{"id":9295,"date":"2024-09-30T09:25:09","date_gmt":"2024-09-30T06:25:09","guid":{"rendered":"https:\/\/cyberone.bg\/?p=9295"},"modified":"2024-10-07T15:23:59","modified_gmt":"2024-10-07T12:23:59","slug":"weekly-cybersecurity-report-week-39-2024","status":"publish","type":"post","link":"https:\/\/cyberone.bg\/en\/weekly-cybersecurity-report-week-39-2024","title":{"rendered":"Weekly Cybersecurity Report | Week 39, 2024"},"content":{"rendered":"<p>As your dedicated cybersecurity services provider,<strong>\u00a0<a href=\"https:\/\/cyberone.bg\/\">Cyberone<\/a><\/strong>\u00a0equips you with timely and in-depth information about current cyber attacks. Discover a weekly cybersecurity report of the latest exploits and breaches shaping the ever-evolving cybersecurity landscape.<\/p>\n<h2>Weekly Cybersecurity Report | Week 39, 2024<\/h2>\n<p><b><span data-contrast=\"auto\">Information security updates and events from the past week<\/span><\/b><span data-ccp-props=\"{&quot;335551550&quot;:1,&quot;335551620&quot;:1,&quot;335559685&quot;:0,&quot;335559739&quot;:60}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">1 &#8211; The British police announced today (Thursday) that they are investigating a cybersecurity attack that hit 19 train stations throughout the kingdom, including some of the largest stations there.<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">Among others, the list includes London Bridge station, Houston station in the capital city, Manchester Piccadilly and Edinburgh Waverley. As part of the cyber attack, passengers who tried to connect to the Wi-Fi network received messages that, according to the police, were Islamophobic.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><a href=\"https:\/\/www.bbc.com\/news\/articles\/cr75znv47xpo\"><span data-contrast=\"none\">https:\/\/www.bbc.com\/news\/articles\/cr75znv47xpo<\/span><\/a><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">According to the police, the cybersecurity attack occurred yesterday afternoon, and access to the Wi-Fi services was cut off after one of the passengers complained about the messages they received. The messages opened with the title &#8220;Europe, we love you&#8221;, and then, according to reports, a list of terrorist attacks was attached to them. The content of the messages was censored by the British media.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">&#8220;The British Traffic Police is investigating the incident,&#8221; said the Network Rail company that is responsible for the operation of the tracks and train stations in Great Britain. She emphasized that Wi-Fi services are provided by another company &#8211; Telent, where they published a separate announcement in which they stated that the hacking was made possible through a &#8220;legitimate administrative account&#8221;, and that the issue is being examined as part of the opened criminal investigation. Internet services on the trains have been shut down for the time being due to the cyber-attack, and it is expected that they will be restored by the beginning of next week. (Ynet)<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">2 &#8211; In the city of Arkansas in Kansas, it is reported that the operation of the municipal systems that handle the drinking water has been converted to manual operation due to a cybersecurity attack.<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">The municipality does not specify the type of attack and claims that the water quality was not impaired due to the attack.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">3 &#8211; Franklin County, Kansas, experiences a ransomware attack that compromises sensitive data of nearly 30,000 residents<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">The breach occurred on May 19, 2024, and was not discovered until August 29, 2024.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">According to the report, the attack started through a weakness in an external system.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Franklin County has taken steps to notify affected individuals and is also providing identity theft protection services to those affected by the breach.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">4 &#8211; Money transfer giant MoneyGram has confirmed it suffered a cybersecurity attack after dealing with system outages and customer complaints about a lack of service.<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">Media release &#8220;MoneyGram recently identified a cybersecurity issue affecting some of our systems.&#8221;<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">It is the second largest money transfer company in the world, behind Western Union, processing over 120 million transactions annually from tens of millions of users.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">MoneyGram is an American payment and money transfer company with 350,000 branches in 200 countries through the app and website.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">5 &#8211; MC2 data leak exposes more than 100 million data of US citizens<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">Researchers have uncovered a massive data breach at MC2 Data, a background check company.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">A background check is part of an industry that collects and analyzes data from various public sources to create comprehensive profiles that are used by employers, landlords and other entities for decision making.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">These profiles include criminal records, employment history and personal contact information.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The company left a database containing 2.2TB of data unsecured and accessible to anyone on the Internet.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">6 &#8211; Uber Eats data breach exposes more than 280,000 transactions<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">Food delivery service Uber suffered a data breach this month that exposed more than 283,000 records.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">\u00a0The attacker, under the alias &#8220;888&#8221;, claims the dataset includes information such as order details and financial transactions.