Tech Talks With Kinsoft

Tech Talks With Kinsoft

por Steven Kinnas

Last Week in Tech – OpenAI's $122B Round, Oracle's Mass Layoffs, and a Backdoor in a Top npm Package

IA
Your Monday catch-up, with a security lens. This week: OpenAI closes a record $122B round, Oracle makes its largest-ever job cuts to fund AI, and Google ships open models that run on your phone. On the breach desk: North Korea-linked attackers backdoor the hugely popular "axios" npm package, and Apple patches a Spotlight flaw that could expose your files. Do you actually know what open-source packages your software depends on? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: Bloomberg; CNBC; TechCrunch; Reuters; Android Authority; The Verge.

Qilin Ransomware Hits Germany's Die Linke Party

IA
The Russian-speaking ransomware group Qilin compromised the network of German political party Die Linke in late March 2026, then claimed the attack on its leak site and threatened to publish internal party data and personal information of headquarters employees. The party's membership database was reportedly not affected. Die Linke filed a criminal complaint and characterised the timing as part of hybrid warfare against democratic institutions. We look at why political organisations are targets and the financially-plus-politically-motivated nature of modern ransomware crews. Need to protect a member or donor database? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: BleepingComputer; The Record (Recorded Future News).

Qilin Hits WA's Mount Barker Co-operative

IA
As part of a Qilin ransomware spree against several WA and QLD businesses, Mount Barker Co-operative (a West Australian regional food and farm co-op) was listed on Qilin's leak site on 11 February 2026 with roughly 40 GB claimed. The reporting stresses Qilin posted little hard evidence, leaving real uncertainty about how much was actually taken. A lens on why regional and co-operative businesses are increasingly targeted, plus backups, MFA, monitoring and incident-response basics. Run a regional or co-operative business? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: Cyber Daily.

Last Week in Tech – OpenAI Pulls the Plug on Sora, a Court Backs Anthropic, and Hacktivists Claim a Lockheed Haul

IA
Your Monday catch-up, with a security lens. This week: OpenAI shuts down its standalone Sora video app to free up compute, and a federal judge rebukes the Pentagon over its Anthropic ban. On the breach desk: a pro-Iran group makes a huge (unverified) claim against Lockheed Martin, the FBI director's personal email is hacked, and Crunchyroll and a French education system are breached. Unsure how to weigh a dramatic breach claim? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: TechCrunch; CNN; Cybersecurity Dive; BleepingComputer; Breaking Defense.

Stryker – Pro-Iran Wiper Attack Disrupts a Medtech Giant

IA
In March 2026, medical-device maker Stryker suffered a global network disruption that hit order processing, manufacturing and shipments — though no patient-related services or connected medical products were affected. Investigators found no malware or ransomware; instead attackers abused Stryker's Microsoft Intune environment via a compromised administrator account to remotely wipe a large number of devices. A pro-Iran group (Handala) claimed responsibility, framing it as retaliation, and the incident had a material impact on Stryker's first-quarter earnings. We discuss why destructive attacks through legitimate device-management tooling are so dangerous and the healthcare supply-chain risk. Worried an admin account could be turned against your own fleet? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: AHA News; CNN; HIPAA Journal.

DragonForce Hits Australian Health Software Vendor HMS

IA
Around 19 March 2026, the ransomware group DragonForce claimed an attack on Health Management Systems (hms.com.au), an Australian provider of healthcare software used by hospitals and clinics, listing the company on its leak site and threatening to release sensitive data unless it negotiated. We focus on the supply-chain angle — how compromising a healthcare software vendor can put many downstream hospitals, clinics and their patients' data at risk — and practical defences like vendor security reviews, isolated backups and phishing-resistant staff training. Relying on critical software vendors? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: Cyber News Centre.

Last Week in Tech

IA
Welcome to this episode of tech talks with kinsoft! This week, we unpack a massive wave of cybersecurity incidents and technology updates. We explore the devastating attack on Stryker, where threat actors utilized a compromised Microsoft Intune administrator account to remotely wipe 80,000 employee devices without deploying malware. We also detail the ongoing supply-chain compromise of the Trivy vulnerability scanner, the major Telus Digital data breach claimed by ShinyHunters, and critical zero-day security patches released for both Android and Microsoft. On the innovation front, we look at IBM and NVIDIA's expanded enterprise AI collaboration and Google's controversial AI-generated search headline experiment. To discuss your security and IT needs, and to ensure your organization is protected against these evolving threats, visit www.kinsoft.com.au.

Ivanti Zero-Days Breach the EU Commission & Dutch Govt

IA
Attackers exploited two critical Ivanti Endpoint Manager Mobile (EPMM) zero-days — CVE-2026-1281 and CVE-2026-1340, both CVSS 9.8 unauthenticated RCE — in a campaign hitting the European Commission, the Dutch government and other European entities. CERT-EU detected the Commission intrusion on 30 January 2026; it may have exposed some staff names and mobile numbers but was contained and the system cleaned within about nine hours, with no mobile devices compromised. We cover why internet-facing mobile-device-management servers are prime edge-device targets and the value of fast detection and patching. Running edge devices or MDM in your environment? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: Help Net Security; The Record (Recorded Future News).

Five Eyes Warning – INC Ransom Targets Australian Healthcare

IA
On 12 March 2026, Australian, New Zealand and Pacific (including Tongan) cyber authorities — led locally by the ACSC — issued a joint advisory warning of rising INC Ransom ransomware-as-a-service activity against critical infrastructure, linked to around 11 Australian organisations, mainly in healthcare and professional services. INC Ransom typically enters via compromised credentials, escalates to admin, then steals data for double-extortion. Practical warning for healthcare and critical-infrastructure operators: credential hygiene, phishing-resistant MFA, limiting privilege escalation, monitoring and incident-response readiness. Run healthcare or critical-infrastructure IT? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: Cyber News Centre (ACSC/Five Eyes advisory).

Last Week in Tech – OpenAI Buys an AI-Security Startup, Anthropic Sues the Pentagon, and a Wiper Hits Stryker

IA
Your Monday catch-up, with a security lens. This week: OpenAI moves to acquire AI red-teaming startup Promptfoo, and Anthropic sues the US Defense Department over its "supply-chain risk" label. On the breach desk: medtech giant Stryker is knocked offline by an Iran-linked wiper, outsourcer Telus is hit by ShinyHunters, and Michelin and Ericsson both disclose breaches. Worried a destructive attack could halt your operations? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: OpenAI; TechCrunch; CNBC; SecurityWeek; BleepingComputer.
9 de 14