#cyberattack

69 posts · Last used 9d

Little warning regarding of a social technical attack. At least three collogues were targeted. Th criminals start with a newsletter subscription bomb. Several thousand emails were sent to the users in a very short timeframe. And as these are "valid" subscription emails the e-mail filter only blocked a small subset. #Cyberattack #SocialEngineering
0
1
0
0
So one FBI breach led to this. And it's only early Saturday 😅 . The Daily Beast: Keystone Kash and Pentagon Pete Hit by Twin Humiliations https://www.thedailybeast.com/keystone-kash-and-pentagon-pete-hit-by-twin-humiliations/ @thedailybeast@newsie.social Reuters had more about the files that were affected. Reuters, from yesterday: ShinyHunters attackers say they stole psychiatric and medical records of FBI staff https://www.reuters.com/world/shinyhunters-hackers-say-they-stole-psychiatric-medical-records-fbi-staff-2026-09-25/ @Reuters@flipboard.com #infosec #databreach #cyberattack
0
0
0
0

Cyberrisker: från Studium-angreppet till #digitalSuveränitet (presentation och paneldebatt), 2026-09-22, 15:30

I början av maj utsattes UU:s lärplattform Studium / #Canvas för en #cyberattack. Vad säger denna händelse om vår tids digitala #sårbarhet? Hur beroende är universitet, kommuner och myndigheter av globala #molntjänster? Vem har egentligen kontroll över vår data?

Panel:

  • Fredrik Blomqvist
  • Daniel Melin
  • Robert Reineck Moderator:
  • Ida-Maria Sintorn

Mer info: https://www.uu.se/institution/informationsteknologi/kalendarium/arkiv/2026-09-22-cyberrisker-fran-studium-angreppet-till-digital-suveranitet-presentation-och-paneldebatt

1
1
1
0
A reexamination of recent OpenAI sins: 1) a cyberattack and 2) attempted theft of data. New. "In May 2026, a malicious package campaign forced RubyGems to suspend new registrations and remove hundreds of packages [1]. Researchers later linked the activity to OpenAI agents, reporting unauthorized code execution and attempted API-key theft [2]. OpenAI acknowledged its agents’ use of RubyGems to retrieve public information [3]. RubyGems could not independently confirm attribution and found no evidence of successful key theft." Picus: Inside the OpenAI-RubyGems Incident: Did AI Agents Attack RubyGems? https://www.picussecurity.com/resource/blog/openai-rubygems-incident-ai-agents #infosec #threatresearch #RubyGems #cyberattack #OpenAI
0
0
0
0

THREAT MODEL: CYBERSECURITY 🧑‍💻 for August 4th, 2026 by independent journalist @violetblue@mastodon.social

...and much more.

✨THREAT MODEL weekly newsletters are free to read -- please help keep them accessible to all by becoming a patron, even $1 a month makes a difference!✨

https://www.patreon.com/violetblue/posts/cybersecurity-4-165719362

#ThreatModel #ThreatModelCybersecurity #ThreatModelNewsletters #VioletBlue #infosec #cybersec #CovidIsNotOver

7
0
7
0
Weeks before they escaped a closed test and launched a #cyberattack without any human prompting, some of OpenAI’s most advanced artificial intelligence agents secretly began sharing tips on how to cheat their way through an internal hacking evaluation 🖊️ Dana Nickel and John Sakellariadis https://www.politico.eu/article/openais-models-shared-hacking-tips-on-a-secret-messaging-board-before-hugging-face-breach
5
0
7
0
New. True or false, the easiest thing to do is to blame a foreign country. But it's important to remember that this happened in the embattled state of Minnesota. Things being as they are, nothing should be off the table. "Attribution remains open. Minnesota state and local officials declined to say who was responsible, and TJ Sayers, senior director of threat intelligence at the Center for Internet Security, confirmed the attacks had not been attributed to any party and that it was unclear whether the PLCs CISA warned about were involved." Picus: Minnesota Water Systems Attacks: Internet-Exposed PLCs Under Attack https://www.picussecurity.com/resource/blog/minnesota-water-systems-attacks-internet-exposed-plcs-under-attack #infosec #threatresearch #cyberattack
0
0
0
0
New. "While headlines focused on an AI model escaping its test environment, the real lesson is that security failures still begin with ordinary mistakes and overlooked exposure." "Behind the AI headlines are familiar attack paths: vulnerable software, stolen credentials and permissive access." Barracuda: Faster, not different: What the Hugging Face AI incident really means for organizations https://blog.barracuda.com/2026/08/03/hugging-face-incident-faster-not-different Related, from yesterday: Socket: Claude Breached 3 Companies and Uploaded Malware to PyPI During Anthropic's Security Tests https://socket.dev/blog/anthropic-claude-pypi-malware @SocketSecurity@fosstodon.org #infosec #HuggingFace #cyberattack #Claude #OpenAI #Anthropic #malware #Python
0
0
0
0
So, #MSM is parroting #Trump administration's accusations that #Iran was behind the #Cyberattack on water systems in #Minnesota. Sounds like a good excuse to wipe out #WaterResources in Iran as revenge! Plus, similar incidents have happened in #MN. Who has a big grudge against folks in Minnesota? Not Iran!!! Cyberattack targets Minnesota cities' water systems "State technology officials say more than 30 Minnesota municipal water systems were targeted in a coordinated cyberattack this week. "In at least one case, a city’s well and treatment plant were temporarily knocked offline Monday. Other cities reported that the attack targeted communications and automated operations within their water system — forcing a move to manual workarounds. "The attack prompted Minnesota IT Services to activate a statewide cybersecurity incident response involving local, state and federal agencies. "Authorities did not say whether they know who is responsible for the cyberattack and did not elaborate on a possible motive. "Officials said water in the affected cities remains safe to drink." [...] "The city of Braham reported that the attack targeted the computerized operating systems for its well and water treatment plant. "Mayor Nate George told #MPR News that a water plant operator noticed a problem Monday morning: The city’s water tower needed to draw in water, but the well wasn’t working. " 'There was power — but there was no controls, you know, telling the water where to go,' he said. "The city alerted #BrahamMN residents to limit water use, to keep the water in the tower from running out. An investigation found that a cyberattack caused the outage. " 'They were able to hack into the control system of the of the well and just turn the well off, basically,' George said. "Within an hour and a half, city staff got the system back up and running. The city said the attack 'did not alter or cause any issue to the physical water plant or water quality or safety.' "The cities of #MaplePlainMN, #PlymouthMN and South St. Paul reported issues with automated controls and communications for their water systems. " 'The issue is limited to equipment connected via cellular communications within the system, and crews have continued operating as normal through manual procedures,' the city of Plymouth reported Monday evening. "Michael Thompson is the public works director in Plymouth. He said Tuesday that the city has extra staff monitoring the water system while automated operations are offline. " 'We plan for these types of events, so we just had to physically go out to lift stations or the water towers, just to ensure they were functioning and running properly,' he said. "State officials did not say which other cities were targeted in the cyberattack. "Other local governments around the state have been targeted by cyberattacks in recent years, including the city of #SaintPaulMN in 2025 and #WinonaCounty earlier this year. Some school districts have also been affected." Full article: https://www.mprnews.org/story/2026/07/28/30-minnesota-municipal-water-systems-targeted-cyberattack #WagTheDog? #EndlessWar #USWarOnIran #USPol
4
10
4
0