Software

Member of The Com sent to prison for blackmail, sextortion

A member of “The Com,” a loose-knit online cybercrime collective that targets children and teenagers, has been sentenced to two years in prison for blackmail and sextortion offenses against nearly 120 victims worldwide. 20-year-old Justin Swaddle from Leeds (known as ‘Epstein’, ‘Rugen’ and ‘Moscow’ on Snapchat, Telegram, and Discord) was first arrested in October 2023 […]

Member of The Com sent to prison for blackmail, sextortion Read More »

LexisNexis shuts down services after suspicious activity on servers

LexisNexis took its Diligence, Metabase API, and Newsdesk services offline as part of its response to unusual activity on servers hosted and managed by an unnamed third-party vendor. The company said it is investigating the incident with assistance from a cybersecurity forensic firm and is rebuilding affected systems in a new environment before bringing the

LexisNexis shuts down services after suspicious activity on servers Read More »

Valve notifies Steam hardware customers of a data breach

Video game publisher and digital distribution giant Valve is notifying Steam hardware customers in Europe that hackers stole their data after hacking its shipping partner, CEVA Logistics. CEVA Logistics (a fully-owned subsidiary of the CMA CGM Group, the world’s third-largest shipping company) operates 1,000 warehouses, handled 15 million shipments last year, and reported $18.3 billion

Valve notifies Steam hardware customers of a data breach Read More »

Critical Progress LoadMaster flaw now actively exploited in attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned that hackers are exploiting a critical-severity Progress Kemp LoadMaster command injection vulnerability. Kemp LoadMaster is a very popular Application Delivery Controller (ADC) and server load balancer used by tech companies and government entities worldwide (e.g., Amazon, U.S. Air Force) to distribute incoming web traffic across multiple

Critical Progress LoadMaster flaw now actively exploited in attacks Read More »

Google’s top hacker hunter explains why hacking groups get codenames

For more than a decade, the cybersecurity industry has been assigning names to different hacking groups. Some of them, like Fancy Bear, have crossed over into the mainstream because of their prominent hacks and memorable names. Others are only known within the cybersecurity industry. Oftentimes, even industry insiders can’t keep track. In part, that’s because

Google’s top hacker hunter explains why hacking groups get codenames Read More »

This ‘adversarial’ pattern can prevent surveillance cameras from detecting you

Bill Swearingen has spent the past year running largely the same test, over and over again. The goal was to produce a computer-generated pattern that could block the surveillance cameras lining America’s streets from detecting it. Some 31 million tests later, Swearingen says he can now produce patterns on-demand that, when applied to clothing and

This ‘adversarial’ pattern can prevent surveillance cameras from detecting you Read More »

The AI safety test is becoming a safety risk

Over the past few months, AI agents undergoing cybersecurity evaluations have escaped their boundaries, accessed the internet, and, in some cases, hacked into real-world systems. The incidents have involved models from OpenAI, Anthropic, Meta, and most recently, Chinese AI lab Moonshot AI, with testing conducted by several different organizations including a cyber evaluation startup called

The AI safety test is becoming a safety risk Read More »

Hackers breach TrueConf to trojanize client installers with backdoors

The Head Mare hacktivist group has been exploiting vulnerabilities in unpatched TrueConf video conferencing servers to replace client installers with malicious versions that deliver backdoors. The exploited vulnerabilities allowed the attacker to execute arbitrary code with the highest level of privileges and deploy the PhantomCore and PhantomGraph backdoors. TrueConf is a video conferencing tool widely

Hackers breach TrueConf to trojanize client installers with backdoors Read More »

Swiss government SharePoint breach compromised 200 accounts

Switzerland’s federal IT office says hackers exploited vulnerabilities to breach its Microsoft SharePoint servers and compromised approximately 200 accounts. The Federal Office for Information Technology and Telecommunication (BIT) detected the cyberattack after security specialists noticed unusual activity on its SharePoint servers on July 28. After confirming the breach, BIT blocked external internet access to SharePoint,

Swiss government SharePoint breach compromised 200 accounts Read More »

Hedge fund cyberattacks tied to BlackFile-linked UNC6671 extortion group

Update: Added statement from Falcon extortion gang below. A recent wave of cyberattacks targeting hedge funds, private-equity firms, and other financial organizations has been linked to UNC6671, an extortion group reportedly associated with the BlackFile threat actors. The attribution comes after Reuters and Bloomberg reported that Point72 Asset Management, Millennium Management, Two Sigma Investments, Citadel,

Hedge fund cyberattacks tied to BlackFile-linked UNC6671 extortion group Read More »