Lockbit hit Wichita, AI export bans, Pathfinder on Intel

The pernicious ransomware organization added the city of Wichita to its leak site, giving officials until May 15th to pay an unspecified ransom.
We previously covered the city's announcement of the attack over the weekend.
In the wake of the attack, city officials say it can only accept cash or checks for all city services, although the city will not shut off water services as a result until regular payment methods come back online.
This attack also comes on the heels of the US law enforcement agencies publicly naming the suspected leader of LockBit, Dmitry Khoroshev.
Reuters' sources say the US Commerce Department began considering technology export restrictions on proprietary and closed source AI models.
To date, US export restrictions focus on limiting access to AI training hardware to China.
Under that order, any models over that threshold must report AI development plans to Commerce.
In a 2024 homeland threat assessment, the Department of Homeland Security said access to advanced AI models could allow threat actors to efficient develop large-scale cyber attacks or create biological weapons.
Researchers at UC San Diego, Purdue, UNC Chapel Hill, Georgia Institute of Technology and Google released findings on this new vulnerability impacting Intel CPUs dubbed Pathfinder.
The researchers showed an attack able to use Pathfinder to extract encryption keys and leak images.
Previous Spectre mitigations work on Pathfinder as well.
The investigation found over 1 million fake orders processed in the last three years, with losses estimated around €50 million.
Over 800,000 in the US and Europe shared personal information with the sites.
The staff at Security Week put together a list of the major vendor announcements at RSA Conference.
AI security and AI integrations remained a major focus.
Vendors showed off AI-powered coworkers for promoting security awareness in real time, visibility and access control tools into AI model data, tools to help red teams discover AI vulnerabilities, integration of gen-AI models into software supply chain monitoring, as well as governance solutions, AI-powered SOC platforms, and real-time in-IDE LLM scanning tools.
The French medical imaging firm Coradix-Magnescan warned patients a cyberattack began impacting its operations.
Over the weekend, Sky News reported that China breached the systems of the third-party payment contractor SSCL, used by the Ministry of Defense to pay personnel.
In the House of Commons this week, defense minister Grant Shapps said it remained too early to make any claims on who orchestrated the attack.
The CSA plans to add heat pumps and solar panels in its next Matter release, but no word on when home security devices like cameras and doorbells will get support.


This Cyber News was published on cisoseries.com. Publication date: Thu, 09 May 2024 14:43:06 +0000


