Friday the 13th LNKApocalypse

################################

Monday AM 16/01/2022 – Customers and Friends are reporting this issue is still occuring, just done a test and run MS v1.1. script, it found 0 apps to fix and applied zero fixes. My custom hacky script found a range of shortcuts to restore. I have a feeling this problem might drag on a little. there are timing issues with script application and CONFIG application + Defender update rules which means this might still affect machines. I’ve watched a machine delete icons this morning!

################################

Read more “Friday the 13th LNKApocalypse”

Royal Mail Cyber Incident

According to the Belfast Telegraph:

Royal Mail operations hub in Mallusk hit by ‘cyber attack’ as printer spurts out ransom demands – BelfastTelegraph.co.uk

The Incident is reported by them as “RANSOMWARE” and features Lockbit (Lockbit is RaaS, they recently (end of 2022 lost their ransomware payload builder) so the use of Lockbit software and the fact Lockbit is RaaS means this doesn’t prove attribution). (Attribution is hard, for most people what matters is their own network security posture, rather than who pwn3d royal mail)

Read more “Royal Mail Cyber Incident”