Auth Lab Community

Auth Lab Weekly Security Report.

Palermo, Italy’s fifth-largest city, shuts down all public systems

Palermo, Italy’s fifth-largest city with a population of 1.3 million, was forced to shut down all systems after a cyber attack last week that affected all municipal services including public video surveillance and the police operations center. Citizens can only do business through the age-old fax system, and tourists still can’t book museum and theater tickets, or even confirm reservations. If it turns out to be a ransomware attack, Palermo could face a serious data breach and fines for breaching EU data protection regulations.

Read More

As much as 1TB of data from top Russian law firm leaked by hackers

The Anonymous hacker gang attacked Russia again, leaking about 1TB of data from the top Russian law firm RKP Law. Not long ago, the group attacked Vyberi Radio, Russia’s largest media holding company, and leaked hundreds of gigabytes of its data. RKP Law has been operating in Russia for more than 20 years, serving about 500 clients, including many well-known companies such as Volkswagen, Procter & Gamble, IKEA, Toyota, Panasonic, etc. This data leak may cause a devastating blow to the firm.

Read More

Irish embassy in Turkey blocked by cyber attack

The Irish embassy in Turkey has been forced to suspend the processing of visa applications due to a cyber attack. In addition to processing visas, the embassy also provides consular services to Irish citizens, such as foreign birth registration and emergency assistance. An earlier major report on the Defence Force warned that Ireland should strengthen its military intelligence and cyber capabilities to counter espionage threats, recommending the recruitment of an additional 100 cyber defense specialists for the Defence Force.

Read More

Shields data breach affects 2 million patients

US healthcare provider Shields Health Care Group suffered a data breach affecting around 2 million patients. The institution specializes in MRI and PET/CT diagnostic imaging, radiation oncology, and ambulatory surgical services, with numerous partners in the medical field. Hackers allegedly accessed Shields’ systems from March 7 to March 21, 2022, potentially stealing a wealth of privacy including patient names, Social Security numbers, diagnoses, addresses, billing information, insurance information and treatment information .

Read More

Australian trading giant ACY Securities 60GB user data leaked

Recently, Australian securities firm ACY Securities exposed a large amount of user and business data online due to a misconfigured database owned by the company. Over 60GB of data was exposed without any secure authentication, including full names, zip codes, full addresses, dates of birth, city names, gender details, email addresses, phone numbers, hashed passwords and transaction information, etc. . In 2020, researchers discovered more than 10,000 unsecured databases; in 2021, the number of exposed databases ballooned to 399,200.

Read More