Security Newsletter

Issue #223 · 10 November 2023

Okta session breach root cause. Microsoft improvements on MFA policies and usage. Discord switching CDN to temporary links.

Supported by 1Password and GlitchSecure.

News

Hi folks,

Here's another fresh issue with news that I found interesting :-) I hope you enjoy the read.

Have a good one!

Breaches and leaks

  • Sumo Logic discloses security breach, advises API key resets: link.
  • Okta breach: 134 customers exposed in October support system hack: link.
  • Cloudflare website downed by DDoS attack claimed by Anonymous Sudan: link.
  • American Airlines pilot union hit by ransomware attack: link.
  • Marina Bay Sands discloses data breach impacting 665,000 customers: link.
  • Fake Ledger Live app in Microsoft Store steals $768,000 in crypto: link.
  • TransForm says ransomware data breach affects 267,000 patients: link.
  • Russian state-owned Sberbank hit by 1 million RPS DDoS attack: link.
  • OpenAI confirms DDoS attacks behind ongoing ChatGPT outages: link.
  • Industrial and Commercial Bank of China hit by ransomware attack: link.
  • Mortgage giant Mr. Cooper hit by cyberattack impacting IT systems: link.
  • BlackCat ransomware claims breach of healthcare giant Henry Schein: link.
  • Ace Hardware says 1,202 devices were hit during cyberattack: link.
  • Nude “before and after” photos stolen from plastic surgeon, posted online, and sent to victims' family and friends: link.
  • NY AG issues $450k penalty to US Radiology after unpatched bug led to ransomware attack: link.
  • Japan Aviation Electronics says servers accessed during cyberattack: link.

Issues and fixes

  • New Microsoft Exchange zero-days allow RCE, data theft attacks: link.
  • Veeam warns of critical bugs in Veeam ONE monitoring platform: link.
  • QNAP warns about critical vulnerabilities in NAS systems: link.
  • SysAid vulnerability is actively being exploited by ransomware affiliate: link.