ZeroFox Daily Intelligence Brief - November 27, 2023
|by Alpha Team

ZeroFox Daily Intelligence Brief - November 27, 2023
ZeroFox Intelligence collects, curates, and analyzes information derived from open and proprietary sources. Here is today’s daily roundup to give you and your clients an advantage over the adversary.
Brief Highlights
- General Electric Investigates Claims of Cyber Attack, Data Theft
- ownCloud Discloses Three Bugs of Severe Criticality That Expose Important Credentials of ownCloud Users
- Cyber Attack Impacts CTS Clients Disrupting Services
General Electric Investigates Claims of Cyber Attack, Data Theft
General Electric has reportedly confirmed that it is investigating an alleged data breach conducted by threat actor Intelbroker. On November 24, ZeroFox Intelligence observed IntelBroker advertising on underground marketplace BreachForums about a data set supposedly stolen after breaching General Electric’s systems. IntelBroker claims that the data he has in his possession includes "a lot of DARPA-related military information," besides SSH and SVN access, SQL files, and documents.
ownCloud Discloses Three Bugs of Severe Criticality That Expose Important Credentials of ownCloud Users
ownCloud, a provider of open-source software solutions for content collaboration, is warning users of three critical-severity vulnerabilities that can expose important credentials to threat actors and compromise sensitive information. The company advises users to update vulnerable credentials and has also provided other mitigation measures to guard users against possible exploits.
Cyber Attack Impacts CTS Clients, Disrupting Services
Converge-IT.Net Limited (CTS) reveals that a part of its services are temporarily interrupted because of a “cyber-incident” and that it is currently working with third-party experts and a cyber forensics firm to resume services. The outage is suspected to have been caused by a ransomware attack that has affected an unspecified number of CTS’s clients, ranging from 80 to 200 law firms. CTS assures its clients that none of its data has been compromised.
Tags: DIB, tlp:green