๐Ÿ›ก Cybersecurity & Privacy ๐Ÿ›ก - News
26K subscribers
89.2K links
๐Ÿ—ž The finest daily news on cybersecurity and privacy.

๐Ÿ”” Daily releases.

๐Ÿ’ป Is your online life secure?

๐Ÿ“ฉ lalilolalo.dev@gmail.com
Download Telegram
๐Ÿ“ข Hackers are abusing ConnectWise ScreenConnect, again ๐Ÿ“ข

A new spear phishing campaign has targeted more than 900 organizations with fake invitations from platforms like Zoom and Microsoft Teams.

๐Ÿ“– Read more.

๐Ÿ”— Via "ITPro"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Fake IT Support Attacks Hit Microsoft Teams ๐Ÿ“”

Fake IT support lures are being used to trick employees into installing remoteaccess tools via Microsoft Teams.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿฆ… SikkahBot Malware Campaign Lures and Defrauds Students in Bangladesh ๐Ÿฆ…

Cyble SikkahBot Malware Campaign Lures and Defrauds Students in Bangladesh " dataimagecaption"Cyble SikkahBot Malware Campaign Lures and Defrauds Students in Bangladesh " datamediumfile"httpscyble.comwpcontentuploads202508CybleBlogsSikkahbot300x150.jpg" datalargefile"httpscyble.comwpcontentuploads202508CybleBlogsSikkahbot.jpg" title"SikkahBot Malware Campaign Lures and Defrauds Students in Bangladesh 1" Executive Summary Cyble Research and Intelligence Labs CRIL has uncovered an ongoing Android malware tracker named "SikkahBot," active since July 2024 and explicitly targeting students in Bangladesh. Disguised as applications from the Bangladesh Education Board, the malware lures victims with promises of scholarships, coerces them into sharing sensitive information, and grants highr...

๐Ÿ“– Read more.

๐Ÿ”— Via "CYBLE"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿฆฟ Google Identifies โ€˜Widespread Data Theftโ€™ Impacting Salesforce-Salesloft Drift Users ๐Ÿฆฟ

Google Threat Intelligence Group shared its findings about a threat actor responsible for stealing Salesforce customer data via Salesloft Drift.

๐Ÿ“– Read more.

๐Ÿ”— Via "Tech Republic"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Malicious VS Code Extensions Exploit Name Reuse Loophole ๐Ÿ“”

Visual Studio Code extensions have been identified exploiting a loophole that allows reuse of names from removed packages.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿฆฟ Google Identifies โ€˜Widespread Data Theftโ€™ Impacting Salesforce-Salesloft Drift Users ๐Ÿฆฟ

Google Threat Intelligence Group shared its findings about a threat actor responsible for stealing Salesforce customer data via Salesloft Drift.

๐Ÿ“– Read more.

๐Ÿ”— Via "Tech Republic"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿฆฟ Google Identifies โ€˜Widespread Data Theftโ€™ Impacting Salesforce-Salesloft Drift Users ๐Ÿฆฟ

Google Threat Intelligence Group shared its findings about a threat actor responsible for stealing Salesforce customer data via Salesloft Drift.

๐Ÿ“– Read more.

๐Ÿ”— Via "Tech Republic"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Nevada Confirms Ransomware Attack, State Data Stolen ๐Ÿ“”

Nevadas CIO confirmed in a press conference that ransomware actors had exfiltrated data from state networks, amid an ongoing incident investigation.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Netherlands Confirms China's Salt Typhoon Targeted Small Dutch Telcos ๐Ÿ“”

Salt Typhoons primary Dutch targets were small internet service providers and hosting providers.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿฆฟ Google Identifies โ€˜Widespread Data Theftโ€™ Impacting Salesforce-Salesloft Drift Users ๐Ÿฆฟ

Google Threat Intelligence Group shared its findings about a threat actor responsible for stealing Salesforce customer data via Salesloft Drift.

๐Ÿ“– Read more.

๐Ÿ”— Via "Tech Republic"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿฆฟ Google Identifies โ€˜Widespread Data Theftโ€™ Impacting Salesforce-Salesloft Drift Users ๐Ÿฆฟ

Google Threat Intelligence Group shared its findings about a threat actor responsible for stealing Salesforce customer data via Salesloft Drift.

๐Ÿ“– Read more.

๐Ÿ”— Via "Tech Republic"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿฆฟ Google Identifies โ€˜Widespread Data Theftโ€™ Impacting Salesforce-Salesloft Drift Users ๐Ÿฆฟ

Google Threat Intelligence Group shared its findings about a threat actor responsible for stealing Salesforce customer data via Salesloft Drift.

๐Ÿ“– Read more.

๐Ÿ”— Via "Tech Republic"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Chinese Tech Firms Linked to Salt Typhoon Espionage Campaigns ๐Ÿ“”

The US, UK and allies have called out Chinas commercial cyber ecosystem for enabling largescale Salt Typhoon campaigns.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Malicious VS Code Extensions Exploit Name Reuse Loophole ๐Ÿ“”

Visual Studio Code extensions have been identified exploiting a loophole that allows reuse of names from removed packages.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Nevada Confirms Ransomware Attack, State Data Stolen ๐Ÿ“”

Nevadas CIO confirmed in a press conference that ransomware actors had exfiltrated data from state networks, amid an ongoing incident investigation.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Chinese Tech Firms Linked to Salt Typhoon Espionage Campaigns ๐Ÿ“”

The US, UK and allies have called out Chinas commercial cyber ecosystem for enabling largescale Salt Typhoon campaigns.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Nevada Confirms Ransomware Attack, State Data Stolen ๐Ÿ“”

Nevadas CIO confirmed in a press conference that ransomware actors had exfiltrated data from state networks, amid an ongoing incident investigation.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Crypto Companies Freeze $47m in Romance Baiting Funds ๐Ÿ“”

Chainalysis, OKX, Binance and Tether have managed to stop nearly 50m reaching romance baiting fraudsters.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Crypto Companies Freeze $47m in Romance Baiting Funds ๐Ÿ“”

Chainalysis, OKX, Binance and Tether have managed to stop nearly 50m reaching romance baiting fraudsters.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Chinese Tech Firms Linked to Salt Typhoon Espionage Campaigns ๐Ÿ“”

The US, UK and allies have called out Chinas commercial cyber ecosystem for enabling largescale Salt Typhoon campaigns.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ–‹๏ธ Salt Typhoon Exploits Cisco, Ivanti, Palo Alto Flaws to Breach 600 Organizations Worldwide ๐Ÿ–‹๏ธ

The Chinalinked advanced persistent threat APT actor known as Salt Typhoon has continued its attacks targeting networks across the world, including organizations in the telecommunications, government, transportation, lodging, and military infrastructure sectors. "While these actors focus on large backbone routers of major telecommunications providers, as well as provider edge PE and.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity