Browsing category

Incidents

Now you can decrypt SynAck ransomware without paying the hackers

After rebranding themselves as a new operation dubbed as El_Cometa, the SynAck ransomware group decided to publish the master keys for the decryption of systems infected by this malware variant. As some users may know, when ransomware operations encrypt files an encryption key is generated on the victim’s device, which in turn is encrypted using […]

Europol shuts down international phishing operation related to COVID-19

Europol announced that it will initiate legal proceedings against 23 people accused of participating in a business email engagement (BEC) operation that would have resulted in losses of up to $1.2 million USD. The charges against the suspects were filed after multiple raids in Ireland, Romania and the Netherlands. This campaign began with the sending […]

Hacker published 1 million payment cards data for free; users of 1000 banks in 100 countries, including India, Mexico, US, Australia & Brazil affected

In early August, Group-IB researchers began tracking unusual activity on a hacking forum specializing in selling stolen payment cards. According to the researchers, the user AW_cards posted a link that directed users of a couple dark web forums to an archive with more than 1 million stolen financial records, available to anyone interested completely free […]

Hackers gained access to the Office 365 email accounts of at least 80% of employees working in the U.S. attorneys’ offices via SolarWinds

The Department of Justice (DOJ) has revealed that the Microsoft Office 365 email accounts of employees at all U.S. prosecutors’ offices were compromised by Russia’s Foreign Intelligence Service (SVR) during the SolarWinds supply chain attack: “This threat group has access to compromised accounts from approximately May 7 to December 27, 2020.” , the statement said. […]

Justdial leaks personal data of 100 million users… Again

A recent report states that Justdial, one of the largest service companies in India, has suffered a data breach that led to the exposure of confidential records of more than 100 million users. According to researcher Rajshekhar Rajaharia, the information remained exposed since March 2020. Starting as a local phone-based directory, Justdial offers bill services, […]

Gun ownership information for sale on dark web

Full user records of Guntrader.uk, a British website for buying and selling rifles are available on the dark web as a result of a security incident. The website administrators reported the incident to the Information Commissioner’s Office and the National Crime Agency. In this regard, one of the affected users expressed his concern about the […]

This gang was able to unlock stolen iPhone/iPad with the latest iOS and bypass Face ID, Touch ID, passwords and steal money from banking apps. They were finally arrested

Authorities in the Brazilian state of Sao Paulo announced the arrest of multiple individuals identified as members of a gang dedicated to stealing and hacking iPhone devices in order to access victims’ online banking accounts and steal all their money. Authorities consider this to be a highly sophisticated criminal group, capable of bypassing the complex […]

Facebook fires 52 employees for abusing their access to stealing user data and spying multiple women profiles and location

Facebook announced its decision to fire 52 employees for using their privileged position on the platform to access users’ private data. Apparently, these individuals even tried to get the exact location of some women they were curious or attracted to. Using their access to large amounts of user data through Facebook’s internal systems, the fired […]

Crypto scammers who robbed $55 million USD were arrested

A recent security report claims that four individuals were arrested on Japanese territory due to their alleged involvement in a fraudulent scheme for cryptocurrency investment in which users were invited to invest in a digital trading system operated with artificial intelligence. Authorities estimate that about 20,000 Japanese invested in this scheme, which rose about $55 […]

4,000 PlayStation consoles used to mine cryptocurrencies illegally were seized

Ukrainian authorities have announced the seizure of thousands of PlayStation 4 video game consoles used for cryptocurrency mining. The Security Service of Ukraine detected this illegal operation in the city of Vinnytsia, specifically in an old warehouse that formerly belonged to the JSC Vinnytsiaoblenergo power company. During the raid, authorities found nearly 4,000 video game […]

Iranian railway systems hacked by Israel. Train services delayed and cancelled

Iranian authorities announced the delay or cancellation of some of its train services due to an alleged cyberattack that led to massive disruptions to the national railway company’s systems. While the exact cause of these disruptions is unknown, it has been confirmed that the incident impacted both public transport services and freight transport. Initial reports […]

Interpol arrests “Dr. Hex”, a famous cyber criminal after a 2 year operation

Operation Lyrebird, deployed by the international police agency Interpol in collaboration with infosec firm Group-IB, led to the arrest of one of the most wanted threat actors in the world of cybercrime, linked to dozens of high-profile attacks, affecting telecommunications companies, financial institutions and even some transnational firms. The accused, originally from Morocco, was arrested […]