CISO Talk by James Azar
CyberHub Podcast
🚨 Cyber News: SEC Charges SolarWinds & CISO with Fraud, FTC Data Breach Reporting, Boeing & Dallas County Ransomware
1×
0:00
Current time: 0:00 / Total time: -15:06
-15:06

🚨 Cyber News: SEC Charges SolarWinds & CISO with Fraud, FTC Data Breach Reporting, Boeing & Dallas County Ransomware

SEC charges Solarwinds and its CISO with Fraud and Misleading investors, FTC begins process of enforcing data breach reporting period and Boeing and Dallas County investigating Ransomware attacks

Here's a summary of the main points covered:

1. Boeing Data Breach: Boeing is investigating a claim made by the LockBit ransomware gang that they exfiltrated large amounts of data from Boeing's network. Boeing has neither confirmed nor denied this claim. There's a mention of a previous ransomware attack on Boeing's factory in South Carolina a few years ago.

2. Dallas County Cybersecurity Incident: The city and county of Dallas have faced cybersecurity challenges. After a ransomware attack on May 4th, Dallas County is now dealing with another cybersecurity incident. The Play ransomware gang has claimed responsibility and threatened to leak stolen data.

3. Atlassian Confluence Vulnerability: Atlassian has warned of a critical vulnerability in Confluence that could lead to significant data loss. The vulnerability has been addressed in the latest versions of the software.

4. LastPass Crypto Theft: Attackers have stolen $4.4 million in cryptocurrency using private keys and passphrases stored in a stolen LastPass database. The total loss due to this breach could be around $35 million.

5. BiBi Linux Malware: A new malware named BiBi Linux is targeting Israeli organizations with destructive attacks. The malware corrupts and wipes systems without dropping a ransom note.

6. SolarWinds and SEC Charges: The U.S. Securities and Exchange Commission (SEC) has charged SolarWinds and its CISO, Timothy G. Brown, with fraud, alleging they misled investors by overstating the company's cybersecurity practices while failing to disclose known risks. The charges are based on internal communications and presentations that highlighted concerns about the company's cybersecurity posture.

7. FTC Rule on Data Breaches: The Federal Trade Commission (FTC) has approved a rule requiring non-banking financial institutions to report data breaches within 30 days. This rule will be effective from April of the following year.

Share

Story Links:

https://www.securityweek.com/sec-charges-solarwinds-and-its-ciso-with-fraud-and-cybersecurity-failures/

https://therecord.media/ftc-approves-disclosure-rules-financial

https://www.securityweek.com/boeing-investigating-ransomware-attack-claims/

https://therecord.media/dallas-county-play-ransomware-incident

https://thehackernews.com/2023/10/atlassian-warns-of-new-critical.html

https://www.bleepingcomputer.com/news/security/lastpass-breach-linked-to-theft-of-44-million-in-crypto/

https://www.bleepingcomputer.com/news/security/new-bibi-linux-wiper-malware-targets-israeli-orgs-in-destructive-attacks/

Thank you for watching and Please Don't forget to Like this video and Subscribe to my Channel!

Apply now to be a featured partner on the show: https://www.cyberhubpodcast.com/contact

******

Listen here: https://linktr.ee/cyberhubpodcast

SubStack:

******

Website: https://www.cyberhubpodcast.com

Youtube: https://www.youtube.com/c/TheCyberHubPodcast

Rumble: https://rumble.com/c/c-1353861

Facebook: https://www.facebook.com/CyberHubpodcast/

Linkedin: https://www.linkedin.com/company/cyberhubpodcast/

Twitter: https://twitter.com/cyberhubpodcast

Instagram: https://www.instagram.com/cyberhubpodcast

The Hub of the Infosec Community.

Our mission is to provide substantive and quality content that’s more than headlines or sales pitches. We want to be a valuable source to assist those cybersecurity practitioners in their mission to keep their organizations secure.

#cybernews #infosec #cybersecurity #cyberhubpodcast #ciso #infosecnews #infosecurity #cybersecuritytips #podcast #technews #tinkertribe #securitygang #informationsecurity #cyberattack #databreach #exploit #zeroday

Discussion about this podcast

CISO Talk by James Azar
CyberHub Podcast
Today’s top cybersecurity news and the latest from Practicing CISO James Azar, tune in to hear how practitioners read, view and work after hearing the latest headlines and how these stories help keep practitioners sharp and ready.