Cyber Bits · · 2 min read

Cyber Bits: February 26, 2024

Cyber Bits: February 26, 2024

This week’s edition of Cyber Bits virtually crafted its own narrative, and thankfully not all of it was bad news!

LockBit ransomware disrupted by global police operation

Links: Bleeping Computer

Kicking things off on a positive note, the LockBit ransomware-as-a-service (RaaS) operation faced a significant setback, thanks to the concerted efforts of an international law enforcement task force. This strategic operation led to the seizure and control of their website, alongside the arrest of several key members of the ransomware syndicate.

Connectwise ScreenConnect – Critical vulnerability

Links: Bleeping Computer Security Week

Regrettably, not all the news can be positive. Initially identified on February 13th, this exploit of low complexity poses a risk to data access and allows for remote code execution without requiring any user interaction. Discovered only this week, this new vulnerability has already been actively exploited in the wild. In response, ConnectWise commendably issued a patch on February 19th, available to all partners, including those whose maintenance agreements have lapsed. If you’re utilizing ConnectWise ScreenConnect, it’s crucial to contact your partner to verify that you’re operating the latest, patched version.

Cayman Islands Government responds to reported security incident

Links: Youtube Cayman Marl Road

A Cayman Media outlet reported on the 16th that the Cayman Islands Government Computer Services division “experienced a security breach of their system”. In response the CIG released a statement on YouTube to clarify the incident and reassure the public.

Read next

Cyber Bits: September 16
Cyber Bits ·

Cyber Bits: September 16

This week, Ivanti reports a critical vulnerability now actively exploited, Transport for London is resetting 30,000 employee passwords in person, the Port of Seattle was hit by Rhysida ransomware, and a Windows vulnerability is being exploited via invisible braille spaces.

Cyber Bits: September 9
Cyber Bits ·

Cyber Bits: September 9

This week’s coverage focuses on renewed spyware threats, Russian cyberattacks, critical vulnerabilities impacting Veam, Sonicwall, Dlink and Yubi, and air-gapping might not be enough any more.

Cyber Bits: September 2
Cyber Bits ·

Cyber Bits: September 2

This week, we take a look at SQLi vulnerabilities within TSA software, researchers being sued, and a staggering 200+ victims of RansomHub's Ransomware-as-a-Service.