Intro: Take the time read...you might be glad you did.
Second largest U.S. school district LAUSD hit by ransomware
"Los Angeles Unified (LAUSD), the second largest school district in the U.S., disclosed that a ransomware attack hit its Information Technology (IT) systems over the weekend.
LAUSD enrolls more than 640,000 students, spanning from kindergarten through 12th grade. It includes Los Angeles and 31 smaller municipalities, as well as several Los Angeles County unincorporated sections.
The school district first revealed districtwide technical issues after discovering that the attackers disrupted access to LAUSD systems, including email servers.
Roughly seven hours later, it confirmed that this was a ransomware attack, tagging the incident as "criminal in nature."
LAUSD has reported the incident and is working with law enforcement and federal agencies (the FBI and CISA) as part of an ongoing investigation and incident response.
"After the District contacted officials over the holiday weekend, the White House brought together the Department of Education, the Federal Bureau of Investigation (FBI) and the Department of Homeland Security's Cybersecurity and Infrastructure Security Agency (CISA) to provide rapid, incident response support to Los Angeles Unified, building on the immediate support by local law enforcement agencies," the district said.
"At the District's request, agencies marshaled significant resources to assess, protect and advise Los Angeles Unified's response, as well as future planned mitigation protocols."
— Los Angeles Unified (@LASchools) September 6, 2022
Even though the attack disrupted LAUSD infrastructure, the district says schools will still open today while it works to restore impacted servers, with some expected delays affecting some services.
"While we do not expect major technical issues that will prevent Los Angeles Unified from providing instruction and transportation, food or Beyond the Bell services, business operations may be delayed or modified," LAUSD added.
"Based on a preliminary analysis of critical business systems, employee healthcare and payroll are not impacted, nor has the cyber incident impacted safety and emergency mechanisms in place at schools."
The district added that instruction and staffing, as well as payroll processing, were undisrupted by this incident.
In November, the U.S. Department of Education and the Department of Homeland Security (DHS) were urged to strengthen cybersecurity protections at K-12 schools nationwide to keep up with a massive and ongoing wave of attacks.
The call for action came from U.S. Senators Maggie Hassan, Kyrsten Sinema, Jacky Rosen, and Chris Van Hollen after a Government Accountability Office (GAO) report assessing the Education Dept's current plan for addressing K-12 school threats (issued in 2010) to be significantly outdated and focusing on mitigating physical threats.
According to Emsisoft threat analyst Brett Callow, ransomware attacks have disrupted education at approximately 1,000 universities, colleges, and schools during 2021.
This number was lower than in 2020 (when 1,681 education institutions were affected), mainly because last year's ransomware attacks have hit smaller school districts."
THE EARLIEST FIRST UP
Google says former Conti ransomware members now attack Ukraine
Google says some former Conti cybercrime gang members, now part of a threat group tracked as UAC-0098, are targeting Ukrainian organizations and European non-governmental organizations (NGOs).
- September 07, 2022
- 07:00 AM
- 0
Albania blames Iran for July cyberattack, severs diplomatic ties
Albanian Prime Minister Edi Rama announced on Wednesday that the entire staff of the Embassy of the Islamic Republic of Iran was asked to leave within 24 hours.
- September 07, 2022
- 08:37 AM
- 0
Ransomware gang's Cobalt Strike servers DDoSed with anti-Russia messages
Someone is flooding Cobalt Strike servers operated by former members of the Conti ransomware gang with anti-Russian messages to disrupt their activity.
- September 07, 2022
- 09:09 AM
- 3
New Iranian hacking group APT42 deploys custom Android spyware
A new Iranian state-sponsored hacking group known as APT42 has been discovered using a custom Android malware to spy on targets of interest.
- September 07, 2022
- 10:18 AM
- 0
200,000 North Face accounts hacked in credential stuffing attack
Outdoor apparel brand 'The North Face' was targeted in a large-scale credential stuffing attack that has resulted in the hacking of 194,905 accounts on the thenorthface.com website.
- September 07, 2022
- 10:40 AM
- 0
Ukraine dismantles more bot farms spreading Russian disinformation
The Cyber Department of the Ukrainian Security Service (SSU) dismantled two more bot farms that spread Russian disinformation on social networks and messaging platforms via thousands of fake accounts.
- September 07, 2022
- 11:47 AM
- 0
Cisco won’t fix authentication bypass zero-day in EoL routers
Cisco says that a new authentication bypass flaw affecting multiple small business VPN routers will not be patched because the devices have reached end-of-life (EoL).
- September 07, 2022
- 01:05 PM
- 1
HP fixes severe bug in pre-installed Support Assistant tool
HP issued a security advisory alerting users about a newly discovered vulnerability in HP Support Assistant, a software tool that comes pre-installed on all HP laptops and desktop computers, including the Omen sub-brand.
- September 07, 2022
- 02:06 PM
- 0
Prepare for your IT certifications with this $20 practice bundle deal
The IT field is expanding, and getting certified can be your next step toward a lucrative career. You can prepare for certification with the 2022 CompTIA & AWS Practice Exam E-Book Bundle, on sale today for $19.99.
- September 07, 2022
- 02:07 PM
- 0
✓
No comments:
Post a Comment