ποΈ Notorious Hacker Group TeamTNT Launches New Cloud Attacks for Crypto Mining ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
The infamous cryptojacking group known as TeamTNT appears to be readying for a new largescale campaign targeting cloudnative environments for mining cryptocurrencies and renting out breached servers to thirdparties. "The group is currently targeting exposed Docker daemons to deploy Sliver malware, a cyber worm, and cryptominers, using compromised servers and Docker Hub as the infrastructure.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
π3
ποΈ Four REvil Ransomware Members Sentenced in Rare Russian Cybercrime Convictions ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Four members of the nowdefunct REvil ransomware operation have been sentenced to several years in prison in Russia, marking one of the rare instances where cybercriminals from the country have been convicted of hacking and money laundering charges. Russian news publication Kommersant reported that a court in St. Petersburg found Artem Zaets, Alexei Malozemov, Daniil Puzyrevsky, and Ruslan.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
π4
π½ U.S. Citizensβ Data Allegedly on Sale π½
π Read more.
π Via "BE3SEC"
----------
ποΈ Seen on @cibsecurity
A threat actor claimed that they have and are selling 280 million U.S. citizens personal data on dark web. According to the post of the threat actor, the data includes FirstNameLastName AddressCityStateZIP IndDateOfBirthYearIndAge HomeValueCodeHomeMedianValueCodeMedianIncomeCode EmailPhone They are also claiming that they can provide sample data to the prospects. Meanwhile, they.π Read more.
π Via "BE3SEC"
----------
ποΈ Seen on @cibsecurity
be4sec
U.S. Citizensβ Data Allegedly on Sale
A threat actor claimed that they have and are selling 280 million U.S. citizensβ personal data on dark web. According to the post of the threat actor, the data includes; First_NameγLast_Name β¦
π5β€1
ποΈ Researchers Uncover OS Downgrade Vulnerability Targeting Microsoft Windows Kernel ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
A new attack technique could be used to bypass Microsoft's Driver Signature Enforcement DSE on fully patched Windows systems, leading to operating system OS downgrade attacks. "This bypass allows loading unsigned kernel drivers, enabling attackers to deploy custom rootkits that can neutralize security controls, hide processes and network activity, maintain stealth, and much more," SafeBreach.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
π’ The National Public Data breach exposed nearly three billion users β now the company has filed for bankruptcy π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
National Public Datas decline after a devastating cyber attack took roughly six months, as it failed to stay afloat amid mounting recovery costs.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
ITPro
The National Public Data breach exposed 270 million users β now the company has filed for bankruptcy
National Public Dataβs decline after a devastating cyber attack took roughly six months, as it failed to stay afloat amid mounting recovery costs
π’ LinkedIn fined β¬310 million for GDPR breaches π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
The social networking platform has accepted the ruling and will implement changes to its ad tracking processes.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
ITPro
LinkedIn fined β¬310 million for GDPR breaches
The social networking platform has accepted the ruling and will implement changes to its ad tracking processes
π¦Ώ Is Firefox Password Manager Secure? π¦Ώ
π Read more.
π Via "Tech Republic"
----------
ποΈ Seen on @cibsecurity
Like other password managers, there are risks and drawbacks to consider before trusting Firefox Password Manager with your credentials.π Read more.
π Via "Tech Republic"
----------
ποΈ Seen on @cibsecurity
TechRepublic
Is Firefox Password Manager Secure?
Like other password managers, there are risks and drawbacks to consider before trusting Firefox Password Manager with your credentials.
π¦Ώ Hiring Kit: Computer Forensic Analyst π¦Ώ
π Read more.
π Via "Tech Republic"
----------
ποΈ Seen on @cibsecurity
The increasing emphasis on securing sensitive data by regulatory agencies and governments worldwide has opened job opportunities beyond criminal justice for capable individuals with proficient technical skills, inquisitive analytical mindsets, and the tenacious drive to solve seemingly intractable problems. This customizable hiring kit, written by Mark W. Kaelin for TechRepublic Premium, provides a framework you ...π Read more.
