Tag: cybercrime
-
New Windows Stealer Uses AI Profiling to Identify High-Value Corporate Victims
A new Windows-focused infostealer and remote access trojan (RAT) dubbed Dolphin X is being advertised on cybercrime forums with a clear pitch: automate the theft and triage of high-value corporate targets. Unlike commodity stealers that focus mainly on browser passwords, Dolphin X is positioned as an enterprise-adjacent data vacuum with a built-in AI-powered victim scoring…
-
New Dolphin X Stealer Employs AI Profiling to Prioritize Targets
Dolphin X is a new infostealer that uses AI to sort and rank victims, giving cybercriminals a faster way to identify lucrative targets First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/new-dolphin-x-stealer-ai-targets/
-
Swiss train maker Stadler refuses Everest $12 million ransomware demand
Stadler Rail said it will not make a $12.3 million ransom payment after cybercriminals stole technical data from a supplier’s file-sharing platform. First seen on therecord.media Jump to article: therecord.media/stadler-refuses-everest-ransom-demand
-
Swiss rail manufacturer Stadler refuses to pay $12.3 million ransom after cyberattack
Cybercriminal group Everest is demanding 10 million Swiss francs ($12.3 million) from Swiss rail vehicle manufacturer Stadler after breaching a data exchange platform shared … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/23/stadler-everest-ransom-demand/
-
Japanese food logistics giant recovers as extortion group claims cyberattack
Nichirei Logistics Group said warehouse operations and frozen food shipments are returning to normal. A cybercrime gang said it caused the disruption. First seen on therecord.media Jump to article: therecord.media/nichirei-japan-food-logistics-cyberattack-recovery
-
FBI Warns Scammers Use AI Deepfakes and Fake IC3 Websites to Target Fraud Victims
The Federal Bureau of Investigation (FBI) has issued a new Public Service Announcement (Alert Number I-072026-PSA) regarding an evolving fraud campaign. Cybercriminals are increasingly using AI-generated deepfakes and spoofed Internet Crime Complaint Center (IC3) websites to target and re-victimize individuals who have already fallen prey to scams. Released on July 20, 2026, the alert highlights…
-
Threat Actor Turns Claude Opus Into Automated AI-Powered Penetration Testing Platform
A Russian-speaking threat actor known as “Trim” has reportedly transformed Anthropic’s Claude Opus into the central component of an automated, AI-powered penetration testing platform. This development highlights the rapid repurposing of advanced AI models for offensive security operations. According to research by Cato CTRL, Trim progressed from sharing jailbreak instructions on a Russian cybercrime forum…
-
Police Dismantle Kratos Phishing Kit Built to Steal Microsoft 365 Sessions and Bypass MFA
German and US law enforcement have taken down the core infrastructure of Kratos, described by German investigators as one of the world’s most widely used criminal phishing kits, and Indonesian authorities arrested the man they say developed and ran it.In a joint announcement on Monday, the Frankfurt public prosecutor’s cybercrime unit (ZIT) and Germany’s Federal…
-
Police Dismantle Kratos Phishing-as-a-Service Platform and Take Down Over 200 Servers
Tags: credentials, crime, cyber, cybercrime, germany, infrastructure, Internet, office, phishing, serviceAuthorities from Germany, the United States, and Indonesia have dismantled the central infrastructure of Kratos, a major phishing-as-a-service (PhaaS) platform that enabled cybercriminals worldwide to conduct large-scale credential-harvesting campaigns. The operation, announced by Germany’s Federal Criminal Police Office (BKA) and the Frankfurt am Main Public Prosecutor’s Office’s Central Office for Combating Internet Crime (ZIT), resulted…
-
The Next Crypto Fraud Frontier May Be Space
As Space Investment Grows, Cybercriminals May Target Trust, Hype and Opacity The next frontier of cyber-enabled fraud may involve tokenized space assets, fabricated aerospace claims and orbital projects that were never built. As commercial space investment grows, distinguishing innovation from manufactured credibility can become more difficult. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/blogs/next-crypto-fraud-frontier-may-be-space-p-4156
-
AI Cybercrime Report Warns of Emerging AI-Powered Threats
A ThreatDown report warns that AI is making cyberattacks faster, smarter, and more accessible to threat actors. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/ai-cybercrime-report-warns-of-emerging-ai-powered-threats/
-
271 Millionen angebliche Datensätze von Uber Eats und Starbucks im Darknet
Im Cybercrime-Forum wurden 271 Millionen Datensätze von Uber Eats und Starbucks angeboten. Sie stammen laut Forschern aus älteren Infostealer-Sammlungen. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/datensaetze-starbucks
-
Craneware, Abbott Probe Separate Health Data Theft Incidents
Cyberattacks Are Latest to Target Third-Party Healthcare Vendors. Cybercriminals are keeping up with their data theft assaults and other cyberattacks on a favorite target – major third-party vendors and suppliers to the healthcare sector. The most recent victims include U.K.-based software firm Craneware and U.S.-based lab testing and medical device maker Abbott. First seen on…
-
India says allegedly leaked nuclear plant files pose no safety risk
Documents that the World Leaks cybercrime group claimed to leak from the Kudankulam Nuclear Power Plant do not contain information pertaining to safety or security, Indian officials said. First seen on therecord.media Jump to article: therecord.media/india-nuclear-plant-kudankulam-world-leaks-documents
-
Police Chiefs Cite TfL Hack in Push for Cybercrime Risk Orders
Two chiefs of UK policing agencies said the Transport for London prosecution demonstrates the need for Cybercrime Risk Orders First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/police-chiefs-tfl-cybercrime-risk/
