State of (in)security - Week 29, 2024
Take action: If you thought that Internet Explorer flaws are gone just because it's no longer visible in your Windows - you are wrong. All it takes is a phishing attachment to exploit the vulnerability in the still existing code of Internet Explorer. Be very careful of unexpected emails, even if they just contain PDF files. And make sure you patch your Windows!
Learn More
In the week between July 15, 2024, midnight and July 22, 2024, midnight we witnessed a total of:
- 8 advisory/vulnerability events
- 21 incident/data breach events
Week over Week comparison of week 29 2024 vs week 28 2024:
- Advisories have decreased and incidents have increased. Advisories are down from 11 in week 28 to 8 in week 29. Incidents are up from 19 in week 28 to 21 in week 29.
- The number of known impacted individuals has decreased - from over 110 million in week 28 to over 12.8 million in week 29.
We also shared 4 practical knowledge items
Total impacted individuals via the events of the week
There were a total of 12,800,733 impacted individuals across 9 incidents, with the largest breach being the Hacker claims Pinterest data breach, theft of 6 million records incident exposing 6,000,000 individuals. Since not all incidents report a number of impacted individuals, the real number is definitely higher than that.
Cause breakdown of incidents
| Cause | Number of incidents |
|---|---|
| Malware, Ransomware and Related Attacks | 6 |
| Software Vulnerability and SDLC Exploits | 2 |
| Third Party Compromise | 2 |
| Unauthorized access | 1 |
Industry breakdown of incidents
| Industry | Number of incidents |
|---|---|
| IT/Software/Technology | 4 |
| Education | 3 |
| Government | 3 |
| Healthcare | 3 |
| Manufacturing | 2 |
| Telecommunications | 2 |
| Transport/Logistics | 1 |
| Consulting/Professional Services | 1 |
| Finance | 1 |
| Automotive | 1 |
Read the Event Details of the Week
Knowledge
- active attack | Active phishing campaign abusing CrowdStrike incident
- active attack | CISA warns of GeoServer critical flaw under active attack
- active attack | Security researchers warn that a critical Apache HugeGraph vulnerability is attacked
- active exploit | Trend Micro warns of hacker gang VoidBanshee exploiting Windows vulnerability CVE-2024-38112
Vulnerabilities
- critical vulnerability | Cisco reports critical flaw in Cisco Secure Email Gateway enabling arbitrary file write
- critical vulnerability | Cisco reports critical vulnerability Cisco Smart Software Manager On-Prem, enabling change of any user's password
- critical vulnerability | Google releases Chrome security update, at least one critical flaw
- critical vulnerability | HPE fixes critical flaw in 3PAR service processor allowing authentication bypass
- critical vulnerability | Li.Fi decentralized finance platform reports cyberattack and theft of $11M
- critical vulnerability | Oracle releases hundreds of patches in a massive July 2024 Critical Patch Update
- critical vulnerability | SolarWinds patches critical flaws in Access Rights Manager
- critical vulnerability | WP Time Capsule Backup and Staging plugin patches critical vulnerability
Incidents
- data breach | Cadre Holdings reports cybersecurity incident
- data breach | Gastroenterology Associates of Central Florida reports data breach
- data breach | Thousands of Life360 user data scraped via unsecured API and leaked
- data breach | Washington State University impacted by cyberattack on Cougar Health Services Pharmacy
- data breach | Family Dynamics Counseling Services reports data breach
- data breach | Environmental Protection Authority of Victoria reports cyberattack, data breach
- data breach | Fractal ID identity platform reports data breach
- data breach | Malasyan National Cyber Security Agency investigates claimed data breach of U Mobile
- data breach | Hacker claims breach of Societe Francaise Du Radiotelephone telecom
- data breach | Hacker claims Pinterest data breach, theft of 6 million records
- data breach | Australian healthcare education Healthed reports data breach
- data breach | BMW Hong Kong alleged data breach exposes 14k customers
- data breach | Turkish Personal Data Protection Authority investigates breach claims at Uber technologies
- data breach | Pueblo County school district 70 reports ransomware attack, data breach
- data breach | MNGI Digestive Health reports data breach, exposing 765k people
- data breach | WazirX reports security breach of crypto exchange, $230 million stolen
- ransomware | LA County Superior Court hit by ransomware attack as the rest of the world was reeling from the CrowdStrike outage
- ransomware | Ransomware attack claimed on Queensland accounting Ffrm Gibbs Hurley Chartered Accountants
- ransomware | Philippine Department of Migrant Workers hit by ransomware attack
- ransomware | Bassett Furniture hit by ransomware, disrupts operations
- untested update | CrowdStrike agent update caused global disruption in Windows, impacting most industries