{"id":9458,"date":"2024-11-11T10:10:09","date_gmt":"2024-11-11T07:10:09","guid":{"rendered":"https:\/\/cyberone.bg\/?p=9458"},"modified":"2024-12-09T11:21:40","modified_gmt":"2024-12-09T08:21:40","slug":"weekly-cybersecurity-report-week-45-2024","status":"publish","type":"post","link":"https:\/\/cyberone.bg\/en\/weekly-cybersecurity-report-week-45-2024","title":{"rendered":"Weekly Cybersecurity Report | Week 45, 2024"},"content":{"rendered":"<p>As your dedicated cybersecurity services provider,<strong>\u00a0<a href=\"https:\/\/cyberone.bg\/\">Cyberone<\/a><\/strong>\u00a0equips you with timely and in-depth information about current cyber attacks. Discover a weekly cybersecurity report of the latest exploits and breaches shaping the ever-evolving cybersecurity landscape.<\/p>\n<h2>Weekly Cybersecurity Report | Week 45, 2024<\/h2>\n<p><b><span data-contrast=\"auto\">Information security updates and events from the past week<\/span><\/b><span data-ccp-props=\"{&quot;335551550&quot;:1,&quot;335551620&quot;:1,&quot;335559685&quot;:0,&quot;335559739&quot;:60}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">1 &#8211; A cybersecurity-attack led to the shutdown of the emergency, monitoring and navigation systems in vehicles intended for transporting prisoners.<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">The attack was reported by the British company Microlise, which provides various services in the field of logistics and vehicles.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Services such as monitoring, navigation, and other systems.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">One of Microlise&#8217;s clients is the Serco company, which provides the Ministry of Justice in the country with transport services for prisoners in unique protected vehicles.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Following the attack, Serco employees were notified that some of the systems installed in the vehicles would not work, including the vehicle&#8217;s navigation and monitoring systems, the emergency alarm system, and more<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The company states that as far as it knows, prisoners did not abuse the situation.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">2 &#8211; Nine months of credit card theft &#8211; SelectBlinds reports that approximately 200,000 customers were harmed after the attacker damaged credit card information on the company&#8217;s sales site.<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">The damage was identified in September of this year, even though it was planted on the site where the company&#8217;s products (curtains, windows, etc.) are sold, already in January.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">During these months, the attacker managed to steal all the users&#8217; details, including credit card details.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Following the attack, messages were sent to users and the passwords were reset for all affected accounts.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">3 &#8211; Courts in the state of Washington suffer disruptions due to a cyber-attack.<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">The disruptions began after an unauthorized factor was identified in the network and various measures were taken to minimize the damage.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">While in some courts the activity continues as usual, in other courts they announced disruptions such as postponement of hearings, etc.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">4 &#8211; Memorial Hospital and Manor Hospital in Georgia reports a systems shutdown due to a ransomware attack.<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">The attack group Embargo took responsibility for the attack because of which the medical personnel do not have access to the patient&#8217;s medical file and other systems.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">5 &#8211; Schneider Electric company confirms an attack on the development platform after the hacker stole data<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">Schneider Electric has confirmed that a developer platform was breached after a threat actor claimed to have stolen 40GB of data from the company&#8217;s JIRA server.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">&#8220;Schneider Electric is investigating a cybersecurity incident involving unauthorized access to one of our internal project executions tracking platforms that is hosted within an isolated environment,&#8221; Schneider Electric said.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">&#8220;Our global incident response team mobilized immediately to respond to the incident. Schneider Electric products and services were not affected.&#8221;<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><a href=\"https:\/\/www.securityweek.com\/schneider-electric-launches-probe-after-hackers-claim-theft-of-user-data\/\"><span data-contrast=\"none\">https:\/\/www.securityweek.com\/schneider-electric-launches-probe-after-hackers-claim-theft-of-user-data\/<\/span><\/a><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">6 &#8211; A cybersecurity-attack on the telematics provider Microlise damaged the company&#8217;s data and also disrupted the tracking services for DHL and Serco (gold customers of the company)<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">Following the attack, Microlise&#8217;s share price fell by 16%<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Serco: reports that tracking and assistance alarms on prisoner transport vehicles have been disabled, forcing crews to rely on alternative safety measures, such as checking in every 30 minutes and using paper maps.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">DHL Company: Shipment tracking has been affected. DHL has since resumed tracking capabilities but has not disclosed details of its delivery schedules.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">&#8220;As a trusted technology provider, Microlise&#8217;s role in asset tracking has made it an attractive target for attackers. Cybercriminals are increasingly realizing that disrupting a single provider can have far-reaching effects across multiple customers,&#8221; said the company director.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">7 &#8211; A Russian attack group announces that it hacked Verdad, an oil and gas corporation in the USA<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">Verdad Resources is an oil and gas company in Colorado, their assets include over 91,000 acres and 270 wells that produce more than 7,000 barrels of oil per day.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The control server of a corporation is under the control of the attackers as well as the corporate network, it has not yet been published how much information was stolen or compromised<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">8 &#8211; Portsmouth UK City Council was hit by a cybersecurity-attack.<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">The United Council was attacked by the group NoName057(16), pro-Russian hackers who also hit the towns of Salford and Middlesbrough.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Portsmouth said council services were not affected, and residents&#8217; data was not at risk.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">&#8220;We can confirm that the Portsmouth City Council website is under cyber-attack, which means you will experience problems when trying to use the website&#8221;<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">&#8220;We are working to resolve the problem as soon as possible and apologize for the inconvenience caused.&#8221;<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h3><b><span data-contrast=\"auto\">9 &#8211; Nokia investigates breach after hackers claim to have stolen source code<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/h3>\n<p><span data-contrast=\"auto\">Nokia is investigating whether a third-party vendor was hacked after a hacker claimed to be selling the company&#8217;s stolen source code.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">&#8220;Nokia is aware of reports that an unauthorized actor has claimed to have gained access to certain third-party contractor data and possibly Nokia data,&#8221; the company said.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">&#8220;Nokia takes the incident seriously and we are investigating. To date, our investigation has found no evidence that any of our systems or data were affected. We continue to monitor the situation closely.&#8221;<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-ccp-props=\"{}\">\u00a0<\/span><strong><em>The attacks highlighted in this report aren&#8217;t just incidents, they&#8217;re blueprints of the adversary&#8217;s arsenal. To protect your business you need the right partner. Cyberone is here to help! Check out our <a href=\"https:\/\/cyberone.bg\/en\/services\">services<\/a>.<\/em><\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>As your dedicated cybersecurity services provider,\u00a0Cyberone\u00a0equips you with timely and in-depth information about current cyber attacks. Discover a weekly cybersecurity report of the latest exploits and breaches shaping the ever-evolving cybersecurity landscape. Weekly Cybersecurity Report | Week 45, 2024 Information security updates and events from the past week\u00a0 1 &#8211; A cybersecurity-attack led to the [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":8609,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[58],"tags":[],"class_list":["post-9458","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-weekly-cyber-updates"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/posts\/9458","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/comments?post=9458"}],"version-history":[{"count":2,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/posts\/9458\/revisions"}],"predecessor-version":[{"id":9546,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/posts\/9458\/revisions\/9546"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/media\/8609"}],"wp:attachment":[{"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/media?parent=9458"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/categories?post=9458"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cyberone.bg\/en\/wp-json\/wp\/v2\/tags?post=9458"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}