Tag: cybercrime
-
Hackers Steal Microsoft 365 Sessions to Hijack Accounts Even After MFA
Cybercriminals are using a rebranded Evilginx2 phishing-as-a-service platform dubbed BigBear 2.0 to intercept authenticated Microsoft 365 sessions, allowing them to take over accounts even after victims complete multi-factor authentication (MFA). CloudSEK’s TRIAD team uncovered the operation after gaining administrative access to its control panel in June 2026 The campaign demonstrates a critical reality for Microsoft…
-
Condé Nast Data of 32.8 Million Users Offered for Sale After WIRED Leak
Condé Nast user data from 32.8 million accounts is reportedly for sale, raising risks of targeted phishing, fraud and scams. A database said to contain 32.8 million Condé Nast user records is being offered for $15,000 on a Russian-language cybercrime forum. Ransomnews reviewed a 5,000-record sample and concluded that it is consistent with genuine Condé…
-
Berlin investigates new data leak after hackers publish stolen login credentials
Another trove of data from Berlin’s government has appeared online, authorities said. Germany’s information security agency separately warned about the Rhysida cybercrime group. First seen on therecord.media Jump to article: therecord.media/germany-berlin-second-data-breach-city-agencies
-
Over 5,400 hacked sites serve ClickFix payloads stored on the blockchain
A massive cybercriminal operation is leveraging thousands of compromised small-business websites to deliver ClickFix payloads stored in smart contracts on the BNB Smart Chain (BSC). First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/over-5-400-hacked-sites-serve-clickfix-payloads-stored-on-the-blockchain/
-
Europe Tiptoes to Legalizing Bulk Collection of ISP Metadata
CJEU Advocate-General Maciej Szpunar Says Oversight Could Mitigate Rights Harms. The most senior adviser at Europe’s highest court recommended striking down a Belgian data retention law largely intended to fight cybercrime, because it violates privacy rights. Advocate-general Maciej Szpunar also said it may be time for the EU to move past its old conception of…
-
Analysts: Trump Cyber Program Could Cost Firms Legal Shields
New White House Program May Strip Providers of Legal Threat Sharing Protections. A White House program deputizing vetted companies to hack foreign cybercriminals could cost those firms the legal authorities they rely on to defend their own networks, analysts said during an Institute for Security and Technology session, weeks before agencies must finalize operating procedures.…
-
The story behind the intelligence
From engaging with cybercriminals to surviving a live Flamin’ Hot Cheetos taste test, Hazel reflects on the latest Beers with Talos with Azim, where they cover the full spectrum of what it takes to gather threat intel. First seen on blog.talosintelligence.com Jump to article: blog.talosintelligence.com/the-story-behind-the-intelligence/
-
Earth Berberoka-Linked Hackers Target Brazil With Linux Malware and SEO Poisoning
A Chinese-speaking cybercrime cluster linked to the Earth Berberoka threat actor has compromised Brazilian government and educational web servers to conduct large-scale SEO poisoning and online-gambling fraud. The operation has been active since mid-2025 and represents a notable shift in Brazil’s threat landscape. Rather than deploying the country’s more familiar banking malware, the attackers are…
-
DOJ Investigates Cyberattack Targeting Hundreds of Thousands of X Users
A cyberattack on X users that targeted hundreds of thousands of accounts has prompted an investigation by the US Department of Justice (DOJ), with Attorney General Todd Blanche saying sophisticated cybercriminals attempted to exploit the platform’s password-recovery system. First seen on thecyberexpress.com Jump to article: thecyberexpress.com/cyberattack-on-x-users-doj-investigation/
-
AI Gives Cybercriminals a Dangerous Time Advantage
Former cybercriminal Brett Johnson provides a look inside the mind of a threat actor and discusses where AI provides the most value for attackers. First seen on darkreading.com Jump to article: www.darkreading.com/threat-intelligence/ai-gives-cybercriminals-dangerous-time-advantage
-
Malicious Apache Modules Hijack Brazilian Government Site Traffic to Push Betting Pages
