Security incident 2023 …

News goes old and lessons usually be forgotten. Below is some incidents happened in cyber battlefield for a feel of 2023 – a drama year.

CompanyDomainBreached DataMoneyAttack vector
iRentcar rental– millions of partial credit card numbers
– at least 100,000 customer identification documents
N/Athe database has no password
Yes MadamSalon platform– customers’ location data
– user device details,
– IMEI numbers of ~900,000 users
N/Athe database has no password
PeopleGrovesocial platform for higher education institutions and alumni networks– gigabytes of personal information: email addresses, phone numbers, addresses, details of university achievements and scores, and resumes containing detailed work histories and employment detailsN/Athe database has no password
Proskauer Roseinternational law– private and privileged financial and legal documents, contracts, non-disclosure agreements, financial deals and files relating to high-profile acquisitions.N/Amisconfiguration
AvidXchangeautomate invoice processing and payment management processes– employee payroll information
– corporate bank account numbers.
N/Aeasily guessable passwords
ToyotaManufacture– data of 2 millions customersN/Amisconfiguration
FerrariSupercar Manufacturer– 7GB of documents, data sheets and repair manuals.N/ARansomware
LogicMonitornetwork security– data of a small number customersN/Ause of default password
MicrosoftAI– accidentally exposed tens of terabytes of sensitive data, including private keys and passwordsN/Apublishing a storage bucket of open source training data on GitHub.
Tesla– 75,000 company employees personal informationN/Atwo former employees leaked
MicrosoftEmail– a key that allowed to stealthily break into dozens of email inboxes, including those belonging to several federal government agencies.N/AUnknown
Crema FinanceCrypto$9 million in cryptocurrencyethical hacker turning rogue
Taiwan Semiconductor ManufacturingChipMaker$70 million ransom demandLeaked setup information
RedditSocial Network– 80+ gigabytes of compressed dataN/A“highly-targeted” phishing attack
T-MobileTelecom– personal data belonging to 37+ million customers.N/Asocial engineering +
SIM swap
TwitterSocial Network– 400+ million email addresses and phone numbers N/Aa security bug
MailChimpEmail– 400+ accounts mostly of cryptocurrency and finance-related accountsN/Asocial engineering
OktaIdentity– 134 organizations dataN/Astolen credentials
TruepillPharmacy Fulfillment– 2.3+ million patients personal dataN/Apoor security design
Perry Johnson & AssociatesHealthcare~9 million patients dataN/AUnknown
IntellihartxPatient payment half a million people’s personal and health informationN/AMOVEit (1)
PharMericaPharmacy– 5.8 million personal informationN/AMOVEit (1)
HCA Healthcarehealthcare– 11 million patients’ dataN/AUnknown
Enzo Biochembiotechnology – 2.5 million patients’s clinical test informationN/ARansomware (2)
Managed Care of North AmericaDental– 8.9 million clients dataN/AUnknown
NextGen Healthcareelectronic health record software– 1.05 million patients personal dataN/ARansomware (2)
IlluminaDNA sequencing devices– Can alter test result in devicesN/ACVE-2023-1968
Maternal & Family Health ServicesHealthcare– 461,070 personal data of patients, employees and vendorsN/AUnknown
23AndMeGenetic testing– 6.9 million user data recordsN/AUnknown
WelltokPatient Engagement– 8 million personal dataN/AMOVEit (1)
McLaren Health CareHealthcare– 2.2 million patients sensitive personal and health informationN/ARansomware (2)
Performance Health TechnologyData Management Services– 1.7 million Oregon citizens health informationN/AMOVEit (1)
Colorado Department of Health Care Policy and FinancingHealthcare– 4 million patients dataN/AMOVEit (1)
HCA HealthcareHealthcare– 11 million patients’ dataN/AUnknown
SabreTravel booking– 1.3 terabytes of data on ticket sales, passenger turnover, employees’ personal data, corporate financial information.N/ARansomware (2)
See TicketsGlobal Ticketing– customers’ credit card informationN/ACredit Card Skimming Malware
MGM ResortsHotel & Casino– unspecified amount of customers’ personal information
– ATM shut down
– Website offline
~ $100 millionRansomware
Caesars EntertainmentHotel & CasinoN/A$30 million demandedRansomware
Motel OneHotel– 50 credit cards dataN/ARansomware
RadissonHotelN/AN/ARansomware
Fidelity National Financialreal estate servicesvirtually froze all the company and its subsidiaries’ activitiesN/AUnknown
Mr. Coopermortgage and loan– unknown amount of ~4 million usersN/AUnknown
1st Source BankBankN/AN/AMOVEit
Hatch Bankfintech infrastructure – 140,000 customers SSN N/ACVE-2023-0669
FlutterwaveStartupN/Alost ~$4.2 million in the accountsUnknown
Euler FinanceFinanceN/A~ $197 million in crypto theft
– 1.3M USD gone
“in a flurry of transactions” (3)
AT&T email addresses.Mail– customers account compromised$15 – $20 million crypto stolen.Unknown
MixinCryptoN/A~ $200 million stolenUnknown
Mom’s MealsFood– 1.2+ million individuals dataN/ARansomware
NationBenefitssupplementary benefits– 7,100+ residents personal dataN/ARansomware
Yum Brandsfast-food chains~ 300 UK restaurants dataN/AUnknown
Forever 21Clothing500.000+ individuals dataN/ARansomware
ByjuedtechN/AN/Amisconfiguration
Electoral Commissionoverseeing elections~ 40 million U.K. voters dataN/A“complex cyberattack.”
Ofcom412 employees dataN/AMOVEit
JumpCloudAccess managementa “small and specific” set of customers.N/AUnknown
ShellOilterabyte of logging dataN/AMOVEit
Dishsatellite television – 300,000 personal informationN/AUnknown
SchoolDudeorder management system– 3M SchoolDude user accountsN/AUnknown
AtlassianSaaSN/AN/ACVE-2023-22515
ShadowGame– 530,000 customers dataN/Aadvanced social engineering
CCleanerTools– 2% usersN/AMOVEit
BoeingAerospaceN/AN/ARansomware
National Aerospace LaboratoriesAerospace– eight purportedly stolen documents ( confidential letters, an employee’s passport internal documents)N/ARansomware
Zhefenglee-commerce– millions of Chinese citizen identity numbers
from 3.3 million orders
N/AUnknown
A network of knockoff apparel storesStore– 330,000 credit card numbers, cardholder names, and full billing addressesN/AUnknown
ODIN IntelligenceApplications for policesLeaked files reveal tactical plans for police raids, surveillance and facial recognitionN/AUnknown
LastPassPassword managercustomers’ encrypted password vaultsN/AUnknown
British LibraryLibrary– website offline
~490,000 user data
N/ARansomware
2023 security incidents sample

Leave a comment