Opens profile photo
Follow
Click to Follow zackwhittaker
Zack Whittaker
@zackwhittaker
Security editor • +1 646.755.8849 • zack.whittaker@techcrunch.com • mastodon.social/@zackwhittaker
New York, NYthis.weekinsecurity.comJoined August 2008

Zack Whittaker’s Tweets

Two victim organizations told TechCrunch that they only learned that their data had been stolen after they each received ransom demands. Both organizations said they had been assured by Fortra that their data was unaffected by the ransomware attack.
12
Show this thread
New: US Wellness, a major provider of healthcare and wellness programs in the U.S. with millions of customers, confirmed a breach involving a third-party vendor. That vendor is likely Fortra, given US Wellness was a GoAnywhere customer. More: tcrn.ch/3JDEQDO
A data breach notice that's highlighted with text that says: "On January 31, 2023, our vendor experienced a security incident that disrupted access to certain of our systems." and "The information potentially impacted in connection with this incident included your name, address, date of birth, member ID number, where the service originated, and address of the service location."
1
30
New: A hacker stole ~1 million user records from kids tech camp iD Tech in January, but parents *still* haven't heard from the company. One parent says the stolen data includes kids' DOBs. When reached by email, CEO Pete Ingram-Cauchi would not comment.
3
84
TechCrunch has learned of dozens of organizations that used the affected GoAnywhere file transfer software at the time of the breach — including the City of Toronto, Hitachi, and Hatch Bank — suggesting more victims are likely to come forward.
6
Show this thread
Breaking: City of Toronto confirms to TechCrunch that it *is* affected by a recent mass ransomware attack. A city spox. confirmed that "unauthorized access to City data did occur through a third party vendor." That vendor is Fortra. Our updated story:
2
44
Show this thread
New: The list of known victims is growing after the Clop ransomware gang claimed it mass-hacked 130 orgs using a bug in a popular data transfer tool called GoAnywhere. But the impact is murky at best. It's not clear if even Clop knows what data it stole.
1
50
More details on aCropalypse. I suffered a grave injustice when my description of affected images as “Mary Poppins bag photos” was ruthlessly cut from the draft. But in truth it was I who failed to incorporate any mention of “aCropalypse on the Acropolis”
14
New: The list of known victims is growing after the Clop ransomware gang claimed it mass-hacked 130 orgs using a bug in a popular data transfer tool called GoAnywhere. But the impact is murky at best. It's not clear if even Clop knows what data it stole.
1
50
NEW: The new admin of BreachForums announced they are shutting down the site "as I believe we can assume that nothing is safe anymore." "I hope to bring something back that will rival any other community that can take our place."
1
16
Square profile picture
🚨 Google is sounding a rare alarm for users to *take action* to protect themselves against serious security flaws in Samsung chips found in dozens of popular Android handsets, which can be "silently and remotely" exploited over the cellular network.
1
51
New: Google's Project Zero is sounding the alarm over four zero-day flaws in Samsung chips, affecting dozens of Android models. Google says the flaws can be "silently and remotely" exploited over the cell network.
7
156
NEW: Several international law enforcement agencies have taken down ChipMixer, a crypto laundering service linked to the FTX hack and several ransomware gangs. ChipMixer facilitated laundering of 152,000 Bitcoins (~$25 million), according to Europol.
4
30
As unlikely as it is, a national TikTok ban would not stop Americans’ data from ending up in China. The data has to be stemmed at the source — by not allowing American tech companies to collect gobs of data from people’s devices to begin with.
10
Show this thread
NEW: The U.S. government announced today it seized a website used to sell NetWire, software widely considered to be malware. In an affidavit, an FBI agent explained how the feds determined that NetWire was indeed malicious.
5
228
Show this thread
NEW: The Russian game developer Battlestate Games said it has banned 6,700 cheaters in a week from Escape from Tarkov. The company has also taken the unusual step of publishing the nicknames and handles of all the cheaters.
135
684
NEW: Hackers have stolen the data of around 500,000 customers of the online gun shop Gun Auction, including names, home addresses, phone numbers, emails addresses, and plaintext pwds. It's also possible to track a gun purchase to a specific customer.
8
86
Show this thread
Hatch Bank says hackers exploiting a zero-day in Fortra's GoAnywhere software stole 140,000 customer SSNs. It was notified of the flaw on Feb 3, a day after Brian Krebs shared details of the vulnerability
1
19
USPS agreed to fix this flaw back in 2019 after its independent watchdog said that if USPS didn't implement a national policy to check someone's ID when submitting this form in person, it would harm USPS' "trusted" reputation. Yet, this fraud continues.
1
6
Show this thread
The flaw is simple and long known to fraudsters. It relies on an old fashioned trick — filling out a postcard-sized "change of address" form at a USPS post office — because there's no guarantee that USPS will check the identity of the person submitting it. tcrn.ch/3ZbxCgO
a postcard-sized change of address form, made of paper, facing front-side up on a flat wooden desk.
1
10
Show this thread