---
title: "Cyber Security News Update, Week 29 of 2021 | DuoCircle"
description: "This week’s cyber news headlines will have you thinking about whether you are doing enough to ensure cybersecurity for yourself and your organization."
image: "https://www.duocircle.com/images/og-default.png"
canonical: "https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-29-of-2021/"
---

Quick Answer

Six items. The Babuk ransomware crew relaunched with new infrastructure after the May 2021 source-code leak. Cyble documented a phishing campaign in which Chinese-linked actors impersonated India's State Bank of India to harvest banking credentials. A McAfee study found 47% of consumers consider security more important than brand reputation when choosing online services. Researchers found 27 vulnerabilities in DoD-facing public networks via the Hack the Pentagon program. The Dutch Institute for Vulnerability Disclosure had warned Kaseya about the VSA flaws (CVE-2021-30116, CVE-2021-30119, CVE-2021-30120) before REvil exploited them. And the U.S. is preparing sanctions and offensive cyber operations if Russia does not act against ransomware crews operating from its territory.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-29-of-2021%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Cyber%20Security%20News%20Update%2C%20Week%2029%20of%202021&url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-29-of-2021%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-29-of-2021%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-29-of-2021%2F&title=Cyber%20Security%20News%20Update%2C%20Week%2029%20of%202021 "Share on Reddit") [ ](mailto:?subject=Cyber%20Security%20News%20Update%2C%20Week%2029%20of%202021&body=Check out this article: undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-29-of-2021%2F "Share via Email") 

![Cyber Security](https://media.mailhop.org/duocircle/images/2021/07/hosted-email-server-6843.jpg) 

This week’s cyber news headlines will have you thinking about whether you are doing enough to **ensure cybersecurity** for yourself and your organization. From _the revival of a ransomware strain to attacks caused by ignorance_, here are the top cyberattack news updates from across the globe.

## Babuk Ransomware Announces Revival

The Babuk ransomware gang, which had announced its retirement, is again in action. Following a leak of its builder (a month ago) that enabled cyberattacks to create custom **ransomware variants**, _Babuk is back in the encryption-based extortion game with a new malware version_.

The new Babuk variant comes disguised as PayLoad Bin. Although there has been minimal activity in its news leak site, organizations must continue using **ransomware protection**. Ransomware operators may announce their exit, but one can never take them for their word, as they are more likely to [come back](https://web.archive.org/web/20230329163235/https://cyware.com/news/babuk-ransomware-is-back-in-action-9f4e2e11) with a more vigorous and deadlier malware version, just like Babuk!

## China-Based Hackers Impersonate State Bank Of India (SBI)

Two new SBI scams have emerged, and Chinese origin hackers are believed to be responsible for these **phishing attacks** impersonating the State Bank of India. In the first scam, users received a text message from SBI asking them to update their KYC using the embedded link. _The link leads to a spoofed landing page of SBI Online_. The users are requested to log in by entering their username, password, and a captcha. An OTP is then sent to the user’s mobile number, and entering this OTP leads them to a second page that requests personal details such as the account holder’s name, DOB, and mobile number.

[![email security](https://media.mailhop.org/duocircle/images/2021/07/spf-record-tester-6824.jpg)](https://media.mailhop.org/duocircle/images/2021/07/spf-record-tester-6824.jpg)

The second scam involves the circulation of a [WhatsApp message](https://ciso.economictimes.indiatimes.com/news/state-bank-of-india-customers-a-big-otp-scam-is-targeting-you/84203322) where SBI offers users a gift of Rs. 50 lakh (**About $67,000**). _Getting lured by this bait and clicking on the attached link leads users to a fake SBI landing page_ where they need to participate in a quick survey to be eligible for the gift. This page also shows a Facebook comment section crowded with fake messages from users commenting that they have received the reward. A team of researchers from [CyberPeace Foundation](https://www.cyberpeace.org/) and Autobot Infosec Pvt. Ltd. have been investigating the incident. The researchers advise people to use [email security](/) tools and avoid opening such messages circulating on social media.

## Consumers Worry More About Security Than Online Brands, Says Study

The business of online brands has bloomed because of the pandemic and our growing reliance on digital services. However, these brands seem to be more concerned about providing seamless service and **robust cybersecurity** measures. _A recent Trulioo study reveals that consumers globally are more concerned about safety from identity theft than flexibility_, choice, or seamless digital experience. Following are the prime highlights of the study:

- 71% of China, the UK, and US-based respondents feel that _security takes a backseat among online brands that are now prioritizing speed_.
- 76% of the respondents worried about _being at a greater risk of an attack now than a year ago_.
- 75% of the respondents fear becoming the victim of a fraud.
- For 71% of the respondents, security is an essential aspect while opening a new account.

