US charges Iranian hackers over $3.4 billion intellectual property theft
The U.S. has charged 17 Iranians, alleged members of a hacking-for-hire company called Mabna Institute, involved in years-long operations that stole data from American organizations.
🔗️ [Bleepingcomputer] https://link.is.it/ItQNzN
The U.S. has charged 17 Iranians, alleged members of a hacking-for-hire company called Mabna Institute, involved in years-long operations that stole data from American organizations.
🔗️ [Bleepingcomputer] https://link.is.it/ItQNzN
Electronic health record company CareCloud says 3.7 million people affected by breach
Healthcare software firm CareCloud filed documents with the Department of Health and Human Services confirming that 3,756,469 people had information leaked after a hacker spent eight hours in one of the company’s electronic health record environments.
🔗️ [Therecord] https://link.is.it/zZgrl5
Healthcare software firm CareCloud filed documents with the Department of Health and Human Services confirming that 3,756,469 people had information leaked after a hacker spent eight hours in one of the company’s electronic health record environments.
🔗️ [Therecord] https://link.is.it/zZgrl5
Hackers compromise 14,500 Dahua web cameras in 35-day campaign
In a large-scale campaign that researchers dubbed CameraSwarm, hackers compromised more than 14,500 Dahua IP cameras mostly in Ukraine and Russia.
🔗️ [Bleepingcomputer] https://link.is.it/SbqbGl
In a large-scale campaign that researchers dubbed CameraSwarm, hackers compromised more than 14,500 Dahua IP cameras mostly in Ukraine and Russia.
🔗️ [Bleepingcomputer] https://link.is.it/SbqbGl
NSA, FBI warns of hackers using AI-generated tools in attacks on critical infrastructure technology
The National Security Agency (NSA), FBI and other federal agencies said the campaign is targeting Siemens S7 Series PLCs and was being fueled by “AI-assisted development” alongside exploitation of known vulnerabilities.
🔗️ [Therecord] https://link.is.it/fX8ktE
The National Security Agency (NSA), FBI and other federal agencies said the campaign is targeting Siemens S7 Series PLCs and was being fueled by “AI-assisted development” alongside exploitation of known vulnerabilities.
🔗️ [Therecord] https://link.is.it/fX8ktE
US warns of AI-powered attacks on Siemens PLCs in critical infrastructure
U.S. cybersecurity agencies warn that threat actors are using AI-generated scripts to exploit Siemens S7 Series programmable logic controllers (PLCs) in U.S. critical infrastructure.
🔗️ [Bleepingcomputer] https://link.is.it/Nvdqv3
U.S. cybersecurity agencies warn that threat actors are using AI-generated scripts to exploit Siemens S7 Series programmable logic controllers (PLCs) in U.S. critical infrastructure.
🔗️ [Bleepingcomputer] https://link.is.it/Nvdqv3
Researchers say OpenAI revoked their access to limited cyber program
The idea behind OpenAI's Trusted Access for Cyber program is to give trusted defenders better models so they can report bugs and vulnerabilities to companies, with the aim of getting flaws patched faster.
🔗️ [Techcrunch] https://link.is.it/gBLi25
The idea behind OpenAI's Trusted Access for Cyber program is to give trusted defenders better models so they can report bugs and vulnerabilities to companies, with the aim of getting flaws patched faster.
🔗️ [Techcrunch] https://link.is.it/gBLi25
Healthtech firm CareCloud data breach impacts 3.7 million patients
U.S. healthcare IT company CareCloud disclosed that the data breach incident it suffered earlier this year has impacted more than 3.7 million individuals.
🔗️ [Bleepingcomputer] https://link.is.it/1J3okm
U.S. healthcare IT company CareCloud disclosed that the data breach incident it suffered earlier this year has impacted more than 3.7 million individuals.
🔗️ [Bleepingcomputer] https://link.is.it/1J3okm
Sakura Internet hack exposes data of up to 1.36 million accounts
Japanese cloud and data center service provider Sakura Internet disclosed that hackers accessed its sales management system, where customer contract and membership information is stored.
🔗️ [Bleepingcomputer] https://link.is.it/VtNqvQ
Japanese cloud and data center service provider Sakura Internet disclosed that hackers accessed its sales management system, where customer contract and membership information is stored.
🔗️ [Bleepingcomputer] https://link.is.it/VtNqvQ
Rogue ransomware affiliate poses as data recovery firm to steal payments
A suspected ransomware affiliate is posing as a ransomware recovery service called "Ransom Busters," contacting the victims before the attacks become public and claiming to be able to provide decryption keys and delete stolen data for a fee.
🔗️ [Bleepingcomputer] https://link.is.it/JrrHkx
A suspected ransomware affiliate is posing as a ransomware recovery service called "Ransom Busters," contacting the victims before the attacks become public and claiming to be able to provide decryption keys and delete stolen data for a fee.
🔗️ [Bleepingcomputer] https://link.is.it/JrrHkx
Rogue ransomware affiliate poses as recovery firm to steal payments
A suspected ransomware affiliate is posing as a ransomware recovery service called "Ransom Busters," contacting the victims before the attacks become public and claiming to be able to provide decryption keys and delete stolen data for a fee.
🔗️ [Bleepingcomputer] https://link.is.it/bPHNLs
A suspected ransomware affiliate is posing as a ransomware recovery service called "Ransom Busters," contacting the victims before the attacks become public and claiming to be able to provide decryption keys and delete stolen data for a fee.
🔗️ [Bleepingcomputer] https://link.is.it/bPHNLs
OpenAI confirms ChatGPT is down as logins and signups fail
ChatGPT is experiencing a major outage, and users are unable to sign in, create accounts, or load chats, including previous conversations.
