02 December 2023

Some of the latest articles from Bleeping Computer

Top Stories 

While the cyberattack has yet to be attributed, it aligns with a concerted cyberespionage effort to harvest and steal sensitive information stored on the agency's servers.

Japanese Space Agency JAXA hacked in summer cyberattack

  • November 29, 2023
  • 12:04 PM
  • 0

JAXA

The Japan Aerospace Exploration Agency (JAXA) was hacked in a cyberattack over the summer, which may have put sensitive space-related technology and data at risk.

The security breach was discovered this autumn when law enforcement authorities alerted Japan's space agency that its systems were compromised, as first reported by The Yomiuri Shimbun.

Confirming the infiltration, Chief Cabinet Secretary of Japan Hirokazu Matsuno revealed in a press conference that the attackers gained access to the agency's Active Directory (AD) server, a crucial component overseeing JAXA's network operations.

Established in 2003, JAXA is Japan's national aerospace research and development institution. √ In 2012, its mandate had been expanded to encompass military space development, including the development of space-based missile early warning systems.
This incident isn't the agency's first brush with security breaches as it was also attacked in 2016 and 2017 when nearly 200 Japanese defense-related research institutions and firms were the targets of a widespread cyber assault.
The Japanese Metropolitan Police Department attributed the attacks to a group of Chinese military hackers identified as Tick, also known by aliases BRONZE BUTLER and STALKER PANDA, in April 2021.
In September 2023, US and Japanese law enforcement and cybersecurity agencies warned in a joint advisory that Chinese state-backed BlackTech hackers were backdooring corporate network devices. . .

Related Articles:

Capital Health Hospitals hit by cyberattack causing IT outages

Staples confirms cyberattack behind service outages, delivery issues

Okta: October data breach affects all customer support system users

Cyberattack on IT provider CTS impacts dozens of UK law firms

General Electric investigates claims of cyber attack, data theft

 

  • The Week in Ransomware - December 1st 2023 - Police hits affiliates

    An international law enforcement operation claims to have dismantled a ransomware affiliate operation in Ukraine, which was responsible for attacks on organizations in 71 countries.

  • TrickBot malware dev pleads guilty, faces 35 years in prison

    On Thursday, a Russian national pleaded guilty to charges related to his involvement in developing and deploying the Trickbot malware, which was used in attacks against hospitals, companies, and individuals in the United States and worldwide.

  • Hackers use new Agent Raccoon malware to backdoor US targets

    A novel malware named 'Agent Raccoon' (or Agent Racoon) is being used in cyberattacks against organizations in the United States, the Middle East, and Africa.

  • French government recommends against using foreign chat apps

    Prime Minister of France Élisabeth Borne signed a circular last week requesting all government employees to uninstall foreign communication apps such as Signal, WhatsApp, and Telegram by December 8, 2023, in favor of a French messaging app named 'Olvid.'

  • VMware fixes critical Cloud Director auth bypass unpatched for 2 weeks

    VMware has fixed a critical authentication bypass vulnerability in Cloud Director appliance deployments, a bug that was left unpatched for over two weeks since it was disclosed on November 14th.

  • Windows 10 KB5032278 update adds Copilot AI assistant, fixes 13 bugs

    Microsoft has started rolling out its Copilot AI assistant to Windows 10 with the KB5032278 November 2023 non-security preview update for systems running Windows 10, version 22H2.

  • Upgrade to hybrid work with $400 off a refurbished Surface 3 laptop

    A good laptop is crucial to getting things done. This refurbished Surface 3 laptop lets you bring everything you need with you for $399.97, $444 off the $844 MSRP.

    • BleepingComputer Deals
    • December 01, 2023
    • 07:12 AM
    • Comment Count 0
  • LogoFAIL attack can install UEFI bootkits through bootup logos

    Multiple security vulnerabilities collectively named LogoFAIL affect image-parsing components in the UEFI code from various vendors. Researchers warn that they could be exploited to hijack the execution flow of the booting process and to deliver bootkits.

  • US govt sanctions North Korea’s Kimsuky hacking group

    The Treasury Department's Office of Foreign Assets Control (OFAC) has sanctioned the North Korean-backed Kimsuky hacking group for stealing intelligence in support of the country's strategic goals.

  • WhatsApp's new Secret Code feature hides your locked chats

    WhatsApp has introduced a new Secret Code feature that allows users to hide their locked chats by setting a custom password.

  • . . . . . . . . . .

    No comments:

    Dodgers Star Debuts ‘Crotch Bump’, Drops F-Bomb on Live TV

    Drops F-Bomb on Live TV Dodgers Star Debuts ‘Crotch Bump’, Drops F-Bomb on Live TV in Playoff Win F-BOMBS AWAY With a home run, an epic hip...