Eblogtip.com
  • Categories
    • News
    • Technology
    • Domains
    • Hosting
    • Promotions

Archives

  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • December 2022

Categories

  • News
  • Technology
  • Uncategorized
eBlogTip
  • Categories
    • News
    • Technology
    • Domains
    • Hosting
    • Promotions
  • Technology

Banks, hotels and hospitals among latest MOVEit mass-hack victims

  • July 11, 2023
Total
0
Shares
0
0
0

The MOVEit mass-hack has claimed yet more victims, including hotel chain Radisson, U.S.-based 1st Source Bank, real estate giant Jones Lang LaSalle, and Dutch GPS company TomTom.

The Clop ransomware gang, which claimed responsibility for the mass data raids targeting corporate customers of Progress Software’s MOVEit file-transfer tool, has already claimed hundreds of victims — and this list continues to grow.

Radisson Hotels Americas, an international hotel group with more than 1,100 locations, said it’s among the latest victims after appearing on Clop’s dark web leak site this week.

Moe Rama, a spokesperson for Choice Hotels (which acquired Radisson Hotels Group in 2022) told TechCrunch that a “limited number of guest records” were accessed by hackers exploiting the MOVEit Transfer vulnerability, but declined to say how many guests had been affected.

U.S.-based real estate giant Jones Lang LaSalle has also said it was also affected, after TechCrunch learned that the organization had experienced a data breach as a result of the cyberattack. A source with knowledge of the incident told TechCrunch that JLL informed staff by email that all employee data — but not Social Security numbers — had been compromised, and that the breach had affected all of the organization’s 43,000 employees.

JLL did not dispute the claims when reached by TechCrunch.

“We were notified by MOVEit of a previously unknown security vulnerability in their software. Our immediate investigation detected unauthorized access to a limited number of files; we contained the malicious activity and patched our systems per vendor-provided instructions,” said JLL spokesperson Allison Heraty. “Our priority has been to communicate directly with those impacted as well as all relevant authorities, which we have done.”

In a regulatory filing on Monday, 1st Source Bank — among the first MOVEit victims to be listed by Clop — now confirmed that hackers accessed “sensitive client data of commercial and individual clients, including personally identifiable information.”

“The company has notified and is working with its commercial clients so impacted and is in the process now of identifying and directly notifying individual clients who have been impacted,” the bank added.

Healthcare data, too, may have been accessed in the mass-raids.

UofL Health, an academic health system based in Kentucky, confirmed to TechCrunch that it had been targeted by the hacks after being listed on Clop’s dark web leak site. However, UofL Health declined to say whether data had been accessed.

“Recently, the United States government confirmed that multiple federal agencies had been affected by cyberattacks which exploited a security vulnerability in a popular file transfer tool called MOVEit,” UofL Health spokesperson David McArthur told TechCrunch. “Unfortunately, a small number of UofL Health medical practices used this software to transfer files to third party vendors.

“Upon learning of this event, UofL Health immediately took action and is now working with a forensic IT agency to determine the scope of the matter. The security of normal operations at UofL Health hospitals, medical centers, and physician offices has not been jeopardized.”

TomTom, the Dutch navigation giant, also confirmed to TechCrunch that it’s affected after being listed by Clop on Tuesday. “We at TomTom were immediately aware of a data breach that occurred on our vendor’s platform, MOVEit, last month,” said TomTom spokesperson Ivo Bökkerink. “We have taken all necessary safety and security measures to protect the data, and we have informed the relevant authorities.” It’s not yet known what data, if any, was stolen by Clop.

Several other victims have come forward over the past day, including: German investment bank Deutsche Bank; the University of Colorado; the University of Illinois; diagnostics company Realm IDX; and New York-based biopharmaceutical firm Bristol Myers Squibb.

Tens of other organizations have been listed to Clop’s dark web leak site, but have not yet responded to TechCrunch’s questions. This list includes an electronics maker, a global technology company, a corporate travel management giant, and a human resources software maker.

According to the latest figures from Brett Callow, threat analyst at Emsisoft, the MOVEit hackers have already claimed almost 270 victim organizations, impacting more than 17 million individuals.


Source link

Total
0
Shares
Share 0
Tweet 0
Pin it 0
Previous Article
  • News

Razer might have suffered another major data breach

  • July 11, 2023
View Post
Next Article
  • News

Microsoft Surface Book could get one over on the MacBook with some neat stylus tricks

  • July 11, 2023
View Post
You May Also Like
View Post
  • Technology

Khosla-backed HealtifyMe introduces AI-powered image recognition for Indian food

  • September 21, 2023
View Post
  • Technology

Waabi and Uber Freight partner to accelerate autonomous trucking

  • September 21, 2023
View Post
  • Technology

Here are the 6 finalists of Startup Battlefield at Disrupt 2023

  • September 21, 2023
View Post
  • Technology

Libra’s co-creator had geopolitical motivations to build the digital currency

  • September 21, 2023
View Post
  • Technology

Auctoria uses generative AI to create video game models

  • September 20, 2023
View Post
  • Technology

Cruise CEO says winter version of Origin AV is two years away

  • September 20, 2023
View Post
  • Technology

GitHub CEO: Despite AI gains, demand for software developers will still outweigh supply

  • September 20, 2023
View Post
  • Technology

PureSpace prevents spoiled produce by removing ripening gas

  • September 20, 2023

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

eBlogTip.com
  • Categories

Input your search keywords and press Enter.