CL0P Ransomware Gang Attacks Top June Cyber Headlines

General News

Summary

Now the company behind MOVEit has announced another critical vulnerability as more breaches come to light.”“Shell, the University of Georgia (UGA) and University System of Georgia (USG), Heidelberger Druck, UnitedHealthcare Student Resources (UHSR), and Landal Greenparks are just some of the organizations that have confirmed to BleepingComputer that they were impacted.“Other victims that already disclosed breaches related to the MOVEit Transfer attacks include the U.S. state of Missouri , the U.S. state of Illinois Zellis (along with its customers BBC, Boots, Aer Lingus, and Irelands HSE), Ofcam , the government of Nova Scotia , the American Board of Internal Medicine , and Extreme Networks .”A few more headlines fromAnd one more from June 27 in, “ Casualties keep growing in this month’s mass exploitation of MOVEit 0-day ,” which reported that up to 122 organizations have been breached.No doubt, many data breaches and ransomware attacks have yet to be announced related to this campaign. I fully expect the number of impacted organizations to exceed 200 public and private entities, with many millions more compromised data records when all is said and done.I really like this analysis from The Last Watch Dog “According to Lawrence Abrams, Editor in Chief of Bleeping Computer, the Clop ransomware gang began listing victims on its data leak site on June 14th, warning that they will begin leaking stolen data on June 21st if their extortion demands are not met.“Among the victims listed were Shell, UnitedHealthcare Student Resources, the University of Georgia, University System of Georgia, Heidelberger Druck, and Landal Greenparks.“As for federal agencies, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed breaches due to this vulnerability. Rafe Pilling , Director of Threat Research at Dell-owned Secureworks, told CNN, Adding company names to their leak site is a tactic to scare victims, both listed and unlisted, into paying. Here’s one:“The U.S., along with its key ‘ Five Eyes ’ intelligence partners, issued an unusual joint statement last month that a Chinese government espionage group had hacked into critical infrastructure systems in Guam. Although the systems remain intact, the agencies are concerned that the hackers’ goal could be to disrupt or prevent communications between the U.S. and Asia during a military confrontation in the region.“Importantly, the hack was discovered by Microsoft, which then shared the information with the government.

Classifications

industries
Fintech & Banking
applications
Accounting and Taxes

AskAI Classifications

Labels
Network Management Software Cloud Networking SD-WAN

Linked Companies

Zellis
$100M to $250M