BitMEX crypto exchange targeted in Lazarus phishing attack
One of BitMEX's employees was targeted on LinkedIn by a fake recruiter promoting a job at an NFT project.
One of BitMEX's employees was targeted on LinkedIn by a fake recruiter promoting a job at an NFT project.
The attackers focused on internet café systems running specialized management software used to track customer usage and automate billing.
AVCheck enabled malware developers to stealthily test their malware against commercial antivirus solutions.
In brief: 9,000 ASUS routers hacked in a botnet campaign, a new Russian state-backed APT discovered, and more.
The attack chain begins with spear-phishing emails containing a ZIP archive hosted on the compromised site.
The attackers reportedly use a mix of brute-force login attempts, authentication bypasses, and old bugs to gain persistent access.
After breaching the MSP, the attackers utilized SimpleHelp to gather intelligence across client environments.
Among the recovered data were personal records tied to millions of citizens, including school records, civil registries, phone logs, and utility billing information.
The attacks, which began in early 2019, resulted in tens of millions of dollars in damages.
The campaign uses fake “AI video generator” websites mimicking legitimate platforms like Luma AI, Canva Dream Lab, and Kling AI.
Showing elements 791 - 800