International Cyber Digest
7.64K subscribers
1.35K photos
69 videos
2 files
256 links
Independent reporting on cybersecurity, tech, AI & digital policy. Got a tip? http://internationalcyberdigest.com/tips
Download Telegram
‼️ BREAKING: The threat actors who targeted Revolut with information-demand emails are now posting sensitive customer data, including that of high-profile clients such as tennis player Shevchenko and RΓΆmer, CEO of Gamdom/Skinscom.

They want Revolut to pay up. They say they'll release more messages, data and insights into how the Revolut team operates.

They're accusing Revolut of handing over sensitive information to countries outside its jurisdiction.

They accuse the company of negligence around privacy and the exposure of sensitive information.
πŸ”₯31😱13😁6❀2😭1
‼️ Google Search is now hiding where its results lead. Links point to google[.]com/goto?, followed by an opaque string only Google can resolve.

You can no longer inspect a destination before clicking it, or copy the address out of the page.

Every click now travels through Google first.

We're not sure whether this will roll out everywhere and to every account. One account we tested didn't show the behaviour yet, so it may be a gradual rollout.
πŸ’©56😁2❀1😒1🀣1πŸ€ͺ1
❗️ The European Commission is proposing an age ladder rather than an outright ban, covering social media, online games, AI companion chatbots and video-sharing platforms.

All these platforms will be forced to verify users' ages.

Under 13: only accounts opened and controlled by a parent.

13 to 15: "introductory" accounts with screen-time limits, parental controls and restrictions on contact with strangers.

From 15: teenagers can sign up on their own.

The EU Kids Act is due Thursday, according to POLITICO, which has seen the preparatory documents.
πŸ’©27πŸ‘9🀬5πŸ€ͺ1
We're so back πŸ‡ΊπŸ‡Έ πŸ¦…
😭38🀣15πŸ‘3🀬3❀1
‼️ BREAKING: We're in contact with the Revolut hacker. According to them, they didn't only take Revolut data, they've also compromised multiple Italian law enforcement departments.

They say the operation targeting Revolut ran for six months, and that they used Italian law enforcement systems to send data requests to Revolut.

They claim to hold 147 GB taken from the Italian side, including internal docs, calendars and personal material, among it the chat logs of a federal officer arguing with his wife.

They've also launched a website today.

Threat actor IAmNotAVillain says most of the Revolut data comes from Switzerland and France, but claims Revolut also handed over data on residents of the following countries:

Cyprus, Portugal, Germany, Spain, Bulgaria, Czechia, Romania, Poland, Malta, Norway, Sweden, Italy, Greece, Netherlands, Latvia, Austria, Belgium, Estonia, Croatia, Ireland, Slovakia, Finland, Lithuania, Hungary, Denmark, Turkey, Monaco, Luxembourg, Bahamas, Slovenia, United Kingdom.

They say the data includes high-profile individuals, among them a player at Barcelona, Georges Mikautadze.
πŸ”₯21❀4πŸ’―4
❗️ IP intelligence company Spur pushed a PR containing comments from their AI saying they'd copied competitor Synthient's CLI.

Spur raised $200 million this year.

Synthient is just one guy named Ben.

https://github.com/spurintel/cli/commit/fb19e4cf0496294f8367470c02f353305f98ef73#diff-e162232bf6c899ce60163d3f64fbadbd1e983a3734e6f4a4b3c45f05dbae1d77R15
πŸ’©12❀3πŸ‘1
‼️ BREAKING: The official HBO Max Reddit account was hijacked and ran malvertising with a ClickFix attack on Reddit for 48 hours, pushing macOS malware to users.

The ad led to a convincing HBO Max landing page where the download button started no download. Instead it produced a prompt telling visitors to copy a command and paste it into Terminal.

A Reddit user flagged the ad in r/cybersecurity, and admins paused it pending an investigation.

By then the account had run 108 ads, fewer than half of them HBO Max lures. Another 47 pitched AI coding tools at developers and 15 a macOS disk cleaner.

Hudson Rock and ADAMnetworks traced the pasted command to a delivery system they call PasteSwitch, which selects a payload based on the visitor.

The payloads include macOS stealers that take browser credentials, Apple Notes and saved passwords; counterfeit Ledger, Trezor and Exodus apps built to capture wallet recovery phrases; and a Windows stealer loaded straight into memory.
🀣12❀3