Possible APT28-linked Hackers Target Ukraine’s Scientific Institutions

APT28-linked hackers have targeted Ukraine’s scientific institutions in a cyber-espionage campaign, believed to have ties to the Kremlin-backed group APT28, also known as Fancy Bear and BlueDelta.

Cyware News – Latest Cyber News – ​Read More

CrowdStrike Explains Friday Incident Crashing Millions of Windows Devices

Cybersecurity firm CrowdStrike on Wednesday blamed an issue in its validation system for causing millions of Windows devices to crash as part of a widespread outage late last week.
“On Friday, July 19, 2024 at 04:09 UTC, as part of regular operations, CrowdStrike released a content configuration update for the Windows sensor to gather telemetry on possible novel threat techniques,” the company

The Hacker News – ​Read More

CrowdStrike Explains Why Bad Update Was Not Properly Tested

CrowdStrike has shared a preliminary incident review, explaining why the update that caused global chaos was not caught by testing. 

The post CrowdStrike Explains Why Bad Update Was Not Properly Tested appeared first on SecurityWeek.

SecurityWeek – ​Read More

The Power and Peril of RMM Tools

RMM tools have become essential in managing remote devices, but they also pose risks if exploited by threat actors. Attackers can gain remote access to devices, exfiltrate data, and remain undetected.

Cyware News – Latest Cyber News – ​Read More

Infostealer Campaign Exploits Microsoft Windows SmartScreen Flaw to Spread Payloads

A security flaw in Microsoft Defender SmartScreen was exploited to deliver ACR, Lumma, and Meduza stealers in a recent campaign. The campaign targeted Spain, Thailand, and the U.S. by using booby-trapped files exploiting CVE-2024-21412.

Cyware News – Latest Cyber News – ​Read More

Verizon to Pay $16 Million in TracFone Data Breach Settlement

Verizon Communications has agreed to pay a $16 million settlement to the FCC for three data breaches at TracFone Wireless, a subsidiary acquired in 2021. TracFone provides services under brands like Total by Verizon Wireless and Straight Talk.

Cyware News – Latest Cyber News – ​Read More

Chinese ‘Cybercrime Syndicate’ Behind Gambling Sites Advertised at European Sporting Events

Infoblox revealed a Chinese cybercrime syndicate called Vigorish Viper behind illegal online gambling brands advertised at European football stadiums. The group is linked to online gambling and cyber fraud-related human trafficking in Southeast Asia.

Cyware News – Latest Cyber News – ​Read More

Google Abandons Plan to Drop Third-Party Cookies in Chrome

Google has decided to continue supporting third-party cookies, instead proposing a new approach that allows users to opt-in to their Privacy Sandbox. This comes after criticism and regulatory pressure over privacy concerns and competition issues.

Cyware News – Latest Cyber News – ​Read More

BreachForums v1 database leak is an OPSEC test for hackers

The leak comes from a backup allegedly sold by Conor Fitzpatrick, also known as Pompompurin. Following the seizure of RaidForums in 2022, Fitzpatrick launched BreachForums v1, which was later seized by the FBI and linked to his arrest.

Cyware News – Latest Cyber News – ​Read More

Spanish Police Arrest Three Suspects Linked to Pro-Moscow NoName057(16) Hackers

Spanish police authorities have arrested three suspects connected to the pro-Russian hacker group NoName057(16), known for conducting DDoS attacks against Ukraine and its allies.

Cyware News – Latest Cyber News – ​Read More