Month: September 2024


  • Cobalt Strike Beacon Detected – 101[.]200[.]223[.]139:443

    * [Cobalt Strike](https://www.redpacketsecurity.com/category/cobalt-strike/)Cobalt Strike Beacon Detected — 101-[.-]200-[.-]223-[.-]139:443================================================================[September 14, 2024](https://www.redpacketsecurity.com/2024/09/) Cobalt Strike Beacon Detection Alerts > The Information provided at…


  • Apple Suddenly Drops NSO Group Spyware Lawsuit

    ![iPhone security](https://www.securityweek.com/wp-content/uploads/2023/11/iOS-security-vulnerabilities.jpg) **Apple has abruptly withdrawn its lawsuit against NSO Group, citing increased risk that the legal battle might unintentionally…


  • 2024-09-12 – Approximately 11 days of server scans and probes

    2024-09-12 (THURSDAY): APPROXIMATELY 11 DAYS OF SERVER SCANS AND PROBES———————————————————————–NOTES:* Zip files are password-protected. Of note, this site has a…


  • BianLian Ransomware Victim: Law Offices of Michael J Gurfinkel, Inc

    * [Data Breach](https://www.redpacketsecurity.com/category/databreach/)* [Ransomware](https://www.redpacketsecurity.com/category/ransomware/)BianLian Ransomware Victim: Law Offices of Michael J Gurfinkel, Inc===================================================================[September 14, 2024](https://www.redpacketsecurity.com/2024/09/) ![BianLian](https://www.redpacketsecurity.com/wp-content/uploads/2023/05/BianLian.png ‘BianLian Ransomware Victim: Law…


  • GitLab fixed a critical flaw in GitLab CE and GitLab EE

    GitLab addressed multiple vulnerabilities impacting GitLab CE/EE, including a critical pipeline execution issue.—————————————————————————————————————-GitLab released security patches for 17 vulnerabilities in…


  • Port of Seattle hit by Rhysida ransomware in August attack

    ![Port of Seattle](https://www.bleepstatic.com/content/hl-images/2024/09/13/Port-of-Seattle.jpg)*Image: Midjourney*Port of Seattle, the United States government agency overseeing Seattle’s seaport and airport, confirmed on Friday that…


  • TfL requires in-person password resets for 30,000 employees after hack

    ![Transport for London](https://www.bleepstatic.com/content/hl-images/2024/09/06/Transport-for-London.jpg) Transport for London (TfL) says that all staff (roughly 30,000 employees) must attend in-person appointments to verify…


  • CosmicBeetle joins the ranks of RansomHub affiliates – Week in security with Tony Anscombe

    Video, RansomwareCosmicBeetle joins the ranks of RansomHub affiliates — Week in security with Tony Anscombe===========================================================================================ESET research also finds that CosmicBeetle…


  • Multiple attacks forces CISA to order agencies to upgrade or remove end-of-life Ivanti appliance

    ![ivanti logo](https://cms.therecord.media/uploads/format_webp/michael_dziedzic_O99b_Ww_DM_Ba8_unsplash_a9f4479abf.jpg?w=3840) [Jonathan Greig](/author/jonathan-greig)September 14th, 2024 Multiple attacks forces CISA to order agencies to upgrade or remove end-of-life Ivanti appliance================================================================================================The…


  • 23andMe pledges $30 million to the 6.4 million people affected by data breach

    ![helix](https://cms.therecord.media/uploads/format_webp/helix_3b07627244.jpg?w=3840)Image: Planet Volumes / Unsplash [Jonathan Greig](/author/jonathan-greig)September 13th, 2024 23andMe pledges $30 million to the 6.4 million people affected by…