APT28 hacker group targeting Europe, Americas, Asia in widespread phishing scheme post, maart 18, 2024juli 3, 2025 The Russia-linked threat actor known as APT28 has been linked to multiple ongoing phishing campaigns that employ lure documents imitating government and non-governmental organizations (NGOs) in Europe, the South Caucasus, Central Asia, and North and South America.“The uncovered lures include a mixture of internal and publicly available documents, as well as possible actor-generated Continue Reading
Microsoft confirms Russian spies stole source code, accessed internal systems post, maart 8, 2024april 26, 2024 Still ‘no evidence’ of any compromised customer-facing systems, we’re told Microsoft has now confirmed that the Russian cyberspies who broke into its executives’ email accounts stole source code and gained access to internal systems. The Redmond giant also characterized the intrusion as “ongoing.” Continue Reading
Possible China link to Change healthcare ransomware attack post, maart 7, 2024februari 24, 2025 Alleged crim bought SmartScreen Killer, Cobalt Strike on dark-web markets A criminal claiming to be an ALPHV/BlackCat affiliate — the gang responsible for the widely disruptive Change Healthcare ransomware infection last month — may have ties to Chinese government-backed cybercrime syndicates.… Continue Reading
China-linked cyber spies blend water hole, supply chain attacks post, maart 7, 2024april 26, 2024 The nation-state group compromised the website of a Tibetan festival and a software application to target user systems in Asia. Continue Reading
BlackCat ransomware group implodes after apparent $22M payment by Change Healthcare post, maart 6, 2024februari 24, 2025 There are indications that U.S. healthcare giant Change Healthcare has made a $22 million extortion payment to the infamous BlackCat ransomware group (a.k.a. “ALPHV“) as the company struggles to bring services back online amid a cyberattack that has disrupted prescription drug services nationwide for weeks. However, the cybercriminal who claims to have given BlackCat… Continue Reading
Uncle Sam intervenes as Change Healthcare ransomware fiasco creates mayhem post, maart 6, 2024februari 24, 2025 The US government has stepped in to help hospitals and other healthcare providers affected by the Change Healthcare ransomware infection, offering more relaxed Medicare rules and urging advanced funding to providers.… Continue Reading
Seoul spies say North Korea hackers stole semiconductor secrets post, maart 5, 2024februari 24, 2025 The DPRK is using cyberattacks to steal designs and other data from South Korean microchip manufacturers, according to Seoul’s National Intelligence Service. Continue Reading
Taiwan’s biggest telco breached by suspected Chinese hackers post, maart 1, 2024april 26, 2024 Stolen data from Chunghwa Telecom — including government-related details — are up for sale on the Dark Web, the Taiwanese defense ministry confirms. Continue Reading
FBI warns US Healthcare sector of targeted BlackCat ransomware attacks post, februari 28, 2024april 26, 2024 The U.S. government is warning about the resurgence of BlackCat (aka ALPHV) ransomware attacks targeting the healthcare sector as recently as this month. “Since mid-December 2023, of the nearly 70 leaked victims, the healthcare sector has been the most commonly victimized,” the government said in an updated advisory. Continue Reading
Iran-linked UNC1549 hackers target middle east aerospace & defense sectors post, februari 28, 2024april 26, 2024 An Iran-nexus threat actor known as UNC1549 has been attributed with medium confidence to a new set of attacks targeting aerospace, aviation, and defense industries in the Middle East, including Israel and the U.A.E. Other targets of the cyber espionage activity likely include Turkey, India, and Albania, Google-owned Mandiant said in a… Continue Reading