Tampa General Hospital half thwarts ransomware attack, but still loses patient data

Categories: News

Categories: Ransomware

Tags: Tampa

Tags: General Hospital

Tags: Snatch

Tags: ransomware

Tags: RDP

Tags: data breach

The Tampa General Hospital has promised to reach out to the individuals whose information has been stolen by the Snatch ransomware group.

(Read more…)

The post Tampa General Hospital half thwarts ransomware attack, but still loses patient data appeared first on Malwarebytes Labs.

Read more

CISA: You’ve got two weeks to patch Citrix NetScaler vulnerability CVE-2023-3519

Categories: Exploits and vulnerabilities

Categories: News

Tags: Citrix

Tags: NetScaler

Tags: CVE-2023-3519

Tags: web shell

A critical unauthenticated remote code execution vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway is being actively exploited

(Read more…)

The post CISA: You’ve got two weeks to patch Citrix NetScaler vulnerability CVE-2023-3519 appeared first on Malwarebytes Labs.

Read more

Google fixes “Bad.Build” Cloud Build flaw, researchers say it’s not enough

Categories: Exploits and vulnerabilities

Categories: News

Researchers have uncovered a privilege escalation vulnerability in Google Cloud Build that could enable malicious actors tamper with application images and infect users.

(Read more…)

The post Google fixes “Bad.Build” Cloud Build flaw, researchers say it’s not enough appeared first on Malwarebytes Labs.

Read more

Amazon in-van delivery driver footage makes its way online

Categories: News

Tags: driver

Tags: delivery

Tags: amazon

Tags: van

Tags: camera

Tags: recording

Tags: footage

Tags: online

Tags: privacy

In-van delivery driver footage is reportedly finding its way to the internet. Are privacy issues at play, or is a valuable safety tool?

(Read more…)

The post Amazon in-van delivery driver footage makes its way online appeared first on Malwarebytes Labs.

Read more

Docker Hub images found to expose secrets and private keys

Categories: Awareness

Categories: News

Tags: Docker

Tags: Docker Hub

Tags: containerization

Tags: secrets

Tags: exposed

Researchers have found that numerous Docker images shared on Docker Hub expose sensitive data.

(Read more…)

The post Docker Hub images found to expose secrets and private keys appeared first on Malwarebytes Labs.

Read more

Microsoft validation error allowed state actor to access user email of government agencies and others

Categories: News

Tags: Microsoft. MSA

Tags: OWA

Tags: validation token

Tags: signing key

Tags: Storm-0556

Tags: GetAccessTokensForResource

Due to a validation error in Microsoft code, a suspected Chinese attacker was able to access user email from approximately 25 organizations, including government agencies.

(Read more…)

The post Microsoft validation error allowed state actor to access user email of government agencies and others appeared first on Malwarebytes Labs.

Read more

Act now! In-the-wild Zimbra vulnerability needs a workaround

Categories: Exploits and vulnerabilities

Categories: News

Tags: Zimbra

Tags: MalasLocker

Tags: vulnerability

Tags: Google

Tags: actively exploited

Tags: fn:escapeXml

Security experts are warning Zimbra users that a vulnerability for which there is no patch is being actively exploited in the wild.

(Read more…)

The post Act now! In-the-wild Zimbra vulnerability needs a workaround appeared first on Malwarebytes Labs.

Read more

[Updated] Apple issues Rapid Security Response for zero-day vulnerability

Categories: Exploits and vulnerabilities

Categories: News

Tags: Apple

Tags: Safari

Tags: WebKit

Tags: macOS

Tags: iOS

Tags: iPadOs

Tags: CVE-2023-37450

Tags: drive-by

Tags: code execution

Apple has issued an update for a zero-day vulnerability in the WebKit browser engine which may be actively exploited.

(Read more…)

The post [Updated] Apple issues Rapid Security Response for zero-day vulnerability appeared first on Malwarebytes Labs.

Read more