A Chinese-speaking cybercrime cluster known as Gambling Goblin has been observed installing malicious Apache modules on compromised web servers run by Brazilian government and educational institutions, and using them to divert visitors to attacker-controlled pages promoting online gambling and sports betting.Check Point Research said it has tracked the campaign since mid-2025.The modules First seen on…
-
427 or 4 Devices?: Measuring Internet-Exposed Industrial Infrastructure in the UK
By Adrian Cheek, Senior Cybercrime Researcher On August 22, 2026, The Telegraph reported that a small UK power generator had been shut down for four days in July following a cyberattack by hackers linked to Iran. The government confirmed that… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/427-or-4-devices-measuring-internet-exposed-industrial-infrastructure-in-the-uk/
-
Gaming the system: how a Chinese-speaking actor turned Brazilian government sites into an SEO weapon
ey Points Introduction Since mid-2025, Check Point Research has tracked a sustained campaign against Brazilian organizations. The tradecraft points to a Chinese-speaking cybercrime group connected to Earth Berberoka, an actor firstdocumentedtargeting gambling sites across Asia. Once inside a victim, the group deploys a broad Linux toolkit: a custom downloader, several backdoors, and familiar offensive utilities.…
-
Healthcare facilities operator Nutex says patient, employee data stolen in August incident
Cybercriminals breached company data and made an extortion attempt with it, Houston-based Nutex Health said in a filing with federal regulators. First seen on therecord.media Jump to article: therecord.media/nutex-health-data-breach
-
Finding the Fleet: What SNMP Finds in the Satellite Ground Segment that HTTP Misses
By Adrian Cheek, Senior Cybercrime Researcher Ask an internet-wide scanning index how many satellite mission-control systems are exposed and you can get the answer 1,776. All but 18 of those results turn out to be the same static web page,… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/finding-the-fleet-what-snmp-finds-in-the-satellite-ground-segment-that-http-misses/
-
Berlin confirms data theft after Rhysida ransomware attack claims
Berlin’s city administration has confirmed that cybercriminals are attempting to extort the city after the Rhysida ransomware gang listed it on their data leak site. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/berlin-confirms-data-theft-after-rhysida-ransomware-attack-claims/
-
Aurora Ransomware Operators Use Cursor AI in Attacks Against 10 Targets
Tags: ai, attack, cybercrime, data-breach, group, infrastructure, intelligence, network, ransomware, russia, threatThreat actors associated with Aurora (aka Aur0ra) ransomware have been observed using SpaceX’s artificial intelligence (AI)-powered coding assistant Cursor to break into target networks, according to findings from CloudSEK and Gambit Security.The two independent analyses are based on exposed infrastructure associated with the Russian-speaking cybercrime group, leading to the discovery of its First seen on…
-
Hackers Use Infostealer Malware to Steal Claude Session Cookies and Hijack Accounts
Anthropic’s Claude AI platform is currently dealing with two separate cybercrime campaigns that aim to steal account credentials, misuse paid subscriptions, and reinstall malware even after a victim believes their device has been cleaned. In response to this threat, Anthropic has started invalidating compromised sessions, removing saved payment methods, and refunding verified fraudulent charges. While…
-
Sadistic online exploitation: five warning signs for parents and how to keep young people safe
Offenders use threats and manipulation to coerce victims to produce imagery or livestream sexually explicit acts, self-harm or animal cruelty. How can you protect your child?<ul><li><a href=”https://www.theguardian.com/society/ng-interactive/2026/aug/31/online-extortion-grooming-764-social-media-apps-ntwnfb”>The sadistic online groomers targeting victims around the world and a mother’s struggle to keep her daughter safe</li><li><a href=”https://www.theguardian.com/technology/ng-interactive/2026/jul/21/764-network-gamification-of-harm-the-com-cybercrime-ntwnfb”>Inside the horrifying online network where children coerce others to commit…
-
The Cyber Express Weekly Roundup: Exploited Entra ID Flaw, AI Agent Risks, and Global Cybercrime Crackdown
