Iran’s ‘Cyber Centers’ Dodge Sanctions to Sell Cyber Operations

January 29, 2024 at 12:47PM Middle Eastern cybersecurity firms, connected to Iranian government and specialists, are implicated in cyber attacks on Western democracy, critical infrastructure, and financial institutions. The leaked data points to a network of contractors linked to Iran’s military and intelligence, with expectations of continued operations despite sanctions. Similar arrangements are seen in … Read more

Prevent BEC with AI-Powered Email and Collaboration

January 26, 2024 at 07:58PM The Trend Vision One™ platform integrates AI-powered email and collaboration security to address the growing need for streamlined IT and security operations. It provides comprehensive threat protection, detection, and response across email, users, endpoint, cloud, and network, with centralized visibility and management. It also enables proactive containment of threats and … Read more

Akira ransomware gang says it stole passport scans from Lush in 110 GB data heist

January 26, 2024 at 07:31AM The Akira ransomware gang claims responsibility for a cyber incident at a UK bath bomb merchant, stealing 110GB of data. Staff-related and company documents, including passport scans, were accessed, with threats to publish soon. The company, Lush, acknowledged the incident and is cooperating with forensic experts. Akira’s ransom tactics and … Read more

Russian TrickBot Mastermind Gets 5-Year Prison Sentence for Cybercrime Spree

January 26, 2024 at 12:57AM Russian national Vladimir Dunaev has been sentenced to five years and four months in prison for creating and distributing the TrickBot malware, causing tens of millions of dollars in losses to victims including hospitals and businesses. The malware evolved into a tool for delivering ransomware and its developer had provided … Read more

Trickbot malware scumbag gets five years for infecting hospitals, businesses

January 25, 2024 at 07:08PM Former Trickbot developer Vladimir Dunaev from Russia sentenced to five years and four months in the US for infecting American hospitals and businesses with ransomware and other malware, causing millions in losses. He provided specialized services for the criminal gang, including recruiting coders, managing servers, and developing browser modifications to … Read more

Russian TrickBot malware dev sentenced to 64 months in prison

January 25, 2024 at 01:56PM Russian national Vladimir Dunaev has been sentenced to five years and four months in prison for his involvement in creating and distributing the Trickbot malware. He pleaded guilty to charges of computer fraud and identity theft, and extradition to the US was completed in October 2021. Dunaev’s role in the … Read more

VexTrio TDS: Inside a massive 70,000-domain cybercrime operation

January 24, 2024 at 02:48PM “VexTrio, a previously unknown Traffic Distribution System (TDS), has been active since 2017, aiding 60 affiliates in cybercrime operations through a massive network of 70,000 sites. This highly pervasive entity partners with cybercrime campaigns and operators, utilizing various deceptive tactics to generate revenue and make detection challenging. Mitigation strategies include … Read more

US, UK, Australia Sanction Russian Man Over Ransomware Attack on Healthcare Insurer 

January 24, 2024 at 05:06AM The US, UK, and Australia have sanctioned Russian national Alexander Ermakov for his alleged involvement in the 2022 ransomware attack on Australia’s Medibank. Ermakov was linked to the cyberattack and targeted for the first time under Australian cyber sanction powers. The US and UK followed suit, imposing similar sanctions in … Read more

U.S., U.K., Australia Sanction Russian REvil Hacker Behind Medibank Breach

January 24, 2024 at 04:24AM Australia, the U.K., and the U.S. have imposed financial sanctions on Russian national Alexander Ermakov for his alleged involvement in the 2022 ransomware attack on Medibank. The attack resulted in the unauthorized access of 9.7 million customer records, leading the governments to criminalize dealing with his assets and call for … Read more

VexTrio: The Uber of Cybercrime – Brokering Malware for 60+ Affiliates

January 23, 2024 at 01:05PM New findings from Infoblox reveal a massive “criminal affiliate program” involving threat actors like ClearFake, SocGholish, and VexTrio. VexTrio, active since 2017, operates a network of over 70,000 domains and brokers traffic for 60 affiliates. It uses DNS and HTTP-based traffic distribution systems to propagate scams, riskware, and more. The … Read more