EVOITSEC

EDITION #23

INFORMATION SECURITY DIGEST
• The leading global financial services company Prudential Financial has disclosed that its network was breached, with the attackers stealing employee and contractor data before being blocked from compromised systems one day later.

• Hackers stole Cloudflare access tokens from a major access and identity management system provider, Okta. The attackers successfully hacked its internal Atlassian server, Confluence wiki, Jira bug database, and Bitbucket source code management system.

• Romanian authorities have reported a devastating ransomware attack on multiple medical facilities using the Hipocrate Information System healthcare management system. The system became non-functional, making hospital staff unable to access files/databases and forcing patients to wait in emergency rooms.

• SGX Mainboard-listed Aztech Global Ltd and its subsidiaries reported that the Group recently experienced a cybersecurity incident where cyber criminals gained unauthorised access to its IT network and deployed a ransomware attack.

• For the second time in one week, cybercriminals have targeted a Chicago children's hospital, this time causing significant operational disruption. Lurie Children's Hospital said it pulled network systems offline. Young patients have been unable to attend scheduled appointments for six days and counting.

• Cybercriminals gained access to the production systems of IT network developer AnyDesk. The attackers managed to steal the software source code and code signing keys.

• PSI Software SE discovered that there had been a cyber attack on PSI's IT systems. In response, the company proactively disconnected systems from the Internet to prevent data breaches and data corruption.

• The European division of the automaker Hyundai Motor was attacked by the Black Basta extortion group. Hackers claim to have stolen 3 TB of corporate data.