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The disclosed data reportedly contains fields such as &#8220;store name&#8221;, &#8220;order ID&#8221;, &#8220;order supplier&#8221;, &#8220;checkout reference&#8221;, &#8220;type&#8221; and time stamps related to order placement and fulfillment. Financial data, including &#8220;subtotals&#8221;, &#8220;shipping fee&#8221;, &#8220;tax&#8221;, &#8220;tip&#8221; and &#8220;total payable&#8221;.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">7 &#8211; Hertz, a car rental company, accidentally disclosed over 60,000 customer insurance claim reports.<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">This breach raised serious concerns about the company&#8217;s data security practices and left customers questioning the safety of their personal information.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The violation was discovered when a customer received an unexpected email from Hertz regarding the registration of the vehicle he rented and a damage report on the vehicle<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Hertz released a statement acknowledging the breach and assuring customers that it is taking steps to improve its security measures and has also contacted affected customers to inform them of the incident and provide guidelines for protecting their personal information.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">8 &#8211; Data of 3,191 congressional employees leaked on the dark web<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">The personal information of some 3,191 congressional staffers was leaked to the dark web, according to a new study by Internet security firm Proton and Constella Intelligence. The leaked data includes passwords, IP addresses and social media information.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The Washington Times first reported that investigators found more than 1,800 passwords used by congressional staffers available on the dark web.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Nearly 1 in 5 congressional staffers have disclosed personal information on the dark web. Nearly 300 staff members&#8217; data was compromised across more than 10 different incidents.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The congressional staffers&#8217; data came from a variety of sources, including social media, dating apps and adult websites.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The experts reported on the case of a single employee to whom 31 passwords were exposed. The human factor is the root cause of the leaks, staff members used their official email addresses to sign up for third-party services that were later compromised.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">9 &#8211; Cybersecurity attack on the water plant in Kansas<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">Arkansas City, a small city in Cowley County, Kansas, was forced to put its water treatment facility into manual operations over the weekend to contain a cyberattack that was detected Sunday morning.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">City officials notified the relevant authorities of the incident, and Homeland Security agents and the FBI began an investigation, as reported in local media.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">City Manager Randy Fraser confirmed that the water supply is secure and that the cyber-attack did not affect water treatment operations.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">&#8220;Despite the incident, the water supply remains completely safe, and there has been no disruption to service,&#8221; Fraser said in a statement released over the weekend.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">10 &#8211; AutoCanada says a ransomware attack &#8220;may&#8221; affect employee data<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">AutoCanada is warning that employee data may have been exposed in an August cyberattack claimed by the Hunters International ransomware gang.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Although the company says it hasn&#8217;t detected any scam campaigns targeting affected people, it is s1ending messages to alert people to potential risks.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">In mid-August, the car dealership revealed that it had to disable specific internal IT systems to contain a cyber-attack, which led to operational disruptions.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p>&nbsp;<\/p>\n<p><strong><em>The attacks highlighted in this report aren&#8217;t just incidents, they&#8217;re blueprints of the adversary&#8217;s arsenal. To protect your business you need the right partner. Cyberone is here to help! Check out our <a href=\"https:\/\/cyberone.bg\/en\/services\">services<\/a>.<\/em><\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>As your dedicated cybersecurity services provider,\u00a0Cyberone\u00a0equips you with timely and in-depth information about current cyber attacks. Discover a weekly cybersecurity report of the latest exploits and breaches shaping the ever-evolving cybersecurity landscape. Weekly Cybersecurity Report | Week 39, 2024 Information security updates and events from the past week\u00a0 1 &#8211; The British police announced today [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":8582,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[58],"tags":[],"class_list":["post-9295","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-weekly-cyber-updates"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/posts\/9295","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/comments?post=9295"}],"version-history":[{"count":1,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/posts\/9295\/revisions"}],"predecessor-version":[{"id":9296,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/posts\/9295\/revisions\/9296"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/media\/8582"}],"wp:attachment":[{"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/media?parent=9295"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/categories?post=9295"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/tags?post=9295"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}