🔗️ [Bleepingcomputer] https://link.is.it/0MRscF
ChatGPT is experiencing a major outage, and users are unable to sign in, create accounts, or load chats, including previous conversations.
🔗️ [Bleepingcomputer] https://link.is.it/0MRscF
One Adversary: Fraud Is a Network, Not a Payment
Payment was authorised. The transaction was, technically, legitimate. It was also part of a $187 million criminal network, and the payment was the worst place to fight it.
🔗️ [Group-ib] https://link.is.it/F7ZB8x
Payment was authorised. The transaction was, technically, legitimate. It was also part of a $187 million criminal network, and the payment was the worst place to fight it.
🔗️ [Group-ib] https://link.is.it/F7ZB8x
Zero Trust nei sistemi OT: dalla teoria all’applicazione, ecco le 5 aree di rischio prioritarie
L'applicazione agli ambienti di Operational Technology non è affatto immediata. Partendo da un caso applicativo nel settore elettrico, ecco un approccio mission-focused all’adozione dello Zero Trust nell'ambito OT, nel contesto normativo europeo (NIS2) e tecnico
🔗️ [Cybersecurity360] https://link.is.it/v3llTm
L'applicazione agli ambienti di Operational Technology non è affatto immediata. Partendo da un caso applicativo nel settore elettrico, ecco un approccio mission-focused all’adozione dello Zero Trust nell'ambito OT, nel contesto normativo europeo (NIS2) e tecnico
🔗️ [Cybersecurity360] https://link.is.it/v3llTm
Microsoft says August Windows updates may cause gaming issues
Microsoft is investigating a potential issue with the August 2026 updates that may prevent some games from launching or cause them to crash on affected Windows 11 systems.
🔗️ [Bleepingcomputer] https://link.is.it/vBJQwA
Microsoft is investigating a potential issue with the August 2026 updates that may prevent some games from launching or cause them to crash on affected Windows 11 systems.
🔗️ [Bleepingcomputer] https://link.is.it/vBJQwA
Oz Hair and Beauty Data Breach Exposes Customer Information
Oz Hair and Beauty has confirmed that customers’ personal information was accessed during a data breach after an unauthorized third
🔗️ [Thecyberexpress] https://link.is.it/9WVXXA
Oz Hair and Beauty has confirmed that customers’ personal information was accessed during a data breach after an unauthorized third
🔗️ [Thecyberexpress] https://link.is.it/9WVXXA
BTMOB Exposed: Inside a Fraud-as-a-Service Platform with 1400+ live servers
The Trail
In February 2023, cryptocurrency payment processor Freewallet froze roughly $75,000 in accumulated earnings from a customer in Syria. The company demanded KYC verification. That moment of financial friction cracked the operational security that a threat actor known as EVLF had maintained for approximately eight years, and gave
🔗️ [Quimerax] https://link.is.it/Pe3H0q
The Trail
In February 2023, cryptocurrency payment processor Freewallet froze roughly $75,000 in accumulated earnings from a customer in Syria. The company demanded KYC verification. That moment of financial friction cracked the operational security that a threat actor known as EVLF had maintained for approximately eight years, and gave
🔗️ [Quimerax] https://link.is.it/Pe3H0q
North Korean IT Workers Scheme: Detection IOCs and Tactics for Government and Corporate SOCs
See actionable steps and IOCs to protect your organization against hiring North Korean IT workers and avoid compromising your infrastructure.
🔗️ [Any] https://link.is.it/0JLdcK
See actionable steps and IOCs to protect your organization against hiring North Korean IT workers and avoid compromising your infrastructure.
🔗️ [Any] https://link.is.it/0JLdcK
Sanità sotto attacco: il ritorno a bit e carta, quasi una battaglia di altri tempi. Il caso Bulgaria
I medici degli ospedali, quando il cyber attacco alla sanità in Bulgaria ha costretto a mettere offline cento ospedali, hanno reagito creando soluzioni alternative per proteggere i pazienti fino al ripristino del servizio. Ecco quali
🔗️ [Cybersecurity360] https://link.is.it/1mWXcD
I medici degli ospedali, quando il cyber attacco alla sanità in Bulgaria ha costretto a mettere offline cento ospedali, hanno reagito creando soluzioni alternative per proteggere i pazienti fino al ripristino del servizio. Ecco quali
🔗️ [Cybersecurity360] https://link.is.it/1mWXcD
Manic: Blend between Banking Malware & Spyware
Perseus is a new Device Takeover (DTO) malware family that specifically looks for user-generated content stored in note taking applications.
🔗️ [Threatfabric] https://link.is.it/ixPzKg
Perseus is a new Device Takeover (DTO) malware family that specifically looks for user-generated content stored in note taking applications.
🔗️ [Threatfabric] https://link.is.it/ixPzKg
Dalla crittografia zero-knowledge alla protezione post-quantistica: l’evoluzione della tutela dei dati personali nel cloud europeo
Zero Knowledge Protocol e Cloud storage di Internxt: ecco come ottenere 1 TB di spazio a vita con l'85% di sconto e tariffe convenienti.
🔗️ [Cybersecurity360] https://link.is.it/LUGDku
Zero Knowledge Protocol e Cloud storage di Internxt: ecco come ottenere 1 TB di spazio a vita con l'85% di sconto e tariffe convenienti.
🔗️ [Cybersecurity360] https://link.is.it/LUGDku
New Manic Android malware can exfiltrate data through nearby devices
A new Android malware named Manic targeting users in multiple European countries has a fallback data exfiltration mechanism that uses nearby infected devices.
🔗️ [Bleepingcomputer] https://link.is.it/XONNua
A new Android malware named Manic targeting users in multiple European countries has a fallback data exfiltration mechanism that uses nearby infected devices.
🔗️ [Bleepingcomputer] https://link.is.it/XONNua