Baz Security News
18 subscribers
2 videos
1.17K links
Download Telegram
🟡 NOTABLE · Cybercrime & Dark Web

Interpol Leverages Global System to Curtail Fraud Payments

When a fraudulent transaction occurs, law enforcement agencies must work quickly to halt payments before cybercriminals cash out.

Dark Reading

Read →
🟡 NOTABLE · Ransomware

[QILIN] – Ransomware Victim: The Dcoop

Verification alert Listings attributed to QILIN have been reported as including unverified or fabricated victim claims. Treat this post as unconfirmed until corroborated with independent evidence. See further information here: BankInfoSecurity NOTE: No files or stolen information are exfiltrated, downloaded, taken, hosted, seen, reposted, or disclosed by RedPacket Security. Any legal issues rel…

RedPacket Ransomware

Read →
🟡 NOTABLE · Ransomware

[CLOP] – Ransomware Victim: BLUEVISTALLC[.]COM

Verification alert Listings attributed to CLOP have been reported as including unverified or fabricated victim claims. Treat this post as unconfirmed until corroborated with independent evidence. See further information here: BankInfoSecurity NOTE: No files or stolen information are exfiltrated, downloaded, taken, hosted, seen, reposted, or disclosed by RedPacket Security. Any legal issues rela…

RedPacket Ransomware

Read →
🟡 NOTABLE · Ransomware

[BOOBA PROJECT] – Ransomware Victim: Betz Industries

Verification alert Listings attributed to BOOBA PROJECT have been reported as including unverified or fabricated victim claims. Treat this post as unconfirmed until corroborated with independent evidence. See further information here: BankInfoSecurity NOTE: No files or stolen information are exfiltrated, downloaded, taken, hosted, seen, reposted, or disclosed by RedPacket Security. Any legal is…

RedPacket Ransomware

Read →
🟠 HIGH · Threat Intelligence & APTs

North Korea’s Lazarus Group sharing tools with ransomware hackers, South Korean agencies warn

Alexander Martin reports: Cyberattack tools and infrastructure used by North Korea’s Lazarus Group appear to have been shared with ransomware criminals targeting South Korean organizations, according to new research released Thursday alongside a joint advisory by four South Korean security and intelligence agencies. The technical report from cybersecurity firm AhnLab details how the state-spons…

DataBreaches.net

Read →
🟡 NOTABLE · Privacy & Surveillance

DROP Platform Lets Californians Reduce Digital Footprint

The Delete Request and Opt-out Platform (DROP) launches Aug. 1 and hundreds of thousands of California residents already registered. Other states could follow if the process goes smoothly.

Dark Reading

Read →
🟡 NOTABLE · Application & Supply Chain Security

The Morning After We Pull a Root of Trust, Nobody Owns It

The most valuable move any security team can make is building a certificate and key inventory.

Dark Reading

Read →
🟠 HIGH · Vulnerabilities & CVEs

Three Recent Chrome Releases Fix 1,442 Flaws, More Than Prior 23 Updates Combined

Google on Thursday announced that it fixed a whopping 1,072 security bugs in Chrome versions 149 and 150, surpassing the total number of flaws the company fixed across the prior 23 milestones combined. Both versions were released last month. In its latest patch for Chrome 151, released Wednesday, the tech giant resolved 370 flaws, out of which 349 were reported by Google itself. Seven of the

The Hacker News

Read →
🟡 NOTABLE · Vulnerabilities & CVEs

Researchers Report 84 Flaws in 4G and 5G Cores, Including a Session Hijacking Flaw

An academic study has disclosed a "widespread class" of security vulnerabilities impacting 4G and 5G core networks that, if successfully exploited, could trigger denial-of-service (DoS) attacks and even session hijacking, allowing an attacker to seize control of a user's network session. The findings have been released by a group of researchers from Singapore's Nanyang Technological University

The Hacker News

Read →
🟠 HIGH · OT/ICS & Critical National Infrastructure

Cyberattacks on Minnesota Water Systems Investigated as Officials Warn About Iranian Hackers

Iran has the “geopolitical motivations” and a recent history of targeting water systems, experts pointed out. The post Cyberattacks on Minnesota Water Systems Investigated as Officials Warn About Iranian Hackers appeared first on SecurityWeek .

