---
title: "Cybersecurity News Update, Week 46 of 2022 | DuoCircle"
description: "With global headlines and the top cybersecurity news, the weekly cybersecurity bulletin brings Meta’s data protection failure fine."
image: "https://www.duocircle.com/images/og-default.png"
canonical: "https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-46-of-2022/"
---

Quick Answer

Week 46 of 2022 covered six items. Ireland's Data Protection Commission fined Meta 265 million euros over a 2021 incident that exposed phone numbers and other contact data on roughly 533 million Facebook users through scraping of a contact-import feature. Twitter confirmed a leak of personal data from 5.4 million accounts tied to a 2021 API flaw, with the data circulating on a hacker forum. Cincinnati State Technical and Community College disclosed a ransomware attack that took core IT systems offline. Google issued an emergency Chrome fix for CVE-2022-4135, the eighth actively exploited zero-day in the browser in 2022\. Interpol's Operation HAECHI III seized roughly $130 million in cash and cryptocurrency tied to online financial crime across 30 countries. Researchers found a malicious build of OpenVPN client circulating in Asia bundled with the Bahamut Windows spyware.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-46-of-2022%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Cybersecurity%20News%20Update%2C%20Week%2046%20of%202022&url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-46-of-2022%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-46-of-2022%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-46-of-2022%2F&title=Cybersecurity%20News%20Update%2C%20Week%2046%20of%202022 "Share on Reddit") [ ](mailto:?subject=Cybersecurity%20News%20Update%2C%20Week%2046%20of%202022&body=Check out this article: undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-46-of-2022%2F "Share via Email") 

![Cybersecurity](https://media.mailhop.org/duocircle/images/2022/12/SMTP-email-4964.jpg) 

With global headlines and the top cybersecurity news, the weekly cybersecurity bulletin brings **Meta’s data protection** failure fine, Twitter user data on hacking forums, Cincinnati State College ransomware attack, Google’s eighth zero day of 2022, Interpol’s $130 million recovery, and altered VPNs for spyware. Let us take a look.

## $275.5 million fine for Meta for data protection failure

The DPC (Irish Data Protection Commission) has fined Meta $275.5 million for the 2021 data leak that exposed the Facebook information of millions worldwide.

The fine is justified with Meta potentially violating the [GDPR](https://www.investopedia.com/terms/g/general-data-protection-regulation-gdpr.asp#:~:text=The%20General%20Data%20Protection%20Regulation%20%28GDPR%29%20is%20a%20legal%20framework,full%20effect%20two%20years%20later.) (General Data Protection Regulation) and the records of 533 million Facebook users being published on hacking forums. The customer data exposed included personal information, contact numbers, Facebook IDs, genders, relationship status, names, occupations, dates of birth, email, and locations. They were shared on a **hacking forum** where threat actors could use them for malicious purposes.

Facebook claimed that the [threat actors](/email-security/threat-actors-abuse-linkedins-smart-links-in-evasive-email-phishing-attacks/) got the data by exploiting a **“Contact Importer”** flaw that allowed them to associate Facebook IDs with phone numbers and scrape user data to build the user’s profile. This flaw was fixed in 2019\. Scraping is against online platform policies but enforcing such rules is challenging, as documented in TikTok and WeChat cases.

As the head of GDPR compliance, the DPC’s [decision](https://www.dataprotection.ie/en/news-media/press-releases/data-protection-commission-announces-decision-in-facebook-data-scraping-inquiry) for Meta’s “Data Scraping” inquiry will certainly cause a ruckus in the tech community and force data controllers to rethink **anti-scraping mechanisms**.

## Twitter Data Leak, 5.4 million accounts affected

Nearly 5.4 million Twitter accounts were shared on a free hacker forum in a significant data dump. The data of the accounts consist of private phone numbers, email addresses, and scraped public information.

