Infosecurity News

LockBit and Royal Mail Ransomware Negotiation Leaked
It shows the threat actor trying to convince Royal Mail to pay the ransom using various techniques

Crypto-Stealing Campaign Deploys MortalKombat Ransomware
The attacks mainly targeted victims in the US but also in the UK, Turkey, and the Philippines

Threat Analysis: VMware ESXi Attacks Soared in 2022
Recorded Future analyzed how threat actors have been exploiting VMware ESXi vulnerabilities over the past three years

Microsoft Patches Three Zero-Day Bugs This Month
February Patch Tuesday contains updates for over 70 CVEs

SAS App and Website Hit as Attacks Target Swedish Firms
Valentine’s Day outages hit airline and media companies

SideWinder APT Attacks Regional Targets in New Campaign
Indian threat group conducts hundreds of operations in a short time-span

Lokibot, AgentTesla Grow in January 2023's Most Wanted Malware List
The infostealer Vidar has returned to the top 10 after an increase in ‘brandjacking’ attacks

Chinese Hackers Infiltrate South American Diplomatic Networks
The group previously targeted government agencies and think tanks in Asia and Europe

Hackers Breach Pepsi Bottling Ventures' Network
Experts say the delay in notifying customers left data potentially open to compromise

Spanish Police Bust €5m Phishing Gang
Group laundered funds via 100 bank accounts

Cloudflare Stops Largest HTTP DDoS Attack on Record
Attack reached 71 million requests-per-second

Resurrected Crypto-mixer Launders $100m in North Korean Funds
Sanctioned mixer Blender is actually Sinbad, says Elliptic

Cybersecurity Experts Warn Against Valentine's Day Romance Scams
Victim losses associated with online romance scams nationwide totaled approximately $5.9bn in 2021

Group-IB Blocks Attack By Chinese Tonto Team Hackers
The threat actors used phishing to deliver malicious files created with the Royal Road Weaponizer

Majority of Firms Make Cybersecurity Decisions Without Attacker Insight
Cybersecurity experts believe senior leadership teams underestimate cyber-threats

Researchers Uncover 700+ Malicious Open Source Packages
Latest npm and PyPI finds should be kept out of build environments

MoneyGram Fraud Victims Get $115m in Compensation
Money transfer firm failed to crack down on scam agents

Namecheap Customers Flooded with Phishing Emails
Domain registrar blames upstream provider

Reddit Hit By Phishing Attack, Source Code Stolen
Reddit said there was “no indication” of a breach of the company’s primary production systems

US Warns Critical Sectors Against North Korean Ransomware Attacks
The latest iteration of the document is now analyzing activity by the Maui and H0lyGh0st groups



