Category: Information Security
U.S. law enforcement authorities have announced the seizure of a domain used in a large-scale scheme to steal bank accounts. According to the U.S. Department of Justice, the site—web3adspanels[.]org—served as a control hub for...
Threat actors have begun repurposing a legitimate server monitoring tool as a ready-made platform for remotely controlling systems that have already been compromised. According to the Ontinue Cyber Defense Center, recent incidents involve Nezha,...
A malicious package named lotusbail has been uncovered in the npm repository, masquerading as a library for working with WhatsApp Web while quietly siphoning conversations and granting attackers persistent access to user accounts. According...
Spotify has blocked a number of accounts after the Anna’s Archive team publicly released a dataset collected from the streaming platform. According to the group, the trove comprises 86 million audio files and an...
OpenAI has released a security update for ChatGPT Atlas, a browser equipped with a built-in “agent mode” that can browse the web and act within it almost like a human—clicking, typing, and carrying out...
Direct navigation—when a user manually types a website address into the browser—has become markedly more dangerous. Researchers at Infoblox have found that the vast majority of “parked” domains are now configured to automatically funnel...
The U.S. Department of Justice has brought charges against dozens of individuals in connection with a wave of ATM thefts carried out using the Ploutus malware. The department announced that two federal grand juries...
Nigerian authorities have arrested an individual believed to be one of the developers behind RaccoonO365, a phishing-as-a-service platform that enabled criminals to mass-produce fake Microsoft login pages and harvest victims’ usernames and passwords. Acting...
The Argentine football giant Club Atlético River Plate (CARP) has become a target of extortion by the Qilin ransomware group. The club has appeared on the group’s dark web leak site, where it was...
Proofpoint is warning of a surge in phishing attacks in which attackers hijack corporate Microsoft 365 accounts not through fake login pages, but via a perfectly legitimate OAuth mechanism—device code authorization. Victims are persuaded...
After nearly five years of apparent dormancy, the Iranian threat group Infy—also known as Prince of Persia—has resurfaced. Security researchers at SafeBreach have identified a new campaign by this long-standing cyber-espionage operation, which has...
The group behind one of the most notorious ransomware distribution services, RansomHouse, has significantly strengthened the technical sophistication of its attacks. According to analysts, the cybercriminals have introduced an updated encryption tool distinguished by...