A threat actor posted the private information of 5.4 million accounts for purchase for $30,000 in **July 2022**. The data consisted of public information, names, locations, phone numbers, and email addresses, which was collected in 2021 by exploiting a **Twitter API** (Application Programming Interface) [vulnerability](https://hackerone.com/reports/1439026). Pompompurin claimed responsibility for exploiting the bug after a threat actor called “Devil” shared the Twitter vulnerability with them and stated that there are more than 1.4 million Twitter accounts whose information was collected.

The data of 5,485,635 Twitter accounts was posted for sale in August but was leaked online for free recently, allowing any [cybercriminal](https://www.geeksforgeeks.org/cyber-criminals-and-its-types/) to use it for malicious purposes. With valid phone numbers and names, the account holders could be targeted with **scams and impersonation**.

The Twitter record data could easily be utilized for [spear phishing](https://www.bbc.com/news/technology-53607374) campaigns. It would be best to steer clear of weird or unsolicited emails that you receive from Twitter, especially those that direct you to login portals on **non-Twitter domains**.

[![Data Leak](https://media.mailhop.org/duocircle/images/2022/12/sendgrid-alternative-4963.jpg)](https://media.mailhop.org/duocircle/images/2022/12/sendgrid-alternative-4963.jpg)

## Ransomware attack on Cincinnati State College

A cybercriminal group known as the [Vice Society](https://unit42.paloaltonetworks.com/vice-society-targets-education-sector/) has claimed responsibility for a **ransomware attack**. The ransomware attack targeted the Cincinnati State Technical and Community College, and threat actors leaked the stolen data.

The threat actors published documents on a Tor data leak website, claiming the information in the documents was stolen from **Cincinnati State College**. If the hackers have posted the stolen documents, it indicates that no ransom was paid. The documents published by the threat actors contain records from years ago till 24 November, and the threat actors have made the data freely accessible, even the [PII (Personally Identifiable Information)](https://www.investopedia.com/terms/p/personally-identifiable-information-pii.asp) contained in those emails.

The college discovered the attack a few days ago and informed its staff of 1000 and 10,000 students about the incident. The college announced the restoration of its networks, emails, classroom computers, and partial internet access but has still not restored its voicemail, network and intranet shared drives, **VPN (Virtual Private Network)** access, or registration portals.

The cyberattack has been significant for the college, which has posted FAQs for students and the workforce for **administrative guidelines** and carrying out all operations. Vice Society has previously targeted other educational institutions as well, including the [LAUSD](https://www.darkreading.com/attacks-breaches/vice-society-publishes-la-public-school-student-data-psych-evals) (Los Angeles Unified), US’s second-largest school district.

## Google’s 8th Zero Day of 2022, Pushing Emergency Fix

Tech giant Google released an **emergency security update** for its web browser. The desktop version of Google Chrome was patched following the [8th zero day vulnerability](https://www.hindustantimes.com/technology/google-fixes-8th-zero-day-vulnerability-of-2022-details-here-101669440547022.html) of the browser this year.

Tracked as [CVE-2022-4135](https://nvd.nist.gov/vuln/detail/CVE-2022-4135), the exploit was a heap buffer overflow in the **GPU (Graphics Processing Unit)**. Buffer overflow flaws are memory vulnerabilities that allow threat actors to write data in forbidden locations without any checks. _These also allow threat actors to manipulate the execution path, access restricted information, and execute arbitrary code._

Google has [clarified](https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop%5F24.html) that the [zero-day exploit](https://www.imperva.com/learn/application-security/zero-day-exploit/) details will be kept under wraps until most of its users have downloaded and installed the security patch. The organization would retain the restrictions if the bug were found in **third-party libraries** that have not yet been fixed. You can easily update your desktop Google Chrome browser by going to the browser’s Settings > About Chrome and waiting until Google automatically updates.

Google has been on the radar of threat actors and has **fixed 8 zero day vulnerabilities** this year. Threat actors may use zero day vulnerabilities for malicious activities, and individuals worldwide should update their web browsers soon to keep them secure.

## $130 Million Seized From Threat Actors by Interpol

Interpol has announced that they have seized $130 million in funds and virtual assets from cybercriminals. With its operation code-named **“HAECHI III,”** Interpol also arrested nearly a thousand cybercriminals.

