LIVE FEED
Subscribe
//

Category: Exploits

Exploits U.S. Bancorp Denies Network Breach After LockBit Lists Bank as Victim
MEDIUM Exploits

U.S. Bancorp Denies Network Breach After LockBit Lists Bank as Victim

U.S. Bancorp says a LockBit ransomware claim traces back to a fourth-party incident outside its own environment, with no evidence its systems,…

by Robbie · 1 month ago
Exploits UT San Antonio Takes Systems Offline After Cyberattack Days Before Classes
MEDIUM Exploits

UT San Antonio Takes Systems Offline After Cyberattack Days Before Classes

UTSA detected threat activity on its network over the weekend and pulled systems, including phones, offline, forcing payment and password reset delays…

by Robbie · 1 month ago
Exploits Clop’s Custom-Built Web Shell Targets PTC Windchill Internals Directly
CRITICAL Exploits

Clop’s Custom-Built Web Shell Targets PTC Windchill Internals Directly

ReliaQuest found that a JSP web shell used in recent Windchill data-theft attacks was purpose-built to abuse the application's own credential-decryption and…

by Robbie · 1 month ago
Exploits Attackers Exploit Patched macOS Screen Sharing Flaw to Plant Cryptominers
HIGH Exploits

Attackers Exploit Patched macOS Screen Sharing Flaw to Plant Cryptominers

A high-severity authentication bypass in Apple's Screen Sharing daemon is being actively exploited to gain root access and install Monero miners on…

by Robbie · 1 month ago
Exploits DDoS Barrage Knocks Threema Secure Messaging Offline for Days
MEDIUM Exploits

DDoS Barrage Knocks Threema Secure Messaging Offline for Days

A sustained, tactic-shifting DDoS campaign disrupted the Swiss encrypted messaging service and its colocation partner Nine, leaving users in Switzerland, India and…

by Robbie · 1 month ago
Exploits Scottish Prosecutor’s Office Hit by Data Breach Tied to Third-Party Vendor
MEDIUM Exploits

Scottish Prosecutor’s Office Hit by Data Breach Tied to Third-Party Vendor

A breach at a Scottish government agency's prosecution service has been linked to a third-party provider that may have also served other…

by Robbie · 1 month ago
Exploits Brazilian and European Police Bust €30M Bank Fraud Ring Tied to Commerzbank Vendor Flaw
HIGH Exploits

Brazilian and European Police Bust €30M Bank Fraud Ring Tied to Commerzbank Vendor Flaw

Operation Klonen led to four arrests in Brazil and charges against three more suspects in Spain and Bulgaria over a 2023 scheme…

by Robbie · 1 month ago
Exploits Multinational Sweep Nets Arrests in €30M German Bank Card Cloning Heist
HIGH Exploits

Multinational Sweep Nets Arrests in €30M German Bank Card Cloning Heist

German and Brazilian police arrested seven suspects this week tied to a late 2023 scheme that drained an estimated €30 million from…

by Robbie · 1 month ago
Exploits Akira Affiliate Rebooted a Victim Into Safe Mode to Kill EDR, Ransomware Still Failed
HIGH Exploits

Akira Affiliate Rebooted a Victim Into Safe Mode to Kill EDR, Ransomware Still Failed

An Akira ransomware operator disabled endpoint defenses by forcing a compromised host into Safe Mode with Networking, but the encryption payload crashed…

by Robbie · 2 months ago
Exploits US and South Korea Warn of Gunra Ransomware Hitting Government Networks
HIGH Exploits

US and South Korea Warn of Gunra Ransomware Hitting Government Networks

A joint advisory details how the Conti-derived Gunra ransomware group is exploiting Fortinet flaws and VPN weaknesses to breach critical infrastructure, now…

by Robbie · 2 months ago
Exploits Head Mare Hackers Trojanize TrueConf Installers to Spread Backdoors
HIGH Exploits

Head Mare Hackers Trojanize TrueConf Installers to Spread Backdoors

A hacktivist group is exploiting unpatched TrueConf video conferencing servers to plant web shells and swap legitimate client installers with backdoored versions,…

by Robbie · 2 months ago
Exploits ClickFix Campaign Delivers macOS Crypto-Draining Stealer
HIGH Exploits

ClickFix Campaign Delivers macOS Crypto-Draining Stealer

A Go-based malware pushed through fake Terminal-command lures steals browser passwords and iCloud Keychain data while quietly siphoning cryptocurrency from active transactions.

by Robbie · 2 months ago
1 2 3 … 7

THE 0600 BRIEF

Every critical CVE and AI-security story, in your inbox each morning.