Mastercard’s Bet on Recorded Future a Win for Cyber Threat Intel

September 23, 2024 at 04:16PM Mastercard’s $2.65 billion acquisition of Recorded Future has highlighted the growing importance of cyber threat intelligence (CTI) in enterprise security strategies. The deal is expected to close in Q1 of 2025 and demonstrates the business criticality of CTI. Analysts anticipate significant growth in demand for CTI services in the coming … Read more

Global infostealer malware operation targets crypto users, gamers

September 21, 2024 at 12:51PM A cybercriminal group named “Marko Polo” has executed a large-scale infostealer malware campaign, impacting thousands and potentially causing millions in financial losses. Using various distribution channels and targeting high-value individuals, the group distributes malicious software under legitimate guises, compromising both Windows and macOS systems. Mitigating these threats involves cautious online … Read more

Predator Spyware Resurfaces With Fresh Infrastructure

September 9, 2024 at 06:28AM The Predator spyware, previously affected by US sanctions against Intellexa Consortium, has reemerged with a new infrastructure, as per Recorded Future. This malware, utilized mainly by government entities, can infiltrate and gather data from devices discreetly. The recent report shows updated evasion techniques and increased usage across multiple countries. From … Read more

Facebook Ads Lead to Fake Websites Stealing Credit Card Information

August 1, 2024 at 03:12AM Facebook users are being targeted by a scam e-commerce network using fake websites to steal personal and financial data through malvertising. The campaign, known as ERIAKOS, targets mobile users with ad lures on Facebook, impersonating well-known brands. Similar criminal networks have been identified, indicating a growing trend in online fraud … Read more

Fraud ring pushes 600+ fake web shops via Facebook ads

July 31, 2024 at 10:20AM A fraud campaign named “ERIAKOS” utilizes over 600 fake web shops advertised on Facebook to collect personal and financial information, likely originating from China. The campaign offers substantial discounts on well-known products to attract users. These short-lived sites mainly target mobile users, leading to increased risk exposure. It is essential … Read more

Infostealer malware logs used to identify child abuse website members

July 3, 2024 at 11:52AM Recorded Future’s Insikt Group identified thousands of pedophiles accessing child sexual abuse material (CSAM) using stolen credentials. By leveraging data from information-stealing malware, they tracked unique accounts to usernames on various platforms and shared the gathered information with law enforcement to unmask and arrest the individuals. This innovative use of … Read more

Chinese Cyberspies Employ Ransomware in Attacks for Diversion

June 27, 2024 at 12:24AM Cyberespionage group ChamelGang uses CatB ransomware to target high-profile organizations globally, posing challenges for attribution. Their sophisticated attacks focus on government and critical infrastructure entities, employing ransom notes and bitcoin payments. Additionally, they leverage BestCrypt and BitLocker in separate activities, impacting organizations mainly in North America, South America, and Europe. … Read more

Chinese Hackers Have Stepped Up Attacks on Taiwanese Organizations, Cybersecurity Firm Says

June 24, 2024 at 03:18PM A Chinese state-sponsored hacking group known as RedJuliett has intensified attacks on Taiwanese organizations, particularly in government, education, technology, and diplomacy sectors. They exploited a vulnerability in SoftEther VPN software to access servers. The group’s activities align with Chinese state-sponsored hacking patterns. Recorded Future expects continued targeting of Taiwanese agencies, … Read more

SolarMarker Malware Evolves to Resist Takedown Attempts with Multi-Tiered Infrastructure

May 21, 2024 at 09:12AM Persistent threat actors behind the SolarMarker malware have established a complex, multi-tiered infrastructure, making it challenging for law enforcement to take down. The malware targets various sectors and has evolved to enhance stealth and control over victim machines. Recorded Future’s investigation uncovered the architecture of the command-and-control (C2) servers. After … Read more

Change Healthcare attack latest: ALPHV bags $22M in Bitcoin amid affiliate drama

March 4, 2024 at 04:08PM ALPHV/BlackCat, responsible for the Change Healthcare cyberattack, received over $22 million in Bitcoin, potentially a ransomware payment. UnitedHealth Group declined to confirm if ransom was paid. Change Healthcare’s systems were affected, disrupting services for 70,000+ American pharmacies and hospitals. The gang may have stolen the $22 million from their affiliates. … Read more