Weekly News Roundup

Weekly News Roundup
February 14, 2025 | Cybersecurity

By Editorial Desk, 63SATS

From massive IoT data leaks to ransomware crippling critical services, global cyber threats are escalating. As financial, healthcare, and government sectors struggle, new tactics—from AI-driven fraud detection to quantum-safe encryption—are emerging.

Massive IoT Data Breach Exposes 2.7 Billion Records

A 1.17TB unprotected database linked to Mars Hydro leaked Wi-Fi credentials, device IDs, IPs, and API tokens. Discovered by Jeremiah Fowler, the breach impacted millions globally via the Mars Pro app. Mars Hydro restricted access, but security concerns remain, highlighting ongoing IoT vulnerabilities.

Ransomware Cripples Michigan’s Sault Tribe Operations

A ransomware attack disrupted Michigan’s Sault Tribe, shutting down casinos, health services, and businesses. Chairman Austin Lowes confirmed major outages, impacting over 44,000 members. The attack threatens Kewadin Casinos’ revenue, critical for community funding. Authorities are investigating, but recovery may take longer than expected.

Heartland Bank Reports Email System Breach
Heartland Bank 63 Sats Cybersecurity India

Heartland Bank suffered a data breach, exposing names and Social Security numbers via compromised emails. The Nebraska-based bank is notifying affected customers and offering two years of free credit monitoring. The breach was reported to the Massachusetts Attorney General as investigations continue to assess risks.

Russian Hackers Expand Global Cyber Espionage

A Russian Sandworm subgroup launched “BadPilot,” a cyber-espionage campaign targeting infrastructure in North America, Europe, Africa, and Asia. Microsoft Threat Intelligence warns the attacks provide persistent access to high-value targets, signaling an expanded Russian cyber threat beyond Eastern Europe. State-sponsored cyber warfare continues to escalate.

Watergate Hotel Data Breach Exposes Guest Information

The Watergate Hotel confirmed an April 2024 breach exposing guest and employee data, including Social Security numbers, financial details, and health insurance information. The investigation concluded in December, with affected individuals being notified. Law enforcement is involved, raising concerns about hospitality sector cybersecurity.

India Deploys AI to Shut Down Cyber Fraud ‘Mule Accounts’
amit shah 63 Sats Cybersecurity India

Union Home Minister Amit Shah announced AI-driven efforts to detect and shut down “mule accounts” used in cyber fraud. Addressing the MHA’s cybersecurity panel, he stressed a holistic strategy combining tech, awareness, and collaboration. The initiative aligns with PM Modi’s “STOP-THINK-TAKE ACTION” cybersecurity campaign.

Cisco Rejects Kraken Ransomware Breach Claims

Cisco denied Kraken ransomware’s claims of a new breach, stating leaked credentials stemmed from an older incident. Kraken leaked admin accounts and NTLM hashes, threatening further attacks. Cisco emphasized no recent compromise, highlighting the risk of past breaches resurfacing in ransomware campaigns.

Gcore Report: DDoS Attacks Surge 56%, Peaking at 2 Tbps

Gcore’s latest report shows DDoS attacks surged 56% year-over-year, hitting a record 2 Tbps. Financial services saw a 117% increase, while gaming remained the top target. Short, high-intensity attacks are evolving, driven by geopolitical tensions, necessitating real-time mitigation strategies.

Cyber Resilience Gaps Exposed: IT Leaders Overestimate Readiness

A Zscaler report reveals IT leaders overestimate cybersecurity readiness—94% express confidence, but only 45% stay updated. While 60% anticipate attacks, 40% haven’t reviewed defenses in six months. Weak adoption of zero-trust and threat-hunting exposes organizations despite rising investments.

Europol Warns Financial Sector of Quantum Cryptography Threats
Europol 63 Sats Cybersecurity India

Europol warns that quantum threats could soon break encryption, with hackers already storing encrypted financial data for future decryption. At the QSFF forum, experts urged prioritizing quantum-safe cryptography and global collaboration to safeguard financial systems before quantum advancements accelerate risks.

Karnataka Police Investigate Property Registration Portal Hack

Hackers breached Karnataka’s Kaveri 2.0 property registration system, creating fake accounts and extracting sensitive data. A forensic probe linked 62 email accounts and 620,000 malicious requests in two hours. Authorities filed an FIR under the IT Act, highlighting the need for stronger government cybersecurity.ed on February 9.

Georgia Hospital Data Breach Exposes 120,000 Patient Records
Georgia Hospital 63 Sats Cybersecurity India

A ransomware attack on Memorial Hospital in Georgia compromised 120,000 patient records, including medical and financial data. The Embargo ransomware group claims responsibility, leaking 1.15TB of data. The hospital resorted to paper records and is offering identity theft protection to victims.

Lee Enterprises Battles Cyberattack, Disrupting Newspapers

Lee Enterprises is recovering from a cyberattack disrupting 70 newspapers across 25 states. Starting February 3, the attack affected print and online editions. CEO Kevin Mowbray said investigations continue, with full impact assessment expected to take weeks. The media industry faces growing cyber threats.

RBI Launches “Bank.in” Domain to Combat Digital Banking Fraud

The RBI introduced the “bank.in” domain to enhance banking security and curb phishing. Managed by IDRBT, registrations start April 2025. Additionally, “fin.in” will be launched for non-bank financial entities. AFA for cross-border transactions will further strengthen payment security.

HPE Confirms Data Breach by Russian Hackers

HPE disclosed a May 2023 breach by Cozy Bear, exposing employees’ Social Security numbers, credit card details, and driver’s licenses. Cozy Bear, linked to Russia’s SVR, was also behind the 2020 SolarWinds hack. Investigations continue into the breach’s full scope.