Thursday, February 13th, 2025
Cybersecurity Week in Review (14/02/25)
UK Engineering Giant IMI Hit by Cyberattack
UK-based engineering giant IMI filed a short notice with the London Stock Exchange (LSE) on Thursday saying it fell victim to a cyberattack.
Source: https://www.securityweek.com/uk-engineering-giant-imi-hit-by-cyberattack/
Deloitte pays $5M in connection with breach of Rhode Island benefits site
Deloitte paid $5 million to the state of Rhode Island for expenses related to the December breach of the RIBridges social services system.
Source: https://www.cybersecuritydive.com/news/deloitte-5m-rhode-social-services/739309/
Cyberattack disrupts Lee newspapers’ operations across the US
Lee Enterprises, one of the largest newspaper groups in the United States, says a cyberattack that hit its systems caused an outage last week and impacted its operations.
HPE notifies employees of data breach after Russian Office 365 hack
Hewlett Packard Enterprise (HPE) is notifying employees whose data was stolen from the company’s Office 365 email environment by Russian state-sponsored hackers in a May 2023 cyberattack.
Massive brute force attack uses 2.8 million IPs to target VPN devices
A large-scale brute force password attack using almost 2.8 million IP addresses is underway, attempting to guess the credentials for a wide range of networking devices, including those from Palo Alto Networks, Ivanti, and SonicWall.
Apple Confirms USB Restricted Mode Exploited in ‘Extremely Sophisticated’ Attack
Apple on Monday released an urgent patch for its flagship iOS and iPadOS platforms alongside a warning that a critical security flaw was actively exploited in the wild.
Cisco Says Ransomware Group’s Leak Related to Old Hack
Cisco says that the information recently posted on a ransomware group’s Tor-based leak site refers to data stolen in a cyberattack three years ago.
Source: https://www.securityweek.com/cisco-says-ransomware-groups-leak-related-to-old-hack/
North Korean Hackers Exploit PowerShell Trick to Hijack Devices in New Cyberattack
The North Korea-linked threat actor known as Kimsuky has been observed using a new tactic that involves deceiving targets into running PowerShell as an administrator and then instructing them to paste and run malicious code provided by them.
Source: https://thehackernews.com/2025/02/north-korean-hackers-exploit-powershell.html
CISA Warns of Active Exploits Targeting Trimble Cityworks Vulnerability
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has warned that a security flaw impacting Trimble Cityworks GIS-centric asset management software has come under active exploitation in the wild.
Source: https://thehackernews.com/2025/02/cisa-warns-of-active-exploitation-in.html
Contact Us
The data you supply here will not be added to any mailing list or given to any third party providers without further consent. View our Privacy Policy for more information.