New STAC5143 and STAC5777 ransomware campaigns using email bombing, Microsoft Teams vishing
The campaigns are designed to overwhelm victims with massive volumes of spam emails.
The campaigns are designed to overwhelm victims with massive volumes of spam emails.
The attacks involve a multi-stage infection chain that delivers the ValleyRAT malware through a loader called PNGPlug.
The stolen data allegedly includes source code, Docker builds, SAP Hybris, and certificates, including both private and public keys.
Operation 99 aims to steal sensitive information, including source code, configuration files, API keys, and crypto wallet credentials.
In these cases, threat actors sent requests to connect via AnyDesk, falsely claiming to represent CERT-UA.
The global operation uncovered 83 crypto wallets and addresses linked to criminal organizations.
The US Department of State has announced a reward of up to $10 million for tips leading to the identification or location of hackers.
In brief: Microsoft fixes 3 zero-days, Russia-linked Star Blizzard cyber espionage campaign targets WhatsApp accounts, and more.
The threat actor took advantage of SPF records with an overly permissive configuration option, which allows any server to send emails on behalf of a domain.
Most of the cyberattacks targeting Ukraine over the past year were intended for espionage, financial theft, or to inflict psychological damage.
Showing elements 961 - 970