Tag: scam
-
DOJ indicts 5 individuals in North Korea IT worker scam
An unsealed indictment revealed threat actors working for North Korea tricked at least 64 U.S. businesses into hiring fake IT workers for financial and propriety data gains. First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366618500/DOJ-indicts-5-individuals-in-North-Korea-IT-worker-scam
-
DOJ indicts two Americans for running laptop farm used in North Korea IT worker scam
The Justice Department indicted five people for their role in a scheme that allowed North Koreans to gain employment with at least 64 U.S. companies and earn hundreds of thousands of dollars for Pyongyang’s government. ]]> First seen on therecord.media Jump to article: therecord.media/doj-indicts-americans-for-running-laptop-farm-north-korea-scheme
-
Breach Roundup: Researchers Find Flaws in Palo Alto Firewalls
Also: US Prosecutors Charge Suspected North Korean IT Worker Collaborators. This week, researchers spied Palo Alto firewall flaws, a North Korean IT worker conspiracy, ChatGPT as DDoS vector. Chinese hackers targeted a VPN maker, a fake PyPi package and a Russian threat actor shifted tactics. BreachForums admin faces prison and scammers used the release of…
-
Meet GhostGPT: The Malicious AI Chatbot Fueling Cybercrime and Scams
Abnormal Security uncovers GhostGPT, an uncensored AI chatbot built for cybercrime. Learn how it boosts cybercriminals’ abilities, makes… First seen on hackread.com Jump to article: hackread.com/ghostgpt-malicious-ai-chatbot-fuel-cybercrime-scams/
-
Bookmakers Ramp Up Efforts to Combat Arbitrage Betting Fraud
Arbitrage betting fraud rises, forcing bookmakers to adopt stricter measures against automated scams First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/bookmakers-efforts-combat/
-
GhostGPT: Uncensored Chatbot Used by Cyber Criminals for Malware Creation, Scams
Researchers from Abnormal Security discovered an advert for the chatbot on a cybercrime forum and tested its capabilities by asking it to create a DocuSign phishing email. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/what-is-ghostgpt/
-
What Makes Bulletproof Hosting Providers a Growing Danger in Australia
The Australian Cyber Security Centre has issued a warning about Bulletproof Hosting Providers (BPH), which play a central role in enabling cybercrime. These providers offer infrastructure that helps cybercriminals carry out attacks such as ransomware campaigns, data theft, and phishing scams, all while remaining largely undetectable. First seen on thecyberexpress.com Jump to article: thecyberexpress.com/acsc-targets-bulletproof-hosting-providers/
-
Zendesk’s Subdomain Registration Exposed to Phishing, Pig Butchering Scams
CloudSEK uncovers a Zendesk vulnerability allowing cybercriminals to exploit subdomains for phishing and investment scams. Learn about the… First seen on hackread.com Jump to article: hackread.com/zendesk-subdomain-registration-abused-phishing-scams/
-
Fraud Watch: E-Skimmers and Scam E-Commerce Sites Still Bite
Criminals Listed 269 Million Stolen Payment Card For Sale in 2024, Researchers Find. It’s an old story: Criminals rake in profits by using digital e-skimming software, running scam e-commerce sites and selling stolen payment card data. Unfortunately, it’s made continually new thanks to adaptability of cybercriminals, who keep their tool set relevant and ever more…
-
Phishing Risks Rise as Zendesk Subdomains Facilitate Attacks
A CloudSEK report revealed Zendesk’s platform can be exploited for phishing and investment scams First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/zendesk-subdomains-facilitate/
-
CERT-UA warned of scammers impersonating the agency using fake AnyDesk requests
CERT-UA warned of scammers impersonating the agency, using fake AnyDesk requests to conduct fraudulent security audits. The Computer Emergency Response Team of Ukraine (CERT-UA) warned of cyber scams involving threat actors impersonating the agency by sending fraudulent AnyDesk connection requests under the guise of security audits. CERT-UA pointed out that it uses the software AnyDesk…
-
Scammers Exploit Truth Social to Launch Phishing and Fraud Campaigns
Truth Social, the social media platform launched by Trump Media & Technology Group in 2022, has become a First seen on securityonline.info Jump to article: securityonline.info/scammers-exploit-truth-social-to-launch-phishing-and-fraud-campaigns/
-
Real Estate Scams on the Rise in the Middle East
As the real estate market increasingly transitions to digital platforms, the Middle East has become a hotbed for First seen on securityonline.info Jump to article: securityonline.info/real-estate-scams-on-the-rise-in-the-middle-east/
