Phishing Attacks

Phishing Campaign Uses Overlay Tactic for Employee Credential Theft

by Jessica Davis

A recently discovered phishing campaign is relying on message quarantine emails for employee credential theft, through an overlay tactic that uses the homepage of the targeted...

Zeppelin Ransomware Returns Using New Trojan to Evade Antivirus

by Jessica Davis

The Zeppelin ransomware variant has reemerged in the wild, employing a new trojan downloader to evade antivirus applications and avoid detection, according to new Juniper Threat Labs...

Assured Imaging Ransomware Causes Data Theft Affecting 245K Patients

by Jessica Davis

Arizona-based Assured Imaging is notifying 244,813 patients that some of their data was potentially exfiltrated after a ransomware attack in May.  On May 19, Assured...

Report: Phishing Campaign Uses Hidden Text to Bypass Email Security

by Jessica Davis

A new phishing campaign has been spotted in the wild using hidden text, or what’s known as zero font, to bypass email security controls and deliver malicious emails to the user,...

COVID-19 PPE Phishing Campaign Delivers Agent Tesla RAT Malware

by Jessica Davis

A report from Area 1 Security warns all sectors that a prominent phishing campaign is preying on COVID-19 fears, sending targeted emails offering personal protective equipment (PPE)...

Credential Theft Via Spoofed Login Pages Increase, Healthcare Top Target

by Jessica Davis

A new IRONSCALES report found a drastic increase in successful credential theft attempts sent through spoofed login pages and social engineering attacks during the first half of...

CISA Alerts to Phishing Campaign Deploying KONNI RAT Malware

by Jessica Davis

Hackers are using a phishing campaign to deploy KONNI malware, a remote access trojan (RAT), via Microsoft Word documents containing malicious Visual Basic Application (VBA) macro...

Blackbaud Ransomware Hack Affects 657K Maine Health System Donors

by Jessica Davis

A ransomware attack on healthcare business associate Blackbaud compromised the data from 657,392 donors, potential donors, and patients who support the Northern Light Health...

CISA Alerts to Phishing Campaign Spoofing COVID-19 Loan Relief Site

by Jessica Davis

The Department of Homeland Security Cybersecurity and Infrastructure Agency released an alert, detailing an ongoing phishing campaign spoofing the Small Business...

BEC Phishing Campaigns Bypass MFA, Target Office 365 Executive Accounts

by Jessica Davis

Entities should be on the alert for an increase in two business email compromise campaigns. One report found an increase in BEC phishing campaigns targeting the Microsoft Office 365 accounts...

Ransomware Hackers Post Data From 2 Providers, Device Manufacturer

by Jessica Davis

NetWalker and DoppelPayer ransomware threat actors posted data from three healthcare entities to their dark web blog in the last week, including a rehabilitation center, fertility...

COVID-19 Impact on Ransomware, Threats, Healthcare Cybersecurity

by Jessica Davis

COVID-19 has significantly shifted the threat landscape from attacks on individuals and small businesses to critical infrastructure, governments, and major corporations, according to Interpol....

National Cardiovascular Partners Email Hack Impacts 78K Patients

by Jessica Davis

National Cardiovascular Partners recently notified 78,070 patients that their data was potentially compromised after an attacker gained access to an employee email account.  According to its...

Emotet Malware Threat Actors Return with Massive Email Campaign

by Jessica Davis

The notorious Emotet malware threat actors have resurfaced after a 5-month hiatus with a massive campaign that has send well over 250,000 emails containing highly obfuscated,...

274K Patients Impacted by Benefit Recovery Specialists Credential Hack

by Jessica Davis

More than 274,000 patients from several healthcare providers and payers that use Benefit Recovery Specialists (BRSI) for billing and collections services are...

15 Billion Compromised Credentials Available for Sale on Hacker Forums

by Jessica Davis

There are currently 15 billion compromised credentials and passwords for sale on hacker forums, stolen from more than 100,000 separate data breaches in the last two years, according to a new...

UPDATE: The 10 Biggest Healthcare Data Breaches of 2020, So Far

by Jessica Davis

The healthcare sector saw a whopping 41.4 million patient records breached in 2019, fueled by a 49 percent increase in hacking, according to the Protenus Breach Barometer. And despite the...

Microsoft Sues, Now Controls COVID-19 Phishing Campaign Domains

by Jessica Davis

The US District Court for the Eastern District of Virginia recently unsealed court documents that reveal Microsoft's to put an end to a massive COVID-19-themed phishing campaign...

Ransomware Attacks Delivered Via Phishing Campaigns on the Rise

by Jessica Davis

Proofpoint researchers detected an increase in the number of email-based phishing campaigns used to deploy ransomware attacks as a first-stage payload over the last month. A stark...