Categories
World News

A whole bunch of Companies, From Sweden to U.S., Affected by Cyberattack

Hundreds of businesses around the world, including one of Sweden’s largest grocery chains, grappled on Saturday with potential cybersecurity vulnerabilities after a software provider that provides services to more than 40,000 organizations, Kaseya, said it had been the victim of a “sophisticated cyberattack.”

Security researchers said the attack may have been carried out by REvil, a Russian cybercriminal group that the F.B.I. has said was behind the hacking of the world’s largest meat processor, JBS, in May.

In Sweden, the grocery retailer Coop was forced to close at least 800 stores on Saturday, according to Sebastian Elfors, a cybersecurity researcher for the security company Yubico. Outside Coop stores, signs turned customers away: “We have been hit by a large IT disturbance and our systems do not work.”

Mr. Elfors said a Swedish railway and a major pharmacy chain had also been affected by the Kaseya attack. “It’s totally devastating,” he said.

Asked about the cyberattack after he landed in Michigan on Saturday on a trip to celebrate Covid-19’s retreat in the United States, President Biden said he had been delayed in getting off the plane because he was being briefed about the attack. He said he had directed the “full resources of the federal government” to investigate. “The initial thinking was it was not the Russian government, but we’re not sure yet,” he said.

Victims of the breach were hit through a Kaseya software update, Kevin Beaumont, a threat researcher, said. Instead of getting Kaseya’s latest update, they received REvil’s ransomware. Kaseya was initially breached through a previously unknown vulnerability in its systems — known as a “zero day” because when such vulnerabilities are discovered, software makers have zero days to fix it. In the meantime, cybercriminals and spies can use the vulnerability to wreak havoc.

Mr. Beaumont said the attack marked a serious escalation in the tactics of ransomware gangs. In previous attacks, REvil was known to break in through a combination of phishing, stolen passwords or a lack of multifactor authentication.

Dutch researchers said they had reported the vulnerability to Kaseya, but the company was still working on a patch when it was breached and its software updates were compromised, according to people briefed on the timeline.

The attack became public on Friday, when Kaseya said that it was investigating the possibility that it had been the victim of a cyberattack. The company urged customers that use its systems management platform, called VSA, to immediately shut down their servers to avoid the possibility of being compromised by attackers.

“We are experiencing a potential attack against the VSA that has been limited to a small number of on-premise customers only,” Kaseya posted on its website, referring to organizations that keep their software at their own sites rather than housing it with a cloud provider. “We are in the process of investigating the root cause of the incident with the utmost vigilance.”

Fred Voccola, Kaseya’s chief executive, said in a statement on Saturday that less than 40 customers had been affected by the attack, but those customers include so-called managed service providers, which can each provide security and tech tools to dozens or even hundreds of companies.

That has magnified the attack’s severity, said John Hammond, a researcher at the cybersecurity company Huntress Labs.

“What makes this attack stand out is the trickle-down effect, from the managed service provider to the small business,” Mr. Hammond said. “Kaseya handles large enterprise all the way to small businesses globally, so ultimately, it has the potential to spread to any size or scale business.”

Some of the affected companies were being asked for $5 million in ransom, Mr. Hammond said. Thousands of companies were at risk, he said.

The United States Cybersecurity and Infrastructure Security Agency described the incident in a statement on its website on Friday as a “supply-chain ransomware attack.” It urged Kaseya’s customers to shut down their servers and said it was investigating.

Hackers have carried out a slate of prominent cyberattacks against U.S. companies in recent months, including JBS and Colonial Pipeline, which moves fuel along the East Coast. Both were ransomware attacks, in which hackers try to shut down systems until a ransom is paid. The video game company Electronic Arts was also recently hacked, but its data was not held for ransom.

Nicole Perlroth and David E. Sanger contributed reporting.

Categories
Business

How Your 2020 Taxes Are Affected by the Coronavirus Pandemic

You need to know how much you have already received in order to receive credit. If you don’t have the information about the amounts (note 1444 for the first stimulus payment and 1444-B for the second), you can find the information by creating a custom online account. (Spouses filing together have separate accounts.)

The quickest way to get the credit is to file a tax return electronically and have the money deposited directly, even if you don’t have to file anything else. If you make $ 72,000 or less, you can do so for free through the IRS Free File program.

This is especially possible if your financial situation or your status has changed in the last year.

The 2020 tax return recovery credit is based on an individual’s 2020 tax year information, while the second business stimulus payment is based on the 2019 tax year. (For the first stimulus review, the IRS said, a 2018 return may have been used if the 2019 return was not filed or processed.) If your 2020 income fell and you did not receive the full amount, you could maybe do more get.

The same applies to changes in living conditions. For example, if you had a child in 2020, you may be eligible for more money or you may no longer be dependent on your parents’ tax return (and were in 2019), which may make you eligible.

Undocumented immigrants without a Social Security number are not eligible for payments – and the CARES Act, the $ 2 trillion aid package that went into effect in late March, also prevented most spouses and children from receiving checks, even if they were U.S. Were citizens.

The December The auxiliary bill has at least partially changed that. Now married couples who submit joint feedback may be able to reclaim payments for a spouse who has a valid social security number, the IRS said. Every child with a social security number is also entitled to payments.

To determine if you qualify, use the discount credit recovery worksheet or tax preparation software.

The latest aid package includes an additional stimulus payment of up to $ 1,400. The IRS calculates payments based on your most recent tax return.

Categories
Health

How Pandemic Isolation Affected an Alzheimer’s Affected person in a Nursing Residence

While the nurses came to change Peggy’s bedding, I spoke to her nurse in the hallway. When Peggy arrived at this facility about two weeks earlier, she had pressure ulcers on her heels and lower back. In Peggy’s room, her nurse changed her bandages and pointed out the wounds on her heels, which didn’t look bad, but on her back, just above her tailbone, a plate the size of a plate was sore, yellowish, and raw. “It’s gotten so much better,” said the nurse, running her finger over a circle about a third larger than the one I could see.

Both pressure ulcers and pulmonary embolisms can be caused by lying in the same position for too long. Nobody accused their previous nursing home of neglect, but they made it clear that the wounds were already there when they arrived. They had developed in the first four months of the Covid shutdown when my sister, her chief attorney, was not allowed to visit.

Her bandages changed and her sheets were fresh, Peggy turned on her side. Her eyes were calm and when she fell asleep I could see that she knew who I was.

While she slept, I explored her room to see what remnants of her curious and acquisitive life had been preserved in this institutional space. Her photo album was sticky and the pages crackled with age. I knew a lot of these photos. There she was like a bridesmaid, tall and deeply tanned, her blue eyes shining and holding the hand of our father, who lived not long after this picture was taken. There were photos of us as the five sisters we once were and one of Peggy, who was 10 years older than me and who acted as a surrogate mother when I graduated from high school. There was a photo of the friend who followed her to the end of the world, but to whom she could not commit. There are photos of our New Jersey home, nieces and nephews, green decks and swimming pools, and Peggy on her skis.

They came from a life none of us lived anymore, and they ended around 2005 when my mother sold her house and moved into assisted living, leaving Peggy without a landing for the first time in her life. Her bipolar illness, which she found difficult to manage, began to feed on the life she had built before Alzheimer’s quit the job.