UK-based payment services provider Checkout.com has denied paying the ransom sought by the ShinyHunters extortion group following the compromise of its legacy third-party cloud file storage system, opting to provide the demanded amount to Carnegie Mellon University and the University of Oxford Cyber Security Center for cybercrime research instead, The Register reports.
The Washington Post has confirmed that information from 9,720 current and former employees and contractors was compromised as part of the widespread Oracle E-Business Suite zero-day attacks conducted by the Clop ransomware operation, according to CyberScoop.
HelloKitty ransomware descendant Kraken ransomware gang has been evaluating targeted Windows, Linux, and VMware ESXi machines to ensure optimized data encryption, BleepingComputer reports.
Multiple Democratic-led states have been urged by a group of lawmakers from the same party to follow the lead of Illinois, New York, Massachusetts, Minnesota, and Washington state in blocking Immigration and Customs Enforcement's access to their drivers' information, which could be weaponized in the Trump administration's mass deportation program, reports Reuters.
BleepingComputer reports that major UK pathology services provider Synnovis has begun informing healthcare providers of a data breach stemming from a Qilin ransomware attack in June 2024, with the incident notification process expected to end by Nov. 21.
Collins Aerospace had data purportedly stolen from its systems leaked by the Everest ransomware group, which had targeted the firm's automatic check-in and boarding software in a September attack that disrupted major airports across Europe, Cybernews reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.