Oh ugh, Wednesday edition:

Daixin Team has leaked Communicare in Kentucky -- a behavioral health community center. Not a huge breach, but a lot of sensitive mental health records as well as employee records, mental illness warrants, etc. A lot of the data appears to be from 2015-2017, scanned pdf files.

#databreach #ransomware #healthsec #HIPAA #cybersecurity #DaixinTeam

Acadian Ambulance hit by ransomware attack; Daixin claims info on 10 million patients stolen – DataBreaches.Net

On May 8, I posted a link to a news article about an attack on Regional Cancer Center in India that had been attributed by the victim to Daixin Team.

Yesterday, Daixin Team responded to my inquiry at the time by saying that no, that is not one of their attacks, and a North Korean team is just imitating them.

#databreach #HealthSec #ransomware #extortion #DaixinTeam

3.5 million Omni Hotel guest details held to ransom by Daixin Team

In the aftermath of a recent cyberattack against a leading international hotel chain by a known extortion gang, what lessons can be learned about how to better secure guests’ data and establish effective remediation processes?

Exponential-e Ltd.
3.5 million Omni Hotel guest details held to ransom by Daixin Team - The international hotel chain Omni Hotels & Resorts has confirmed that a cyber attack... https://www.exponential-e.com/blog/3-5-million-omni-hotel-guest-details-held-to-ransom-by-daixin-team #ransomware #daixinteam #databreach #guestblog #dataloss #malware #hotel

3.5 million Omni Hotel guest details held to ransom by Daixin Team.

Read more in my article on the Exponential-e blog: https://www.exponential-e.com/blog/3-5-million-omni-hotel-guest-details-held-to-ransom-by-daixin-team

#cybersecurity #ransomware #databreach #daixinteam

Information about customers and employees of Malaysia-based #AirAsia Group Berhad allegedly stolen in a #ransomware attack disclosed this month was published on the dark web. #DaixinTeam hackers claim to have taken sensitive data belonging to 5 million passengers, plus an unspecified number of airline employees. AirAsia didn't comment and had no mention of it at its website: https://thehackernews.com/2022/11/daixin-ransomware-gang-steals-5-million.html | #cybercrime #databreach #cybercrisis #crisismanagement
Daixin Ransomware Gang Steals 5 Million AirAsia Passengers' and Employees' Data

Daixin Team ransomware compromises AirAsia airlines and claims to have stolen personal data of five million passengers and all employees.

The Hacker News

Lots of useful #CTI published recently that maps to #mitreattack #TTPs. HHS report on #Venus yesterday is the latest on #ransomware threats to US #healthcare #HPH orgs this year: https://www.hhs.gov/sites/default/files/venus-ransomware-analyst-note.pdf

Also #Maui, #Zeppelin, #DaixinTeam, & #Quantum. I tossed these all into one heatmap (60 techniques total) to show overlap areas and set up pivoting to related defenses: https://app.tidalcyber.com/share/09809998-6c73-4208-a507-8c1ca1b311e9