The operation lasted from late June 2022 to November 2022, during which period Interpol arrested 975 individuals and solved over **1600 cybercriminal** and money laundering operations. Furthermore, Interpol has also blocked 2800 bank accounts and crypto accounts associated with illicit activities and financial crimes.

From romance scams, voice phishing, investment frauds, money laundering, illegal gambling, and sextortion, Interpol released an [official announcement](https://www.interpol.int/News-and-Events/News/2022/Cyber-enabled-financial-crime-USD-130-million-intercepted-in-global-INTERPOL-police-operation), generating 95 notices, and has also brought 16 cybercrime trends to help worldwide **law enforcement agencies** take better action.

Some of the most significant arrests that Interpol made included the arrest of two Koreans residing in Greece and Italy, responsible for embezzling **$29,100,000** from nearly 2000 Koreans, and the arrest of an Indian cybercriminal gang that impersonated Interpol officers and tricked victims out of $159,000 in crypto.

Interpol’s efforts and its [ARRP](https://www.jatinverma.org/home/search/%20Anti-Money%20Laundering%20Rapid%20Response%20Protocol%20%28ARRP%29) (Anti-money laundering Rapid Response Protocol) have proven effective, helped recover $120,000,000 in cybercriminal proceeds, and have threat actors running scared.

[![Spyware](https://media.mailhop.org/duocircle/images/2022/12/SMTP-email-4965.jpg)](https://media.mailhop.org/duocircle/images/2022/12/SMTP-email-4965.jpg)

## Threat actors altering OpenVPN to Include Spyware

Threat actors have been luring victims using **fake VPN software** on Android phones for a highly targeted campaign to deploy [Spyware](https://www.techtarget.com/searchsecurity/definition/spyware) and steal valuable information.

The threat actor has been employing Trojan versions of **SoftVPN and OpenVPN** since 2017 to steal contact information, call records, geographical locations, and communication from multiple applications. The threat actor tracked as Bahamut is a mercenary group that repackages authentic VPN services. These modified applications provide VPN services to avoid raising any alarms and [exfiltrating information](https://www.crowdstrike.com/cybersecurity-101/data-exfiltration/#:~:text=Data%20exfiltration%20is%20the%20theft,avoid%20detection%20while%20removing%20it.) from the victim’s devices.

With a fake website and the same name, the threat actors dupe their victims and steal data from various messaging applications such as _Signal, Whatsapp, Telegram, Facebook Messenger, and Viber._ The campaign is targeted and sophisticated; the applications were deployed via **Google Play Store** and employed [phishing emails](/content/phishing-prevention/phishing-email) and social media channels for initial distribution.

[Bahamut](https://thehackernews.com/2022/11/bahamut-cyber-espionage-hackers.html) is believed to be linked to Windshift and Urpage threat actor groups and was also [linked](https://www.bellingcat.com/news/mena/2017/06/12/bahamut-pursuing-cyber-espionage-actor-middle-east/) to espionage activity on human rights activists in the Middle East. It would be best to download applications from authentic sources, and Android users using these applications should **remove them immediately**.

## Topics

NewsSecurityUpdates 

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

Brad Slavin 

General Manager

General Manager at DuoCircle. Product strategy and commercial lead across the email security portfolio.

## Secure your email infrastructure

Protect, authenticate, and deliver. Contact our team to find the right solution.

[Contact Sales](/contact/) [Explore Products](/products/) 

Share this article

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-46-of-2022%2F) [ ](https://twitter.com/intent/tweet?text=Cybersecurity%20News%20Update%2C%20Week%2046%20of%202022&url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-46-of-2022%2F) [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-46-of-2022%2F) Copy 

