Technology

Hackers Distributing Fake Shopping Apps to Steal Banking Data of Malaysian Users

Threat actors have been distributing malicious applications under the guise of seemingly harmless shopping apps to target customers of eight Malaysian banks since at least November 2021. The attacks involved setting up fraudulent but legitimate-looking websites to trick users into downloading the apps, Slovak cybersecurity firm ESET said in a report shared with The Hacker […]

Hackers Distributing Fake Shopping Apps to Steal Banking Data of Malaysian Users Read More »

Block Admits Data Breach Involving Cash App Data Accessed by Former Employee

Block, the company formerly known as Square, has disclosed a data breach that involved a former employee downloading unspecified reports pertaining to its Cash App Investing that contained information about its U.S. customers. “While this employee had regular access to these reports as part of their past job responsibilities, in this instance these reports were

Block Admits Data Breach Involving Cash App Data Accessed by Former Employee Read More »

Ukraine Warns of Cyber attack Aiming to Hack Users’ Telegram Messenger Accounts

Ukraine’s technical security and intelligence service is warning of a new wave of cyber attacks that are aimed at gaining access to users’ Telegram accounts. “The criminals sent messages with malicious links to the Telegram website in order to gain unauthorized access to the records, including the possibility to transfer a one-time code from SMS,”

Ukraine Warns of Cyber attack Aiming to Hack Users’ Telegram Messenger Accounts Read More »

U.S. Treasury Department Sanctions Russia-based Hydra Darknet Marketplace

The U.S. Treasury Department on Tuesday sanctioned Hydra, the same day German law enforcement authorities disrupted the world’s largest and longest-running dark web marketplace following a coordinated operation in partnership with U.S. officials. The sanctions are part of an “international effort to disrupt proliferation of malicious cybercrime services, dangerous drugs, and other illegal

U.S. Treasury Department Sanctions Russia-based Hydra Darknet Marketplace Read More »

Researchers Trace Widespread Espionage Attacks Back to Chinese ‘Cicada’ Hackers

A Chinese state-backed advanced persistent threat (APT) group known for singling out Japanese entities has been attributed to a new long-running espionage campaign targeting new geographies, suggesting a “widening” of the threat actor’s targeting. The widespread intrusions, which are believed to have commenced at the earliest in mid-2021 and continued as recently as February 2022,

Researchers Trace Widespread Espionage Attacks Back to Chinese ‘Cicada’ Hackers Read More »

Germany Shuts Down Russian Hydra Darknet Market; Seizes $25 Million in Bitcoin

Germany’s Federal Criminal Police Office, the Bundeskriminalamt (BKA), on Tuesday announced the official takedown of Hydra, the world’s largest illegal dark web marketplace that has cumulatively facilitated over $5 billion in Bitcoin transactions to date. “Bitcoins amounting to currently the equivalent of approximately €23 million were seized, which are attributed to the marketplace,” the BKA

Germany Shuts Down Russian Hydra Darknet Market; Seizes $25 Million in Bitcoin Read More »

Battling Cybersecurity Risk: How to Start Somewhere, Right Now

Between a series of recent high-profile cybersecurity incidents and the heightened geopolitical tensions, there’s rarely been a more dangerous cybersecurity environment. It’s a danger that affects every organization – automated attack campaigns don’t discriminate between targets. The situation is driven in large part due to a relentless rise in vulnerabilities, with tens of thousands of

Battling Cybersecurity Risk: How to Start Somewhere, Right Now Read More »

FIN7 Hackers Leveraging Password Reuse and Software Supply Chain Attacks

The notorious cybercrime group known as FIN7 has diversified its initial access vectors to incorporate software supply chain compromise and the use of stolen credentials, new research has revealed. “Data theft extortion or ransomware deployment following FIN7-attributed activity at multiple organizations, as well as technical overlaps, suggests that FIN7 actors have been associated with various

FIN7 Hackers Leveraging Password Reuse and Software Supply Chain Attacks Read More »

Researchers Uncover New Android Spyware With C2 Server Linked to Turla Hackers

An Android spyware application has been spotted masquerading as a “Process Manager” service to stealthily siphon sensitive information stored in the infected devices. Interestingly, the app — that has the package name “com.remote.app” — establishes contact with a remote command-and-control server, 82.146.35[.]240, which has been previously identified as infrastructure belonging to the

Researchers Uncover New Android Spyware With C2 Server Linked to Turla Hackers Read More »