**Email protection** and [cybersecurity awareness](/phishing-awareness-training) have increased among users because of which they now perceive security as more important than a quick and flexible digital experience. As such, online brands must [focus on gaining](https://www.helpnetsecurity.com/2021/07/07/online-brands-security/) consumers’ trust instead of only pleasing their senses.

## An Abundance Of Threats For The US Department Of Defense Network

While users are gaining [awareness of cybersecurity](/phishing-awareness-training), the existence of ignorants persists. A recent report by a [security watchdog](https://www.phishprotection.com/watchdog/) revealed that the US military’s office of 3D printing left designs defense technology has been treating computer systems like any other machinery such as welding and milling machines that do not require cybersecurity fixes. Consequently, _most of the systems at the Department of Defense have not been updated for over five years_.

These security gaps could lead to multiple attacks on the DoD where adversaries steal military designs, insert flaws into design data, protective weapons systems brackets, body armour, prosthetic body parts, tactical vehicle gear, or infect computers with malware. However, _the DoD office has now agreed to update computer systems to the latest version_. The report further suggests the DoD chief information officer mandate the [immediate implementation](https://www.cyberscoop.com/pentagon-cyber-vulnerabilities-printers-hack/) of security controls for its systems.

## DIVD Had Forewarned Kaseya Of Its Security Flaws

_The world was taken by storm on 2nd July 2021 when the Florida technology firm Kaseya underwent a massive ransomware attack_ affecting hundreds of global companies, businesses, schools, credit unions, and public sector groups. The vicious Russia-linked **ransomware gang REvil** was responsible for this attack. However, a Miami-based technology firm, the Dutch Institute for Vulnerability Disclosure (DIVD) had warned of a possible attack back in April when it had spotted vulnerabilities in Kaseya’s system.

[![ransomware protection](https://media.mailhop.org/duocircle/images/2021/07/spf-validator-6824.jpg)](https://media.mailhop.org/duocircle/images/2021/07/spf-validator-6824.jpg)

DIVD had privately informed Kaseya of the **security loopholes** and waited for the patch delivery in an abundance of caution. But the attack occurred before Kaseya could implement [ransomware protection](/advanced-threat-defense) measures, and it had to shut down its cloud and servers. The DIVD is yet to disclose all details of the vulnerability: it shall do so when Kaseya releases a patch and [enough systems](https://thehill.com/policy/cybersecurity/561927-cybersecurity-researchers-warned-kaseya-of-flaw-in-april-report) install it.

As per reports, the threat actors have demanded a **ransom of $70 million** in exchange for the decryption key, but Kaseya has privately negotiated and reduced the amount.

## US To Take Action Against Russian Hackers If Russia Doesn’t

The REvil attack on Kaseya was one of the many recent attacks on US organizations by Russian cybercriminal groups. The issue was taken up in a meeting between the high-level US and Russian officials, where _the US declared that it reserves the right to take action against these hacker groups if the Russian government doesn’t do so_.

Jen Psaki, Secretary, the White House Press, informed that the US and Russian officials would meet again next week to discuss the recent attacks on US organizations.

In its part, Kaseya says that the REvil attack had a limited impact on less than 60 managed service providers (MSPs). It further added that _up to 1,500 downstream businesses were compromised in the attack_ and had no effect on critical infrastructure. Only 50 of the 35,000 [Kaseya customers](https://www.bleepingcomputer.com/news/security/us-warns-of-action-against-ransomware-gangs-if-russia-refuses/) were affected in the incident, and therefore, the IT firm says that this highly sophisticated attack has been overstated.

On the other hand, _REvil claimed to have over 1,000,000 systems in its possession and had demanded a ransom of $70 million_. This was later brought down to **$50 million for a universal decryptor**.

## Topics

NewsSecurityUpdates 

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

Brad Slavin 

General Manager

General Manager at DuoCircle. Product strategy and commercial lead across the email security portfolio.

## Secure your email infrastructure

Protect, authenticate, and deliver. Contact our team to find the right solution.

