Gehackte softwareleverancier voor patiëntendossiers haalt systemen offline post, april 9, 2026april 13, 2026 Softwareleverancier ChipSoft heeft systemen voor elektronische patiëntendossiers offline gehaald. Het bedrijf kreeg dinsdag met een cyberaanval te maken . Meerdere patiëntenportalen zijn niet meer toegankelijk door het afsluiten van de systemen. Patiënten kunnen normaal gesproken hun dossiers en afspraken inzien via de portalen. Continue Reading
CrowdStrike 2026 Global Threat Report post, februari 24, 2026februari 26, 2026 In the age of AI, even less sophisticated threat actors can execute complex attacks, and advanced adversaries have become dramatically more dangerous. This year’s report exposes the latest tradecraft of the evasive adversary, who is supercharging attacks with AI and posing an unprecedented threat. Attacks by AI-enabled adversaries increased by… Continue Reading
Notepad++ Official Update Mechanism Hijacked to Deliver Malware to Select Users post, februari 2, 2026februari 2, 2026 The maintainer of Notepad++ has revealed that state-sponsored attackers hijacked the utility’s update mechanism to redirect update traffic to malicious servers instead. “The attack involved [an] infrastructure-level compromise that allowed malicious actors to intercept and redirect update traffic destined for notepad-plus-plus.org,” developer Don Ho said. “The compromise occurred at the hosting… Continue Reading
Widespread Supply Chain Compromise Impacting npm Ecosystem post, september 23, 2025september 24, 2025 CISA is releasing this Alert to provide guidance in response to a widespread software supply chain compromise involving the world’s largest JavaScript registry, npmjs.com. A self-replicating worm—publicly known as “Shai-Hulud”—has compromised over 500 packages.[i] After gaining initial access, the malicious cyber actor deployed malware that scanned the environment for sensitive… Continue Reading
Undocumented commands found in Bluetooth chip used by a billion devices post, maart 8, 2025maart 10, 2025 The ubiquitous ESP32 microchip made by Chinese manufacturer Espressif and used by over 1 billion units as of 2023 contains undocumented commands that could be leveraged for attacks. The undocumented commands allow spoofing of trusted devices, unauthorized data access, pivoting to other devices on the network, and potentially establishing long-term persistence. Continue Reading
Thousands of Car Dealerships Stalled Out After Software Provider Cyberattack post, juni 20, 2024juni 21, 2024 CDK Global, which makes software for car dealers, experienced a cyber incident that halted vehicle sales and service across the US. A supply chain cyberattack on software provider CDK Global forced thousands of car dealerships to shut down Wednesday, a traditionally busy day for sales with the Juneteenth holiday. Continue Reading
China-linked cyber spies blend water hole, supply chain attacks post, maart 7, 2024april 26, 2024 The nation-state group compromised the website of a Tibetan festival and a software application to target user systems in Asia. Continue Reading
The Untold Story of the Boldest Supply-Chain Hack Ever post, mei 2, 2023april 26, 2024 It was late 2019, and Adair, the president of the security firm Volexity, was investigating a digital security breach at an American think tank. The intrusion was nothing special. Adair figured he and his team would rout the attackers quickly and be done with the case—until they noticed something strange. A second group of… Continue Reading
The Real Story of Stuxnet post, februari 26, 2013juni 23, 2025 Update 13 June 2025: The attacks on Iranian nuclear facilities are the latest in a two-decade campaign by the Israeli military and intelligence establishments to disrupt and hinder Iran’s efforts to build atomic weapons. On Thursday, 12 June, prime minister Benjamin Netanyahu of Israel announced that Israeli warplanes had struck “Iran’s main enrichment facility… Continue Reading