Russia’s ‘Midnight Blizzard’ hackers target government workers in novel info-stealing campaign

Microsoft’s Threat Intelligence team said it has seen a Russian actor it tracks as Midnight Blizzard sending “highly targeted spear-phishing emails to individuals in government, academia, defense, non-governmental organizations, and other sectors” since October 22.

The Record from Recorded Future News – ​Read More

2024 Startup Battlefield Top 20 Finalists: ForceField

MARQ protects company, community & country data with tamper-proof badges. Patent-pending APIs defend against deepfake scams, fraud & breaches. Subscribe for more on YouTube: https://tcrn.ch/youtube Follow TechCrunch on Instagram: http://tcrn.ch/instagram TikTok: https://tcrn.ch/tiktok X: tcrn.ch/x Threads: https://tcrn.ch/threads Facebook: https://tcrn.ch/facebook Bluesky: https://tcrn.ch/bluesky Mastodon: https://tcrn.ch/mstdn Read more: https://techcrunch.com/

© 2024 TechCrunch. All rights reserved. For personal use only.

Security News | TechCrunch – ​Read More

Recurring Windows Flaw Could Expose User Credentials

Now a zero-day, the vulnerability enables NTLM hash theft, an issue that Microsoft has already fixed twice before.

darkreading – ​Read More

China’s ‘Evasive Panda’ APT Debuts High-End Cloud Hijacking

A professional-grade tool set, appropriately dubbed “CloudScout,” is infiltrating cloud apps like Microsoft Outlook and Google Drive, targeting sensitive info for exfiltration.

darkreading – ​Read More

How a series of opsec failures led US authorities to the alleged developer of the Redline password-stealing malware

Prosecutors allege that Redline infected millions of computers around the world since 2020, including several hundred machines at the U.S. Dept. of Defense.

© 2024 TechCrunch. All rights reserved. For personal use only.

Security News | TechCrunch – ​Read More

Six senators tell Biden administration UN cybercrime treaty must be changed

The United States “must not align itself with repressive regimes by supporting a Convention that undermines human rights and U.S. interests” under the guise of improving cybersecurity, six Democrats said in a letter to top federal officials.

The Record from Recorded Future News – ​Read More

French ISP Confirms Cyberattack, Data Breach Affecting 19M

In the latest attack against ISPs, second-largest French provider Free fell victim to unknown cyberattackers who attempted to sell the compromised data it stole from the company on an underground cybercrime forum.

darkreading – ​Read More

Operation Magnus: Police Dismantles RedLine and META Infostealer Infrastructure

An international law enforcement operation, led by the United States, Europol, and the Netherlands, has successfully dismantled the…

Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – ​Read More

Russia and China-linked state hackers intensify attacks on Netherlands, security officials warn

Most of these attacks primarily aim to gain a foothold within critical infrastructure for potential future sabotage, as well as to obtain sensitive information, the Dutch principal counterterrorism unit (NCTV) said in research published Monday.

The Record from Recorded Future News – ​Read More

Proofpoint to Acquire Data Security Posture Management Firm Normalyze

Enterprise cybersecurity giant Proofpoint is acquiring data security posture management (DSPM) company Normalyze. 

The post Proofpoint to Acquire Data Security Posture Management Firm Normalyze appeared first on SecurityWeek.

SecurityWeek – ​Read More