[Contact Sales](/contact/) [Explore Products](/products/) 

Share this article

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-29-of-2021%2F) [ ](https://twitter.com/intent/tweet?text=Cyber%20Security%20News%20Update%2C%20Week%2029%20of%202021&url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-29-of-2021%2F) [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-29-of-2021%2F) Copy 

Related Articles

- [ ![spam](https://media.mailhop.org/duocircle/images/2021/07/sender-policy-framework-7535.jpg)  Alert: Fix SPF & DKIM Settings For Your Email Forwarding Set Up Through Microsoft o365 SMTP Server Or Your Emails May End Up In Spam News ](/blog/announcements/alert-fix-spf-dkim-settings-for-your-email-forwarding-set-up-through-microsoft-o365-smtp-server-or-your-emails-may-end-up-in-spam/)
- [ ![Cyber Security](https://media.mailhop.org/duocircle/images/2022/01/spf-flattening-7011.jpg)  Cyber Security News Update, Week 1 of 2022 News ](/blog/announcements/cyber-security-news-update-week-1-of-2022/)
- [ ![Cybersecurity](https://media.mailhop.org/duocircle/images/2023/01/spf-validator-6824.jpg)  Cybersecurity News Update, Week 1 of 2023 News ](/blog/announcements/cyber-security-news-update-week-1-of-2023/)
- [ ![cybersecurity](https://media.mailhop.org/duocircle/images/2024/01/phishing-protection.jpg)  EasyPark Data Breach, Ohio Lottery Cyberattack, GTA 5 Leak, Cybersecurity News \[December 25, 2023\] News ](/blog/announcements/cyber-security-news-update-week-1-of-2024/)

## Related Articles

[  News 3m  Alert: Fix SPF & DKIM Settings For Your Email Forwarding Set Up Through Microsoft o365 SMTP Server Or Your Emails May End Up In Spam  Jul 20, 2021 ](/blog/announcements/alert-fix-spf-dkim-settings-for-your-email-forwarding-set-up-through-microsoft-o365-smtp-server-or-your-emails-may-end-up-in-spam/)[  News 6m  Cyber Security News Update, Week 1 of 2022  Jan 7, 2022 ](/blog/announcements/cyber-security-news-update-week-1-of-2022/)[  News 7m  Cybersecurity News Update, Week 1 of 2023  Jan 1, 2023 ](/blog/announcements/cyber-security-news-update-week-1-of-2023/)[  News 5m  EasyPark Data Breach, Ohio Lottery Cyberattack, GTA 5 Leak, Cybersecurity News \[December 25, 2023\]  Jan 4, 2024 ](/blog/announcements/cyber-security-news-update-week-1-of-2024/)

```json
{"@context":"https://schema.org","@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}],"sameAs":["https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.facebook.com/duocirclellc","https://www.g2.com/products/phish-protection-by-duocircle/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://support.duocircle.com"},"knowsAbout":["Email Security","Email Authentication","SPF","DKIM","DMARC","Phishing Protection","Spam Filtering","SMTP Relay","Email Deliverability","Email Forwarding"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DuoCircle LLC","url":"https://www.duocircle.com","description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cyber Security News Update, Week 29 of 2021","description":"This week’s cyber news headlines will have you thinking about whether you are doing enough to ensure cybersecurity for yourself and your organization.","url":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-29-of-2021/","datePublished":"2021-07-16T14:50:35.000Z","dateModified":"2025-05-27T12:36:07.000Z","dateCreated":"2021-07-16T14:50:35.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-29-of-2021/"},"articleSection":"announcements","keywords":"News, Security, Updates","wordCount":1090,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2021/07/hosted-email-server-6843.jpg","caption":"Cyber Security","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":2,"name":"News"},{"@type":"ListItem","position":3,"name":"Cyber Security News Update, Week 29 of 2021","item":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-29-of-2021/"}]}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://www.duocircle.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":3,"name":"News","item":"https://www.duocircle.comundefined"},{"@type":"ListItem","position":4,"name":"Cyber Security News Update, Week 29 of 2021","item":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-29-of-2021/"}]}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cyber Security News Update, Week 29 of 2021","description":"This week’s cyber news headlines will have you thinking about whether you are doing enough to ensure cybersecurity for yourself and your organization.","url":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-29-of-2021/","datePublished":"2021-07-16T14:50:35.000Z","dateModified":"2025-05-27T12:36:07.000Z","dateCreated":"2021-07-16T14:50:35.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-29-of-2021/"},"articleSection":"announcements","keywords":"News, Security, Updates","wordCount":1090,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2021/07/hosted-email-server-6843.jpg","caption":"Cyber Security","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```
