Over 1,000 WordPress Sites Infected with JavaScript Backdoors Enabling Persistent Attacker Access post, maart 6, 2025maart 10, 2025 Over 1,000 websites powered by WordPress have been infected with a third-party JavaScript code that injects four separate backdoors. “Creating four backdoors facilitates the attackers having multiple points of re-entry should one be detected and removed,” c/side researcher Himanshu Anand said in a Wednesday analysis. The malicious JavaScript code has been found… Continue Reading
Sticky Werewolf Uses Undocumented Implant to Deploy Lumma Stealer in Russia and Belarus post, februari 28, 2025 The threat actor known as Sticky Werewolf has been linked to targeted attacks primarily in Russia and Belarus with the aim of delivering the Lumma Stealer malware by means of a previously undocumented implant. Cybersecurity company Kaspersky is tracking the activity under the name Angry Likho, which it said bears a “strong… Continue Reading
Belgium probes if Chinese hackers breached its intelligence service post, februari 27, 2025februari 28, 2025 The Belgian federal prosecutor’s office is investigating whether Chinese hackers were behind a breach of the country’s State Security Service (VSSE). Chinese state-backed attackers reportedly gained access to VSSE’s external email server between 2021 and May 2023, siphoning around 10% of all emails sent and received by the agency’s staff. Continue Reading
Bybit Confirms Record-Breaking $1.5 Billion Crypto Heist in Sophisticated Cold Wallet Attack post, februari 22, 2025februari 24, 2025 Cryptocurrency exchange Bybit on Friday revealed that a “sophisticated” attack led to the theft of over $1.5 billion worth of cryptocurrency from one of its Ethereum cold (offline) wallets, making it the largest ever single crypto heist in history. “The incident occurred when our ETH multisig cold wallet executed a transfer to… Continue Reading
Australian Critical Infrastructure Faces ‘Acute’ Foreign Threats post, februari 20, 2025 Australian intelligence is projecting that foreign nations will increasingly attempt to sabotage its country’s critical infrastructure. On Feb. 19, Mike Burgess, director-general of security in charge of the Australian Security Intelligence Organisation (ASIO), delivered an annual threat assessment encompassing the many national security threats facing Australia. Among the most important, he… Continue Reading
A Signal Update Fends Off a Phishing Technique Used in Russian Espionage post, februari 19, 2025februari 20, 2025 Google warns that hackers tied to Russia are tricking Ukrainian soldiers with fake QR codes for Signal group invites that let spies steal their messages. Signal has pushed out new safeguards. For more than a decade now, Russian cyberwarfare has used Ukraine as a test lab for its latest hacking techniques, methods… Continue Reading
Hackers Exploit Signal’s Linked Devices Feature to Hijack Accounts via Malicious QR Codes post, februari 19, 2025februari 24, 2025 Multiple Russia-aligned threat actors have been observed targeting individuals of interest via the privacy-focused messaging app Signal to gain unauthorized access to their accounts. “The most novel and widely used technique underpinning Russian-aligned attempts to compromise Signal accounts is the abuse of the app’s legitimate ‘linked devices’ feature that enables… Continue Reading
Beveiligingslekken en account take-overs openen deur voor ransomware post, februari 17, 2025februari 19, 2025 Van de Nederlandse bedrijven en organisaties die in 2024 slachtoffer waren van ransomware, is de ICT-sector de meest getroffen sector. Onder andere was de ransomwaregroep Cactus verantwoordelijk voor een aanzienlijke hoeveelheid Nederlandse slachtoffers. En de bereidheid om over te gaan tot het betalen van losgeld is met 11% gestegen ten opzichte van… Continue Reading
Russian spies had access to EMA systems for four months in 2020 hack post, februari 14, 2025juni 13, 2025 Russian attackers were behind the hack of the European Medicines Agency EMA in 2020. They had “unauthorized access to knowledge of COVID-19 vaccines and personal correspondence” for at least four months. The Dutch police warned the rest of Europe in 2021 that these attackers may have access to other European… Continue Reading
Russische spionnen en de ‘hack van Amsterdam’ post, februari 14, 2025juni 13, 2025 Een rechercheur van de Nederlandse politie doet in het voorjaar van 2021 iets opmerkelijks. Al maanden is de politie betrokken bij een opsporingsonderzoek naar een ernstige hack – genaamd 26Blackburn – bij een internationale organisatie in Amsterdam. Ze komen alleen niet verder, het spoor loopt dood. Rechercheurs en Openbaar Ministerie… Continue Reading