View Ridge Security
Back to Cyber HoseActive Exploits & Incidents

UK Government Investments agency suffers data breach exposing

๐Ÿšจ ACTIVE EXPLOITATION

  • Family phones compromised to send abusive messages via WhatsApp and SMS Multiple family members' phones on iOS and Android were compromised to impersonate and send abusive messages.
    • Targets: iOS and Android phones of multiple family members
    • Impact: Sending profane and abusive messages to contacts via WhatsApp and SMS
    • Attack details: Impersonation of both male and female family members
    • Mitigation attempts: Changing phones, resetting devices and numbers ineffective
    • Unknown attack vector and method of compromise ๐Ÿ“Ž Coverage: reddit.com ยท ๐Ÿ‘ via r/cybersecurity

๐Ÿ’ฅ BREACHES & INCIDENTS

  • UK Government Investments agency suffers data breach exposing officials' details UK Government Investments exposed sensitive data and officials' contact info for 40 hours due to staff error.
    • Applies to UK Government Investments (UKGI), managing state investments including Channel 4 and Post Office
    • High-level management information and names/work emails of 51 government officials were publicly accessible
    • Data exposure lasted approximately 40 hours due to staff member failing to follow security policies
    • Incident identified within the past financial year and reported to UK Information Commissioner's Office
    • External experts recommended strengthening controls and incident preparedness after breach ๐Ÿ“Ž Coverage: theguardian.com ยท ๐Ÿ‘ via @metacurity@infosec.exchange

๐Ÿ•ต๏ธ RESEARCH & DEEP DIVES

  • Facebook Malvertising Campaign Uses C2 Infrastructure for Attacks A malvertising campaign on Facebook uses command and control servers to deliver payloads to users.

    • Targets Facebook users exposed to malicious advertisements
    • Campaign uses command and control (C2) infrastructure to manage attacks
    • Attackers deliver payloads via malvertising on Facebook platform
    • No CVE identifiers associated with this campaign have been reported ๐Ÿ“Ž Coverage: reddit.com ยท ๐Ÿ‘ via r/cybersecurity
  • Israel Thwarts Iranian Cyberattacks Targeting Water Infrastructure Israel prevented cyberattacks on water infrastructure attributed to Iranian state-backed actors.

    • Applies to Israeli water infrastructure including wastewater treatment plants and pumping stations
    • Attackers attempted to manipulate chlorine levels in water supply via industrial control systems
    • Attack involved sophisticated tactics to disguise true chlorine levels from operators
    • Iranian state-backed actors suspected; attacks linked to geopolitical tensions
    • Israel collaborates with US partners amid similar threats to US water sector ๐Ÿ“Ž Coverage: csoonline.com ยท ๐Ÿ“„ Original: i24news.tv ยท ๐Ÿ‘ via @metacurity@infosec.exchange

Need help assessing your exposure?

Start with the free Posture Self-Check to see where you stand against the current threat landscape.

Free Posture Self-Check