CVE Tools

31th August – Threat Intelligence Report

Check Point ResearchBy urias4 min read

Reported exploitedPaperCut NGShinyHuntersUniFi Protect

Our summary

Check Point's weekly intelligence report highlights significant breaches at Manchester Airports Group, the U.S. ATF, Boston Scientific, and McKesson, the latter suffering a massive data theft via vishing and Okta compromise. In vulnerabilities, PaperCut NG and MF face active exploitation of chained flaws for RCE, while Ubiquiti UniFi, Vercel Next.js, and ServiceNow have patched multiple critical issues. Additionally, researchers detailed new AI attack vectors including Cryptographic Context Injection and prompt injection in Amazon Kiro.

Read at Check Point Research

Below is the opening; the full story is at Check Point Research.

From Check Point Research

For the latest discoveries in cyber research for the week of 31st August, please download our Threat Intelligence Bulletin.

TOP ATTACKS AND BREACHES

  • Manchester Airports Group, the UK operator of Manchester, London Stansted, and East Midlands airports, has disclosed a cyberattack that exposed data belonging to about 8.7 million customers. The compromised information includes contact details, vehicle registration numbers, and information collected through car park, lounge, fast-track, and Wi-Fi registrations.
  • The U.S. Bureau of Alcohol, Tobacco, Firearms and Explosives has confirmed a cyberattack affecting a standalone computer containing information on ATF investigation targets. The system was disconnected after the compromise, while the Qilin ransomware group listed the agency on its leak site and claimed responsibility.
  • Boston Scientific, a US-based global medical device company, has experienced a cyberattack that caused network outages and disrupted operations worldwide. Access to internal systems and applications, including services supporting order processing and shipping, was affected. The company began restoring impacted systems following the August 26 disruption.
  • McKesson, a major U.S. healthcare and pharmaceutical company, has disclosed a data breach involving unauthorized access to third-party applications and data theft. Threat group ShinyHunters claimed it used vishing to compromise Okta accounts and access Salesforce and Snowflake, exfiltrating about 1TB of data containing approximately 284 million patient-related records.…
Continue at Check Point Research

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store