Tag Archive for: Reported

Cyberattacks reported at US airports


Some of the nation’s largest airports have been targeted for cyberattacks Monday by an attacker within the Russian Federation, a senior official briefed on the situation confirmed to ABC News.

Importantly, the systems targeted do not handle air traffic control, internal airline communications and coordination or transportation security.

“It’s an inconvenience,” the source said. The attacks have resulted in targeted “denial of public access” to public-facing web domains that report airport wait times and congestion.

Over a dozen airport websites were impacted by the “denial of service” attack, John Hultquist, head of intelligence analysis at cybersecurity firm Mandiant, told ABC News. That type of attack essentially overloads sites by jamming them with artificial users.

“Killnet,” a pro-Russian hacker group, is believed to be behind the attack, according to Hultquist. While similar groups have been found to be fronts for state-backed actors, Hultquist said there is no evidence the Russian government was involved in directing this attack.

The attacks were first reported around 3 a.m. ET when the Port Authority notified the Cybersecurity and Infrastructure Security Agency that the LaGuardia Airport system had been hit. LaGuardia has been restored, but other airports around the country have subsequently been targeted.

PHOTO: In this file photo taken on Aug. 10, 2022, passengers look at flight departure information boards in the West Gates expansion area at Los Angeles International Airport in Los Angeles.

In this file photo taken on Aug. 10, 2022, passengers look at flight departure information boards in the West Gates expansion area at Los Angeles International Airport in Los Angeles.

Patrick T. Fallon/AFP via Getty Images, FILE

The FBI and Cybersecurity and Infrastructure Security Agency, part of the Department of Homeland Security, each said they were aware of the attacks.

The websites for Des Moines International Airport, Los Angeles International Airport (LAX) and Chicago O’Hare International Airport appeared impacted Monday morning.

Hartsfield-Jackson Atlanta International Airport reported around 10:30 a.m. ET that its site is back up and running and that “at no time were operations at the airport impacted.”

“Early this morning, the FlyLAX.com website was partially disrupted,” LAX said in a statement to ABC News. “The service interruption was limited to portions of the public…

Source…

Chrome fixes 0-day security hole reported anonymously – update now! – Naked Security


Just three days after Chrome’s previous update, which patched 24 security holes that were not in the wild…

…the Google programmers have announced the release of Chrome 105.0.5195.102, where the last of the four numbers in the quadruplet jumps up from 52 on Mac and Linux and 54 on Windows.

The release notes confirm, in the clipped and frustrating “indirect statement made in the passive voice” bug-report style that Google seems to have borrowed from Apple:


   CVE-2022-3075: Insufficient data validation in Mojo.

   Reported by Anonymous on 2022-08-30

   [...]

   Google is aware of reportsrts [sic] that an exploit 
   for CVE-2022-3075 exists in the wild.

As always, our translation of security holes written up in this non-committal way is: “Crooks or spyware vendors found this vulnerability before we did, have figured out how to exploit it, and are already doing just that.”