Former cybersecurity negotiator pleads guilty in BlackCat/ALPHV ransomware scheme
Acting as a negotiator for five victim organizations, Angelo Martino shared sensitive details with BlackCat operators, allowing them to extract higher ransom payments.
Acting as a negotiator for five victim organizations, Angelo Martino shared sensitive details with BlackCat operators, allowing them to extract higher ransom payments.
SystemBC is a malware tool used to establish covert communications and maintain persistence inside compromised networks.
The attackers exploited vulnerabilities in the system’s cross-chain verification layer, known as the Decentralized Verifier Network (DVN).
The US-based firm said the entry point was the compromised Context.ai tool used by an employee.
The technique exploits the .NET AppDomainManager mechanism, allowing attackers to run malicious code inside a trusted process.
Authorities allege he led a ransomware operation that breached corporate servers, encrypted sensitive data, and demanded Bitcoin payments.
The attacker posed as an external IT support worker using a fake Microsoft 365 domain designed to appear legitimate.
Tyler Buchanan and his co-conspirators targeted at least a dozen companies and stole at least $8 million from victims across the US.
More recent incidents show a shift toward social engineering and alternative entry points.
Attackers are exploiting a known vulnerability (CVE-2024-3721) affecting TBK DVR-4104 and DVR-4216 devices.
Showing elements 261 - 270