Browsing category

Incidents

Hackers steal $1 million USD from Razorpay

Media outlets in India report that an unidentified hacker managed to steal around $1 million from Razorpay, a payment processing company. Apparently, the attacker remained hidden in the company’s systems for three months, manipulating security mechanisms to authenticate over 800 illegitimate transactions. Razorpay Software Private Limited provides online payment services that allow businesses in India […]

Threat actors could have hacked the U.S. Drug Enforcement Administration (DEA) and other related law enforcement agencies. Investigation still ongoing

The U.S. Drug Enforcement Administration (DEA) reports that it has begun an investigation into alleged cyberattacks that would have compromised up to 16 databases of federal agencies. According to KrebsOnSecurity researchers, this incident could be related to a cybercriminal group whose members pose as law enforcement officers in order to access sensitive information. A few […]

Cybercriminals hack Fortress Protocol, steal its funds and launder them through Tornado Cash

Fortress Protocol, an algorithmic marketplace platform and decentralized finance (DeFi) lending protocol, suffered the loss of all its funds following a massive cyberattack. Apparently, the stolen assets were connected from Binance Smart Chain to Ethereum and subsequently mixed using the Tornado Cash privacy protocol. CertiK, a firm specializing in blockchain security, released details about the […]

You can earn 1.5 million dollar by finding vulnerabilities in Android 13 Beta

Google has decided to temporarily increase payments in its vulnerability bounty program for those researchers who submit reports of flaws in Android 13 Beta, in a bid to significantly improve the security of the new iteration of its operating system for mobile devices. Until May 26, researchers who find security flaws in this operating system […]

Charging stations for electric cars in the UK are hacked to show pornography

Hundreds of electric vehicle drivers on the Isle of Wight, England, were taken by surprise when screens at a local charging station began displaying pornographic content as a result of what appears to be a cyberattack against GeniePoint, the company that manages the affected charging point. According to a local report, screens at the charging […]

Zoom is set to pay $85 million USD as part of a class-action settlement; users traumatized by hackers and pranksters irrupting in their meetings

Thousands of companies began to implement the remote work modality due to the pandemic, which led to a notable increase in the use of video calling tools such as Zoom. This has been exploited by malicious hackers, and even some pranksters, to deploy an attack variant known as “zoom-bombing”, which consists of breaking into private […]

Critical vulnerability in Java allows forgery of certificates, signatures, WebAuthn messages and evade authentication mechanisms: Update immediately

Some versions of Java are affected by a critical vulnerability in the Elliptic Curve Digital Signature Algorithm (ECDSA) signature validation that would allow threat actors to digitally sign files and other data in the same way that a legitimate entity would. A hacker could pass off malicious downloads as if it were benign content without […]

How someone can easily steal NFT using your iCloud backup

The developers of the popular cryptocurrency software MetaMask asked Apple users to disable the automatic backup feature in iCloud after Domenic Lacovone, a collector of non-fungible tokens (NFT), reported the theft of their virtual assets. The affected user, identified on Twitter as @revive_dom, reported that his digital wallet with digital assets worth about $650,000 USD […]

GitHub was hacked. Source code is filtered from different repositories

In its latest security report, GitHub confirmed that a group of threat actors are using OAuth tokens from legitimate users to download information from private repositories. The campaign was detected a week ago and dozens of compromised repositories have already been seen, which were using OAuth applications maintained by Heroku and Travis-CI. Mike Hanley, GitHub’s […]

Finland government defense sector website shutdown after big DDoS attacks

A recent report notes that the ministries of foreign affairs and defense in Finland were disconnected after a denial of service (DoS) attack. Via Twitter, representatives from both agencies confirmed the incident, adding that the affected services have already been restored and security measures will be taken to prevent further incidents. “For the time being, […]

5 members of Yura, a murder-for-hire operation on the dark web, are arrested. Platforms such as Besa Mafia, Cosa Nostra and Crimebay shut down

Romanian authorities have confirmed the arrest of the operators of some fraudulent dark web platforms on which the defendants offered the services of fake for-hire murderers. The fake hitmen, operating platforms such as Besa Mafia, Cosa Nostra and Crimebay, will face charges of incitement to murder, organized crime and money laundering. Agents of the Service […]