"Your Information Technology Leader"

Client Portal Payment Portal

Blog

InTegriLogic Blog

InTegriLogic has been serving the Tucson area since 1999, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

The Week in Breach News: 06/26/24 – 07/02/24

Breach-1

This week: The Snowflake fallout continues to land on companies; 1 million users have their data exposed in a hospital data breach

 

Evolve Bank & Trust

https://www.securityweek.com/evolve-bank-data-leaked-after-lockbits-federal-reserve-hack/

Exploit: Hacking

Evolve Bank & Trust: Bank

cybersecurity news represented by agauge showing severe risk

 

Risk to Business: 1.801 = Severe

After claiming to have breached the Federal Reserve last week, which experts doubt, LockBit has published 33 TB of data on its dark web leak site. This data appears to have originated from Evolve Bank & Trust. On Wednesday, Evolve Bank & Trust informed its retail customers and financial technology partners that it is investigating a potential personal information breach. The bank had recently faced an enforcement action by the Federal Reserve over its anti-money laundering, risk management, and consumer compliance programs, which may have led the gang to believe they had breached the agency when obtaining this data.

How It Could Affect Your Business: Bad actors are finding creative ways to strike organizations like backdoors and supply chain attacks.


 

Neiman Marcus

https://therecord.media/neiman-marcus-snowflake-breach-thousands

Exploit: Third-Party Cyberattack

Neiman Marcus: Retailer 

cybersecurity news represented by a gauge indicating moderate risk

 

Risk to Business: 2.856 = Moderate

Famed luxury department store chain Neiman Marcus has disclosed that it has had a data breach related to the recent troubles at cloud data platform Snowflake. The venerable retailer said that the dark web exposure of sensitive data about more than 64,000 people was traced back to the company’s account. In a regulatory filing, Neiman Marcus said that the attackers had snatched customers’ names, contact information, dates of birth and Neiman Marcus/Bergdorf Goodman gift card numbers. In a post that has since been removed from a notorious dark web forum, up-and-coming threat actor Sp1d3r claimed to have been behind the theft and offered the data for $150,000.

How It Could Affect Your Business: When service providers have cybersecurity trouble, it can have a devastating ripple effect on their customers.


 

Geisinger Health

https://www.abc27.com/pennsylvania/millions-of-geisinger-patients-in-pennsylvania-may-have-had-information-stolen

Exploit: Third-Party Data Breach

Geisinger Health: Healthcare Provider 

cybersecurity news represented by agauge showing severe risk

 

Risk to Business: 1.721 = Severe

Geisinger Health, a Pennsylvania-based healthcare provider, has disclosed a data breach affecting approximately 1M people. The breach occurred on November 29, 2023, when a former employee of Nuance Communications, a technology services vendor, accessed patient information two days after being terminated. Nuance quickly shut down the employee’s accounts and launched an investigation, revealing that personal details such as birth dates, addresses, medical record numbers, and contact information were accessed. Geisinger was quick to reassure the public that no claims, insurance details, financial information or Social Security numbers were compromised. 

How It Could Affect Your Business: Employees are one of the biggest security threats that a company has to manage, and mitigating insider risk must be a priority.


 

Mass General Brigham

https://databreaches.net/2024/06/30/mass-general-brigham-fires-two-employees-after-patient-data-breach/

Exploit: Hacking

Mass General Brigham: Healthcare Provider

cybersecurity news gauge indicating extreme risk

 

Risk to Business: 1.303 = Extreme

.Mass General Brigham announced a data breach caused by two malicious insiders, potentially exposing patients’ personal information. The health system discovered the issue on April 4, 2024. The breach, involving unauthorized access for an unauthorized person that was facilitated by two now former employees, occurred between February 26, 2023, and April 2, 2024. Hospital officials say that patients’ names, addresses, medical record numbers, birthdates, email addresses, phone numbers, health insurance policy numbers, and clinical records, including visit details and diagnoses, may have been exposed in this incident. The employees involved have been fired.  