π Via "Tech Republic"
----------
ποΈ Seen on @cibsecurity
TechRepublic
Hiring Kit: Computer Forensic Analyst | TechRepublic
The increasing emphasis on securing sensitive data by regulatory agencies and governments worldwide has opened job opportunities beyond criminal justice
ποΈ THN Cybersecurity Recap: Top Threats, Tools and News (Oct 21 - Oct 27) ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Cybersecurity news can sometimes feel like a neverending horror movie, can't it? Just when you think the villains are locked up, a new threat emerges from the shadows. This week is no exception, with tales of exploited flaws, international espionage, and AI shenanigans that could make your head spin. But don't worry, we're here to break it all down in plain English and arm you with the.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Cybercriminals Use Webflow to Deceive Users into Sharing Sensitive Login Credentials ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Cybersecurity researchers have warned of a spike in phishing pages created using a website builder tool called Webflow, as threat actors continue to abuse legitimate services like Cloudflare and Microsoft Sway to their advantage. "The campaigns target sensitive information from different crypto wallets, including Coinbase, MetaMask, Phantom, Trezor, and Bitbuy, as well as login credentials for.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Sailing the Seven Seas Securely from Port to Port β OT Access Security for Ships and Cranes ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Operational Technology OT security has affected marine vessel and port operators, since both ships and industrial cranes are being digitalized and automated at a rapid pace, ushering in new types of security challenges. Ships come to shore every six months on average. Container cranes are mostly automated. Diagnostics, maintenance, upgrade and adjustments to these critical systems are done.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
π Researchers Discover Over 70 Zero-Day Bugs at Pwn2Own Ireland π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Trend Micros Zero Day Initiative hands out over 1m in awards for Pwn2Own competitors, who found more than 70 zeroday flaws.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
Researchers Discover Over 70 Zero-Day Bugs at Pwn2Own Ireland
Trend Microβs Zero Day Initiative hands out over $1m in awards for Pwn2Own competitors, who found more than 70 zero-day flaws
π AI-Powered BEC Scams Zero in on Manufacturers π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Vipre research reveals that 10 of emails targeting the manufacturing sector are BEC attempts.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
AI-Powered BEC Scams Zero in on Manufacturers
Vipre research reveals that 10% of emails targeting the manufacturing sector are BEC attempts
π΅οΈββοΈ Put End-of-Life Software to Rest π΅οΈββοΈ
π Read more.
π Via "Dark Reading"
----------
ποΈ Seen on @cibsecurity
Relying on EOL software leaves critical systems exposed making it a problem no business can afford to ignore.π Read more.
π Via "Dark Reading"
----------
ποΈ Seen on @cibsecurity
Darkreading
Put End-of-Life Software to Rest
Relying on EOL software leaves critical systems exposed β making it a problem no business can afford to ignore.
π2
π’ The National Public Data breach exposed 270 million users β now the company has filed for bankruptcy π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
National Public Datas decline after a devastating cyber attack took roughly six months, as it failed to stay afloat amid mounting recovery costs.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
ITPro
The National Public Data breach exposed 270 million users β now the company has filed for bankruptcy
National Public Dataβs decline after a devastating cyber attack took roughly six months, as it failed to stay afloat amid mounting recovery costs
β€1
π’ National Public Data breach: Lawsuit claims failed to protect billions of personal records π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
A breach at background check company National Public Data allegedly left billions of sensitive personal records exposed on the dark web.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
ITPro
National Public Data breach: Lawsuit claims failed to protect billions of personal records
A breach at background check company National Public Data allegedly left billions of sensitive personal records exposed on the dark web
ποΈ Chinese Hackers Use CloudScout Toolset to Steal Session Cookies from Cloud Services ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
A government entity and a religious organization in Taiwan were the target of a Chinalinked threat actor known as Evasive Panda that infected them with a previously undocumented postcompromise toolset codenamed CloudScout. "The CloudScout toolset is capable of retrieving data from various cloud services by leveraging stolen web session cookies," ESET security researcher Anh Ho said. "Through.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ THN Cybersecurity Recap: Top Threats, Tools and News (Oct 21 - Oct 27) ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Cybersecurity news can sometimes feel like a neverending horror movie, can't it? Just when you think the villains are locked up, a new threat emerges from the shadows. This week is no exception, with tales of exploited flaws, international espionage, and AI shenanigans that could make your head spin. But don't worry, we're here to break it all down in plain English and arm you with the.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Russian Espionage Group Targets Ukrainian Military with Malware via Telegram ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
A suspected Russian hybrid espionage and influence operation has been observed delivering a mix of Windows and Android malware to target the Ukrainian military under the Telegram persona Civil Defense. Google's Threat Analysis Group TAG and Mandiant are tracking the activity under the name UNC5812. The threat group, which operates a Telegram channel named civildefensecomua, was created on.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
π1
ποΈ BeaverTail Malware Resurfaces in Malicious npm Packages Targeting Developers ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Three malicious packages published to the npm registry in September 2024 have been found to contain a known malware called BeaverTail, a JavaScript downloader and information stealer linked to an ongoing North Korean campaign tracked as Contagious Interview. The Datadog Security Research team is monitoring the activity under the name Tenacious Pungsan, which is also known by the monikers.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
π Evasive Pandaβs CloudScout Toolset Targets Taiwan π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Evasive Pandas CloudScout uses MgBot to steal session cookies, infiltrating cloud data in Taiwan.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
Evasive Pandaβs CloudScout Toolset Targets Taiwan
Evasive Pandaβs CloudScout uses MgBot to steal session cookies, infiltrating and extracting cloud data from Taiwanese institutions
β€1