February 6, 2023
CyberSec Roundup
A synopsis of the Latest Cybersecurity News
Unpatched VMware Servers Attacked
Last week, some admins were greeted in horror with ransomware notes for their VMware ESXi Servers. The threat actors are exploiting an old vulnerability tracked CVE-2021-21974, that some administrators have not patched to deploy ransomware. More than 120 servers worldwide have been affected, and admins have been advised to disconnect any unpatched servers from the internet, patch them immediately, and perform a review on them to ensure they have not been compromised.
Another Hospital Hacked
The string of attacks on healthcare worldwide continues as Tallahassee Memorial HealthCare in Florida has fallen victim to a cyberattack, likely ransomware. IT systems were taken offline and non-emergency procedures have been suspended, with patients requiring emergency care being diverted to nearby hospitals.
UScellular Breach
A breach of one of UScellular’s third-party vendors has resulted in the theft of a database with information for 52,000 customers. The threat actor recently leaked the database online and the company confirmed its veracity. UScellular has since terminated its relationship with the vendor.
By: David Pinder
IT & Cybersecurity Consultant
Certified Ethical Hacker (Master) | CCSK | AZ-500