"Your Information Technology Leader"

Client Portal Payment Portal

Blog

InTegriLogic Blog

InTegriLogic has been serving the Tucson area since 1999, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

The Week in Breach News: 10/16/24 – 10/22/24

Breach-5

This week: The Internet Archive gets pummeled by cyberattacks and the Calgary Public Library system gets shut down by bad actors.

Axis Health System

https://www.durangoherald.com/articles/axis-health-system-target-of-cyberattack-ransomware-group-demands-1-6-million

Exploit: Ransomware

Industry: Healthcare

 

Axis Health System, a mental health and substance use treatment provider in Southwest Colorado, is investigating a cyberattack with no confirmation yet on whether patient data was compromised. A notice on its website states that affected individuals will be notified by mail if their data is impacted. Although its patient portal is down for unrelated reasons, all other systems were restored by Tuesday morning. A screenshot in the post shows a ransom demand from the Rhysida ransomware group for 25 Bitcoins (around $1.6 million).

How It Could Affect Your Business: A data breach like this is a fast way for an organization to run up big bills that can impact a company’s financial health and future.


 

Cisco

https://www.cyberdaily.au/security/11243-nab-vodafone-and-microsoft-listed-in-alleged-cisco-data-breach

Exploit: Hacking

Industry: Technology

 

Dark web legend IntelBroker claims to have accessed Cisco’s systems on October 6. Allegedly stolen data includes source code, GitHub and GitLab projects, certificates, API tokens, AWS and Azure storage buckets, confidential documents and encryption keys. Alleged victims include Microsoft, AT&T, Bank of America, Vodafone Australia and government entities like the Australian Department of Defence. Cisco denies an internal breach, attributing the leak to a public-facing DevHub environment. The investigation is ongoing.

How It Could Affect Your Business: It’s important to remember that even the biggest most advanced tech companies can have cybersecurity challenges.


 

Varsity Brands

https://www.securityweek.com/varsity-brands-data-breach-impacts-65000-people

Exploit: Ransomware

Industry: Manufacturer

cybersecurity news represented by agauge showing severe risk

 

Varsity Brands, a leading manufacturer of cheer and sports uniforms based in Texas, has reported a May 2024 ransomware attack affecting over 65,000 individuals to the Maine Attorney General. Exposed data may include names, Social Security numbers, birthdates, financial info and employee IDs. Affected individuals are offered free credit monitoring and identity theft protection.

How It Could Affect Your Business: Attacks on manufacturers can have unfortunate ripple effects on the supply chain as well as customers.


 

Globe Life

https://techcrunch.com/2024/10/17/hackers-are-extorting-globe-life-with-stolen-customer-data/

Exploit: Ransomware

Industry: Insurance

cybersecurity news represented by agauge showing severe risk

 

Globe Life, a major life and health insurer, is being extorted by a hacker who stole sensitive data from its subsidiary, American Income Life Insurance (AIL). The breach exposed customer names, addresses, phone numbers and some Social Security numbers as well as health data and policy details. So far, about 5,000 individuals are confirmed to have been affected, though the full extent is still under investigation. The hacker claims to have more data, but Globe Life states no financial information, like credit card or banking data, appears to be involved. 

How It Could Affect Your Business: This breach garnered attackers a combination of health and personal data that will be profitable for them and an expensive disaster for Globe.


 

The Internet Archive

https://www.bleepingcomputer.com/news/security/internet-archive-hacked-data-breach-impacts-31-million-users

Exploit: Hacking

Industry: Technology

cybersecurity news gauge indicating extreme risk

 

The Internet Archive has faced a challenging October, suffering at least three cyberattacks including the theft of millions of usernames and email addresses, a brief site defacement and multiple days offline due to a DDoS attack. Its Wayback Machine experienced a data breach, with a 6.4GB SQL file containing 31 million records, including user emails, screen names and Bcrypt-hashed passwords, leaked. The latest timestamp on the data is September 28, 2024. In October the Archive also encountered a DDoS attack by the BlackMeta hacktivist group and a breach of its Zendesk support system, amid warnings about stolen GitLab authentication tokens. The Archive has been dedicated to preserving the internet as a historical and cultural resource since 1996.

How it Could Affect Your Business: This is an unfortunate situation for the Internet Archive that will place an extreme strain on its resources.


 

Calgary Public Library

https://therecord.media/calgary-public-library-limits-services

Exploit: Hacking

Industry: Government

cybersecurity news represented by a gauge indicating moderate risk

 

The Calgary Public Library was forced to limit its services last week following a cyberattack that compromised its systems. The library, which serves 1.3 million residents across 22 branches, was briefly forced to close and disable all of its servers and computers. The library was able to reopen after a few days, however, patrons were limited to accessing only areas and services that do not require technology. No book returns can be processed, due dates are extended and all digital services, including WiFi and eResources, are offline. Customers cannot book rooms or register for programs online. The incident remains under investigation and has been reported to the Canadian Centre for Cyber Security.

How it Could Affect Your Business: A successful cyberattack on a library can have an unfortunate ripple effect on that library’s entire community.


 

Japan – Nidec

https://www.bleepingcomputer.com/news/security/tech-giant-nidec-confirms-data-breach-following-ransomware-attack

Exploit: Ransomware

Industry: Technology

cybersecurity news represented by agauge showing severe risk

 

Japanese electric motor maker Nidec confirmed that a ransomware attack in August 2024 compromised its Vietnam-based subsidiary, Nidek Precision (NPCV). After Nidec refused to pay the ransom, the attackers leaked 50,694 stolen files on their Tor site, including internal documents on procurement, health and safety, policies and business transactions. The breach likely occurred using stolen credentials from an NPCV domain account. In response, Nidec said that it investigated the incident, reviewed server access, changed passwords and suspended a VPN suspected to be part of the attack in response to the intrusion. Both the 8base and Everest ransomware groups have claimed responsibility for this attack. 

How it Could Affect Your Business: A cyberattack that allows bad actors to get their hands on internal operations data can lead to a cascade of headaches for the victim company.


 

UK – JD Sports

https://telegrafi.com/en/The-British-firm-JD-Sports-says-that-in-previous-cyber-attacks%2C-hackers-have-accessed-the-data-of-their-customers.

Exploit: Hacking

Industry: Retail

cybersecurity news represented by agauge showing severe risk

 

JD Sports suffered a cyberattack compromising customer data from online orders placed between November 2018 and October 2020 across its brands, including JD, Size?, Millets and Blacks. The breach affected nearly 10 million customers, exposing names, addresses, emails, phone numbers, order details and the last four digits of bank cards. No full card details or passwords were accessed. JD Sports is working with cybersecurity experts and the UK’s Information Commissioner’s Office (ICO) to address the incident.

How it Could Affect Your Business: Successful cyberattacks on retailers can lead to downtime that translates into significant lost revenue.


 

Why SMBs Are Targeted by Cybercriminals – Common M...
Understanding Business Email Compromise (BEC) and ...

Customer Login

News & Updates

InTegriLogic is proud to announce the launch of our new website at www.integrilogic.com. The goal of the new website is to make it easier for our existing clients to submit and manage support requests, and provide more information about our services for ...

Contact us

Learn more about what InTegriLogic can do for your business.

InTegriLogic
1931 W Grant Road suite 310
Tucson, Arizona 85745

Copyright InTegriLogic. All Rights Reserved.