Updated: On January 5, DataBreaches.net was hit with a DDoS attack, which was pretty rude considering I was still on my first cup of coffee. It turns out that someone identifying themself as @dyadka0220 was upset that this site had linked to DarkFeed’s post. Whether they are the same @dyadka0220 as seen elsewhere is unknown…
Category: Commentaries and Analyses
Norwegian DPA: Oslo University Hospital ordered to amend agreements
The Norwegian Data Protection Authority’s inspection of Oslo University Hospital (OUH) reveals that the hospital cannot document satisfactory control of patient data when the hospital needs laboratory services from other countries. The Data Protection Authority understands that it is important to be able to use laboratories in other countries when the hospital or other Norwegian laboratories do…
Former Anonymous and Lulzsec hacker discusses his criminal past and gives his top tips for avoiding ransomware
Martin Ricker reports: Jake Davis, the former hacker known as ‘Topiary’ and senior member of hacktivist groups Anonymous and Lulzsec has spoken about the scale of the ransomware challenge facing organisations today, and given his tips for staying secure. Speaking at Computing‘s recent Cyber Security Festival, Davis began by outlining his history as a hacktivist before…
Microsoft finds Netgear router bugs enabling corporate breaches
Sergiu Gatlan reports: Attackers could use critical firmware vulnerabilities discovered by Microsoft in some NETGEAR router models as a stepping stone to move laterally within enterprise networks. The security flaws impact DGN2200v1 series routers running firmware versions before v1.0.0.60 and compatible with all major DSL Internet service providers. They allow unauthenticated attackers to access unpatched routers’ management…
Western Digital to provide recovery services for hacked NAS drives
Western Digital has announced a new trade-in programme to help customers mitigate the effects of a mass malware attack that saw terabytes of data wiped from users’ NAS drives overnight. Those who lost data as a result of the hack will be able to benefit from Western Digital’s data recovery services, as well as a…
Still think you can negotiate with REvil and get your files back? Read this first.
The government and professionals involved in ransomware incident response have often advised victims not to pay the ransom because even if you pay, you may not get your data back, and you may not get your data deleted by criminals who pinky swear that they will delete it. Then, too, they may pinky swear that…