Web hosting provider Managed.com shuts down servers following a cyber attack
The company described the incident as a "coordinated ransomware campaign."
The company described the incident as a "coordinated ransomware campaign."
The potentially compromised information includes names, home and email addresses, birthdates, shareholder numbers, phone numbers and photos.
The threat actor used stolen digital certificates from two security firms, which allow them to corrupt a browser plug-in designed to protect users from being compromised.
Login credentials for Facebook accounts were harvested via a network of websites owned by the cyber criminal group.
The use of WebSockets is notable because typically skimmer attacks exfiltrate data using XHR requests or HTML tags.
The culprits behind the attacks are believed to be the Strontium APT, the Lazarus Group, and the Cerium group.
The investigation into the incident revealed that the platform was hit with a “flash loan” attack.
A weekly vulnerability digest.
The CostaRicto campaign deploys a previously undocumented malware to target businesses around the world.
The ModPipe backdoor targets restaurant point-of-sale (POS) solutions from Oracle used by bars, restaurants, and hotels worldwide.
Showing elements 3581 - 3590