Google raps Iran’s APT42 for raining down spear-phishing attacks

August 15, 2024 at 12:30PM Google confirmed Iranian cyber influence activity targeting US political figures, including Trump, Biden, and Harris, with phishing tactics and social engineering. APT42, part of the Iranian Revolutionary Guard Corps, used “Cluster C” phishing activity and Bitly links to target officials. Similar attacks were observed on Israeli officials, themed around the … Read more

Not-so-OpenAI allegedly never bothered to report 2023 data breach

July 7, 2024 at 09:52PM OpenAI faced backlash this week, following revelations of a 2023 system breach and privacy issues with its ChatGPT app for macOS. Moreover, the departure of key personnel raised concerns about its safety culture. The International Automobile Federation also reported a data breach, and a new ransomware group, Volcano Demon, was … Read more

Cyberattack Shutters Some Operations at Japanese Lens Manufacturer

April 4, 2024 at 10:27AM Hoya, a Tokyo-based eyeglass and medical lens-maker, has experienced a production halt in certain locations and an interruption to its product ordering system due to an attack. From the meeting notes, it appears that Hoya, a Tokyo-based eyeglass and medical lens-maker, has experienced an attack that has caused production processes … Read more

The ever-present state of cyber security alert

February 9, 2024 at 09:17AM As AI technology becomes more complex, so do the threats from bad actors. Despite AI’s increasing use, organizations must be mindful of cybersecurity risks. Cloudflare addresses these concerns in a webinar on 22nd February. The discussion will focus on securing AI use, reducing vulnerabilities, and practical steps for protection. Register … Read more

Attacker Targets Hadoop YARN, Flint Servers in Stealthy Campaign

January 10, 2024 at 06:26PM Adversary exploiting two known misconfigurations in big data technologies to deploy Monero cryptominer. Based on the meeting notes, the key takeaways are: – The adversary is taking advantage of two known misconfigurations in big data technologies – The purpose of this exploitation is to deploy a Monero cryptominer Full Article

10 Years After Yahoo Breach, What’s Changed? (Not Much)

January 2, 2024 at 09:02AM Yahoo experienced the biggest data breaches in history, yet experts caution that after a decade, we have not heeded the lessons from these incidents. Based on the meeting notes, it seems that the discussion highlighted the significant data breaches experienced by Yahoo customers, which were considered some of the largest … Read more