Select Page
Slide 1

Weekly

Ransomware Roundup

April 7th - 11th, 2025

Treasury OCC Data Breach: Hackers Accessed 150,000 Emails Since June 2023

The Treasury’s Office of the Comptroller of the Currency (OCC) reported a data breach revealing over 150,000 emails and sensitive financial information. Attackers gained access through a compromised email system administrator account, operating undetected for several months raising serious concerns about national security. Read more

Western Sydney University Data Breach Exposes 10,000 Student Records

Western Sydney University (WSU) has confirmed a data breach affecting around 10,000 current and former students. The breach, discovered in early 2025, involved unauthorized access that resulted in sensitive student data being published on the dark web. Investigations indicate that the breach originated from the university's sign-on system. Read more

Mirai Botnet Exploiting TVT DVRs

A new variant of the Mirai botnet has emerged, specifically targeting TVT NVMS9000 digital video recorders. By exploiting a known vulnerability, attackers gain administrator access, leading to potential DDoS attacks and other malicious activities. This surge in attacks peaked on April 3, 2025, with over 2,500 unique IP addresses involved in scanning for vulnerable devices. Read more

Kellogg Data Breached: Clop Ransomware Exploits Cleo Zero-Day Vulnerabilities

WK Kellogg Co. has confirmed a data breach linked to the Clop ransomware gang, exposing sensitive employee information, including names and Social Security numbers. This breach occurred due to the exploitation of two zero-day vulnerabilities in Cleo file transfer software. In response, Kellogg is providing free identity monitoring to affected individuals. Read more

Inside Rhysida Ransomware: Infiltration, Impact, and Prevention

Rhysida ransomware has emerged as a dangerous cyber threat since May 2023, known for its double extortion tactics. It encrypts files and exfiltrates sensitive data, pressuring victims to pay or face public exposure. Rhysida infiltrates networks through phishing emails, compromised credentials, and unpatched vulnerabilities, often using tools like Cobalt Strike. Read this blog to explore Rhysida's methods of operation and effective strategies organizations can employ to safeguard their critical data against this evolving threat. Read more

Texas State Bar Data Breach Exposes Sensitive Attorney Information

The Texas State Bar has suffered a data breach, compromising sensitive data of over 100,000 licensed attorneys, including Social Security numbers and financial information. The INC ransomware group has claimed responsibility for the attack. The State Bar is offering complimentary credit monitoring to affected members. Read more

Promo
168TB Immutable and Air-Gapped Scale Out NAS Appliance for $13,995

168TB, upgradable to 720TB, Enterprise Super Scale Out (SSO) NAS appliance with Air- Gapped Vault® and Immutable filelock storage, delta-based snapshots for ransomware protection plus support for unlimited NAS clients, advanced data services and built-in Amazon S3 compatible cloud connect for $13,995.

36 Bay, 3U Rackmount unit with 12x14TB Enterprise SAS drives, 12 Core Storage Virtualization Engine, 64GB System Memory, 960GB PCI-E Based NVMe SSD for Storage Engine, Dual 10Gb RJ-45 Ports, 1200W Hot-Swappable Power Supply, 12Gb SAS Hardware RAID Controller. 1 Year Warranty and Support included.

All Enterprise data Services such as Snapshot, Tiering, Encryption, Sync & Async, Replication, Supports CIFS/SMB and NFS, Cloud Connect to Azure Hot / Cool Blob / AWS-S3, Erasure Coding are included.

For details, contact us.

Slide 1

Weekly

Ransomware Roundup

April 1st - 5th, 2025

173,000 Patients Affected by Chord Specialty Dental Partners Email Data Breach

Chord Specialty Dental Partners reported a data breach affecting 173,430 patients, exposing personal and health information. The breach is said to have occurred through employee email accounts. The organization is now offering free credit monitoring while Investigations into the breach are still ongoing. Read more

openSNP to Shut Down: Genetic Data Privacy Concerns Lead to Platform Closure

openSNP, a platform for sharing genetic data, will close on April 30, 2025, due to rising privacy concerns and the potential for misuse by governments. Co-founder Bastian Greshake Tzovaras stated that the ethical landscape surrounding genetic data has changed significantly, making this decision necessary. Users have until the shutdown date to download their data. Read more

SimonMed Imaging Confirms Cybersecurity Breach in January 2025

SimonMed Imaging confirmed a cybersecurity breach that exposed sensitive patient data through a vendor. The breach, detected on January 27, 2025, involved unauthorized access and has led to at least one class-action lawsuit. The Medusa ransomware group claimed responsibility, alleging that 212 GB of data had been compromised. Read more

Urgent Security Alert: Exploited CSLU Backdoor Threatens Cisco Systems

Cisco issued a critical security alert regarding a vulnerability in its Smart Licensing Utility (CSLU), which has been exploited by attackers to gain unauthorized access. The vulnerability allows remote control of the CSLU application’s API. Cisco advises immediate patching to prevent potential attacks. Read more

AI Storage and Servers: Meeting the Demands of Artificial Intelligence

Artificial intelligence (AI) and machine learning (ML) are reshaping industries, creating unique storage demands. Traditional storage systems often struggle to keep pace with the high-speed processing and scalability required for AI workflows. Purpose-built storage solutions are essential for managing vast datasets efficiently, enabling real-time analytics and compliance. Read more

Triada Malware Preloaded on Counterfeit Android Devices

Counterfeit Android devices have been found to contain Triada malware preinstalled, affecting users primarily in Russia. This malware can steal data and cryptocurrency by manipulating device settings and intercepting communications. Kaspersky researchers have identified at least 2,600 infections so far. Read more

Promo
DCIG Recognized - 100TB Immutable and Air-Gapped SSO NAS for $8,995

StoneFly NAS Storage appliance has been Recognized by DCIG as one of the TOP 5 Midmarket Software-Defined Storage (SDS) File Backup Targets for 2025-26. Key features include Air-gapped and immutable storage, deduplication, MFA, and volume deletion protection.

100TB Gen 10, 8-bay 2U Rackmount appliance with 7x14TB Enterprise SAS drive pack, 10 Core Storage Virtualization Engine, 32GB system memory, 12Gb SAS Hardware RAID Controller and 800W Platinum Certified hot swappable power supply.

All Enterprise data Services such as Snapshot, Tiering, Encryption, Sync & Async, Replication, Supports CIFS/SMB and NFS, Cloud Connect to Azure Hot / Cool Blob / AWS-S3, Erasure Coding are included.

1 Year Warranty and Support is included in this price.

For details, contact us.

Subscribe To Our Newsletter

Join our mailing list to receive the latest news, updates, and promotions from StoneFly.

Please Confirm your subscription from the email