Tag: hacker
-
Travelers Beware: Russian Intel Hacking Hotel Wi-Fi
Russian Intelligence Hackers Capture Captive Portals. Hackers are using hotel Wi-Fi networks across the United States, India and Saudi Arabia to steal credentials, exfiltrate data and spread malware onto personal devices, according to Microsoft and ReliaQuest. Microsoft’s threat intelligence arm began tracking the threat in early May. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/travelers-beware-russian-intel-hacking-hotel-wi-fi-a-32405
-
New York Pours $9M Into Water Cyber Defense Amid Attacks
New York Fast-Tracks Utilities Grants as Hackers Disrupt Water Systems Nationwide. New York is awarding more than $9 million in cybersecurity grants to water and wastewater systems statewide, fast-tracking the funding after a wave of cyberattacks disrupted utility operations across at least seven states and federal standards efforts remain stalled. First seen on govinfosecurity.com Jump…
-
Hackers steal 31,000 records identifying people behind Liechtenstein companies, foundations
A cyberattack compromised tens of thousands of records related to companies, foundations and trusts in Liechtenstein, prompting the government to to form a “crisis unit” to address the breach. First seen on therecord.media Jump to article: therecord.media/hackers-steal-records-liechtenstein-companies-foundations
-
N-able warns of N-central auth bypass flaw exploited in attacks
N-able is warning customers that hackers are exploiting an authentication bypass vulnerability (CVE-2026-18577) affecting both hosted and on-premises N-central servers. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/n-able-warns-of-n-central-auth-bypass-flaw-exploited-in-attacks/
-
China-based hacker employs DeepSeek in autonomous threat campaign
Researchers said the hacker also attempted to test Western AI tools, but ultimately was forced to revert to manual operations to succeed.; First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/china-based-hacker-deepseek-autonomous/826784/
-
OT security coalition urges Congress, CISA to enact reforms amid water sector hacks
Iran-nexus hackers are suspected in a broad campaign targeting drinking and wastewater sites in at least seven U.S. states. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/ot-security-coalition-congress-cisa-reforms-water/826791/
-
River Bank obtained assurances from the attackers that the stolen data in the June attack was deleted
River Bank says hackers deleted data stolen in its June ransomware attack, though the investigation into the incident is still ongoing. River Financial Corporation, the parent company of River Bank & Trust, says hackers deleted data stolen during a ransomware attack that hit parts of its server environment in June. The breach began on June…
-
ExfilSquad hackers leak info of over 100,000 UK police officers, staff
A cyberattack on the U.K.’s Police National Legal Database (PNLD) has compromised contact data of more than 100,000 police officers and other criminal justice professionals. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/exfilsquad-hackers-leak-info-of-over-100-000-uk-police-officers-staff/
-
Chinese hacker used DeepSeek to launch autonomous cyberattacks on vulnerable servers
A Chinese threat actor operating under the aliases >>knaithe<>KnYuan<< used multiple LLMs to automate cyberattacks against internet-facing systems … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/03/deepseek-ai-autonomous-cyberattacks-hermes-agent/
-
Russian hackers hijack hotel Wi-Fi networks to spy on travelers, Microsoft says
Russian state-sponsored hackers have been compromising hotel Wi-Fi networks around the world to steal travelers’ login credentials and infect devices with espionage malware, Microsoft said. First seen on therecord.media Jump to article: therecord.media/russian-wifi-hackers-hotels
-
Hackers Exploit N-able N-central Flaw After Initial Fix Falls Short
N-able says attackers bypassed N-central authentication, reached managed client devices and installed Cloudflare tunnels that survived server access revocation. First seen on hackread.com Jump to article: hackread.com/hackers-exploit-n-able-n-central-flaw-initial-fix/
-
Microsoft warnt: Russische Hacker verbreiten Malware über öffentliche WLANs
Die Angreifer haben wohl WLAN-Netze von Hotels, Flughäfen und anderen Einrichtungen infiltriert, um Daten abzugreifen und Malware zu verbreiten. First seen on golem.de Jump to article: www.golem.de/news/microsoft-warnt-russische-hacker-verbreiten-malware-ueber-oeffentliche-wlans-2608-211540.html
-
Liechtenstein: Hacker kopieren 31.000 Datensätze aus Wirtschaftsregister
Die liechtensteinische Regierung muss nicht nur dem Angriff nachgehen, sondern auch Maßnahmen wegen der Verletzung der DSGVO ergreifen. First seen on golem.de Jump to article: www.golem.de/news/liechtenstein-hacker-kopieren-31-000-datensaetze-aus-wirtschaftsregister-2608-211538.html
-
Russian Hackers Exploit Hotel Wi-Fi in New CaptiveCrunch Espionage Campaign
Microsoft Threat Intelligence has uncovered CaptiveCrunch, a cyber espionage campaign linked to Storm-2945, a subgroup of Midnight Blizzard, the Russian state-linked threat actor associated with Russia’s Foreign Intelligence Service (SVR). First seen on thecyberexpress.com Jump to article: thecyberexpress.com/captivecrunch-midnight-blizzard/
-
Coldcard Users Lose $89m After Bitcoin Wallet Is Hacked
A hacker has drained nearly $89m from Coldcard Bitcoin wallets after exploiting a legacy bug First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/coldcard-users-lose-89m-bitcoin/
-
Hackers Exploit Critical Arista VeloCloud Flaw to Execute OS Commands
Arista Networks has issued a warning about attackers actively exploiting CVE-2026-16812, a critical unauthenticated OS command injection vulnerability in on-premises VeloCloud Orchestrator (VCO) deployments. This flaw carries a CVSS v3.1 and v4.0 severity score of 10.0, allowing a remote attacker with network access to the VCO web interface to access privileged internal functions and potentially…
