Cybersecurity Tools

Tampa General Hospital Reports Cybercriminals Stole 1.2M Patient Data

Tampa General Hospital announced on Wednesday evening that cybercriminals breached its network and stole files containing the personal health information (PHI) of about 1.2 million patients. Located on Davis Island in Tampa, Florida, Tampa General Hospital (TGH) is a not-for-profit, tertiary, research and academic medical institution serving western Florida and the broader Tampa Bay area […]

The post Tampa General Hospital Reports Cybercriminals Stole 1.2M Patient Data appeared first on Heimdal Security Blog.

Cybersecurity Tools

BlackCat and Clop Claim Cyberattack on Beauty Giant Estée Lauder

Cosmetic conglomerate Estée Lauder has been listed on the data leak sites of two of the most active threat groups today, ALPHV/BlackCat and Clop. The BlackCat gang mocked the security of Estée Lauder in a message to the company, saying that they were still present on the network. The MOVEit Campaign Strikes Again The Estée […]

The post BlackCat and Clop Claim Cyberattack on Beauty Giant Estée Lauder appeared first on Heimdal Security Blog.

News & Updates

Turla’s New DeliveryCheck Backdoor Breaches Ukrainian Defense Sector

The defense sector in Ukraine and Eastern Europe has been targeted by a novel .NET-based backdoor called DeliveryCheck (aka CAPIBAR or GAMEDAY) that’s capable of delivering next-stage payloads.
The Microsoft threat intelligence team, in collaboration with the Computer Emergency Response Team of Ukraine (CERT-UA), attributed the attacks to a Russian nation-state actor known as Turla, which is
Cybersecurity Tools

Adobe Releases Patches to Fix Three New ColdFusion Vulnerabilities

Adobe released an emergency ColdFusion security update meant to fix critical vulnerabilities, including a new zero-day vulnerability. Adobe fixed three vulnerabilities as part of their out-of-band update: CVE-2023-38204: a critical remote code execution (RCE) vulnerability (9.8 rating); CVE-2023-38205: a critical Improper Access Control flaw (7.8 rating); CVE-2023-38206: a moderate Improper Access Control flaw (5.3 rating). […]

The post Adobe Releases Patches to Fix Three New ColdFusion Vulnerabilities appeared first on Heimdal Security Blog.

News & Updates

P2PInfect, a Rusty P2P worm targets Redis Servers on Linux and Windows systems

Cybersecurity researchers discovered a new peer-to-peer (P2P) worm called P2PInfect that targets Redis servers. Palo Alto Networks Unit 42 researchers have discovered a new peer-to-peer (P2P) worm called P2PInfect that targets Redis servers running on both Linux and Windows systems. The capability to target Redis servers running on both Linux and Windows operating systems makes P2PInfect more scalable and […]

The post P2PInfect, a Rusty P2P worm targets Redis Servers on Linux and Windows systems appeared first on Security Affairs.

Cybersecurity Tools

The Crucial Role of Cyber Essentials in the UK Public Sector

The United Kingdom’s public sector is undergoing a digital transformation, relying increasingly on technology to enhance service delivery, streamline operations, and foster improved engagement with citizens. As government organizations continue to embrace technological advancements, they also face a growing array of cyber threats that pose significant risks to their operations and the security of sensitive […]

The post The Crucial Role of Cyber Essentials in the UK Public Sector appeared first on Heimdal Security Blog.

News & Updates

Adobe out-of-band update addresses an actively exploited ColdFusion zero-day

Adobe released an emergency update to address critical vulnerabilities in ColdFusion, including an actively exploited zero-day. Adobe released an out-of-band update to address critical and moderate vulnerabilities in ColdFusion, including a zero-day flaw that is actively exploited in attacks.  The vulnerabilities could lead to arbitrary code execution and security feature bypass. The impacted ColdFusion versions are 2023, 2021 […]

The post Adobe out-of-band update addresses an actively exploited ColdFusion zero-day appeared first on Security Affairs.

Scroll to Top