Weekly Cybersecurity Report | Week 51

As your dedicated cybersecurity services provider, Cyberone equips you with timely and in-depth information about current cyber attacks. Discover a comprehensive overview of the latest exploits and breaches shaping the ever-evolving cybersecurity landscape.

Weekly Cybersecurity Report | Week 51, 2023

1 – Nissan reports a cyber incident following which customer information was apparently leaked. 

Nissan reports that it is a division that sells vehicles in Australia and New Zealand and that the company is deploying IR teams to handle the incident. 

https://therecord.media/nissan-australia-new-zealand-cybsecurity-incident 

2 – The US Cyber and Infrastructure Protection Agency (CISA) reports that attackers managed to penetrate the networks of federal agencies by exploiting a weakness in the Adobe ColdFusion software. 

The agency publishes a neat article on the subject with the IOC 

3 – A ransom attack on an IT service provider affects about 60 credit unions in the US 

The National Credit Union Administration in the US reports that the company that was attacked is Ongoing Operations, which provides computer services to many credit unions. 

4 – Capital Health hospital chain in the USA reports a cyber attack as a result of which it is forced to disable computer services. 

However, the chain’s management stated that all patient treatments continue as normal. 

5 – The H&O company has started sending an official message to customers in which it reports on leaked information. 

Please note, there is no fear of leaking information of credit card numbers. 

6 – The Austal USA company, which manufactures ships and serves as a supplier for the US government, suffers from a ransomware attack. 

The company’s spokesperson says that the company acted quickly and that there is no impact on the current activity, also, there are no indications of leaking sensitive or classified information. 

The Hunters group is the one responsible for the attack, according to it it does possess sensitive information which it will publish if the ransom is not paid. 

8 – The Henry School District, near Atlanta, reports that it is suffering from a ransomware attack that began about a month ago. 

The spokesman for the district says that attackers managed to access the files on the corporate network and that following the attack there were disruptions in the various schools operated by the district (44,000 students). 

The Blacksuit group is responsible for the attack. 

9 – The Aliquippa Municipal Water Authority was hacked by an Iran-backed cyber group 

The Aliquippa Municipal Water Authority said Saturday that one of its booster stations was hacked by an Iran-backed cyber group. 

Matthew Motes, chairman of the board of the Aliquippa Municipal Water Authority, confirmed that the cyber group, known as CyberAv3ngers, had taken over one of the stations. An alarm was raised as soon as the breach occurred. 

10 – General Electric is investigating claims of a cyber attack and data theft 

General Electric is investigating claims that a threat actor breached the company’s development environment and leaked stolen data. 

General Electric (GE) is an American multinational company with divisions in the electrical, renewable energy and aerospace industries. 

Earlier this month, a threat actor named IntelBroker tried to sell access to General Electric’s “development and software pipelines” for $500 on a hacking forum. 

 

The attacks highlighted in this report aren’t just incidents; they’re blueprints of the adversary’s arsenal. To protect your business you need the right protection. Cyberone is here to help! Check out our services.