LATEST POST

FEATURE

Authorities claim to have broken key links in the ‘ransomware kill chain’…for now at least

Malware Ransomware
615 views 16 secs

Seen at The Stack: Europol, the DoJ and other law enforcement agencies “neutralized” a swathe of malware strains this week, which they said was a “direct blow to the ransomware kill chain.” The actions were part of the ongoing Operation Endgame which targeted a series of botnets just over a year ago. But it’s worth […]

FEATURE

Mysterious Database of 184 Million Records Exposes Vast Array of Login Credentials

Data Breach News
470 views 2 mins

A trove of breached data, which has now been taken down, includes user logins for platforms including Apple, Google, and Meta. Among the exposed accounts are ones linked to dozens of governments. WIRED reports: The possibility that data could be inadvertently exposed in a misconfigured or otherwise unsecured database is a longtime privacy nightmare that has been difficult to fully address. […]

FEATURE

3AM ransomware uses spoofed IT calls, email bombing to breach networks

Malware Ransomware
1250 views 6 secs

BleepingComputer reports: A 3AM ransomware affiliate is conducting highly targeted attacks using email bombing and spoofed IT support calls to socially engineer employees into giving credentials for remote access to corporate systems. This tactic was previously linked to the Black Basta ransomware gang and later observed in FIN7 attacks, but its effectiveness has driven a wider […]

FEATURE

Russian Intelligence Hackers Stalk Western Logistics Firms

News
1384 views 11 secs

GovInfoSecurity reports: A slew of Western cybersecurity agencies warned Wednesday that Russian intelligence is targeting logistics and technology companies in a prolonged hacking campaign that includes an emphasis on internet-connected cameras situated along border crossings and military installations. The advisory includes indicators of compromise typical of an attack by Unit 26165 of the Russian Main Intelligence Directorate. […]

FEATURE

Scottish council admits ransomware crooks stole school data

Education Sector
1250 views 57 secs

The Register reports: Scotland’s West Lothian Council has confirmed that data was stolen from its education network after the Interlock ransomware group claimed responsibility for the intrusion earlier this month. The local authority, governing a region bordering Edinburgh, originally said that there was no evidence to suggest that data had been taken when it first […]

FEATURE

Privilege Under Fire: Protecting Forensic Reports in the Wake of a Data Breach

Legal News
652 views 3 mins

Baker Donelson writes: Read more at JDSupra. \

FEATURE

Hack of Contractor Was at Root of Massive Federal Data Breach

News
2294 views 2 mins

Insurance Journal reports an insider data breach that will leave many people wondering exactly what a government contractor did in terms of background checks on its employees. In this case, the two allegedly rogue employees at Opexus (formerly known as AINS) were twin brothers who were previously convicted and served time for hacking crimes: A […]

FEATURE

Massachusetts student pleads guilty to hacking and extorting PowerSchool and an unnamed telecom

Data Breach News
1386 views 2 mins

The U.S. Attorney’s Office for the District of Massachusetts announced yesterday that  Matthew D. Lane, 19, a student at Assumption University in Worcester, Mass., was charged and has agreed to plead guilty in connection with hacking into the computer networks of two U.S.-based companies and extorting the companies for ransoms. The two companies were not named in the Information […]