Gotham Security Daily Threat Alerts

By Nancy Rand
Posted in Security
On July 22, 2015

July 20, Help Net Security – (International) Ashley Madison hacked, info of 37 million users stolen. Hackers calling themselves “The Impact Team” reportedly accessed and stole personal information and financial records of 37 million of AvidLife’s Ashley Madison Web site as well as user databases for 2 other sites that thecompany owns. The hack was perpetrated in response to Avid Life’s failure to provideits offered “full delete” feature for user profiles. Source

July 17, Securityweek – (International) Eaton patches TCP/IP stack flaw affectingcontrols, relays. Eaton released software updates addressing a remotely executableTransmission Control Protocal/Internet Protocol (TCP/IP) stack vulnerability in its Cooper Power Series Form 6 recloser control and Idea/IdeaPLUS relay protection platforms that could allow an attacker to launch man-in-the-middle (MitM) attacks and execute arbitrary code or crash systems connected to the Internet. Source

July 17, SC Magazine – (International) CVS investigating possible payment card breach, shuts down photo Web site. CVS reported that the company had shut down its CVSPhoto.com Web site while it investigated a possible payment card beach of the independent vendor that manages and hosts the site, PNI Digital Media. Company officials confirmed that purchases made in-store and on other CVS Web pages are not affected. Source

Nancy Rand

Nancy Rand

Nancy has more than 20 years’ experience in information technology and security, solving business issues and implementing best-practice solutions that support organizational objectives. Her expertise includes leveraging, optimizing, and implementing diverse technology platforms, and management of large-scale technology projects.