Communications

Industry

Allied Telesis Data Breach Claimed by LockBit

May 27, 2024

LockBit has claimed an alleged cyberattack on Allied Telesis, Inc., a prominent American telecommunication equipment supplier. The claimed breach, dated May 27, 2024, suggests that the Allied Telesis data breach exposed sensitive data about the organization. However, the claims have not been verified nor is the sample data posted by the threat actor.

The information supposedly exfiltrated includes confidential project details dating back to 2005, passport information, and various product specifications. As a demonstration of their intrusion, the threat actors purportedly disclosed blueprints, passport details, and confidential agreements, issuing a deadline of June 3, 2024, for the full release of the compromised data.

read more

Cyberattack Hits One Of Iceland’s Largest Media Outlets

June 23, 2024

One of Iceland’s largest media outlets mbl.is and radio station K100 were both down for around three hours yesterday due to a cyberattack on their publisher, Árvakur.

The attack was carried out by a Russian group named Akira, the publisher has confirmed. The attackers seized and encrypted all of the company’s data,leading them to shut down their computer system as they responded.

Both mbl.is and K100 are currently functioning. It is not clear whether Árvakur has recovered all of the data that were seized or whether it will be able to recover them completely.

read more

Nearly All AT&T Customers Exposed in Massive 2022 Data Breach

July 16, 2022

July 15, 2024: AT&T says calls and text message records for about 109 million of the phone service provider’s customers were exposed in a massive data breach two years ago. Nearly all of AT&T’s mobile phone customers’ information was exposed over the course of months in 2022.

The company said that in April hackers exfiltrated records of customer call and text interactions from May 1, 2022, to October 31, 2022, as well as on January 2, 2023. The data originated from AT&T’s ‘workspace’ on a third-party cloud platform.

AT&T said it learned about an “illegal download” of data from a third-party cloud platform called Snowflake in April.

The hacker reportedly demanded a $1 million ransom from AT&T, but he ultimately settled for far less. The hacker provided AT&T with a video showing that he had deleted the stolen data

read more

AT&T Data Breach Exposes >70 Million Accounts

March 16, 2024

In March 2024, AT&T said it was investigating a possible data breach after personal data from more than 70 million current and former customers was discovered on the dark web.

Based on a preliminary analysis, the company said the data set appeared to be from 2019 or earlier and impacts approximately 7.6 million current AT&T account holders and approximately 65.4 million former account holders.

read more

Frontier Communications Hit in Attack

April 14, 2024

Telecom provider, Frontier Communications, suffered an attack from a cybercrime group that was able to get into some of its IT systems which also led to operational disruptions “considered material.” After discovering the incident the company partially shut down some systems to prevent the attackers from moving across the network, which also led to operational disruptions.

The sample of the notice submitted to the Office of the Maine AG has censored the types of data exposed in this incident, but full names and Social Security Numbers (SSNs) were confirmed as breached for 751895 customers.

RansomHub claimed the attack, unless Frontier responds to their demands by June 14 they will sell the data to the highest bidder.

read more

Databreach at Telco Tangerine Impacts 230K Inidviduals

February 18, 2024

Tangerine suffered a data breach that exposed the personal information of roughly 230,000 individuals. Tangerine management became aware of the incident 2 days after the breach, on Tuesday 20 February 2024.

The telecommunications provider pointed out that no financial information (credit or debit card numbers, banking details) has been compromised. The attack did not affect the availability or operation of their nbn® or mobile services.

read more

Network Disruptions after Cyberattack on Israel’s Mobile Service Provider, Pelephone

January 25, 2024

Hacktivist group Anonymous Sudan has claimed responsibility for a cyberattack on Israel’s largest mobile service provider, Pelephone, resulting in disruptions to its network and digital infrastructure. The group declared the attack as part of its ongoing campaign against prominent Israeli targets, specifically mentioning the impact on Pelephone’s critical systems, including SCADA and other infrastructure-based endpoints.

The cyberattack was claimed by Anonymous Sudan to have practically taken Pelephone’s entire digital infrastructure offline through a sophisticated cyberattack.

read more

Lockbit Demands $100K after Ransomware Attack at UAE Telecoms Group

February 16, 2024

ETISALAT, state-owned Emirates Telecommunications Group Company in the UAE, is reportedly grappling with a ransomware attack attributed to LockBit ransomware group. The hackers are demanding $100,000 for the return of the pilfered data, setting a deadline of April 17th.

The attack has seen sensitive data belonging to Etisalat uploaded onto the Lockbit website, with the cybercriminals demanding a substantial $100,000 ransom for its security. ETISALAT official website remains accessible, raising doubts about the validity of LockBit’s claims.

read more

Emergency Services Communication System in Kansas down due to cyber incident

April 1, 2024

Riley County’s P25 public safety agency radio communication system lost connection early this morning as part of a cybersecurity incident. Emergency responders in Riley County are currently using the backup state system for emergency communications. P25 is a solution for intra-agency communication, which allows for interoperable, multi-agency communications during an emergency.

This radio network issue is affecting all first responders in Riley County, including police, fire, and emergency medical services. However, this connection problem does not impact the public or 911 systems. Dispatch operators are able to receive calls, dispatch resources, communicate with emergency responders, and activate outdoor warning sirens.

The Riley County Board of County Commissioners met made a local declaration of a disaster emergency in response to the cybersecurity incident

read more

Massive Ransomware Attack at Tigo, Paraguay’s Largest Telco

January 4, 2024

A ransomware attack has wreaked havoc inside the network of Tigo, the largest mobile operator and internet service provider in Paraguay. The incident took place on January 4, and impacted the telco’s business branch.

Reports stated that over 330 servers were encrypted, and backups were compromised during the attack. At least 300 companies and some government organizations were impacted downstream. The companies lost phone service and files hosted on Tigo servers.

The Tigo attack has been attributed by local media to a ransomware group named BlackHunt.

read more