CEO says healthcare hackers exploited Citrix vulnerability to gain unauthorized access

The CEO of Change Healthcare has revealed that hackers were able to exploit a vulnerability in Citrix software to gain unauthorized access to their systems. This breach exposed sensitive information and put the company at risk. The cyber criminals were able to break in by taking advantage of the security flaw in the popular software … Read more

Hackers Employ Linux Rootkits to Conceal Themselves on VMware ESXi Virtual Machines in UNC3886

Hackers Employ Linux Rootkits to Conceal Themselves on VMware ESXi Virtual Machines in UNC3886

A Chinese threat actor known as UNC3886 has been using open source rootkits Reptile and Medusa to hide on VMware ESXi virtual machines while stealing credentials and executing commands. Mandiant has been tracking UNC3886’s activities against government organizations, including attacks exploiting zero-day vulnerabilities in Fortinet and VMware products. UNC3886 has recently targeted organizations in North … Read more

Cisco Talos uncovers the innovative strategies used by hackers to bypass MFA – SDxCentral

In a recent report, cybersecurity firm Cisco Talos uncovered tactics used by hackers to bypass multi-factor authentication (MFA) measures. While MFA is seen as a crucial defense against unauthorized access, creative hackers have devised ways to work around it. The report highlights the importance of staying vigilant and adopting additional security measures to protect sensitive … Read more

Hackers Exploiting Cisco Webex Meetings App to Distribute Malicious Software

Hackers Exploiting Cisco Webex Meetings App to Distribute Malicious Software

A recent information theft campaign has been identified, showcasing the detailed tactics, techniques, and procedures (TTPs) used by attackers at various stages of the attack process. The Miter ATT&CK framework was utilized to categorize these TTPs and pinpoint potential areas for detection. Research into the campaign revealed how attackers employed social engineering tactics to deceive … Read more

Millions of Xfinity customer data compromised by hackers exploiting Citrix Bleed vulnerability

Millions of Xfinity customer data compromised by hackers exploiting Citrix Bleed vulnerability

Comcast’s Xfinity cable unit faced a cybersecurity breach due to the Citrix Bleed vulnerability, affecting approximately 36 million customers. Hackers accessed customer information by exploiting the vulnerability, resulting in a data breach. The breach impacted Xfinity systems for a few days in mid-October, with hackers gaining access to customer usernames, passwords, and personal details like … Read more

CEO to Testify about Exploitation of Citrix Vulnerabilities by UnitedHealth Hackers

CEO to Testify about Exploitation of Citrix Vulnerabilities by UnitedHealth Hackers

UnitedHealth is set to testify about a cybersecurity breach that occurred on February 12, where hackers gained access to a Citrix portal of its Change Healthcare unit using compromised credentials. CEO Andrew Witty mentioned that the threat actor moved within the systems and exfiltrated data. On February 21, a ransomware attack by a cybercriminal known … Read more

Hackers Use Rogue VMs to Evade Detection in Recent MITRE Cyberattack

Hackers Use Rogue VMs to Evade Detection in Recent MITRE Cyberattack

MITRE Corporation announced that a cyberattack on a nonprofit in late December 2023 exploited zero-day vulnerabilities in Ivanti Connect Secure (ICS) by creating rogue virtual machines (VMs) within its VMware environment. The threat actor, linked to China and tracked by Mandiant as UNC5221, accessed the Networked Experimentation, Research, and Virtualization Environment (NERVE) by exploiting ICS … Read more

Hackers Exploited Vulnerability in Citrix to Compromise UnitedHealth

Hackers Exploited Vulnerability in Citrix to Compromise UnitedHealth

Hackers breached UnitedHealth’s technology unit on February 12 by exploiting vulnerabilities in Citrix software, leading to disruptions in American healthcare. The cybercriminal gang AlphV demanded a ransom to unlock Change Healthcare’s systems after locking them on February 21. UnitedHealth CEO Andrew Witty is set to testify before the House Energy and Commerce Committee on May … Read more