September 2021

EUROPOL Takes Down €10m Mafia Fraud Ring

An organized crime group that has so far amassed well over €10m from online fraud, drug trafficking and property crimes has been dismantled by the European police. The operation involved the Spanish and Italian national police, with Europol and Eurojust coordinating. The group itself, which was linked to the Italian mafia, is suspected of defrauding […]

EUROPOL Takes Down €10m Mafia Fraud Ring Read More »

Hotels and Governments Worldwide New Targets of Hacker Group

FamousSparrow as nicknamed by the cybersecurity firm ESET has been attributed as being responsible for strings of attacks against hotels across the world, government international organizations and law firms worldwide. This has been said to be active since August 2019 with victims spreading across Africa, Asia, Europe and the Middle East with countries such as

Hotels and Governments Worldwide New Targets of Hacker Group Read More »

Feds Sanction SUEX for Aiding Ransomware Gangs

The U.S. Treasury Department on Tuesday imposed sanctions on Russian cryptocurrency exchange Suex for helping facilitate and launder transactions from at least eight ransomware variants as part of the government’s efforts to crack down on a surge in ransomware incidents and make it difficult for bad actors to profit from such attacks using digital currencies.

Feds Sanction SUEX for Aiding Ransomware Gangs Read More »

Sidewalk Malware Attacks Linked to Grayfly Chinese Hacker Group

A previously undocumented backdoor that was recently found targeting an unnamed computer retail company based in the U.S. has been linked to a longstanding Chinese espionage operation dubbed Grayfly. In late August, Slovakian cybersecurity firm ESET disclosed details of an implant called SideWalk, which is designed to load arbitrary plugins sent from an attacker-controlled server,

Sidewalk Malware Attacks Linked to Grayfly Chinese Hacker Group Read More »

WIndows Users are Currently Targets of New 0-Day Attack Exploiting Microsoft Office Documents

An actively exploited zero-day flaw Tracked as CVE-2021-40444 (CVSS score: 8.8), has been discovered to be impacting Internet Explorer. The remote code execution flaw is rooted in MSHTML (aka Trident), a proprietary browser engine for the now-discontinued Internet Explorer and which is used in Office to render web content inside Word, Excel, and PowerPoint documents.

WIndows Users are Currently Targets of New 0-Day Attack Exploiting Microsoft Office Documents Read More »

Hackers Take To Distribution of Jupyter Malware Version via MSI Installer

The evolution of Jupyter, a .NET infostealer has been reported by Cybersecurity researchers. This is known for going at healthcare and education sectors, making it exceptional at defeating most endpoint security scanning solutions. Morphisec underscores that the malware has not just continued to remain active but also showcases “how threat actors continue to develop their

Hackers Take To Distribution of Jupyter Malware Version via MSI Installer Read More »

Hackers Behind SolarWinds Cyberattack Linked to New Tomiris Backdoor Found

Cybersecurity researchers on Wednesday disclosed a previously undocumented backdoor likely designed and developed by the Nobelium advanced persistent threat (APT) behind last year’s SolarWinds supply chain attack, joining the threat actor’s ever-expanding arsenal of hacking tools. A previously undocumented backdoor likely designed and developed by Nobelium advanced persistent threat(APT) has been disclosed by Cybersecurity researchers

Hackers Behind SolarWinds Cyberattack Linked to New Tomiris Backdoor Found Read More »

British Payroll Firm suffers Cyber-Attack

Contractors have been left unpaid after a “sophisticated” cyber-attack forced British payroll company shut down. This was confirmed on September 24 by Giant Group that it had taken its network and its fully integrated IT infrastructure, phone and email systems offline last Wednesday after detecting suspicious activity In a statement published on its website September

British Payroll Firm suffers Cyber-Attack Read More »

Cyber Crime Group ShinyHunters Modus Operandi Detailed by Researchers

ShinyHunters, a notorious cybercriminal underground group that’s been on a data breach spree since last year, has been observed searching companies’ GitHub repository source code for vulnerabilities that can be abused to stage larger scale attacks, an analysis of the hackers’ modus operandi has revealed. The revelation comes as the average cost of a data

Cyber Crime Group ShinyHunters Modus Operandi Detailed by Researchers Read More »

Jenkins Project Server Breached via an Atlassian Confluence Flaw

Maintainers of the popular open-source automation server software, Jenkins have disclosed a security breach after unidentified threat actors gained access to one of their servers via the exploitation of a recently disclosed vulnerability in Atlassian Confluence service to install a cryptocurrency miner. The attack is believed to have occurred last week, mounting against its Confluence

Jenkins Project Server Breached via an Atlassian Confluence Flaw Read More »