CISO Talk by James Azar
CyberHub Podcast
Massive AT&T Data Breach Impacts 110M People, Rite Aid Discloses Breach, 22 Minutes to Exploit
0:00
-14:42

Massive AT&T Data Breach Impacts 110M People, Rite Aid Discloses Breach, 22 Minutes to Exploit

Today’s top cybersecurity news and the latest threats from Practicing CISO James Azar, tune in to hear how practitioner’s breakdown the latest to bolster their cybersecurity programs

AT&T Data Breach

AT&T suffered a significant data breach impacting 110 million wireless subscribers. Hackers accessed call and text interaction records between specific dates. Includes phone numbers, call durations, and cell site identification numbers. Personal information like social security numbers and birth dates were not included. The breach could lead to privacy concerns as the data can easily identify individuals through public searches.

Advanced Auto Parts Data Breach

Hackers accessed the Snowflake account of Advanced Auto Parts, compromising data of 2.3 million individuals. Names, birth dates, social security numbers, and driver's license numbers. The company is offering 12 months of free credit monitoring to affected individuals.

SFR Telecom Breach

French telecom company SFR was breached by an attacker known as Kev Adams, compromising 1.4 million customer records. Included names, phone numbers, addresses, and geolocation data. Ongoing investigation with GDPR compliance expected to provide detailed updates.

RiteAid Cyber Attack

Rite Aid suffered a ransomware attack in June, claimed by the Ransom Hub ransomware group. Not yet detailed, but the company is preparing breach notifications. Investigation and mitigation efforts are underway.

Exploitation of CVE Vulnerabilities

Threat actors are exploiting vulnerabilities within 22 minutes of public disclosure, targeting specific CVEs in Apache, CloudFusion, and MobileIron. Highlights the critical need for rapid patch management and vulnerability assessment.

Action Items:

1. Review and update vulnerability management processes to reduce response time.

2. Implement automated patching solutions to address vulnerabilities swiftly.

Indiana County Ransomware Attack

Clay County in Indiana declared a disaster following a ransomware attack affecting courthouse operations. Declaration allows for financial and logistical support to manage the crisis.

Final Notes

Follow CyberHub Podcast for ongoing updates on cybersecurity incidents. Subscribe and follow the podcast on social media for more in-depth discussions and expert insights.

Share

✅ Story Links: 

https://www.securityweek.com/att-data-breach-nearly-all-wireless-customers-exposed-in-massive-hack/

https://www.cybersecuritydive.com/news/att-cyberattack-snowflake-environment/721235/

https://www.csoonline.com/article/2516887/atts-data-breach-isnt-trivial-especially-to-spy-agencies.html

https://www.securityweek.com/millions-impacted-by-breach-at-advance-auto-parts-linked-to-snowflake-incident/

https://www.cybersecuritydive.com/news/snowflake-mfa-policy-change/720851/

https://thecyberexpress.com/french-telecom-giant-sfr-data-breached-claims/

https://www.bleepingcomputer.com/news/security/rite-aid-confirms-data-breach-after-june-ransomware-attack/

https://www.bleepingcomputer.com/news/security/hackers-use-poc-exploits-in-attacks-22-minutes-after-release/

https://www.securityweek.com/microsoft-says-windows-not-impacted-by-regresshion-as-second-openssh-bug-is-found/

https://therecord.media/indiana-county-disaster-declaration-ransomware-attack-dallas

🔔 Subscribe now for the latest insights from industry leaders, in-depth analyses, and real-world strategies to secure your digital world. https://www.youtube.com/@TheCyberHubPodcast/?sub_confirmation=1  

✅ Important Links to Follow: 

👉Website: https://www.cyberhubpodcast.com

👉Substack:

👉Listen here: https://linktr.ee/cyberhubpodcast   

Stay Connected With Us.

👉Rumble: https://rumble.com/c/c-1353861 

👉Facebook: https://www.facebook.com/CyberHubpodcast/ 

👉LinkedIn: https://www.linkedin.com/company/cyberhubpodcast/ 

👉Twitter (X): https://twitter.com/cyberhubpodcast 

👉Instagram: https://www.instagram.com/cyberhubpodcast 

✅ For Business Inquiries:  info@cyberhubpodcast.com

=============================

About The CyberHub Podcast.

The Hub of the Infosec Community. 

Our mission is to provide substantive and quality content that’s more than headlines or sales pitches. We want to be a valuable source to assist those cybersecurity practitioners in their mission to keep their organizations secure. 

Discussion about this podcast

CISO Talk by James Azar
CyberHub Podcast
Today’s top cybersecurity news and the latest from Practicing CISO James Azar, tune in to hear how practitioners read, view and work after hearing the latest headlines and how these stories help keep practitioners sharp and ready.