-
GoldenEyeDog Threat Group Behind DigiCert Code-Signing Certificate Attack
GoldenEyeDog, a Chinese cybercrime group increasingly tracked as an advanced threat cluster, has been linked to a sophisticated intrusion into DigiCert that enabled the theft and abuse of legitimate code-signing certificates. The group has been active since at least 2015 and, since 2024, has consistently leveraged stolen or abused code-signing certificates to bypass Windows SmartScreen…
-
GoldenEyeDog Subgroup Linked to DigiCert Breach and Code-Signing Certificate Theft
Cybersecurity researchers have attributed the April 2026 DigiCert security incident to a threat activity cluster dubbed CylindricalCanine.Expel, which shared technical details of the event, described the threat actor as a sub-group of GoldenEyeDog (aka APT-Q-27, Dragon Breath, and Miuuti Group), a Chinese cybercrime group known for its targeting of the gambling and gaming sectors using…
-
Zero-Days, AI Governance Gaps, and Global Cybercrime Define This Week’s Security Landscape in July 2026
Weekly summary of Cybersecurity Insider newsletters in July 2026. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/weekly-roundup/zero-days-ai-governance-gaps-and-global-cybercrime-define-this-weeks-security-landscape-in-july-2026/
-
Zero-Days, AI Governance Gaps, and Global Cybercrime Define This Week’s Security Landscape in July 2026
Weekly summary of Cybersecurity Insider newsletters in July 2026. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/weekly-roundup/zero-days-ai-governance-gaps-and-global-cybercrime-define-this-weeks-security-landscape-in-july-2026/
-
Inside the Search for “Clean” Residential Proxies for Carding
Residential proxies are no longer the silver bullet they once were for carding. Flare explains why cybercriminals increasingly seek “clean” residential proxies and combine them with browser fingerprints, device profiles, and other identity signals to evade modern fraud detection. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/inside-the-search-for-clean-residential-proxies-for-carding/
-
Two Scattered Spider Hackers Jailed in UK’s Largest Cybercrime Prosecution
Two alleged leading members of the Scattered Spider cybercrime collective have been sentenced to five years and six months in prison each for their involvement in the 2024 cyberattack on Transport for London (TfL). The National Crime Agency (NCA) described this case as the largest cybercrime prosecution in the UK. Thalha Jubair, 20, from East…
-
Breach Roundup: Extortionists Annoyed by Waning Ransomware
Also, US Sanction Cybercrime Enablers, Celine Dion Ticket Scam. This week, ransomware victims paying less, cybercrime sanctions, Celine Dion ticket scams, 23andMe to pay $18 million, a 13-year old Daixin infection, Spiral ransomware, Patch Tuesday, CISA ordered rapid SharePoint patching and Spanish police busted a cybercrime ring. Sore Egyptian World Cup losers. First seen on…
-
Two Scattered Spider Members Sentenced to Prison Over £29 Million TfL Cyberattack
Two members of the Scattered Spider cybercrime group received jail sentences in the UK for the 2024 cyberattack on Transport for London. A UK court sentenced two Scattered Spider members, Thalha Jubair (20) and Owen Flowers (18), for their role in the 2024 cyberattack on Transport for London (TfL). Transport for London (TfL) is a local…
-
Russian trio indicted for allegedly running bulletproof hosting providers that spurred cybercrime
Officials accused three Russian nationals, Media Land and ML.Cloud of supporting cyberattacks spanning 21 U.S. states and other countries, resulting in losses surpassing $62 million. First seen on cyberscoop.com Jump to article: cyberscoop.com/russian-nationals-medialand-mlcloud-indicted-bulletproof-hosting/
-
2 Young Hackers Jailed for Disrupting London Underground
Police Say Arrests ‘Effectively Halted’ Scattered Spider Cybercrime Collective. Two leaders of the Scattered Spider hacking group received 66-month jail sentences in Britain’s biggest cybercrime prosecution to date, after they disrupted London’s transport authority, causing $39 million in losses and recovery costs. How to deter young hackers remains an ongoing challenge. First seen on govinfosecurity.com…
-
Scattered Spider members behind TfL hack get five years in prison
Two leading members of the Scattered Spider cybercrime collective were sentenced to five years and six months in prison each for hacking Transport for London (TfL) in 2024. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/scattered-spider-members-behind-transport-for-london-hack-get-five-years-in-prison/
-
Scattered Spider hackers sentenced to 5.5 years over £29 million Transport for London hack
Two leading members of the Scattered Spider cybercrime collective have been sentenced to more than five years in prison for carrying out the 2024 cyberattack against Transport for London (TfL). First seen on therecord.media Jump to article: therecord.media/scattered-spider-hackers-tfl-sentenced
-
Russian cybercriminal used jailbroken Gemini CLI to rebuild botnet infrastructure in six minutes
A Russian-speaking threat actor known as >>bandcampro<< used a jailbroken Gemini CLI, Google's open-source terminal-based AI agent, to deploy and operate a … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/16/jailbroken-google-gemini-cli-botnet/
-
US unseals indictment against alleged operators of Russian bulletproof hosting service
The Russians face multiple charges for allegedly providing cybercriminals with infrastructure and tech support through the St. Petersburg-based business Media Land and a sister company, ML Cloud. First seen on therecord.media Jump to article: therecord.media/us-unseals-indictment-russians-bulletproof-hosting
-
Phishing-as-a-Service: Cybercrime im Abo
First seen on datensicherheit.de Jump to article: www.datensicherheit.de/phishing-as-a-service-cybercrime-abo

