WestJet cyberattack remains unresolved one week in, airline says operations unaffected | CBC News
WestJet says a cyberattack that began last week remains unresolved, as questions linger about the nature and fallout of the breach.
Scattered Spider is believed based in the US & UK with social engineering attacks on UK retail (M&S, Harrods) and US Insurance (Aflac). Whispers say they may be behind attacks on WestJet & possibly even Hawaiian Airlines.
www.cbc.ca/news/canada/...
27.06.2025 15:59 β π 0 π 0 π¬ 0 π 0
Starkville Utilities in MI files a Data Breach Notification with the Maine AG more than 6 months after the initial Oct '24 discovery of unauthorized activity. Surely we can do better to than take 6 months to notify those impacted?
07.05.2025 12:44 β π 0 π 0 π¬ 0 π 0
Elmore County ID has files a Notice of Data Security Incident with the Idaho AG 3 weeks after the Apr.15 discover of unauthorized access. 3 Week turnaround is pretty good. Waiting 12+ months to notify those impacted, as some orgs do, is shameful.
07.05.2025 12:34 β π 0 π 0 π¬ 0 π 0
City of Abilene Goes Offline in Wake of Cyberattack
The Texas municipality is following its incident response playbook as it works with a third-party to investigate the scope and scale of the attack.
The City of Abilene, TX filed a Data Security Breach Report with the Texas AG two weeks after a network outage. TWO WEEKS is an awesome turnaround for notifying those impacted! Some orgs take a YEAR or more to notify!!!
www.darkreading.com/vulnerabilit...
07.05.2025 12:14 β π 0 π 0 π¬ 0 π 0
Frio County, TX today filed a Data Security Breach Report with the Texas AG.
24.04.2025 14:04 β π 0 π 0 π¬ 0 π 0
Lampasas County, TX today filed a Data Security Breach Report with the Texas AG.
24.04.2025 13:59 β π 0 π 0 π¬ 0 π 0
Criminal group Qilin are up to their old tricks, claiming to have stolen 50 GB of data from Bertie County Public Schools, comprising 7 schools in NC.
17.04.2025 13:20 β π 0 π 0 π¬ 0 π 0
Cybercriminals Qilin are low on caffeine today. They claim a breach of Nelson University (nelson.edu) in TX, or Nelson.com, which sells to EDU, based on Ontario ... their data has both. First seen in 2022, Qilin clearly needs some time off.
17.04.2025 09:46 β π 0 π 0 π¬ 0 π 0
Criminal group Medusa claims to have stolen 500GB of data from Pawnee Heights Unified School District in KS, demanding $160k ransom. More on Medusa from CISA.gov: www.cisa.gov/news-events/...
16.04.2025 10:21 β π 0 π 0 π¬ 0 π 0
Fall River Public Schools, comprising 17 schools in MA, is facing a network outage, with ransom attack claimed by cybercriminal group Medusa. Read more about the group: www.cisa.gov/news-events/...
14.04.2025 10:31 β π 0 π 0 π¬ 0 π 0
Cybercriminal group Interlock claims to be behind the breach of the Cherokee County School District in SC, first announced in mid-March. Since appearing in Sept'24, Interlock has multiple school and local governments among their two dozen victims.
04.04.2025 13:32 β π 0 π 0 π¬ 0 π 0
Criminal group Rhysida claims to have stolen data from Okeene Public Schools in OK, demanding 5 bitcoin (~$85k) ransom. More on Rhysida: www.cisa.gov/news-events/...
25.03.2025 11:10 β π 0 π 0 π¬ 0 π 0
Austintown Local School District in OH has had person info of approx 180 students compromised as a result of a phishing incident. WFMJ-TV has the story: www.wfmj.com/story/525997...
21.03.2025 10:01 β π 0 π 0 π¬ 0 π 0
Criminal group Medusa claims to have stolen 205 GB of data from Big Horn County School District #4 in Wyoming. Read about Medusa here: www.cisa.gov/news-events/...
20.03.2025 18:16 β π 0 π 0 π¬ 0 π 0
Criminal group Cloak claims to have stolen data from the Office of Attorney General of Virginia.
20.03.2025 18:11 β π 0 π 0 π¬ 0 π 0
Criminal group Cloak claims to have stolen data from Baltimore City Public Schools, a district that operates 154 schools.
20.03.2025 18:07 β π 1 π 0 π¬ 0 π 0
Fog ransomware group claims to have stolen data from Newtown Friends School in PA
20.03.2025 18:01 β π 0 π 0 π¬ 0 π 0
Threat actor Qilin pressures Cleveland Municipal Court, breached 3 wks ago, with a post on their dark website. Emerging in 2022, Qilin has been consistently active this year and last with over 300 victims to date. More here: www.hhs.gov/sites/defaul...
19.03.2025 11:48 β π 0 π 0 π¬ 0 π 0
New criminal group - VanHelsing - appears and claims their first victim: City of Bellville, Texas
17.03.2025 17:04 β π 0 π 0 π¬ 0 π 0
Yesterday criminal group Babuk claimed to have breached the Florida DOT. At least they were honest enough to admit that they STOLE 800GB of data, rather than claiming pentesting BS. This has been their busiest month since first appearing in 2021.
17.03.2025 11:03 β π 0 π 0 π¬ 0 π 0
Criminal group RansomHouse claims to have stolen 1.5 TB of data from The Loretto Hospital in Chicago.
10.03.2025 14:07 β π 0 π 0 π¬ 0 π 0
New ransomware group appears (CrazyHunter), and 5 of their first 5 victims are in Taiwan. I wonder where CrazyHunter hails from?
