Archive for July 17, 2024

Yacht giant MarineMax data breach impacts over 123,000 people

Posted in Commentary with tags on July 17, 2024 by itnerd

Recreational boat and yacht retailer MarineMax is notifying over 123,000 individuals whose personal information was stolen in a March security breach claimed by the Rhysida ransomware gang. The hack was discovered back in March but is only being reported now. More on that in a moment.

Rogier Fischer, CEO, Hadrian had this to say:

Any organization that faces such a situation should focus on both immediate and long-term corrective actions, according to Rogier Fischer, CEO of Netherlands-based cybersecurity service Hadrian.”In the short term, they need to enhance security measures, strengthen access controls, and provide employee training to prevent future breaches. They should also automate their monitoring and detection capabilities,” he said.”For the long term, conducting a comprehensive security audit, updating their incident response plan, and moving to an automated compliance and reporting process are crucial.”Additionally, investing in advanced cybersecurity technologies and establishing robust cybersecurity governance will help them mitigate future risks and improve their overall security posture, he added.

My problem with this is that this breach is that the hack was discovered in March. It’s July and we’re only learning of this now. There’s something seriously wrong with that and I along with those who have been affected would really like to know what the deal is with that.

Nearly 150,000 Records Were Exposed Online by On-Site Medical Service Provider 

Posted in Commentary with tags on July 17, 2024 by itnerd

Documents belonging to InHouse Physicians, a US healthcare provider that offers on-site medical services and wellness programs to organizations, have been exposed as reported by cybersecurity researcher Jeremiah Fowler.

What happened: 148,415 PDF documents totalling 12 GB were exposed. The database contained documents indicating if the person was cleared to enter an event or tested positive for COVID-19 and denied entry.

Why it matters: Documents in question included the name of the event and the phone number of the attendee along with their full name. This data exposure of COVID-19 era documents is a prime example of how healthcare organizations should prioritize auditing and reviewing what information they have stored.

If you want to know more about Jeremiah’s findings you can read the full report here: https://www.websiteplanet.com/news/inhousephysicians-breach-report/

HYAS Infosec Celebrated for Excellence in Innovation and Cybersecurity at 2024 Visionary Spotlight Awards

Posted in Commentary with tags on July 17, 2024 by itnerd

HYAS Infosec is proud to announce its recognition as a recipient of the 2024 ChannelVision Magazine Visionary Spotlight Awards, winning in both the Top Innovation Award 2024 (Overall Excellence) and Cybersecurity (Business Technology) categories.

The Visionary Spotlight Awards (VSA) are an annual competition that celebrates excellence in channel and service provider innovation within the communications industry. This year, editors from Beka Business Media, along with a distinguished panel of judges from independent industry resources, evaluated hundreds of applications based on criteria such as overall innovation, future industry impact, creativity, feature set differentiation, ease of use, and interoperability.

HYAS Infosec was commended for its rapid innovation and substantial impact within the communications industry. The company’s advanced threat intelligence and protective DNS solutions, HYAS Insight and HYAS Protect, empower organizations to proactively defend their networks, and provide resiliency even in the event of a breach by ensuring that the breach does not result in a successful attack causing damage. By revealing, tracking, and attributing adversary infrastructure, HYAS enables channel partners to enhance their roles as trusted advisors in achieving business success by ensuring that their clients are properly protected with today’s most advanced solutions.

These award-winning solutions not only bolster organizational security but also provide significant advantages to channel partners. HYAS Insight and HYAS Protect offer scalable, easy-to-deploy technologies that integrate seamlessly into any existing security framework. By leveraging HYAS’s innovative solutions, channel partners can deliver enhanced security services to their clients, differentiate their offerings, expand their service portfolios, and drive new revenue streams. Additionally, the proactive nature of HYAS’s solutions helps reduce the incidence and impact of security breaches, and speeds the closure of open cases by three times or more, leading to increased client satisfaction and long-term trust.

The full list of ChannelVision’s 2024 Visionary Spotlight Award winners can be viewed online here. For more information about HYAS Infosec and its award-winning solutions, please visit HYAS.com.

Anime figurine maker exposes North American customer names, home addresses

Posted in Commentary with tags on July 17, 2024 by itnerd

The Cybernews research team has discovered that Good Smile Company, a Japanese hobby products maker best known for anime and gaming figurines, misconfigured an Amazon web services (AWS) simple storage service (S3) bucket, exposing a whopping 1.2 million files.

Key findings:

  • The exposed data hides the personally identifiable information (PII) of over 270,000 Good Smile Company customers.
  • Only a fraction of the exposed files, 156 CSV (comma-separated values) files, and 1058 XLSX files, contain sensitive information.
  • Most of the customers who had their details revealed reside in the US and Canada. 
  • The data has been exposed since at least April 2024, when the team first discovered the open instance. 

The exposed customer details include:

  • Full names
  • Email addresses
  • Nicknames
  • Home addresses
  • Order details (order date, type of purchase, payment method, and amount)
  • IP addresses

Multiple attempts to reach out to the Good Smile Company didn’t result in a response. And the instance was still open at the time of writing.

Dangers of the leak

Leaving chunks of PII belonging to a group of people with specialized interests invites attackers to use the situation to their advantage.

For the full research, please visit: https://cybernews.com/security/good-smile-company-leaks-customer-data/

Fortra Releases New Cloud Email Protection Features to Protect Against Advanced Email Threats

Posted in Commentary with tags on July 17, 2024 by itnerd

 Fortra announced today that it has released several new enhancements to its integrated cloud-based email security solution (ICES), Cloud Email Protection. New features include QR code threat detection, active content detection, and additional AI models.   

The following enhancements to Cloud Email Protection are now available: 

  • Optical Character Recognition (OCR) – detects malicious content in images (such as QR code threats) 
  • Active Content Detection – uncovers malicious code and other active content in messages, links, and attached files 
  • AI Detection of Service Abuse – protects against email threats sent from legitimate online services 
  • AI Detection of Spam Accounts – further protects against abusive spamming and related malicious activity 
  • Dashboard improvements – includes new trending visuals and sorting that displays recent brand imposters, spoofed domains, and most attacked individuals 

Fortra continues to garner acclaim for email security since the launch of Cloud Email Protection in late 2023. In addition to being named a Top Player in Email Security by The Radicati Group, Fortra has also been recognized with a Cybersecurity Excellence Award for Email Security.