New Malware Technique Could Exploit Windows UI Framework to Evade EDR Tools

December 11, 2024 at 10:36AM A new technique exploits Windows UI Automation to conduct malicious activities undetected by endpoint security. It allows for command execution, data theft, and access to messaging apps. Additionally, recent research highlights vulnerabilities in the DCOM protocol, enabling attackers to remotely write and execute payloads, creating embedded backdoors on target machines. … Read more

Phone Phishing Gang Busted: Eight Arrested in Belgium and Netherlands

December 10, 2024 at 06:54AM Belgian and Dutch authorities arrested eight suspects linked to a “phone phishing” gang operating from the Netherlands, targeting victims worldwide to steal financial data. Law enforcement executed 17 searches, seizing cash, firearms, and luxury goods. The crime network, involving call centers, profited millions from phishing and bank fraud. ### Meeting … Read more

Millionaire Airbnb Phishing Ring Busted Up by Police

December 9, 2024 at 04:24PM Five suspects were arrested in Belgium for a large-scale phishing operation across Europe, deceiving victims into sharing bank information. They stole millions, funding a lavish lifestyle, including luxury goods and nights out. Law enforcement continues to pursue similar cybercriminals, emphasizing a crackdown on those flaunting their crimes on social media. … Read more

Texas Teen Arrested for Scattered Spider Telecom Hacks

December 6, 2024 at 04:24PM The FBI has arrested 19-year-old Remington Goy Ogletree, linked to the Scattered Spider cybercrime group, for a phishing operation that targeted telecommunications and a national bank. He admitted involvement in sending millions of phishing texts and revealed the group’s tactics. This arrest follows a series of similar crackdowns on Scattered … Read more

Crypto-stealing malware posing as a meeting app targets Web3 pros

December 6, 2024 at 10:45AM Cybercriminals have launched a campaign named “Meeten,” targeting Web3 professionals via fake video meetings that install crypto-stealing malware on Windows and Macs. The scheme uses sophisticated social engineering tactics to prompt users to download malicious software, compromising sensitive data, including cryptocurrency wallets and personal banking information. ### Meeting Takeaways on … Read more

Europol Shuts Down Manson Market Fraud Marketplace, Seizes 50 Servers

December 5, 2024 at 10:27AM Europol has shut down Manson Market, a major online fraud marketplace, seizing over 50 servers and arresting two suspects. Launched in 2022, the site traded stolen data from phishing schemes. Authorities from multiple countries collaborated to dismantle the network, collecting over 200 terabytes of digital evidence. ### Meeting Takeaways – … Read more

50 Servers Linked to Cybercrime Marketplace and Phishing Sites Seized by Law Enforcement

December 5, 2024 at 08:15AM Europol announced the dismantling of the Manson Market cybercrime marketplace and associated phishing websites by law enforcement in Germany and other European countries. Investigations revealed thousands of users bought stolen financial data. Authorities seized over 50 servers and arrested key suspects. This follows other recent takedowns of online criminal networks. … Read more

Hackers Use Corrupted ZIPs and Office Docs to Evade Antivirus and Email Defenses

December 4, 2024 at 12:45AM A new phishing campaign uses corrupted Microsoft Office documents and ZIP files to bypass email defenses, evading antivirus software and spam filters. These malicious emails entice users with false promises, leveraging built-in recovery features for execution. The technique, identified since August 2024, aims for credential theft and malware deployment. **Meeting … Read more

Cloudflare’s developer domains increasingly abused by threat actors

December 3, 2024 at 04:06PM Cybercriminals are increasingly abusing Cloudflare’s ‘pages.dev’ and ‘workers.dev’ for phishing and malicious activities, with Fortra reporting a 198% rise in phishing incidents on Cloudflare Pages and a 104% increase on Cloudflare Workers. This exploitation leverages Cloudflare’s trusted reputation, complicating detection and allowing efficient phishing campaigns. **Meeting Takeaways:** 1. **Increase in … Read more

THN Recap: Top Cybersecurity Threats, Tools and Tips (Nov 25 – Dec 1)

December 2, 2024 at 07:09AM Hackers launch approximately 2,200 attacks daily, with evolving threats like AI-generated phishing emails and adaptive malware. T-Mobile recently detected attempted intrusions by a group called ‘Salt Typhoon’ using a new tool, GHOSTSPIDER. Key developments include arrests in ransomware operations and new malware targeting various platforms. Stay vigilant in cybersecurity. ### … Read more