State-backed Russian hackers are actively exploiting a combination of MFA configuration vulnerabilities and the documented "PrintNightmare" exploit to penetrate networks and exfiltrate files and emails.
CEO at Swarmnetics
Wei Chieh spent the last 25 years in the IT and consulting industry with roles in software development, network and security management, technology audit, consulting, business development and architecture research. Over the years, he has engaged with companies in more than 25 cities across Asia Pacific, U.S., Europe and Africa.
Legal action may be forthcoming for organizations that do not patch Log4j. The FTC has issued an alert that references the Equifax breach (which ended in a settlement of $700 million) as a precedent.
US and UK have dispatched cyber warfare advisors to Ukraine to prepare for potential cyber attacks. The prospect is not unprecedented, as Russia has disabled Ukrainian power stations before.
Alibaba's security team was the first to discover the Log4j vulnerability. Though Alibaba Cloud was not compromised, the company is nevertheless facing consequences for failing to notify Chinese regulators within two days as required by new laws passed in September 2021.
Brazil's Health Ministry is looking at extended downtime for the system that processes Covid-19 vaccination data as it attempts to recover from two ransomware attacks that came just four days apart.
BitMart crypto exchange was victimized with a total loss of about $196 million. BitMart has said that it will compensate victims of the crypto theft, but it is using its own internal estimate of $150 million in losses as a guideline.
Tighter cybersecurity regulations that have already come for certain critical infrastructure industries are now being applied to rail and aviation, as the Biden administration continues a general program of hardening the country's cyber defenses.
The REvil ransomware has become something of a cybersecurity household name but it may be losing some business now that a disgruntled former client has leaked code demonstrating that the group can backdoor its own customers.
UK Home Secretary is offering grants of up to $117,000 to firms that can figure out how to bypass the end-to-end encryption used by the Facebook and WhatsApp messaging systems.
In mid-July the REvil ransomware group, linked to the Kaseya and JBS incidents among other attacks, appeared to go out of business. It turns out they may have just been taking a refreshing summer break.










