<h2>Weekly Cybersecurity Report | Week 38, 2024<\/h2>\n<p><b><span data-contrast=\"auto\">Information security updates and events from the past week<\/span><\/b><span data-ccp-props=\"{&quot;335551550&quot;:1,&quot;335551620&quot;:1,&quot;335559685&quot;:0,&quot;335559739&quot;:60}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">1 &#8211; Music from backups &#8211; The German radio station Geretsried suffers from a ransomware attack during which the attackers viewed all the music files on the station.<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">Following the attack, they claimed on the radio that they are forced to play music from tapes\/discs that were kept as backups and that the current situation will continue in the coming days.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">According to them, this is a Russian attack group<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">2 &#8211; A Cybersecurity DDoS attack briefly disrupted the activity of the stock exchange and a large bank in Taiwan.<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">A group of Russian hackers briefly disrupted the operations of important financial platforms in Taiwan, including the stock exchange and the website of Mega Financial Holding Bank, an attack that exposed Taiwan&#8217;s vulnerability to foreign cyberattacks.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Two organizations referred to in Telegram as &#8220;NoName057&#8221; and &#8220;RipperSec&#8221; attacked the sites in a distributed denial of service (DDoS) attack. The attack caused problems connecting to the platforms yesterday (Thursday) afternoon, according to a statement published by the Ministry of Digital Affairs in Taiwan. During the attack, the operator of the stock exchange noticed requests from internet protocol addresses abroad in a quantity several times greater than usual, according to what the stock exchange provided to Bloomberg. Today, the sites were operating as usual.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">3 &#8211; RansomHub ransomware group released 487 gigabytes of data it allegedly stole from motorcycle manufacturer Kawasaki Motors Europe (KME).<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">The company says it has been able to restore over 90% of server functionality and resume normal business &#8220;for merchants, business administration and third-party providers such as logistics companies.&#8221;<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">While the motorcycle maker did not say what type of cyber-attack it fell victim to, the RansomHub ransomware gang has already added Kawasaki to the leak site.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The group claimed to have extracted 487 gigabytes of data from KME and threatened to release the allegedly stolen information publicly if the ransom was not paid.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The RansomHub ransomware gang has claimed over 210 victims since the beginning of the year.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><a href=\"https:\/\/therecord.media\/kawasaki-europe-cyberattack-operations-restored\"><span data-contrast=\"none\">https:\/\/therecord.media\/kawasaki-europe-cyberattack-operations-restored<\/span><\/a><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">4 &#8211; The Hunters Ransomware group announces that it hacked the London branch of ICBC, the Industrial and Commercial Bank of China and stole 6.6 terabytes of data.<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">It is about a little more than 5.2 million files, and a very big danger for the bank&#8217;s customers<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The group threatens to publish data if their demands are not met by September 13, 2024<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">5 &#8211; The Port of Seattle was hit by Rhysida ransomware in the August cybersecurity attack<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">The United States government agency that oversees the Seattle Seaport and Airport confirmed Friday that the Rhysida ransomware operation was behind a cyber-attack that affected the Port of Seattle over the past three weeks.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The agency disclosed on August 24 that the attack forced it to isolate some of its critical systems to contain the impact. The resulting IT outage disrupted reservation check-in systems and delayed flights at Seattle-Tacoma International Airport.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Today, three weeks after the initial disclosure, the port officially confirmed that the August hack was a ransomware attack coordinated by Rhysida.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p>&nbsp;<\/p>\n<p><strong><em>The attacks highlighted in this report aren&#8217;t just incidents, they&#8217;re blueprints of the adversary&#8217;s arsenal. To protect your business you need the right partner. Cyberone is here to help! Check out our <a href=\"https:\/\/cyberone.bg\/en\/services\">services<\/a>.<\/em><\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>As your dedicated cybersecurity services provider,\u00a0Cyberone\u00a0equips you with timely and in-depth information about current cyber attacks. Discover a weekly cybersecurity report of the latest exploits and breaches shaping the ever-evolving cybersecurity landscape. Weekly Cybersecurity Report | Week 38, 2024 Information security updates and events from the past week\u00a0 1 &#8211; Music from backups &#8211; The [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":8576,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[58],"tags":[],"class_list":["post-9293","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-weekly-cyber-updates"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/posts\/9293","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/comments?post=9293"}],"version-history":[{"count":1,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/posts\/9293\/revisions"}],"predecessor-version":[{"id":9294,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/posts\/9293\/revisions\/9294"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/media\/8576"}],"wp:attachment":[{"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/media?parent=9293"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/categories?post=9293"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/tags?post=9293"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}