Related Articles

- [ ![spam](https://media.mailhop.org/duocircle/images/2021/07/sender-policy-framework-7535.jpg)  Alert: Fix SPF & DKIM Settings For Your Email Forwarding Set Up Through Microsoft o365 SMTP Server Or Your Emails May End Up In Spam News ](/blog/announcements/alert-fix-spf-dkim-settings-for-your-email-forwarding-set-up-through-microsoft-o365-smtp-server-or-your-emails-may-end-up-in-spam/)
- [ ![Cyber Security](https://media.mailhop.org/duocircle/images/2022/01/spf-flattening-7011.jpg)  Cyber Security News Update, Week 1 of 2022 News ](/blog/announcements/cyber-security-news-update-week-1-of-2022/)
- [ ![Cybersecurity](https://media.mailhop.org/duocircle/images/2023/01/spf-validator-6824.jpg)  Cybersecurity News Update, Week 1 of 2023 News ](/blog/announcements/cyber-security-news-update-week-1-of-2023/)
- [ ![cybersecurity](https://media.mailhop.org/duocircle/images/2024/01/phishing-protection.jpg)  EasyPark Data Breach, Ohio Lottery Cyberattack, GTA 5 Leak, Cybersecurity News \[December 25, 2023\] News ](/blog/announcements/cyber-security-news-update-week-1-of-2024/)

## Related Articles

[  News 3m  Alert: Fix SPF & DKIM Settings For Your Email Forwarding Set Up Through Microsoft o365 SMTP Server Or Your Emails May End Up In Spam  Jul 20, 2021 ](/blog/announcements/alert-fix-spf-dkim-settings-for-your-email-forwarding-set-up-through-microsoft-o365-smtp-server-or-your-emails-may-end-up-in-spam/)[  News 6m  Cyber Security News Update, Week 1 of 2022  Jan 7, 2022 ](/blog/announcements/cyber-security-news-update-week-1-of-2022/)[  News 7m  Cybersecurity News Update, Week 1 of 2023  Jan 1, 2023 ](/blog/announcements/cyber-security-news-update-week-1-of-2023/)[  News 5m  EasyPark Data Breach, Ohio Lottery Cyberattack, GTA 5 Leak, Cybersecurity News \[December 25, 2023\]  Jan 4, 2024 ](/blog/announcements/cyber-security-news-update-week-1-of-2024/)

```json
{"@context":"https://schema.org","@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}],"sameAs":["https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.facebook.com/duocirclellc","https://www.g2.com/products/phish-protection-by-duocircle/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://support.duocircle.com"},"knowsAbout":["Email Security","Email Authentication","SPF","DKIM","DMARC","Phishing Protection","Spam Filtering","SMTP Relay","Email Deliverability","Email Forwarding"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DuoCircle LLC","url":"https://www.duocircle.com","description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cybersecurity News Update, Week 46 of 2022","description":"With global headlines and the top cybersecurity news, the weekly cybersecurity bulletin brings Meta’s data protection failure fine.","url":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-46-of-2022/","datePublished":"2022-12-02T15:48:59.000Z","dateModified":"2025-05-14T14:16:56.000Z","dateCreated":"2022-12-02T15:48:59.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-46-of-2022/"},"articleSection":"announcements","keywords":"News, Security, Updates","wordCount":1241,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2022/12/SMTP-email-4964.jpg","caption":"Cybersecurity","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":2,"name":"News"},{"@type":"ListItem","position":3,"name":"Cybersecurity News Update, Week 46 of 2022","item":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-46-of-2022/"}]}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://www.duocircle.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":3,"name":"News","item":"https://www.duocircle.comundefined"},{"@type":"ListItem","position":4,"name":"Cybersecurity News Update, Week 46 of 2022","item":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-46-of-2022/"}]}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cybersecurity News Update, Week 46 of 2022","description":"With global headlines and the top cybersecurity news, the weekly cybersecurity bulletin brings Meta’s data protection failure fine.","url":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-46-of-2022/","datePublished":"2022-12-02T15:48:59.000Z","dateModified":"2025-05-14T14:16:56.000Z","dateCreated":"2022-12-02T15:48:59.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-46-of-2022/"},"articleSection":"announcements","keywords":"News, Security, Updates","wordCount":1241,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2022/12/SMTP-email-4964.jpg","caption":"Cybersecurity","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```