09.03.2025 18:10 β π 1 π 0 π¬ 0 π 0
Hancock Public School in MN is the latest US K12 to fall victim; criminal group Interlock claims to have stolen 120 GB of data.
07.03.2025 23:04 β π 0 π 0 π¬ 0 π 0
At least 34 School Districts and 4 ESDs comprising an additional 60 SDs have been affected by the Carruth Compliance Consulting breach, with 469 GB of data claimed to have been stolen by new criminal group Skira. Supply chain attacks are devastating to K12!
07.03.2025 12:51 β π 0 π 0 π¬ 0 π 0
A new criminal group - Skira - emerged yesterday claiming 5 victims, including Carruth. Is there a relationship between these 2 breaches? Between RansomHub and Skira? When will spring finally arrive? Stay tuned
07.03.2025 11:32 β π 0 π 0 π¬ 0 π 0
Ransomware group RansomHub claims to have stolen 110 GB of data from Portland Public Schools in ME. Portland schools announced in Jan that was impacted by the Carruth data breach.
07.03.2025 11:32 β π 0 π 0 π¬ 0 π 0
Criminal group Fog claims to have stolen > 27 GB of data from Williamsburg-James City County Public Schools, comprising 16 schools in VA. First appearing about a year ago,the vast majority of Fog's victims are in the US, with the EDU sector one of their fav targets.
06.03.2025 17:37 β π 0 π 0 π¬ 0 π 0
On Feb 25 the Idaho Transportation Department filed a Security Breach Notification with the Idaho AG. The scope of the data compromised is not yet clear.
28.02.2025 19:49 β π 0 π 0 π¬ 0 π 0
This week Tom Green County TX filed a Data Security Breach Report with the Texas AG, listing PHI and PII data as being compromised.
28.02.2025 19:41 β π 0 π 0 π¬ 0 π 0
RansomHub claims to be the criminal group behind the breach of the Town of Bourne MA. A Data Breach Notification was filed with the Mass AG on Feb 21, regarding the breach discovered Jan 11.
www.capenews.net/bourne/news/...
28.02.2025 12:01 β π 0 π 0 π¬ 0 π 0
Computer Security Professional. Tweets are my own.
Rooster Teeth Archive Project:
https://rtarchive.org/videos
Blog: dodgethissecurity.com
ICS/OT security nerd in Scotland. Breaking computers in new ways since the age of 7. Often grumpy about the state of the world.
β Cybersecurity reporter
β
Newsletters at Risky Business
#infosec #cybersecurity
https://risky.biz
Critical Infrastructure & Industrial Security Advisor. Ampyx Cyber CEO. Public speaker. Airport dweller. Recovering regulator. BEERISAC member. CCI US Coordinator. Former SANS Instructor.
#ICS #OT #NERCCIP #NIST #IEC62443 #NIS2 #CRA #SlavaUkraini
Democratizing Cyber Security. Threat intelligence platform for Cyber Security professionals and Small / Medium business. Insights from Darkweb and Threat Actors.
βUh-Lee-thβ | Bishop Fox π¦ Red Team | DEF CON Goon & Black Badge Hall of Fame | DEF CON Social Engineering CTF Winner 2019 | Physical Pentester | IVR Pentester | IR Tabletop King π
Safa πΏπ¦ in NorCal πΊπΈ - Fish π Nerd - Jeep Girl
Chief Research Officer @ Unit 221B
most reliable way to reach me is my company's outreach form on the website
my other urls:
https://infosec.exchange/@nixonnixoff
https://www.linkedin.com/in/allison-nixon-81822124/
don't bother contacting me on twitter
Co-leader OWASP Cornucopia. If you like what we do for open source, visit our code repository https://github.com/OWASP/cornucopia and give us a star β
π Β«Difference is of the essence of humanityΒ» π¦ β John Hume
#appsec #owasp #cornucopia #threatmodeling
Sr. Manager, Threat Operations @kroger π CTI, Hunting, Detection Engineering, Insider Risk, Fraud & Forensics π» Fmr LE & DFIR for OH & Secret Service TF. #FSD #w00w00 #CFC
#Librarian turned #InfoSec & #DataPrivacy practitioner. #Philly area hoagie mouth. InfoSecSherpa and Sherpa Intelligence: Your Guide Up a Mountain of Information! Portfolio: https://linktr.ee/infosecsherpa
computer security person. former helpdesk.
Threat Intel / CTI / OT / ICS / Critical Infra stuff along with other things. I genuinely care, and wish others did too.
Website: pylos.co
Training/Consulting: paralus.co
tech reporter for the NYT!
co-author of CHARACTER LIMIT!
signal: kateconger.11
buy our book: https://www.penguinrandomhouse.com/books/737290/character-limit-by-kate-conger-and-ryan-mac/
tour dates & translations: https://linktr.ee/kateconger
Mandiant Intelligence at Google. CYBERWARCON and SLEUTHCON founder. Johns Hopkins professor. Army vet.
Chasing digital badness. Senior Researcher at Citizen Lab, but words here are mine.
Security editor, TechCrunch
Signal: zackwhittaker.1337
My stories: techcrunch.com/author/zack-whittaker
My newsletter/blog: this.weekinsecurity.com
Director of Cybersecurity @eff.org
Co-founder of @stopstalkerware.bsky.social
These opinions are my own, not my employersβ
I did a TED talk once
Geopolitics, Russia, China, Cyber
Chairman @silverado.org
Author of WorldOnTheBrink.com
Host GeopoliticsDecanted.com podcast
Founder Alperovitch Institute for Cybersecurity Studies at Johns Hopkins SAIS
Co-Founder CrowdStrike
@DAlperovitch elsewhere
Author of βRussian Information Warfareβ | Cyber chair, WSF | Randite | Oxonian | Bear huntress