Tags: ai, cloud, cyber, cybercrime, cybersecurity, exploit, flaw, identity, infrastructure, international, law, risk, technologyThis weekly roundup highlights a broad range of cybersecurity and technology developments affecting cloud identity infrastructure, social media platforms, businesses, digital assets, and international law enforcement. First seen on thecyberexpress.com Jump to article: thecyberexpress.com/weekly-roundup-microsoft-entra-id-ai-risks/
-
Two Australian Men Charged in TeamPCP Supply Chain Attacks
Alleged Global Supply Chain Campaign Compromised More Than 1,000 Organizations. Australian authorities charged two men accused of leading TeamPCP, a cybercrime group linked to supply chain attacks that potentially compromised more than 1,000 organizations, exposed 500,000 credentials and drove global cleanup costs into the hundreds of millions. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/two-australian-men-charged-in-teampcp-supply-chain-attacks-a-32675
-
Australian Police Charge Two Over TeamPCP Credential Theft
Australian police charged two men linked to TeamPCP over malware hidden in open-source code that stole 500,000+ credentials from 1,000+ organizations. Australian police have charged two men from Western Australia over a global cybercrime operation that allegedly hid malicious code in open-source software and used it to steal data from thousands of organisations. >>Two West…
-
Two alleged TeamPCP hackers arrested over global supply chain attacks
Two men from Western Australia have been charged after police allege they were part of TeamPCP, a cybercrime group that planted malicious code in open-source software, then … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/27/alleged-teampcp-hackers-arrested-australia/
-
Two Alleged ‘TeamPCP’ Hackers Arrested in Australia
Tags: attack, cybercrime, data, extortion, group, hacker, identity, malicious, open-source, software, supply-chainAuthorities in Australia have arrested two men believed to be members of TeamPCP, a prolific cybercrime and data extortion group blamed for perpetrating the longest running spree of software supply chain attacks ever. In a statement released today, the Australian Federal Police (AFP) said two unnamed suspects from Western Australia, aged 21 and 23, were…
-
Australia charges two men for TeamPCP supply-chain hacking spree
Two men in Australia were charged Wednesday over their alleged membership in TeamPCP, the cybercrime group blamed for one of the most damaging hacking campaigns of the past year. First seen on therecord.media Jump to article: therecord.media/australia-teampcp-hackers-arrested
-
Alleged TeamPCP Hackers Charged in Australia Over Major Supply Chain Attacks
The Australian Federal Police (AFP) has charged two Western Australian men with a combined total of 14 offences over their alleged role in TeamPCP, the cybercrime group behind the March 2026 compromise of the open-source security scanners Trivy and Checkmarx KICS and the AI gateway LiteLLM.Louis Michael Gaebler, 23, and Ruben Ian Thomson, 21, appeared…
-
Interpol Operation Jackal IV Identifies 263 Cybercrime Suspects
Interpol operation leads to 58 arrests and identifies 263 suspects across 22 countries First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/interpol-operation-jackal-iv/
-
58 Personen verhaftet: Großer Schlag gegen Onlinebetrug und Geldwäsche
Tags: cybercrimeStrafverfolgern ist erneut ein großer Schlag gegen Cybercrime gelungen. In mehreren Ländern wurden mutmaßliche Betrüger verhaftet. First seen on golem.de Jump to article: www.golem.de/news/58-personen-verhaftet-grosser-schlag-gegen-onlinebetrug-und-geldwaesche-2608-212299.html
-
58 Personen verhaftet: Großer Schlag gegen Onlinebetrug und Geldwäsche
Tags: cybercrimeStrafverfolgern ist erneut ein großer Schlag gegen Cybercrime gelungen. In mehreren Ländern wurden mutmaßliche Betrüger verhaftet. First seen on golem.de Jump to article: www.golem.de/news/58-personen-verhaftet-grosser-schlag-gegen-onlinebetrug-und-geldwaesche-2608-212299.html
-
58 Personen verhaftet: Großer Schlag gegen Onlinebetrug und Geldwäsche
Tags: cybercrimeStrafverfolgern ist erneut ein großer Schlag gegen Cybercrime gelungen. In mehreren Ländern wurden mutmaßliche Betrüger verhaftet. First seen on golem.de Jump to article: www.golem.de/news/58-personen-verhaftet-grosser-schlag-gegen-onlinebetrug-und-geldwaesche-2608-212299.html

