Operation Endgame strikes again ๐ฅMultiple botnets were taken down and stolen data has been seized.
Part of the data comes from infostealer #Rhadamanthys and trojan #VenomRAT. Data was shared with DIVD (among others) to notify victims.
Check if your org is impacted [linkโฌ๏ธ]
๐ฃ๐ฟ๐ผ๐ฑ๐๐ฐ๐ ๐๐ฎ๐ฟ๐ป๐ถ๐ป๐ด ๐ณ๐ผ๐ฟ ๐ฆ๐ถ๐ฐ๐ผ๐บ๐บ๐ก๐ฒ๐ ๐๐๐ฆ๐๏ฟฝ๏ฟฝ ๐จ๐๐ฒ๐ฟ๐ โ ๏ธ
We urge all users of SicommNet BASEC to ๐ถ๐บ๐บ๐ฒ๐ฑ๐ถ๐ฎ๐๐ฒ๐น๐ ๐๐๐ผ๐ฝ ๐๐๐ถ๐ป๐ด ๐๐ต๐ฒ ๐ฝ๐น๐ฎ๐๐ณ๐ผ๐ฟ๐บ and ๐ฎ๐๐๐๐บ๐ฒ ๐ฎ๐น๐น ๐ฑ๐ฎ๐๐ฎ ๐ต๐ฎ๐ ๐ฏ๐ฒ๐ฒ๐ป ๐ฐ๐ผ๐บ๐ฝ๐ฟ๐ผ๐บ๐ถ๐๐ฒ๐ฑ. Link in comments.
@TheRealProcyon ...We are grateful for everything youโve done for DIVD. We take this situation seriously and are glad to have the opportunity to address it. If you're open to it, we'd welcome further dialogue to ensure this doesnโt happen again. (3/3)
@TheRealProcyon ...Itโs clear that, despite having protocols, they failed to offer you the protection you deserved. We are committed to improving this, ensuring everyone feels secure in their role. Please know that your efforts did not go unnoticedโฆ (2/3)
@TheRealProcyon We are saddened to hear about the experience that has led to your decision to stop volunteering with DIVD. We appreciate your courage in coming forward, and we sincerely regret that our environment did not feel safe or supportive for you... (1/3)
Our team has responsibly disclosed six new #zeroday vulnerabilities in #Enphase IQ Gateway devices. Thanks to the efforts of @Wietsman, Hidde Smit, Max van der Horst and @seccubus, the internet has become a bit safer this week. More info โก๏ธ https://t.co/Gfr2mghh4x
Bij een politieoperatie #operationendgame met 14 landen is belangrijke infrastructuur van #ransomware-criminelen platgelegd. Het DTC heeft vandaag honderden bedrijven en organisaties genotificeerd.
Lees verder โคต๏ธ
https://t.co/1CupSuhfJq
Operation Endgame: Largest Botnet Takedown, 16 Million Victims to be notified โ ๏ธ
In the upcoming days our CSIRT team will notify more than 16 million victims. Take immediate action if you receive an email. https://t.co/tL1f4Z9OwZ
โ ๏ธ Two #0days vulnerabilities in Ivanti Connect Secure VPN were actively exploited, allowing attackers unauthenticated remote code execution. DIVD is working on identifying the vulnerable instances and notify the owners of these systems.
https://t.co/6Q3L9xYgdj