https://t.co/AJnSnfelzT - ๐ Surge in Akira & Fog ransomware attacks exploiting SonicWall VPN flaws. Quick access, encryption, and data theftโupdate firmware and monitor VPNs for safety. #Cybersecurity#Ransomware
Not all records youโre happy about breaking: @Cloudflare recently mitigated the largest ever reported hyper-volumetric #DDoS attack. 3.8 terabits per second (Tbps) and 2.14 billion packets per second (Bpps). Handled automatically any without any customer impact. Details to come.
https://t.co/kLc9nbML82 - ๐ The SEC charges U.K. citizen Robert Westbrook for hacking into 5 U.S. public companies, making $3.75M in illicit trades using nonpublic earnings info. Criminal charges have also been filed. Investigation ongoing. #SEC#CyberCrime#InsiderTrading
https://t.co/FMMW6NLUMk - โ๏ธ Plymouth man indicted for trafficking counterfeit network device licenses, causing millions in losses. He allegedly sold fake license keys for Brocade switches in an international scheme. FBI investigation ongoing. #Cybercrime#Fraud#TechCrime
https://t.co/PuRJz5AJUl -๐จ MoneyGram hit by a cyberattack, CMS breach exposes 3.1M records, AutoCanada and Franklin County face ransomware. NVIDIA, Kia issue critical security patches. #CyberAttack#DataBreach#Ransomware
https://t.co/YxvrVzl9uQ - ๐จ AFP detected a cyberattack on its IT systems, affecting part of its client services. The team is working with ANSSI and authorities to resolve the issue. News coverage remains unaffected. #Cybersecurity#News#AFP
https://t.co/bitKQgq0OE - ๐ Critical vulnerability (CVE-2024-0132) in NVIDIA Container Toolkit could let attackers escape containers and access host systems, putting AI environments at risk. Patch immediately! #CyberSecurity#AI
https://t.co/XCWBe89gxo - ๐ฉ Storm-0501 targets hybrid cloud environments, using stolen credentials for lateral movement, data theft, and deploying ransomware like Embargo. They exploit vulnerabilities in on-prem systems to access cloud accounts. Strengthen defenses now. #Cyber
https://t.co/ax6ZFiGNv6 - ๐ Critical flaws in UNIX systems involving CUPS expose users to remote code execution (RCE) risks via port 631. Attackers can exploit printer settings to execute malicious code. Update CUPS or block port 631 to protect your system. #CyberSecurity#RCE
https://t.co/EvGBUGkAFI - ๐จ DCRat uses HTML smuggling to evade detection. Fake apps like TrueConf are luring victims. Stay protected by inspecting web traffic and using RBI. #CyberSecurity#Malware
https://t.co/Szw6kq0yKo - ๐ก๏ธ New RomCom malware variant, SnipBot, uses phishing and stolen certificates to evade detection and steal data. Focus shifting to espionage. #Cybersecurity#Malware#ThreatIntel
https://t.co/5M5AkevONb - ๐ Check Point Research discovered a malicious crypto drainer app on Google Play targeting WalletConnect users, stealing $70K in crypto. The app used advanced evasion techniques to remain undetected for 5 months, affecting over 150 users. #CryptoSecurity
https://t.co/eM93eUA1Z4 -๐ 25 Kurdish websites were compromised by malicious scripts stealing user data and prompting fake app installs. Ongoing since 2022, this low-sophistication campaign remains unattributed. #CyberSecurity#APT
https://t.co/825hSxiBel - ๐ Unit 42 uncovered two new malware tools used by North Korean group Sparkling Pisces: KLogEXE (keylogger) and FPSpy (backdoor). These tools enhance their espionage capabilities, targeting South Korea and Japan. #CyberSecurity#APT#ThreatIntel
https://t.co/eZIMImKNRE - ๐ SloppyLemming cyber actors target South Asian countries using cloud services to steal credentials and deploy malware. They focus on government, energy, and telecom sectors, with Pakistan as a primary target. #CyberSecurity#Espionage#DataBreach
https://t.co/9nBxfUP4Xp - ๐ China's Salt Typhoon group has infiltrated US ISPs, targeting critical infrastructure in a series of stealthy cyberattacks. Experts warn these actions are part of a broader Chinese cyber espionage strategy. #CyberSecurity#DataBreach#ISP
https://t.co/bRl3OMXEVN - ๐ Hackers are targeting transport firms with compromised emails to spread malware like DanaBot using tactics like "ClickFix." #CyberSecurity#Malware#Phishing
https://t.co/f4oAoOJ0rP - ๐ก๏ธ Sniper Dz, a Phishing-as-a-Service platform, has launched over 140k phishing websites, targeting social media & online services. It offers free phishing templates but secretly collects victim credentials, using proxy servers to evade detection. #Phish
https://t.co/sJd4HGeDcR - ๐จ GenAI is being used to write malware, as seen in AsyncRAT campaigns. ChromeLoader surged, hiding malware in legit-looking apps. Attackers also used SVG images to spread info-stealing malware. #CyberSecurity#GenAI#Malware
https://t.co/RevH78XWo4 - ๐ New version of Necro Trojan found in popular apps, including Google Play and unofficial sources. It uses advanced techniques to hide malware, putting 11M+ Android devices at risk. Update or delete infected apps to stay safe. #CyberSecurity#AndroidApp