-
Google Ads Users Targeted in Malvertising Scam Stealing Credentials and 2FA Codes
Cybersecurity researchers have alerted to a new malvertising campaign that’s targeting individuals and businesses advertising via Google Ads by attempting to phish for their credentials via fraudulent ads on Google.”The scheme consists of stealing as many advertiser accounts as possible by impersonating Google Ads and redirecting victims to fake login pages,” Jérôme Segura, senior director…
-
North Korean IT Worker Fraud Linked to 2016 Crowdfunding Scam and Fake Domains
Cybersecurity researchers have identified infrastructure links between the North Korean threat actors behind the fraudulent IT worker schemes and a 2016 crowdfunding scam.The new evidence suggests that Pyongyang-based threamoret groups may have pulled off illicit money-making scams that predate the use of IT workers, SecureWorks Counter Threat Unit (CTU) said in a report shared with…
-
Secureworks Exposes North Korean Links to Fraudulent Crowdfunding
Secureworks Counter Threat Unit (CTU) has identified links between North Korean IT workers and fraudulent crowdfunding activities, with the group known as Nickle Tapestry orchestrating scams to support North Korean interests First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/north-korean-links-fraudulent/
-
Pastor indicted for Christian-themed cryptocurrency pyramid scam
First seen on scworld.com Jump to article: www.scworld.com/news/pastor-indicted-for-christian-themed-cryptocurrency-pyramid-scam
-
The ‘Largest Illicit Online Marketplace’ Ever Is Growing at an Alarming Rate, Report Says
Huione Guarantee, a gray market researchers believe is central to the online scam ecosystem, now includes a messaging app, stablecoin, and crypto exchange”, while facilitating $24 billion in transactions. First seen on wired.com Jump to article: www.wired.com/story/the-largest-illicit-online-marketplace-ever-is-growing-at-an-alarming-rate/
-
Hotel chain ditches Google search for DuckDuckGo, ‘subjected to fraud attempts daily’
Tags: apple, attack, authentication, browser, chrome, cloud, control, cybercrime, cybersecurity, data-breach, fraud, google, jobs, malware, mfa, monitoring, phishing, privacy, ransomware, risk, scam, service, tool, windowsAt the end of 2021, Nordic Choice Hotels, now renamed Strawberry, was hit by a major ransomware attack that paralyzed operations for just over a week. Everything had to be done manually, says Martin Belak, who is responsible for the hotel chain’s technical security.”The receptionists worked with whiteboards to keep track of which rooms were…
-
Pastor’s >>dream<< crypto scheme alleged to be a multi-million dollar scam
Imagine trusting your pastor with your savings, only to find out he’s running a crypto scam. First seen on bitdefender.com Jump to article: www.bitdefender.com/en-us/blog/hotforsecurity/pastors-dream-crypto-scheme-alleged-to-be-a-multi-million-dollar-scam
-
FRAML Reality Check: Is Full Integration Really Practical?
Experts Weigh the Pros and Cons of Work Culture and Merging AML and Fraud Teams. A recent report found that more than 57,000 Americans fall victim to scams every day. Financial fraud is rising globally. In response, the National Automated Clearinghouse Association is pushing for real-time fraud monitoring by 2026, requiring closer collaboration between fraud…
-
Chainalysis Expands Fraud Detection With Alterya Acquisition
Alterya’s AI-Powered Data Will Combat Scams Across Traditional Financial Ecosystems. Alterya’s AI agents now power Chainalysis’ fraud prevention, integrating off-chain data sources like Venmo and Zelle with blockchain analytics. This acquisition marks a significant step in detecting and stopping scams earlier in the fraud cycle, said CEO Jonathan Levin. First seen on govinfosecurity.com Jump to…
-
Kirchgänger betrogen: Pastor träumt von Krypto-Scam und setzt ihn um
Ein Pastor hat seine Position ausgenutzt, um Kirchgänger dazu zu verleiten, in sein Krypto-Projekt zu investieren. Tatsächlich hat er sich das Geld selbst ausgezahlt. First seen on golem.de Jump to article: www.golem.de/news/kirchgaenger-betrogen-pastor-traeumt-von-krypto-scam-und-setzt-ihn-um-2501-192355.html
-
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 28
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape. Finding Malware: Unveiling PLAYFULGHOST with Google Security Operations Scam Sniffer 2024: Web3 Phishing Attacks Wallet Drainers Drain $494 Million EAGERBEE, with updated and novel components, targets the Middle East Gayfemboy: A Botnet Deliver Through a […]…

