Skip to content

English

Uber hacked, internal systems breached and vulnerability reports stolen

Uber hacked, internal systems breached and vulnerability reports stolen

Uber suffered a cyberattack Thursday afternoon with an allegedly 18-year-old hacker downloading HackerOne vulnerability reports and sharing screenshots of the company's internal systems, email dashboard, and Slack server. Other systems accessed by the hacker include the company's Amazon Web Services console, VMware vSphere/ESXi virtual machines,

Members Public
Lorenz Ransomware Exploit Mitel VoIP Systems to Breach Business Networks

Lorenz Ransomware Exploit Mitel VoIP Systems to Breach Business Networks

The operators behind the Lornenz ransomware operation have been observed exploiting a now-patched critical security flaw in Mitel MiVoice Connect to obtain a foothold into target environments for follow-on malicious activities. "Initial malicious activity originated from a Mitel appliance sitting on the network perimeter," researchers from cybersecurity firm

Members Public
FBI Warns of Unpatched and Outdated Medical Device Risks

FBI Warns of Unpatched and Outdated Medical Device Risks

The FBI is warning healthcare facilities of the risks associated with unpatched and outdated medical devices. Security flaws in medical devices could adversely impact the operations of healthcare facilities, while also affecting the safety of patients and data confidentiality and integrity, the FBI says. Both hardware design and device software

Members Public
US govt sanctions ten Iranians linked to ransomware attacks

US govt sanctions ten Iranians linked to ransomware attacks

The Treasury Department's Office of Foreign Assets Control (OFAC) announced sanctions today against ten individuals and two entities affiliated with Iran's Islamic Revolutionary Guard Corps (IRGC) for their involvement in ransomware attacks. Their malicious activity is tracked and overlaps with state-sponsored hacking groups tracked by cybersecurity

Members Public
Pro-Russian Hacktivist Groups Target Ukraine Supporters

Pro-Russian Hacktivist Groups Target Ukraine Supporters

As the war in Ukraine rages on, unseen but related battles occur daily across the globe. These confrontations stem from pro-Russian hacktivist groups targeting countries that support Ukraine, likely with support from the Kremlin. These hacktivists have been targeting a wide swath of industries and sectors, including aviation, energy, financial,

Members Public
Opsec Mistakes Reveal Iranian COBALT MIRAGE Threat Actors

Opsec Mistakes Reveal Iranian COBALT MIRAGE Threat Actors

Artifacts exposed personas and companies associated with the Iranian threat group. Secureworks® Counter Threat Unit™ (CTU) analysis of a June 2022 ransomware incident revealed details about Iranian COBALT MIRAGE threat group operations. Despite CTU™ researchers publicly disclosing COBALT MIRAGE tactics, techniques, and procedures (TTPs) in May 2022, the threat actors

Members Public
New Wave of Espionage Activity Targets Asian Governments

New Wave of Espionage Activity Targets Asian Governments

Governments and state-owned organizations are the latest targets of a well-established threat actor. A distinct group of espionage attackers who were formerly associated with the ShadowPad remote access Trojan (RAT) has adopted a new, diverse toolset to mount an ongoing campaign against a range of government and state-owned organizations in

Members Public
Google: Conti repurposing tools for Ukraine attacks using Follina bug, Musk impersonation

Google: Conti repurposing tools for Ukraine attacks using Follina bug, Musk impersonation

Former members of the notorious Conti ransomware group have repurposed many of their tools for attacks on Ukrainian organizations, according to a new report from Google’s Threat Analysis Group (TAG). Google: Conti repurposing tools for Ukraine attacks using Follina bug, Musk impersonationFormer members of the Conti ransomware group have

Members Public
GhostSec hacktivist group compromise 55 Berghof PLCs across Israel, OTORIO discloses

GhostSec hacktivist group compromise 55 Berghof PLCs across Israel, OTORIO discloses

Industrial cybersecurity firm OTORIO published on Wednesday details of the GhostSec hacktivist group, which gained control over 55 Berghof programmable logic controllers (PLCs) across Israeli organizations and platforms. The firm said that last week GhostSec, which was previously observed targeting Israeli organizations and platforms, announced on social media and its

Members Public
North-Korean Lazarus APT Group Targeting Energy Providers Around The World

North-Korean Lazarus APT Group Targeting Energy Providers Around The World

Security researchers have linked a new cyber espionage campaign targeting U.S., Canadian and Japanese energy providers to the North Korean state-sponsored Lazarus hacking group. Threat intelligence company Cisco Talos said Thursday that it has observed Lazarus — also known as APT38 — targeting unnamed energy providers in the United States, Canada

Members Public
Iranian state-sponsored hacker group Nemesis Kitten encrypt Windows systems using BitLocker

Iranian state-sponsored hacker group Nemesis Kitten encrypt Windows systems using BitLocker

Microsoft threat intelligence teams have been tracking multiple ransomware campaigns and have tied these attacks to DEV-0270, also known as Nemesis Kitten, a sub-group of Iranian actor PHOSPHORUS. Microsoft assesses with moderate confidence that DEV-0270 conducts malicious network operations, including widespread vulnerability scanning, on behalf of the government of Iran.

Members Public