International Cyber Digest
7.78K subscribers
1.48K photos
74 videos
2 files
290 links
Independent reporting on cybersecurity, tech, AI & digital policy. Got a tip? http://internationalcyberdigest.com/tips
Download Telegram
‼️ BREAKING: ShinyHunters claims it breached the FBI through an unpatched Oracle PeopleSoft zero-day and stole 2 to 3TB of data on current and former employees and job applicants.

The group says the hack is retaliation for a May FBI alert that profiled it and has given the bureau a week to correct or remove the alert.

The FBI has not confirmed the breach, though multiple news outlets have verified the evidence.
1😁18🤣14🔥6😱2❤1👏1🤯1
GymBeam founder and CEO Dalibor Cicman visited Mumbai's Dharavi slum and posted an Instagram story of two men bumping fists to show off luxury watches in front of a barefoot boy, captioned "Wrist game hits different here. Authentic Pateks $100k+".

He deleted it amid calls to boycott the brand, then said the gold watch was a fake Patek worn by a local guide.
1🤬19😭14💩13🤪3🤣2👍1🤔1
‼️ BREAKING: CERT Polska tied a toll-fraud scheme targeting Poland to 17 malicious Google Play apps and 852 Meta ads, including fake warnings that "Your PDF application has expired".

Meta ads were the front door for toll fraud, a form of mobile billing abuse in which malware enrolls a subscriber in a paid service without informed consent.

Meta removed the ads only after CERT reported them, and new apps kept appearing.

Poland asked the European Commission in August to fine Meta €250M over scam ads.

https://cert.pl/en/posts/2026/09/tollfraud-analysis/
1👍13💩6👏1
‼️ BREAKING: Discord has started enforcing age verification, sorting every account into adult, teen or unconfirmed age groups with a model it says reads account history and activity.

Adults it places in the wrong group must prove their age by credit card, video selfie or ID scan to reach age-restricted spaces, less than a year after a vendor breach exposed ID photos of about 70,000 Discord users.

We reported live on the breach last year and were in contact with the threat actor behind it:
https://x.com/IntCyberDigest/status/1975846997568737666
1💩29😁3😱1🤬1
👀
Please open Telegram to view this post
VIEW IN TELEGRAM
1🤣27👍3😱3💩3😁1
‼️ BREAKING: Asus has been breached and is warning eShop customers of unauthorised access to part of its online store, where customer contact details and order records may have been accessed.

The company says it is not aware of any misuse so far but warns the data could fuel convincing emails, texts and phone calls that appear to relate to Asus orders.

https://www.kitguru.net/tech-news/featured-tech-news/matthew-wilson/asus-warns-customers-of-eshop-data-breach/
🔥9❤1
‼️ BREAKING: An OpenAI agent gained unauthorised access to Australia's Medicare portal in June and reached files that were not intended for public access, Prime Minister Anthony Albanese revealed in New York.

Albanese says he told Sam Altman of Australia's "extreme concern" and said OpenAI took "way too long" to inform the government, calling the way it did so "unacceptable."

Evidence currently available shows no broader compromise of the Services Australia network, according to Albanese.
😁13🤪2❤1
😁22❤9🤣7
‼️ Ubuntu is moving to weekly kernel updates because AI is finding Linux bugs faster than Canonical can ship the fixes.


https://canonical.com/blog/accelerating-delivery-of-cve-fixes-with-a-new-kernel-release-strategy
❤16🤪5
❗️ Iranian state media and a Russian Telegram channels spread fake AI images of a hack on the US-bound supertanker VL Prosperity, which triggered US Coast Guard and FBI cyber teams to board it last month.

They claimed hackers had cut the ship's communications for 30 hours near Gibraltar and disrupted its engine, posting photos of oil spraying in the engine room and a note ordering the captain to abandon ship.

The Coast Guard found malicious cyber activity aboard but reported no operational disruption or danger to the crew.

The images were AI-doctored versions of 2023 Facebook photos from the engine room of the container ship Milan Maersk, matching the originals down to the flange, gauge and paint markings.
🤣10❤8😁4💩2
❗️ A security researcher was paid a 115k bounty for reporting a vulnerability to Facebook.

It's one of many "HEIF Heist" remote attack paths reported, targeting services that decode attacker-controlled HEIF, HEIC, or AVIF images.

https://heif-heist.com/
🔥21👏8💩2❤1😨1