Browsing category

Incidents

Netherlands University paid €200,000 in Bitcoins to a ransomware gang & now got its money back, except now, the Bitcoin was worth €500,000

A Netherland university that became the target of  a massive ransomware attack has received back its ransom money that it paid to hackers. They got double the money back. University spokesperson said “This money will not go to a general fund, but into a fund to help financially strapped students.  The southern Maastricht University in […]

Israeli metro servers hacked by Iranian hackers

Iranian media has reported that Iranian hackers managed to take control of  servers of the Israel Metro. Sabereen News Telegram channel, said the “huge” cyberattack targeted the operating systems and servers of the “Israel Metro.” Israel’s news channel reported that this led to online bullying of its systems, as Israel has no underground train system. […]

!HackerOne hacked! Bug bounty Platform becomes the victim of Insider Threat

A HackerOne employee had improperly accessed vulnerability reports submitted to the platform by security researchers’ for personal gain. The employee anonymously took these reports, somewhat modified them and disclosed these vulnerabilities outside the HackerOne platform directly to the customer with the goal of claiming bug bounty.  The inquiry began after a HackerOne customer notified the […]

How misspelling of one word saved a man his $6 millions from cyber criminals

A businessman nearly lost $6 million to hackers, but one word saved his fortune from falling into accounts of hackers and disappearing forever. The victim was in the final stages of a multi-million dollar property deal when cybercriminals managed to hijack the email address of the other party involved in the deal. They then changed […]

More than 770 million records available through the Travis CI API: Anyone can extract tokens, secrets, and other credentials associated with services like GitHub, AWS, and Docker Hub

Software development and testing platform Travis CI confirmed the second incident of exposing its users’ data in less than a year. On this occasion, the compromised records include authentication tokens that would allow access to platforms such as AWS, GitHub, and Docker Hub. According to a report prepared by the firm Aqua Security, tens of […]

Major Russian law firm is hacked; terabytes of stolen data

Anonymous hackers have claimed responsibility for a new cyberattack targeting a Russian organization. This time, the hacktivist collective claims to have stolen around 1 TB of information belonging to the important law firm Rustam Kurmaev and Partners (RKP Law). This announcement was disclosed just a couple of days after the group leaked information contained on […]

How bored Ape NFTs are being hacked again and again. 200 ETH stolen

Yuga Labs, creators of the popular non-fungible token (NFT) collection Bored Ape Yacht Club (BAYC), confirmed the detection of the second cyberattack that targeted its systems in less than a month, in an incident that generated losses of around 200 ETH or either $350,000. The attack was first reported by Onchain analyst, OKHotshot, who posted […]

Interpol arrests hackers who attacked oil and gas companies worldwide: Operation Killer Bee

Interpol announced that Operation Killer Bee, deployed in collaboration with authorities in 11 countries in South Asia, led to the arrest of three Nigerian nationals accused of using a remote access Trojan (RAT) to divert funds and steal access credentials from affected organizations. This cybercriminal group operated from Lagos, Nigeria, and reportedly attacked multiple oil […]

Full names, IDs, email addresses, and phone numbers of hacked Verizon employees: Customers could experience increased SIM swap attacks

A report from Motherboard details the detection of a data breach affecting the telephone company Verizon, an incident that would have put at risk the personal records of thousands of employees. The leak would include employees’ full names, corporate IDs, email addresses, and phone numbers. Even though Verizon was notified and has already acknowledged the […]

Texas shooter sent death threats via Facebook Messenger prior the incident; Meta AI systems couldn’t detect them

It is well known that Meta has implemented sophisticated technology to monitor private messages sent through Facebook and Instagram in order to identify patterns of harmful content such as child pornography, harassment or sale of narcotics. While this AI-powered technology has helped prevent hundreds of criminal practices, nothing in the world is foolproof. On Wednesday, […]

Hackers theft over $1.4 million worth of Moonbird NFT collection

A non-fungible token (NFT) collector lost more than $1.4 million due to a cyberattack involving a malicious website and social engineering tactics. As reported by blockchain researchers known as Andeh and Cirrus, the victim lost 29 NFTs from the Moonbirds collection, with a minimum value of $48,000 each. In an interview with Vice, the victim, […]

Indian companies listed in stock exchange to provide infosec audits and information system inventory to government. New SEBI guidelines

Securities and Exchange Board of India (SEBI) has released another update for its “Cyber Security and Cyber Resilience Framework,” establishing a considerably short deadline to file an exhaustive information security status report. The statement applies to financial institutions and companies in stock exchanges. The update considers any system storing personally identifiable information (PII) as critical […]

Data brokers are selling location details of women visiting abortion clinics

A group of Democratic Party senators sent a letter to the U.S. Federal Trade Commission (FTC) urging them to take steps to protect women’s privacy after visiting reproductive health clinics. It was confirmed that some data brokers sell this information to third-party companies. These reports come at a critical time for women’s health in the […]

Cryptocurrency exchange founder sentenced to 2 years of probation for failing to implement an anti-money laundering program

Arthur Hayes, founder and former CEO of cryptocurrency exchange platform BitMEX, has been sentenced to two years of probation for the lack of anti-money laundering controls on the platform. The defendant pleaded guilty to multiple violations of the US Bank Secrecy Act (BSA) in federal court in New York. Damian Williams, a U.S. attorney, says, […]

India relaxes cyber security incidents reporting rules and says new rules apply to MNCs

Cybersecurity agencies in India are slightly relaxing their controversial and complex requirements for reporting on information security incidents, although they reaffirm that the final version of these rules should apply to any multinational company operating on their territory. These rules were announced overnight in late April, receiving criticism from major players in the industry because […]