Cyber News related to Lockbit hit Wichita, AI export bans, Pathfinder on Intel

Hubris May Have Contributed to Downfall of Ransomware Kingpin LockBit - For all its vaunted success, the LockBit ransomware operation appears to have already been beset by problems when an international law enforcement effort led by the UK's National Crime Agency shut it down this week. Though it's likely that the dozens ...
1 year ago Darkreading.com LockBit Ragnar Locker
U.S. Joins U.K. to Seize LockBit Site, Disrupt Massive Ransomware Variant - The U.S. Department of Justice has partnered with the United Kingdom and international law enforcement partners in London today to announce the disruption of the LockBit ransomware group. The LockBit ransomware group is one of the most active ...
1 year ago Americansecuritytoday.com LockBit
Lockbit hit Wichita, AI export bans, Pathfinder on Intel - The pernicious ransomware organization added the city of Wichita to its leak site, giving officials until May 15th to pay an unspecified ransom. We previously covered the city's announcement of the attack over the weekend. In the wake of the attack, ...
10 months ago Cisoseries.com LockBit
Pathfinder AI - Hunters Announces New AI Capabilities with for Smarter SOC Automation - “Hunters has already made a significant impact on our security operations by reducing manual investigations, streamlining data ingestion, and improving threat visibility. Unlike static rule-based automation, Agentic AI dynamically adapts, ...
3 weeks ago Cybersecuritynews.com Hunters
Feds Seize LockBit Ransomware Websites, Offer Decryption Tools, Troll Affiliates - U.S. and U.K. authorities have seized the darknet websites run by LockBit, a prolific and destructive ransomware group that has claimed more than 2,000 victims worldwide and extorted over $120 million in payments. Instead of listing data stolen from ...
1 year ago Krebsonsecurity.com LockBit
LockBit Ransomware Targets German Energy Agency Dena - Dena, the reputed German Energy Agency, is said to have fallen victim to the notorious LockBit ransomware group. The Dena cyberattack was revealed through a post on the threat actor's dark web platform, where they disclose data breach incidents and ...
1 year ago Heimdalsecurity.com LockBit
Police arrest four suspects linked to LockBit ransomware gang - Previous arrests of Lockbit ransomware actors (some of them already charged for various offenses) include Mikhail Pavlovich Matveev (aka Wazawaka) in May 2023, Artur Sungatov and Ivan Gennadievich Kondratiev (aka Bassterlord) in February 2024, and ...
5 months ago Bleepingcomputer.com LockBit
LockBit Takes Credit for City of Wichita Ransomware Attack - The notorious LockBit cybercrime group has taken credit for the recent ransomware attack that forced the City of Wichita, Kansas, to shut down many of its systems. The city disclosed the incident on May 6, one day after the intrusion was discovered. ...
10 months ago Securityweek.com LockBit
LockBit Takes Credit for City of Wichita Ransomware Attack - The notorious LockBit cybercrime group has taken credit for the recent ransomware attack that forced the City of Wichita, Kansas, to shut down many of its systems. The city disclosed the incident on May 6, one day after the intrusion was discovered. ...
10 months ago Packetstormsecurity.com LockBit
LockBit attacks continue via ConnectWise ScreenConnect flaws - Exploitation of two critical ConnectWise vulnerabilities continues to mount, with many attacks attributed to ransomware gangs such as LockBit. Last month, ConnectWise disclosed an authentication bypass vulnerability, tracked as CVE-2024-1708, that ...
1 year ago Techtarget.com CVE-2024-1708 CVE-2024-1709 LockBit
Copycat Criminals mimicking Lockbit gang in northern Europe - Recent reports of Lockbit locker-based attacks against North European SMBs indicate that local crooks started using Lockbit locker variants. During the past months, the Lockbit gang reached very high popularity in the underground ecosystem. The ...
2 years ago Securityaffairs.com LockBit
LockBit Ransomware Gang's Website Shut Down - The U.K. National Crime Agency's Cyber Division, the FBI and international partners have cut off ransomware threat actors' access to LockBit's website, which has been used as a large ransomware-as-a-service storefront. According to CISA, LockBit was ...
1 year ago Techrepublic.com LockBit
LockBit claim about hacking U.S. Federal Reserve fizzles - The LockBit ransomware gang claimed it had breached the U.S. Federal Reserve, but it ultimately leaked data belonging to a single bank. On June 23, LockBit listed the U.S. Federal Reserve on its data leak site and claimed to have obtained roughly 33 ...
9 months ago Techtarget.com LockBit
Cops dismantled LockBit before latest variant hit market The Register - Law enforcement's disruption of the LockBit ransomware crew comes as the criminal group was working on bringing a brand-new variant to market, research reveals. As part of the daily LockBit leaks this week, Trend Micro's report on the group, ...
1 year ago Go.theregister.com LockBit
Intel out-of-band patch addresses privilege escalation flaw The Register - Intel on Tuesday issued an out-of-band security update to address a privilege escalation vulnerability in recent server and personal computer chips. The flaw, designated INTEL-SA-00950 and given a CVSS 3.0 score of 8.8 out of 10, affects Intel ...
1 year ago Theregister.com
Law enforcement trolls LockBit, reveals massive takedown - In an act of exquisite trolling, the UK's National Crime Agency has announced further details about its disruption of the LockBit ransomware group by using the group's own dark web website. Since the demise of Conti in 2022, LockBit has been ...
1 year ago Malwarebytes.com LockBit Cloak
Alleged Russian LockBit developer extradited from Israel, appears in New Jersey court | The Record from Recorded Future News - Since December, Justice Department officials have sought Panev’s extradition after a criminal complaint was unsealed last year accusing him of acting as a developer of the LockBit ransomware from 2019 to at least February 2024. The dual ...
2 weeks ago Therecord.media LockBit
LockBit lied: Stolen data is from a bank, not US Federal Reserve - Recently-disrupted LockBit ransomware group, in what appears to be a desperate attempt to make a comeback, claimed this week that it had hit US Federal Reserve, the central bank of the United States. The tall claim was followed up with LockBit ...
9 months ago Bleepingcomputer.com LockBit
The Impact of LockBits New ContiBased Encryptor on Ransomware - The LockBit ransomware gang has recently started using a new encryptor, called LockBit Green, which is based on the source code of the now-defunct Conti ransomware gang. This follows the gang's previous iterations of their encryptor, which began with ...
2 years ago Heimdalsecurity.com LockBit
Police unmask Aleksandr Ryzhenkov as Evil Corp member and LockBit affiliate - Western authorities on Tuesday named Russian national Aleksandr Ryzhenkov as one of the main members of the Evil Corp cybercrime group, as well as identifying him as an affiliate of the LockBit group. At the same time as identifying Ryzhenkov as one ...
5 months ago Therecord.media LockBit
Law enforcement agencies arrest 4 alleged LockBit members | TechTarget - Authorities arrested four suspected members of the LockBit ransomware gang during the third phase of the international law enforcement effort dubbed Operation Cronos. Operation Cronos' efforts to disrupt the LockBit ransomware gang continue as ...
5 months ago Techtarget.com LockBit
Police arrested four new individuals linked to the LockBit ransomware operation - “Europol supported a new series of actions against LockBit actors, which involved 12 countries and Eurojust and led to four arrests and seizures of servers critical for LockBit’s infrastructure.” reads the press release published by ...
5 months ago Securityaffairs.com LockBit
LockBit Remains Top Global Ransomware Threat - The LockBit ransomware strain continues to be the primary digital extortion threat to all regions, and almost all industries globally, according to a report by ZeroFox. Researchers found that LockBit was leveraged in more than a quarter of global ...
1 year ago Infosecurity-magazine.com LockBit
Suspected LockBit ransomware dev extradited to United States - Panev remained an active member of LockBit ransomware's core team until February 2024, when an international law enforcement operation led by the UK's National Crime Agency (NCA) and the FBI severely disrupted the cybercrime organization. Panev has ...
2 weeks ago Bleepingcomputer.com LockBit Inception
Intel knew AVX chips were insecure and did nothing - Intel has been sued by a handful of PC buyers who claim the x86 goliath failed to act when informed five years ago about faulty chip instructions that allowed the recent Downfall vulnerability, and during that period sold billions of insecure chips. ...
1 year ago Theregister.com

Cyber Trends (last 7 days)