Flair Data Systems Cybersecurity News Update 1-10-2024

My name is Brent Forrest and I serve as a vCISO at Flair Data Systems. Here is your cybersecurity update for 1/10/2024...

Flair Data Systems cybersecurity update for 1/10/2024...

Over the past few weeks, I have been wondering if it was December/January or if we were still in October because it's been too nice outside... well here in the DFW area that is about to change starting Sunday night / Monday morning.  Break out those jackets for at least a couple of days and hope our pipes do not freeze. 

 

One thing to mention is that this is Microsoft Patch Tuesday, and for the first time in a long time there are no zero-day patches being applied.  There are some patches of interest, but overall, this month is considered lighter than others recently. 

 

So, let’s get into this week's update.... 

 

X accounts restored after crypto scam hack 

 

It is currently unknown how X (formally Twitter) accounts are being compromised and below are the ideas going around X and the web 

  • Compromised Help Desk personnel at X - honestly, it feels like the majority of people want to blame X for anything since it moved to the new ownership 
  • MFA not set up - this one seems more likely, because I remember setting up my Twitter account years ago MFA was not something automatically enabled 
  • When has marketing really engaged the Security team on setting up their social media presence??  Extremely rare 
  • Compromised credentials through other means - we all know that with browser attacks and bypass email attacks, this is becoming more common with sessions being stolen 
  • These compromises have been focused on cryptocurrency scams, and with the SEC it was pushing out false information around an announcement on Bitcoin - which caused the price of Bitcoin to pike to $48,000 
  • Link (1): https://www.msn.com/en-us/money/markets/sec-says-its-x-account-was-compromised-and-it-has-not-approved-bitcoin-etfs/ar-AA1mIjeA 
  • Link (2): https://thehackernews.com/2024/01/mandiants-twitter-account-restored.html 

 

Law firm that handles data breaches hit by data breach 

 

Orrick, Herrington & Sutcliffe, a San Francisco based law firm that has focused on working with organizations affected by security incidents 

 

BreachForums admin Popompurin breaches terms of pretrial freedom 

 

Conor Brian Fitzpatrick, who has plead guilty to the following three charges: Conspiracy to commit access device fraud, access device fraud - unauthorized solicitation, and possession of child sex abuse materials 

  • Fitzpatrick was granted pretrial on a $300,000 bond under a number of conditions - not getting on a computer without monitoring software or using a VPN 
  • He has been arrested for violating both of the above conditions on January 2nd and will now be held in custody until he attends both court appearances (breach of pretrial agreement AND his sentencing hearing) 
  • The consequences to his first act is pretty substantial and should be looked at in the link above 
  • Link (1): https://www.theregister.com/2024/01/05/breachforums_admin_arrested_again/ 

 

loanDepot breach investigation underway 

 

loanDepot's is one of the largest nonbank home loan financing lenders in the US. loanDepot's IT systems were compromised in a recent cyber related attack. 

 

Lockbit and Capital Health 

 

Over the past weekend, Lockbit claimed responsibility for a November 2023 cyberattack asking for ~$250,000 for the data 

  • According to Lockbit: Data only stolen, no encrypted files, which they stole more than 10 million files that allegedly included medical confidential information 
  • In December, Capital Health launched an investigation into a cyber incident after they experienced a network outage 
  • It should also be noted that only Capital Health Regional Medical Center was compromised, not the full Capital Health system 
  • Link (1): https://www.securityweek.com/ransomware-gang-claims-attack-on-capital-health/ 

 


Until next week, it’s Brent Forrest signing off. Be cyber safe my friends! 


About the Author: Brent Forrest is a Field CISO with Flair Data Systems. In this role, Brents acts as an advisor to customers that span across different verticals providing guidance to include; developing strategies to reduce risk with existing or new technology while enabling the business.  With over 20 years of experience in the IT industry, Brent has been able to be a part of multiple groups within the IT field spanning from Telecom, Network, Wireless, Infrastructure, and eventually finding his passion within Security.  Roughly 20 years of that time was spent within the Oil and Gas industry working across multiple teams and leading initiatives.  Specifically with EnLink Midstream, he spent the majority of his time building resilience and developing the cybersecurity program from the ground up. 


Brent has been with Flair Data for 3 years and is CISSP, C|CISO, CvCISO, & Sec+ certified. In his free time, he likes to spend time with family, working out, or staying up with personal development. 


He lives in Dallas, Texas with his wife and children. 


About: Flair Data Systems is a strategically priced IT solutions company, serving clients in the U.S., with offices in Texas and Colorado. Now a technology industry leader, we began in 1916 as the Porter Burgess Company. Flair Data Systems is your Trusted Advisor for: Collaboration, Unified Communications, Networking, Cloud, Infrastructure, Data Analytics, and Cybersecurity, serving the U.S. 


24 Apr, 2024
Brent Forrest, vCISO at Flair Data Systems, gives his weekly cybersecurity news update for 4/24/2024.
10 Apr, 2024
Brent Forrest, vCISO at Flair Data Systems, gives his weekly cybersecurity news update for 4/10/2024.
02 Apr, 2024
Are you being held hostage by the VMware pricing increases? Flair Data Systems discusses the top issues affecting your network cloud storage solutions and budget. Read on...
20 Mar, 2024
Brent Forrest, vCISO at Flair Data Systems, gives his weekly cybersecurity news update for 3/20/2024.
13 Mar, 2024
Brent Forrest, vCISO at Flair Data Systems, gives his weekly cybersecurity news update for 3/13/2024.
Brent Forrest, vCISO at Flair Data Systems, gives his weekly cybersecurity news update for 3/06/2024
06 Mar, 2024
Brent Forrest, vCISO at Flair Data Systems, gives his weekly cybersecurity news update for 3/06/2024.
On February 22nd, 2024- Flair Data Systems hosted Demo Day
05 Mar, 2024
On February 22nd, 2024- Flair hosted Demo Day, where technology partners were given the opportunity to pitch innovative technology and demo solutions to CIOs, CTOs, and CISOs from the DFW Metroplex. Read all about it!
My name is Brent Forrest and I serve as a vCISO at Flair Data Systems.
28 Feb, 2024
Brent Forrest, vCISO at Flair Data Systems, gives his weekly cybersecurity news update for 2/28/2024.
My name is Brent Forrest and I serve as a vCISO at Flair Data Systems.
21 Feb, 2024
Brent Forrest, vCISO at Flair Data Systems, gives his weekly cybersecurity news update for 2/21/2024.
My name is Brent Forrest and I serve as a vCISO at Flair Data Systems.
14 Feb, 2024
Brent Forrest, vCISO at Flair Data Systems, gives his weekly cybersecurity news update for 2/14/2024.
More Posts
Share by: