The U.S. Marshals Service (USMS) is investigating the theft of sensitive law enforcement after it was hit by a ransomware attack that describes as "a stand-alone USMS system." USMS is a bureau within the Justice Department that provides support to all elements of the federal justice system by executing federal court orders, seizing illegally obtained assets, assuring illegally obtained assets, assuring the safety of government witnesses and their families, and more. Moreover, spokesperson Drew Wade said the USMS discovered the ransomware and data exfiltration event affecting stand-alone USMS systems on February 17, 2023, and the affected system contains law enforcement sensitive information, including administrative information, returns from legal process, and personally identifiable information pertaining to subjects of USMS investigations, third parties, and certain USMS employees. The compromised system is now disconnected from the USMS network, and the attack is currently under active investigation as a 'major incident.' However, the sources stated that the attackers did not gain access to USMS' Witness Security Files Information System (WITSEC) database. Furthermore, the FBI is investigating the malicious cyber activity on the agency's network which is a part of the now-contained "isolated incident." Also, this incident follows a data breach discovered in May 2020 after the USMS exposed details of over 387,000 former and current inmates in a December 2019 incident, including their names, dates of birth, home addresses, and social security numbers.
Apple has revealed that it blocked more than $11 billion in fraudulent App Store transactions over the past six years, including over $2.2 billion in potentially fraudulent activit...
Trend Micro has disclosed an actively exploited zero-day vulnerability affecting its Apex One endpoint security platform used in enterprise Windows environments. The flaw, tracked ...
Drupal has warned administrators that threat actors are actively attempting to exploit a highly critical SQL injection vulnerability tracked as CVE-2026-9082. The flaw impacts Drup...