Security
Fake IRS refund email uses Elon Musk to lure victims into giving up bank details
A new IRS tax scam promises a $5,000 refund courtesy of the world’s richest man – Elon Musk – tricking victims into handing over a slew of personal information, including driver’s licenses and bank account numbers.
Read more about Fake IRS refund email uses Elon Musk to lure victims into giving up bank details
North Korean hacker "detonates" malware on own PC, exposing $1M-a-month IT worker scam
A North Korean hacker appears to have exposed a $1M-a-month IT worker scam after detonating malware on their own computer, leaking chats, accounts, and crypto records.
Read more about North Korean hacker "detonates" malware on own PC, exposing $1M-a-month IT worker scam
North Korean hackers are using “123456” passwords, making them easy targets for other hackers
Low-tier North Korean hacking groups have left themselves open to counterattacks by using weak passwords like "123456" to protect internal payment servers processing over $3.5 million.
Read more about North Korean hackers are using “123456” passwords, making them easy targets for other hackers
Critical Adobe Reader zero-day lets PDFs steal files, may have been active for months
A cybersecurity researcher is warning of a zero-day vulnerability in Adobe Reader that allows attackers to steal local files and potentially take full control of a victim’s system – simply by getting them to open a PDF.
Read more about Critical Adobe Reader zero-day lets PDFs steal files, may have been active for months
Hackers claim breach on Brazil’s Experian: Is every single person in Brazil part of this leak?
A hacker claims to hold data on more Brazilians than actually exist. Is it the largest leak ever recorded? Or just old data doing the rounds once again?
Read more about Hackers claim breach on Brazil’s Experian: Is every single person in Brazil part of this leak?
Tor network under attack by authorities: project explores relays that wipe themselves clean after reboot
The Tor Project wants network nodes to refrain from storing data in case authorities want to analyze it. The anonymity network is considering using stateless machines to help prevent attacks, operator errors, or infiltration by authorities, improving network trustworthiness.
Read more about Tor network under attack by authorities: project explores relays that wipe themselves clean after reboot
Telenor is being sued for handing over phone data that was used to arrest and execute dissidents
The Justice and Accountability Initiative, a Swedish non-profit organization, has filed a lawsuit against Telenor’s subsidiary in Myanmar for sharing private information of dissidents with the country’s military regime.
Read more about Telenor is being sued for handing over phone data that was used to arrest and execute dissidents
Walls have ears: how your internet cable can be turned into a covert listening device
A team of researchers has shown that, with the right expertise and access, ordinary fiber optic internet cables can be turned into covert listening devices.
Read more about Walls have ears: how your internet cable can be turned into a covert listening device
The Netherlands is building a "digital emergency kit" in case the internet shuts down nationwide
Willemijn Aerdts, Minister for the Digital Economy and Sovereignty, is working on a “digital emergency kit” to help government agencies and citizens take care of themselves during digital disasters, such as a national internet shutdown.
Read more about The Netherlands is building a "digital emergency kit" in case the internet shuts down nationwide
A ransomware attack on Dutch patient software has forced hospitals to disconnect their systems
ChipSoft, a Dutch manufacturer of electronic patient record software, has been targeted with ransomware.
Read more about A ransomware attack on Dutch patient software has forced hospitals to disconnect their systems
European defence ministries are turning to a French cloud provider to cut ties with US tech
France's OVHcloud is creating a dedicated defence vertical after several European defence ministries approached it to support their military digital transformation, the datacentre operator said on Thursday.
Read more about European defence ministries are turning to a French cloud provider to cut ties with US tech
Hackers claim breach of major Colombian banks, leak customer data samples
Threat actors are claiming to have accessed sensitive data linked to major Colombian financial institutions – Grupo Bancocolombia and Banco De Bogota, posting samples on an underground forum.
Read more about Hackers claim breach of major Colombian banks, leak customer data samples
Modbus protocol exposes critical infrastructure devices
Some of the most critical national infrastructure, including power grids and railway networks, have exposed industrial control systems (ICS), according to a new study.
Read more about Modbus protocol exposes critical infrastructure devices
Hackers expose 70,000 NSFW prompts "linked to unique user IDs" from AI girlfriend platform
More than 100,000 users may have had their most intimate AI conversations exposed, as data allegedly stolen from MyLovelyAI has been listed on a hacker forum.
Read more about Hackers expose 70,000 NSFW prompts "linked to unique user IDs" from AI girlfriend platform
Threat actors use emojis on Telegram, Discord, and the dark web: why?
Studies show that individuals leverage emojis to enhance communication and build stronger relationships. Threat actors are certainly a tight-knit community. Maybe, as a new analysis suggests, emojis are making them stronger – and stealthier.
Read more about Threat actors use emojis on Telegram, Discord, and the dark web: why?
China-linked hackers shrink ransomware attacks to hours
Threat actors from China, which hosts more hacking groups than any other country, are accelerating ransomware attacks by chaining dozens of vulnerabilities and compressing the entire kill chain into hours. A new report from Microsoft Threat Intelligence sheds light on how one group, tracked as Storm-1175, is turning exposed systems into fast-moving ransomware targets.
Read more about China-linked hackers shrink ransomware attacks to hours
VeraCrypt, WireGuard maintainers locked out by Microsoft, unable to deliver Windows updates
Two maintainers of unrelated but critically important software packages are unable to release Windows updates because Microsoft terminated/suspended their accounts.
Read more about VeraCrypt, WireGuard maintainers locked out by Microsoft, unable to deliver Windows updates
Email provider leak containing over 40M records exposes L’Oreal, Renault, French Embassy traffic
The leak included email addresses and traffic of L’Oreal, Renault, and DHL, as well as numerous French government agencies.
Read more about Email provider leak containing over 40M records exposes L’Oreal, Renault, French Embassy traffic
Anthropic develops AI model that smashes Google, OpenAI and is too dangerous for public release
Anthropic says its new AI model is a “striking leap,” beating all competition. But the €200 per month subscription won’t buy you into an exclusive club – it’s too risky to be publicly released. The model is only available for big tech cyber defenders.
Read more about Anthropic develops AI model that smashes Google, OpenAI and is too dangerous for public release
Russian military hackers are breaking into your home WiFi via TP-Link routers
Fancy Bear, aka APT28, a group attributed to Russian military intelligence (GRU), is breaking into home and office routers across the United Kingdom to steal passwords and other secrets, the country’s National Cyber Security Centre (NCSC) has warned.
Read more about Russian military hackers are breaking into your home WiFi via TP-Link routers