Tag: All Regions

Hackers breach US govt agencies using Adobe ColdFusion exploit

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning about hackers actively exploiting a critical vulnerability in Adobe ColdFusion identified as CVE-2023-26360 to gain initial access to government servers. The security issue allows executing arbitrary code on servers running  Adobe ColdFusion 2018 Update 15 and older, and 2021 Update 5 and earlier. It was exploited as a zero day before Adobe…

Crisis-hit CBI turns to Smith & Nephew’s Soames as next president

The crisis-hit CBI has turned to Sir Winston Churchill’s grandson to help steer it back from the brink of financial oblivion. The business lobbying group confirmed a Sky News report on Tuesday that Rupert Soames, the former boss of Aggreko and Serco, has been lined up to succeed Brian McBride as its next president. Mr Soames will take on the…

US examined Hindenburg of fraud allegations before giving loan to Adani

  WASHINGTON – The US government concluded that short-seller Hindenburg Research’s allegations of corporate fraud against Indian billionaire Gautam Adani weren’t relevant before extending his conglomerate as much as US$553 million (S740 million) for a container terminal in Sri Lanka, a senior US official said. Allegations in a scathing report by US-based Hindenburg Research, which erased around US$100 billion from…

Stealthier version of P2Pinfect malware targets MIPS devices

The latest variants of the P2Pinfect botnet are now focusing on infecting devices with 32-bit MIPS (Microprocessor without Interlocked Pipelined Stages) processors, such as routers and IoT devices. Due to their efficiency and compact design, MIPS chips are prevalent in embedded systems like routers, residential gateways, and video game consoles. P2Pinfect was discovered in July 2023 by Palo Alto Networks…

Russian hackers exploiting Outlook bug to hijack Exchange accounts

Microsoft’s Threat Intelligence team issued a warning earlier today about the Russian state-sponsored actor APT28 (aka “Fancybear” or “Strontium”) actively exploiting the CVE-2023-23397 Outlook flaw to hijack Microsoft Exchange accounts and steal sensitive information. The targeted entities include government, energy, transportation, and other key organizations in the United States, Europe, and the Middle East. The tech giant also highlighted the…

Tipalti investigates claims of data stolen by ransomware gang

Tipalti says they are investigating claims that the ALPHV ransomware gang breached its network and stole 256 GB of data, including data for Roblox and Twitch. Tipalti offers technology solutions for accounting, payment processing, eCommerce, and affiliate and influencer programs. The company has numerous well-known customers, including Twitch, Roblox, ZipRecruiter, Roku, GoDaddy, Canva, and X. “Over the past weekend, a…

Lapsed US chemical security programme leaves facilities at risk

There are continued warnings that the US has been without a chemical security programme since late July, leaving more than 3000 high-risk chemical facilities in the country vulnerable to terrorist, cyber- and physical attacks. The Chemical Facility Anti-Terrorism Standards (CFATS) programme, which was authorised 17 years ago and is managed by the Cybersecurity and Infrastructure Security Agency (CISA), is charged…

Rights organisations sue Netherlands over F-35 parts to Israel

HAGUE: A group of human rights organisations took the Dutch government to court on Monday, arguing its supply of parts for F-35 fighters contributes to violations of international law in Gaza. The case concerns US-owned F-35 parts stored at a warehouse in the Netherlands and then shipped to several partners, including Israel, via existing export agreements. Oxfam Novib, one of…

Spotify to cut nearly 20% of its workforce despite £55m profit

Note from Corruption Ledger Spotify is a publicly traded company headquartered in Luxembourg. Swedish founders Daniel Ek and Martin Lorentzon started Spotify as a small start-up in Stockholm, Sweden in 2006.  Job cuts don’t just affect those who are laid off. It creates a culture of fear for remaining employees, who must work additional hours and maneuver to adapt to…

GIC acquires two more logistics facilities in Japan

  SINGAPORE – GIC has bought two logistic facilities developed by Japanese real estate developer Daiwa House Industry for an undisclosed amount. The assets in Takatsuki city of Greater Osaka and Tosu city of Greater Fukuoka were completed in 2023 and 2021, said the Singapore sovereign wealth fund on Dec 4. “Both properties have modern building specifications that cater to…

US Health Dept urges hospitals to patch critical Citrix Bleed bug

The U.S. Department of Health and Human Services (HHS) warned hospitals this week to patch the critical ‘Citrix Bleed’ Netscaler vulnerability actively exploited in attacks. Ransomware gangs are already using Citrix Bleed (tracked as CVE-2023-4966) to breach their targets’ networks by circumventing login requirements and multifactor authentication protections. HHS’ security team, the Health Sector Cybersecurity Coordination Center (HC3), issued a sector…

Abu Dhabi state-backed fund moves to take control of Daily Telegraph

An Abu Dhabi state-backed vehicle has moved closer to taking full control of The Daily Telegraph just hours after the launch of a regulatory probe that prevents it from removing key journalists from their posts. Sky News has learnt that RedBird IMI has given the newspaper’s board and the government notice of its intention to activate a call option that…

New Zealand Government Data Suggests Alarming Pfizer Death Rate

A statistician has come forward with disturbing information that, if correct, will promote doubt on the safety of mRNA vaccination for decades into the future. The whistleblower was involved with building and implementing the New Zealand government database vaccine payment system, a ‘pay per dose system’ that would remit payments to vaccination providers. In an interview with New Zealand journalist…

Culture Secretary to prohibit removal of key Telegraph staff during probe

The government is to prohibit the removal or transfer of key Daily Telegraph journalists during a public interest probe into the newspaper’s prospective takeover by a state-backed Abu Dhabi investor. Sky News has learnt that Lucy Frazer, the culture secretary, is preparing to make an interim enforcement order (IEO) that will impose a set of restrictions on the Daily and…

Staples confirms cyberattack behind service outages, delivery issues

American office supply retailer Staples took down some of its systems earlier this week after a cyberattack to contain the breach’s impact and protect customer data. Staples operates 994 stores in the US and Canada, along with 40 fulfillment centers for nationwide product storage and dispatch. The disclosure comes after multiple Reddit reports posted online since Monday reported various Staples…

Mercer to pay $12 million penalty for misleading representations and fee disclosure failures

Mercer Financial Advice has been ordered by the Federal Court to pay a $12 million penalty for breaching fee disclosure obligations and for wrongly charging fees to customers, ASIC has reported. “This is a significant penalty for a financial advice provider,” said Sarah Court (pictured above), ASIC deputy chair. “Mercer failed in its obligation to provide fee disclosure statements to…