Cyber Attacks

Microsoft Discloses 6 Iranian Hacking Groups Turning to Ransomware

There has been an increase in the adoption of ransomware as a means of generating revenue for nation-state operators with affiliations with Iran. So far, six threat actors with the West Asian country have been discovered deploying ransomware to achieve their strategic objectives, researchers from Microsoft Threat Intelligence Center (MSTIC) revealed, adding that the ransomware […]

Microsoft Discloses 6 Iranian Hacking Groups Turning to Ransomware Read More »

Researchers Discover “Void Balaur” the Hacker-for-Hire Group Active since 2015

Researchers have discovered a hacker-for-hire group called “Void Balaur” which has been linked to strings of cyberespionage and data theft activities targeting politicians, human right activists and government officials since 2015 for financial gain. The group was only recently unmasked when advertisements of its services was cited in a Russia-speaking underground forum dating all the

Researchers Discover “Void Balaur” the Hacker-for-Hire Group Active since 2015 Read More »

ISPs and Telecomms are Currently Targets of Iranian Hackers Lyceum

Threat actors believed to be affiliated with Iran has been linked to series of targeted attacks aimed at telecommunication operators and internet service providers (ISPs) in Morocco, Saudi Arabia and Isreal and a few ministries of foreign affairs (MFA) in Africa. The group tracked as Lyceum is believed to have occurred between July and October

ISPs and Telecomms are Currently Targets of Iranian Hackers Lyceum Read More »

REvil Ransomware Associates Arrested in Global Takedown

Law enforcement authorities in Romania on November 4 arrested two individuals for their role played as affiliates of REvill ransomware. The suspects have been linked to more than 5,000 ransomware attacks and extorted close to $600,000 from victims. The arrest is a part of a coordinated operation called GoldDust, which has resulted in arrest of

REvil Ransomware Associates Arrested in Global Takedown Read More »

Millions of Android Users are Currently Targets of Premium Scam Apps

Attackers are leveraging on 151 malicious Android apps with 10.5 million downloads in order to rope users into premium subscription service without consent and knowledge. This attack has been dubbed “UltimaSMS” and is believed to have commenced in May 2021. This attacker took advantage of apps covering wide range of categories including keyboards, QR code

Millions of Android Users are Currently Targets of Premium Scam Apps Read More »

Microsoft Cautions on TodayZoo Phishing Kit Used in Credential Stealing Attacks

An extensive series of credential phishing campaigns has been discovered and disclosed by Microsoft on Thursday. This campaign is taking advantage of custom phishing kit that stitched together components from at least five different circulated ones with the aim of siphoning user login information. This discovery was first made in December 2020 and dubbed the

Microsoft Cautions on TodayZoo Phishing Kit Used in Credential Stealing Attacks Read More »

Afghanistan and India are the new Targets of Hacker Group with Commodity RATs

A hacker group is now targeting Afghanistan and India as they exploit a now-patched, 20-year-old flaw affecting Microsoft Office to deploy remote access trojans (RATs) that allow the adversary gain complete control over the compromised endpoints. This has been attributed to a “lone wolf” threat actor operating a Lahore-based fake IT company called Bunse Technologies

Afghanistan and India are the new Targets of Hacker Group with Commodity RATs Read More »