Cyber Attacks

U.S. Cyber Safety Board Denounces Microsoft for Security Vulnerability Caused by Chinese Hackers

Microsoft has come under fire from the U.S. Cyber Safety Review Board (CSRB) for a string of security failings that allowed a nation-state group named Storm-0558, based in China, to compromise almost two dozen businesses in Europe and the United States last year. According to the results, which were made public by the Department of […]

U.S. Cyber Safety Board Denounces Microsoft for Security Vulnerability Caused by Chinese Hackers Read More »

U.S. Charges Iranian Hacker, Offers $10 Million Reward for Capture

An Iranian person was the target of an alleged multi-year cyber-enabled campaign by the U.S. Department of Justice (DoJ) on Friday, when the DoJ unsealed an indictment against him. The campaign was intended to breach both private and governmental entities in the United States. According to reports, over a dozen organisations have been targeted, including

U.S. Charges Iranian Hacker, Offers $10 Million Reward for Capture Read More »

29-Year-Old Ukrainian Cryptojacking Kingpin Taken into Arrest for Abusing Cloud Services

As part of a “sophisticated cryptojacking scheme,” a 29-year-old Ukrainian national has been detained; the operation brought in over $2 million (€1.8 million) in illegal revenues. With assistance from Europol and an unidentified cloud service provider, the National Police of Ukraine captured the individual dubbed the “mastermind” of the operation on January 9 in Mykolaiv,

29-Year-Old Ukrainian Cryptojacking Kingpin Taken into Arrest for Abusing Cloud Services Read More »

Hackers Can Create A C2 Channel Using Google Calendar

Google is alerting users to the existence of several threat actors that are disseminating a proof-of-concept (PoC) attack that uses its Calendar service to host command-and-control devices. Using a Gmail account, the application, known as Google Calendar RAT (GCR), uses Google Calendar Events for C2. It was initially released in June 2023 on GitHub. Developer

Hackers Can Create A C2 Channel Using Google Calendar Read More »

Lazarus Group Targeting Defense Experts with Fake Interviews via Trojanized VNC Apps

As part of its ongoing Operation Dream Job effort, the North Korea-affiliated Lazarus Group (also known as Hidden Cobra or TEMP.Hermit) has been seen employing trojanized Virtual Network Computing (VNC) programmes as enticements to target nuclear engineers and the defence sector. In its APT trends report for Q3 2023, Kaspersky stated that “the threat actor

Lazarus Group Targeting Defense Experts with Fake Interviews via Trojanized VNC Apps Read More »

Iran-Linked OilRig Targets Middle East Governments in 8-Month Cyber Campaign

Between February and September 2023, an undisclosed Middle Eastern country was the focus of an eight-month campaign by the Iran-linked threat actor OilRig. The Symantec Threat Hunter Team, a division of Broadcom, claimed in a report published with The Hacker News that the attack resulted in the loss of information and passwords and, in one

Iran-Linked OilRig Targets Middle East Governments in 8-Month Cyber Campaign Read More »

Tornado Cash Founders Charged in Billion-Dollar Crypto Laundering Scandal

The U.S. Justice Department (DoJ) charged two founders of the Tornado Cash cryptocurrency mixer business with laundering more than $1 billion in illegal proceeds in an indictment that was unsealed on Wednesday. Roman Storm and Roman Semenov have both been accused of conspiring to commit money laundering, to violate sanctions, and to run an unregistered

Tornado Cash Founders Charged in Billion-Dollar Crypto Laundering Scandal Read More »

FBI Alert: Crypto Scammers are Masquerading as NFT Developers

The U.S. Federal Bureau of Investigation (FBI) has issued a warning about online thieves who pose as non-fungible token (NFT) creators in order to steal cryptocurrencies and other digital assets from unwary consumers. In these fraudulent schemes, fraudsters frequently use deceptive advertising strategies to generate a sense of urgency to pull them off, either by

FBI Alert: Crypto Scammers are Masquerading as NFT Developers Read More »

Couple Pleads Guilty to Money Laundering in $3.6 Billion Bitfinex Hack

In connection with the 2016 hack of cryptocurrency stock exchange Bitfinex, which resulted in the theft of around 120,000 bitcoin, a married couple from New York City has admitted guilt on counts of money laundering. The news comes more than a year after Ilya Lichtenstein, 35, and his wife Heather Morgan, 33, were taken into

Couple Pleads Guilty to Money Laundering in $3.6 Billion Bitfinex Hack Read More »

INTERPOL Nabs West African Hacking Crew Leader Behind $11 Million Cybercrime

According to Interpol, a suspected senior member of the French-speaking hacker group OPERA1ER has been detained as part of a global law enforcement investigation known as Nervone. “The group is believed to have stolen an estimated USD 11 million — potentially as much as 30 million — in more than 30 attacks across 15 countries

INTERPOL Nabs West African Hacking Crew Leader Behind $11 Million Cybercrime Read More »