EleKtra-Leak operation abuses exposed AWS IAM credentials for cryptojacking
The campaign uses automated tools to clone public GitHub code repositories, scanning for exposed AWS IAM credentials.
The campaign uses automated tools to clone public GitHub code repositories, scanning for exposed AWS IAM credentials.
The victims are lured to download malicious MSIX packages through compromised websites, SEO techniques, or malvertising.
LockBit said their ransomware affiliate gained access to the company’s systems by exploiting a zero-day vulnerability.
The world in brief: Admins urged to fix Citrix NetScaler flaw, CCleaner confirms it was hit with MOVEit attack, and more.
The group has been observed employing various tactics to conceal the origin of its operations.
Due to the severity of the flaw, the vendor also released a patch for end-of-life products.
The group has been exploiting CVE-2023-5631 since October 11, 2023.
The group made more than €3 million through various online scams such as smishing, phishing and vishing.
The attacks have been ongoing since May 2023.
The attackers exfiltrated 690 GB of data and then deployed the Akira ransomware.
Showing elements 1801 - 1810