The Information Highway

The Information Highway

all things technology risk and cybersecurity

Fortinet warns of critical command injection bug in FortiSIEM

Fortinet

Fortinet is alerting customers of a critical OS command injection vulnerability in FortiSIEM report server that could be exploited by remote, unauthenticated attackers to execute commands through specially crafted API requests. 

Continue reading
  461 Hits

Toronto Public Library confirms data stolen in ransomware attack

toronto_public_library

The Toronto Public Library (TPL) confirmed that the personal information of employees, customers, volunteers, and donors was stolen from a compromised file server during an October ransomware attack. 

Continue reading
  450 Hits

WP Fastest Cache plugin bug exposes 600K WordPress sites to attacks

WordPress-headpic

The WordPress plugin WP Fastest Cache is vulnerable to an SQL injection vulnerability that could allow unauthenticated attackers to read the contents of the site's database. 

Continue reading
  436 Hits

LockBit ransomware exploits Citrix Bleed in attacks, 10K servers exposed

citrix-bleed

The Lockbit ransomware attacks use publicly available exploits for the Citrix Bleed vulnerability (CVE-2023-4966) to breach the systems of large organizations, steal data, and encrypt files. 

Continue reading
  412 Hits

VMware discloses critical VCD Appliance auth bypass with no patch

VMware_red

VMware disclosed a critical and unpatched authentication bypass vulnerability affecting Cloud Director appliance deployments. 

Continue reading
  433 Hits

Microsoft November 2023 Patch Tuesday fixes 5 zero-days, 58 flaws

patch-tuesday-large

Today is Microsoft's November 2023 Patch Tuesday, which includes security updates for a total of 58 flaws and five zero-day vulnerabilities. 

Continue reading
  551 Hits

McLaren Health Care says data breach impacted 2.2 million people

0_back

McLaren Health Care (McLaren) is notifying nearly 2.2 million people of a data breach that occurred between late July and August this year, exposing sensitive personal information. 

Continue reading
  482 Hits

Cloudflare website downed by DDoS attack claimed by Anonymous Sudan

cloudflare

Cloudflare confirmed that the outage resulted from a DDoS attack that only affected the www.cloudflare.com website without impacting other products or services. The company didn't attribute the attack to a specific threat actor. 

Continue reading
  475 Hits

World’s largest commercial bank ICBC confirms ransomware attack

ICBC

"On November 8, 2023, U.S. Eastern Time (November 9, 2023, Beijing Time), ICBC Financial Services (FS) experienced a ransomware attack that resulted in disruption to certain FS systems. Immediately upon discovering the incident, ICBC FS disconnected and isolated impacted systems to contain the incident," said the bank. 

Continue reading
  401 Hits

Google ads push malicious CPU-Z app from fake Windows news site

CPU-Z

A threat actor has been abusing Google Ads to distribute a trojanized version of the CPU-Z tool to deliver the Redline info-stealing malware. 

Continue reading
  393 Hits

OpenAI confirms DDoS attacks behind ongoing ChatGPT outages

OpenAI

OpenAI has been addressing "periodic outages" due to DDoS attacks targeting its API and ChatGPT services within the last 24 hours. 

Continue reading
  457 Hits

ChatGPT down after major outage impacting OpenAI systems

ChatGPT

"Between 5:42AM - 7:16AM PT we saw errors impacting all services. We identified the problem and implemented a fix. We are now seeing normal responses from our services," the company said. 

Continue reading
  422 Hits

Microsoft Authenticator now blocks suspicious MFA alerts by default

microsoft

Microsoft has introduced a new protective feature in the Authenticator app to block notifications that appear suspicious based on specific checks performed during the account login stage. 

Continue reading
  446 Hits

Veeam warns of critical bugs in Veeam ONE monitoring platform

Veeam_headpic

Veeam released hotfixes today to address four vulnerabilities in the company's Veeam ONE IT infrastructure monitoring and analytics platform, two of them critical.

Continue reading
  418 Hits

Microsoft: Octo Tempest is one of the most dangerous financial hacking groups

oktospider

Microsoft has published a detailed profile of a native English-speaking threat actor with advanced social engineering capabilities it tracks as Octo Tempest, that targets companies in data extortion and ransomware attacks. 

Continue reading
  560 Hits

Android adware apps on Google Play amass two million installs

Android

Several malicious Google Play Android apps installed over 2 million times push intrusive ads to users while concealing their presence on the infected devices. 

Continue reading
  431 Hits

StripedFly malware framework infects 1 million Windows, Linux hosts

striped-fly

A sophisticated cross-platform malware platform named StripedFly flew under the radar of cybersecurity researchers for five years, infecting over a million Windows and Linux systems during that time. 

Continue reading
  564 Hits

Cloudflare sees surge in hyper-volumetric HTTP DDoS attacks

ddos-bright

Cloudflare says the number of hyper-volumetric HTTP DDoS (distributed denial of service) attacks recorded in the third quarter of 2023 surpasses every previous year, indicating that the threat landscape has entered a new chapter. 

Continue reading
  481 Hits

New iLeakage attack steals emails, passwords from Apple Safari

apple-cpu

Academic researchers created a new speculative side-channel attack they named iLeakage that works on all recent Apple devices and can extract sensitive information from the Safari web browser. 

Continue reading
  475 Hits

American Family Insurance confirms cyberattack is behind IT outages

amfam-header-v3

Insurance giant American Family Insurance has confirmed it suffered a cyberattack and shut down portions of its IT systems after customers reported website outages all week. 

Continue reading
  471 Hits