Category: Exploits
U.S. Bancorp Denies Network Breach After LockBit Lists Bank as Victim
U.S. Bancorp says a LockBit ransomware claim traces back to a fourth-party incident outside its own environment, with no evidence its systems,…
UT San Antonio Takes Systems Offline After Cyberattack Days Before Classes
UTSA detected threat activity on its network over the weekend and pulled systems, including phones, offline, forcing payment and password reset delays…
Clop’s Custom-Built Web Shell Targets PTC Windchill Internals Directly
ReliaQuest found that a JSP web shell used in recent Windchill data-theft attacks was purpose-built to abuse the application's own credential-decryption and…
Attackers Exploit Patched macOS Screen Sharing Flaw to Plant Cryptominers
A high-severity authentication bypass in Apple's Screen Sharing daemon is being actively exploited to gain root access and install Monero miners on…
DDoS Barrage Knocks Threema Secure Messaging Offline for Days
A sustained, tactic-shifting DDoS campaign disrupted the Swiss encrypted messaging service and its colocation partner Nine, leaving users in Switzerland, India and…
Scottish Prosecutor’s Office Hit by Data Breach Tied to Third-Party Vendor
A breach at a Scottish government agency's prosecution service has been linked to a third-party provider that may have also served other…
Brazilian and European Police Bust €30M Bank Fraud Ring Tied to Commerzbank Vendor Flaw
Operation Klonen led to four arrests in Brazil and charges against three more suspects in Spain and Bulgaria over a 2023 scheme…
Multinational Sweep Nets Arrests in €30M German Bank Card Cloning Heist
German and Brazilian police arrested seven suspects this week tied to a late 2023 scheme that drained an estimated €30 million from…
Akira Affiliate Rebooted a Victim Into Safe Mode to Kill EDR, Ransomware Still Failed
An Akira ransomware operator disabled endpoint defenses by forcing a compromised host into Safe Mode with Networking, but the encryption payload crashed…
US and South Korea Warn of Gunra Ransomware Hitting Government Networks
A joint advisory details how the Conti-derived Gunra ransomware group is exploiting Fortinet flaws and VPN weaknesses to breach critical infrastructure, now…
Head Mare Hackers Trojanize TrueConf Installers to Spread Backdoors
A hacktivist group is exploiting unpatched TrueConf video conferencing servers to plant web shells and swap legitimate client installers with backdoored versions,…
ClickFix Campaign Delivers macOS Crypto-Draining Stealer
A Go-based malware pushed through fake Terminal-command lures steals browser passwords and iCloud Keychain data while quietly siphoning cryptocurrency from active transactions.