CuraSec

tag: Incident · 3 items

2026-08-26 · BleepingComputer · source ↗ #healthcare#data-breach#incident
  • Engineer — Skip
  • SOC/IR — Skip
  • Leader — Learn: A healthcare-sector peer breach involving exfiltrated data from hospital systems — useful context for board briefings on sector risk and a prompt to verify any Nutex Health service or data-sharing relationships your organization holds.
2026-08-12 · BleepingComputer · source ↗ #wireless-security#incident#deauth-attack
  • Engineer — Learn: No enterprise infrastructure impact; this is an air-gapped physical environment curiosity. Worth noting as a reminder that rogue AP and deauth techniques remain practical in constrained wireless environments, but no action required on cloud or app systems.
  • SOC/IR — Learn: No IOCs, no TTPs, no enterprise detection surface — the incident is confined to in-flight Wi-Fi. Useful context for understanding wireless attack tradecraft but yields no detection or hunt action.
  • Leader — Skip
  • Engineer — Skip
  • SOC/IR — Learn: Active attack against maritime critical infrastructure with operational impact, but no IOCs, TTPs, or attribution have been published yet — monitor for follow-up reporting before initiating a hunt.
  • Leader — Learn: A confirmed attack disrupting multi-site port operations illustrates supply-chain and critical-infrastructure risk; useful context for board risk discussions but no vendor exposure to verify or immediate action required at this stage.