-
Coldcard Firmware Flaw Lets Hackers Steal $70 Million in Bitcoin From 1,196 Addresses
Blockchain analysts have linked a rapid series of Bitcoin wallet drains to a reported vulnerability in Coldcard firmware. A total of 1,196 addresses lost a combined 1,082.65 BTC, valued at approximately $70.2 million, in just 41 minutes on July 30, 2026. Galaxy Research stated that its transaction-flow analysis was based on a pattern initially identified…
-
CareCloud Breach Exposes Medical and Financial Data of 345,000
CareCloud disclosed a breach affecting 345,000 people after hackers stole medical and financial data from its AWS-hosted systems. TechCrunch reports that CareCloud, the New Jersey-based health tech company that stores patient records for more than 45,000 providers across the US, is finally notifying people impacted by a breach the firm first disclosed back in March.…
-
Security Affairs newsletter Round 588 by Pierluigi Paganini INTERNATIONAL EDITION
Tags: adobe, email, flaw, hacker, international, microsoft, russia, vulnerability, WeeklyReview, wifiA new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including international press. Russian Hackers Hijack Hotel Wi-Fi to Steal Microsoft 365 Tokens Adobe fixed a maximum-severity vulnerability flaw in…
-
US-Cyberbehörde: Iranische Hacker stecken wohl hinter Angriffen auf US-Wasserwerke
Nach einer Angriffswelle auf mehr als 30 kommunale Wasserversorger in Minnesota warnt die US-Behörde Cisa vor Zugriffen auf Steuerungstechnik. First seen on golem.de Jump to article: www.golem.de/news/us-cyberbehoerde-iranische-hacker-stecken-wohl-hinter-angiffen-auf-us-wasserwerke-2608-211519.html
-
Chinesischer Hacker steuert DeepSeek über Telegram für autonome Angriffe
Ein chinesischsprachiger Angreifer ließ das KI-Modell DeepSeek über das Framework Hermes Agent weitgehend selbstständig Angriffe ausführen. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/hacker-deepseek-autonome-angriffe
-
When AI Hackers Meet Machine Identity: The Ignored Attack Surface
The Salesloft Drift breach hit 700+ companies with stolen OAuth tokens and never touched a password. Machine identities now outnumber humans 80 to 1, and AI-powered attackers are harvesting them at machine speed. Here is why human-shaped IAM cannot protect AI agents, and what to fix in 90 days. First seen on securityboulevard.com Jump to…
-
Saturday Security: FBI EPA Warn Attackers Targeting US Water Systems
This week’s Saturday Security Story is a sobering reminder that America’s water infrastructure remains a prime cyber target. The FBI and EPA are jointly warning that cyber attacks have now been reported at municipal water systems across at least seven states. Iran-linked hackers are the leading suspects in attacks affecting more than 30 Minnesota utilities……
-
Russian Hackers Hijack Hotel Wi-Fi to Steal Microsoft 365 Tokens
Microsoft says Russian hackers hijacked hotel Wi-Fi portals to spread malware and steal Microsoft 365 tokens from travelers. Microsoft Threat Intelligence disclosed CaptiveCrunch, a campaign it attributes to Storm-2945, an operational sub-cluster of Midnight Blizzard, the Russian SVR-linked group also known as APT29 and Cozy Bear. Since early May 2026, Storm-2945 has been manipulating DNS…
-
Defcon’s new badge is a security key you can see inside
A removable chip lets hackers inspect their badge”, and keep using it after Defcon. First seen on arstechnica.com Jump to article: arstechnica.com/security/2026/08/defcons-new-badge-is-a-security-key-you-can-see-inside/
-
Hackers Poison Adform Script to Swap Crypto Wallet Addresses Across Customer Sites
Attackers modified a JavaScript file served by advertising technology company Adform, turning it into a browser-side tool that rewrites cryptocurrency wallet addresses.Adform detected the incident on July 27, 2026, removed the malicious code, notified affected clients, and reported it to authorities.Anyone who visited a site carrying the affected script on July 27 and copied a…
-
Public Water Systems Are Targeted by State Actors: How to Protect PLCs and HMIs in the Operational Technology Network
We hate to say I told you so, but in our recent blog post OT Cyber Resilience and Microsegmentation for AI Attacks, we discussed how hackers are increasingly targeting operational technology networks. And they’re doing so with good reason, tactically speaking; hacking OT doesn’t just compromise customer data or encrypt business systems for a ransom……
-
HackerOne Mandates ID Verification Before Bug Bounty Report Submissions
HackerOne has rolled out a significant policy change requiring all hackers to complete identity verification before submitting reports to Bug Bounty Programs (BBPs). The update, effective immediately, aims to strengthen platform integrity and meet regulatory compliance requirements for reward payments. Under the new policy, hackers must verify their identity before becoming eligible for any bounty…
-
Chinese Hacker Uses DeepSeek AI to Orchestrate Vulnerability Exploits
A Chinese-speaking threat actor has been using DeepSeek’s AI models to orchestrate cyber-attacks targeting Asian organizations First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/chinese-hacker-deepseek-ai/
-
North Korea’s APT Capabilities Are No Longer State-Exclusive
Tags: access, apt, cyber, finance, group, hacker, infrastructure, korea, lazarus, malware, military, north-korea, ransomware, skillsAhnLab Found Shared Malware, SSH Keys and Infrastructure Across Two Campaigns. Shared malware, infrastructure and access methods link Lazarus Group to Gunra ransomware activity, while former North Korean military hackers allegedly used state-trained skills to steal bank funds, exposing cyber capability diffusion and blowback inside the regime. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/north-koreas-apt-capabilities-are-no-longer-state-exclusive-a-32392

