Ellen Whinnet reports: A ransomware gang is claiming to have breached a Sydney cancer hospital, and is threatening to release data unless payment is made. NSW Health confirmed it was aware of the threats made against the Crown Princess Mary Cancer Centre at Westmead Hospital, and was investigating. The global ransomware gang Medusa posted on…
Category: Breach Incidents
Persistent attackers: Eurasia Group believes it has been dealing with the same attackers since 2020
Some attackers are harder to kick out and keep out. From a notification letter to a state attorney general’s office by external counsel for Eurasia Group, a consulting firm in New York: In December 2020, Eurasia Group discovered suspicious activity within its email system. Eurasia Group immediately launched an investigation, with the assistance of third-party…
Brightline continues notifying clients of GoAnywhere incident; count continues to rise (more than 1 million)
Updated May 3: When DataBreaches checked Clop’s leak site today, the listing for Brightline was gone. Whether this means that they paid Clop to get it removed, or if its removal is just temporary remains to be seen. But out of all the health-related Fortra clients this site reported on in April, the Brightline listing…
Wichita State University restoring systems after cyber attack
Over the weekend, Wichita State University took proactive measures and disconnected several University systems to isolate an unauthorized attempt by a third party to access the University’s systems, according to a statement of the school’s website. Most of the University system access has been restored and there has been no indication that any of the…
Montana State University update on “cyberattack” doesn’t disclose it’s ransomware
Montana State University was hit with a cyberattack on April 20. They are still working to recover from it. Here is their latest update: Campus network update: NetID password changes, service status page Sent at 8:18 a.m. Friday, April 28, via email to students, faculty and staff. As work continues to return Montana State University’s…
Bits ‘n Pieces (Trozos y Piezas)
CL: Saville Row attacked by BlackCat Saville Row, a Chilean clothing store, was added to BlackCat’s leak site on April 21. Sample files provided by the threat actors included internal Saville Row documents such as invoices and purchase orders. DataBreaches found no notice of any incident on the store’s website or social networks. They did…