Threat actors claim to have breached a database belonging to Shanghai police and stole the data of a billion Chinese residents.
Unknown threat actors claimed to have obtained data of a billion Chinese residents after breaching a database of the Shanghai police. If the incident will be confirmed, this data breach is the largest one in the country’s history
Bug bounty platform HackerOne disclosed that a former employee improperly accessed security reports submitted to claim additional bounties
The vulnerability coordination and bug bounty platform HackerOne disclosed that a former employee improperly accessed security reports submitted by white-hat hackers to claim additional bounties.
The investigation s
A cyber attack forced the American publishing giant Macmillan to shut down its IT systems.
The publishing giant Macmillan has been hit by a cyberattack that forced the company to shut down its IT infrastructure to prevent the threat from spreading within its network.
The company spokesman Erin Coffey told different media outlets that at
Microsoft spotted a cloud threat actor tracked as 8220 that is now targeting Linux servers in a long-running cryptomining campaign.
Microsoft Security Intelligence experts are warning of a long-running campaign conducted by a cloud threat actor group, tracked as 8220, that is now targeting Linux servers to install crypto miners.
“We observed nota
Good news for the victims of the Hive ransomware, Korean security researchers have released a free decryptor for some versions.
Good news for the victims of the Hive ransomware, the South Korean cybersecurity agency KISA has released a free decryptor for versions from v1 till v4.
“The Korea Internet & Security Agency (KISA) is distributing th
A former Canadian government IT worker admitted to being a high-level member of the Russian cybercrime group NetWalker.
A former Canadian government employee, Sebastien Vachon-Desjardins, pleaded guilty in the U.S. to charges related to his involvement with the Russian cybercrime group NetWalker.
In March, the man was extradited to the United States to
Researchers detailed a new information-stealing malware, dubbed YTStealer, that targets YouTube content creators.
Intezer cybersecurity researchers have detailed a new information-stealing malware, dubbed YTStealer, that was developed to steal authentication cookies from YouTube content creators.
The malware is highly likely available as a service on t
The RansomHouse gang claims to have breached the Chipmaker giant AMD and stole 450 GB of data from the company in 2021.
The RansomHouse extortion gang claims to have stolen 450 GB of data from the chipmaker giant AMD in 2021 and threatens to leak it or sell it if the company will not pay the ransom.
The company has been added this week to the gang̵
This paper provides a taxonomic classification of non-state actors in the cyberspace, analyzing their role and impact on a state’s socioeconomic structure
Cyber Non-State Actors (CNSA) are key figures in our globalized world: their operations could have a significant impact on international affairs, politics, and on the economy, as much as states do.
The LockBit ransomware operators released LockBit 3.0 with important novelties, including a bug bounty program and Zcash payments.
The Lockbit ransomware operation has released LockBit 3.0, which has important noveòties such as a bug bounty program, Zcash payment, and new extortion tactics. The gang has been active since at least 2019 and today it is one
Matanbuchus malware-as-a-service (Maas) has been observed spreading through phishing campaigns, dropping Cobalt Strike beacons.
Threat intelligence firm Cyble has observed a malware-as-a-service (Maas), named Matanbuchus, involved in malspam attacks dropping Cobalt Strike beacons.
Matanbuchus is a malware loader that first appeared on the threat
A threat actor is selling access to 50 vulnerable networks that have been compromised exploiting the recently disclosed Atlassian Confluence zero-day.
A threat actor is selling access to 50 vulnerable networks that have been compromised by exploiting the recently discovered Atlassian Confluence zero-day flaw (CVE-2022-26134).
The discovery was made by
Researchers from Malwarebytes warns that the Magecart skimming campaign is active, but the attacks are more covert.
Magecart threat actors have switched most of their operations server-side to avoid detection of security firms. However, Malwarebytes researchers warn that the Client-side Magecart attacks are still targeting organizations, but are more cove
Threat actors are using the Rig Exploit Kit to spread the Dridex banking trojan instead of the Raccoon Stealer malware.
Since January 2022, the Bitdefender Cyber Threat Intelligence Lab observed operators behind the RIG Exploit Kit pushing the Dridex banking trojan instead of the Raccoon Stealer.
The switch occurred in February when Raccoon Stealer tem
US Flagstar Bank disclosed a data breach that exposed files containing the personal information of 1.5 million individuals.
US-based Flagstar Bank disclosed a data breach that impacted roughly 1.5 million individuals, but the company did not share details about the attack. The security breach took place in early December 2021, and the investigation that w
Announce
Share high-quality web security related articles with you:)