ioc.exchange is one of the many independent Mastodon servers you can use to participate in the fediverse.
INDICATORS OF COMPROMISE (IOC) InfoSec Community within the Fediverse. Newbies, experts, gurus - Everyone is Welcome! Instance is supposed to be fast and secure.

Administered by:

Server stats:

1.4K
active users

Geekmaster 👽:system76:

🚨 to anyone who manages/supports ANY US network 🚨

Russian hacking group announced on 1-Feb that they are actively attacking US healthcare operations in all 50 states. I have seen the conversations with a "call to arms" and the list of targets in every state.

start-quote (translated from Russian):
"1-Feb-2023: The largest DDoS attack on the US medical sector is announced. The list of targets included corporate networks of hospitals, hospitals, providers of online medical services. May the bandwidth of the global network be with us! List for all participants of the event: hxxps://telegra[.]ph/Celi-po-med-SSHA-02-02

We are Russians, We are Killnet!" - end-quote

I made the URL not clickable, since I don't trust it (nor should you).

It may be too late for most to shore up defenses, I know Tallahassee Memorial Hospital in Florida is already turning away patients due to "..an IT Security issue..." that started last night.

If some hacker doxes me for announcing this, so be it. I'll deal with what comes my way. These attacks against hospitals MUST stop. Even blackhats agree, attacking health institutions should be off the list - hard stop.

@Geekmaster Any update on this? Don't even see any updates in local news about it.

@Byrdbrnz Killmilk (the ringleader) is still touting calls to action in the channel, but I haven't heard of any large scale issues other than Tallahassee Memorial Hospital still diverting patients after 5 days. A few of the targets were university health systems in a few different states, two of which I happen to know have solid DDOS mitigations in place. I did finally see that the FBI put out an alert to shore up DDOS defenses a couple days ago for the Healthcare sector. From what I can tell they are being methodical about the attacks, rather than doing a straight broadcast from whatever botnets they have access to. Will let you know the second I see further actions.

@Byrdbrnz I did drop the target list in a pastebin. link above