How It Could Affect Your Business: Insider risks can plague any business, from malicious employees to genuine employee errors, with potentially disastrous results.


 

UK – Cambridge University Press & Assessment

https://www.redhotcyber.com/en/post/cambridge-university-press-assessment-ends-up-in-the-dls-of-inc-ransomware/

Exploit: Ransomware

Cambridge University Press & Assessment: Publisher

cybersecurity news represented by a gauge indicating moderate risk

 

Risk to Business: 2.312 = Moderate

The INC ransomware group claims to have deployed ransomware in the network of Cambridge University Press & Assessment. On June 24, 2024, the group published stolen documents on their disclosure blog as proof of the intrusion. Cambridge University Press & Assessment has not released an official statement regarding the incident. Founded in 1534, Cambridge University Press is the world’s oldest publishing house. 

How it Could Affect Your Business: A ransomware attack is a possibility that every organization must face and be ready for.


 

Germany – TeamViewer

https://www.bleepingcomputer.com/news/security/teamviewers-corporate-network-was-breached-in-alleged-apt-hack/

Exploit: Hacking (APT)

TeamViewer: Software Company

cybersecurity news represented by agauge showing severe risk

 

Risk to Business: 1.896 = Severe

TeamViewer, the German remote management software company, announced a recent hacking incident by the Russia-linked APT group Midnight Blizzard. On June 26, 2024, TeamViewer’s security team detected an irregularity in its internal corporate IT environment. The company reassured clients that this environment is entirely separate from the product environment, and there is no evidence that customer data or the product environment was affected. 

How it Could Affect Your Business: Every network that an organization maintains needs to be ready for cybercriminal incursions.


 

Japan – Kadokawa Group

https://kotaku.com/fromsoftware-ransomware-hack-elden-ring-bloodborne-2-1851564840

Exploit: Hacking

Kadokawa Group: Entertainment Company

cybersecurity news represented by agauge showing severe risk

 

Risk to Business: 1.866 = Severe

Kadokawa Group, a Japanese publishing house and entertainment company, has announced that it experienced a data breach. The conglomerate is the parent company of FromSoftware, the makers of the popular videogame Elden Ring, and video sharing platform Niconico, which experienced a data breach on June 8. A significant cyberattack, including ransomware, targeted Niconico and other services. The company stated that no credit card information is stored in its systems and has not disclosed whether any data was stolen. Kadokawa Group plans to provide an update on the incident in late July.

How it Could Affect Your Business: A quick and organized response in case of trouble depends on a company having a formal, tested incident response plan.


 

Indonesia – National Data Center/Pusat Data Nasional (PDN)

https://www.theregister.com/2024/06/24/indonesia_datacenter_ransomware/

Exploit: Ransomware

National Data Center/Pusat Data Nasional (PDN): Government Agency

cybersecurity news gauge indicating extreme risk

 

Risk to Business: 1.412 = Extreme

The Indonesian government has confirmed that its National Data Center (PDN), operated by the Ministry of Communication and Information Technology, was hit by ransomware on June 20. The identity of the attacker appears to be LockBit, although that is unconfirmed. The attack disrupted services for at least 210 institutions, including immigration services, impacting visa, passport, and residence permit processing. The attackers demanded a ransom of $8 million. 

How it Could Affect Your Business: Any government resource can be a target of cybercrime, especially ransomware, in today’s volatile threat landscape.


 

What is VoIP and How It Helps Your Business
Have You Ever Considered What a Ransomware Attack ...

Customer Login

News & Updates

InTegriLogic is proud to announce the launch of our new website at www.integrilogic.com. The goal of the new website is to make it easier for our existing clients to submit and manage support requests, and provide more information about our services for ...

Contact us

Learn more about what InTegriLogic can do for your business.

InTegriLogic
1931 W Grant Road suite 310
Tucson, Arizona 85745

Copyright InTegriLogic. All Rights Reserved.