SecurityWeek

Read →
🟡 NOTABLE · Ransomware

[DRAGONFORCE] – Ransomware Victim: RUS Industrial

Verification alert Listings attributed to DRAGONFORCE have been reported as including unverified or fabricated victim claims. Treat this post as unconfirmed until corroborated with independent evidence. See further information here: BankInfoSecurity NOTE: No files or stolen information are exfiltrated, downloaded, taken, hosted, seen, reposted, or disclosed by RedPacket Security. Any legal issu…

RedPacket Ransomware

Read →
🟡 NOTABLE · Ransomware

[DRAGONFORCE] – Ransomware Victim: www[.]mbmlawsc[.]com

Verification alert Listings attributed to DRAGONFORCE have been reported as including unverified or fabricated victim claims. Treat this post as unconfirmed until corroborated with independent evidence. See further information here: BankInfoSecurity NOTE: No files or stolen information are exfiltrated, downloaded, taken, hosted, seen, reposted, or disclosed by RedPacket Security. Any legal issu…

RedPacket Ransomware

Read →
🟠 HIGH · Malware & Botnets

Cheap Android TV Boxes Pose as Phones and Turn Owners’ Broadband Into Proxies

Bitsight says some cheap Android TV boxes have shipped with apps that rewrite their hardware identity to mimic Samsung, Huawei, Xiaomi, or Vivo phones, then click ads on websites run by the same operators. Researchers named the operation Fuyao and attributed it to Zhejiang Fengwo IoT Technology Co., Ltd., a mainland China company founded in 2019. The same apps have a second job. When a box

The Hacker News

Read →
🟠 HIGH · Data Breaches

In Other News: OpenAI Open Source Tool, AWS Links Hacks to North Korea, Mythos Crypto Research

Noteworthy stories that might have slipped under the radar: parcel delivery company OnTrac hacked, Adobe patches, UK Department for Education loses 607,000 records. The post In Other News: OpenAI Open Source Tool, AWS Links Hacks to North Korea, Mythos Crypto Research appeared first on SecurityWeek .

SecurityWeek

Read →
🟡 NOTABLE · Data Breaches

Consumer Dispute Panel Orders Coupang to Pay Affected Consumers 100,000 Won Each for Data Breach

Lee Yong-seong reports: The Consumer Dispute Settlement Committee has decided that Coupang must compensate affected consumers 100,000 won [about $70 USD] in cash or 100,000 won in Coupang Cash per person over a large-scale personal data breach, the committee said on the 31st. … The case began on December 8 last year, when 50 consumers... Source

DataBreaches.net

Read →
🟡 NOTABLE · AI & Emerging Tech Security

How Status Labs Helps Brands Get Cited in ChatGPT: The Data Behind AI Search Visibility

Disclosure: This article was created in collaboration with Status Labs.

HackRead

Read →
🟡 NOTABLE · AI & Emerging Tech Security

Anthropic’s Opus 5 Is Better at Resisting Prompt Injection

The chart is interesting. On the IPI benchmark, Opus 5 improved over Opus 4.8, reducing the probability of an attacker succeeding within 15 attempts from 5.5% to 2.0%, and from 0.5% to 0.2% on 1 attempt. It also improved on Sonnet 5 (5.9% at k=15) and Mythos 5 (2.6%), making it the most robust model evaluated. Opus 5 also outperformed all non-Claude models on this benchmark. The most robust non…

Schneier on Security

Read →
🟡 NOTABLE · Threat Intelligence & APTs

Cyber Command plans Silicon Valley office to drive innovation

The outpost will have its own director, though no one has yet been named for the post, and support the command’s nascent Cyber Warfare Innovation Center (CIWC).

The Record

Read →
🟠 HIGH · Cybercrime & Dark Web

Weaponizing Exposed Data

Lab-1 Dark-web Research Team Contributors:Alex Necula, Anastasia Sentasnova, Ellis Stannard, Jeffrey Bell, Manuel Boll, Valéry Rieß-Marchive Mannie W writes: Ransomware and data-extortion groups are moving beyond bulk dumps to analyze, index and price stolen data before it is published or sold — removing the “weaponization tax” and turning breaches into searchable, tranched and targetable asset…

DataBreaches.net

Read →
🟡 NOTABLE · Ransomware

Ransomware in Italy: RedACT report sheds light on an evolving threat environment

SuspectFile has published a great interview with the people behind RansomNews.online: Within this context, the first RedACT H1 2026 report, published by ransomNews.online, represents a valuable contribution to the analysis of ransomware activity targeting Italy. The project presents itself as a new independent initiative focused on continuously monitoring the ransomware ecosystem through the co…

DataBreaches.net

Read →
🟡 NOTABLE · Policy & Regulation

RESOURCE: Thomson Reuters Foundation provides free resources and legal help for independent media around the world

From the Thomson Reuters Foundation, a welcome email describes the situation in South Africa and then turns to global support: I’m getting in touch to share some new reports and resources to support media freedom work in East and Southern Africa. Journalists who hold power to account are increasingly being targeted through “lawfare” tactics that silence, intimidate and financially... Source

DataBreaches.net

Read →