Posts

Showing posts from May, 2022

#The passwords most used by CEO's are startlingly dumb

Image
Recent cybersecurity reports show how ridiculously many CEO's and business owners are given the password strength of the accounts they choose. Imagine leaving the livelihoods of hundreds or even thousands of employees to someone who uses "123456" or "qwerty" as their password.   Get ready for the palm of your long face, everyone-this is a banquet. The  survey was conducted by Nord Pass Password Manager (via IFLScience), and in 2020, the most common passwords used by the general public are serial numbers such as "123456" and "Image 1", as you can imagine, "password". It turned out to be. ".   A recent survey sample consists of 290 million cybersecurity data breaches worldwide, showing the professional level of affected people. It turns out that password choices for CEO's and other senior executives are similar to password choices for the general public, although they often include names. Tiffany has witnessed 100,534 injured

#Blackmail- Hacker accesses a Verizon employee database and tries to ransom the data for 250,000 US Dollars

Image
  Verizon is dealing with  a hacker hijacking a database of company employee details such as employee names, ID numbers, email addresses, and phone numbers. The   motherboard reported that the database was legitimate because an anonymous hacker contacted them last week and was able to verify the data by calling several numbers.   "These employees are stupid," the hacker told Motherboard in a chat. The hacker is demanding $ 250,000 in exchange for not leaking the database, and he said he is in contact with Verizon.   A Verizon spokesman contacted  the motherboard and confirmed the incident. We do not believe that scammers have sensitive information and  do not intend to engage further with individuals. As always, we take the security of Verizon data very seriously and take strict measures  to protect  people and systems.   Hackers claim to have hijacked the database through social engineering to interact remotely with Verizon employees' computers. An email hacker account s

#WatchOut- Fake WHO Safety Emails on COVID-19 Dropping Nerbian RAT Across Europe

Image
The novel Nerbian RAT (Remote Access Trojan) currently targets companies in Spain, Italy and the United Kingdom. Proofpoint security researchers are alerting UK, Italian, and Spanish companies about a new RAT called Nerbian written in the Go programming language. The name of the     malware  is based on the code that refers to the name of the fictitious location in the novel Don Quixote.   "Operating System & # 40; OS & # 41; is an incomprehensible Go programming language compiled for 64-bit systems that uses multiple cryptographic routines to further bypass network analysis," researched. Is writing. The    RAT can log keystrokes, execute arbitrary commands, take screenshots and steal data to a remote C2 server. The threat actors behind this campaign are still unknown. How is Nerbian RAT Distributed? Nerbian RAT is shipped via a phishing marketing campaign the use of faux COVID-19 topic emails. The emails are much less than one hundred in variety and are disguised to

#British man charged in New York with hacking into bank computers, stealing millions

Image
An Englishman was charged with criminal charges in New York for stealing money from an investor's account by hacking  email servers and computers in US banks and brokers, resulting in losses of over $ 5 million. From January 2011 to March 2018, Idris Dayo Mustapha, 32, and others used phishing and other means to obtain usernames and passwords, according to 10 complaints released on Tuesday,  . You have accessed your online banking and securities company account. Prosecutor  said  Lagos, Nigeria, and his conspirators first sent the victim's money to his account.   They said that when banks began to block remittances, conspirators would trade unauthorized stocks in hacked accounts while at the same time making profitable trades in the same stocks in their own accounts. The    complaint cites a conversation between Mustafa and an unnamed conspirator, a Lithuanian citizen, in April 2016 about conducting fraudulent transactions with a brokerage firm's account or remittances from

#PermanentlyClosed- A college is shutting down following a ransomware attack

Image
Lincoln College says it will be closed this week after a ransomware attack that took months to resolve. The impact of COVID-19 had a serious impact on activities such as recruitment and financing, but cyberattacks appear to have been a turning point for  Illinois agencies. The University of    has notified the Illinois Department of Higher Education and the Higher Learning Commission that it will be completely closed on May 13. As NBC News points out, it was the first  university in the United States to be partially closed due to a ransomware attack.   Lincoln says there was a "record student registration" in the fall of 2019. However, the pandemic has significantly reduced enrollment, as some students have opted to postpone or take a leave of absence from college. The university, one of the few rural schools under the Ministry of Education that qualifies primarily as a black educational institution, said these are affecting its financial position.   Last December, Lincoln wa

#Satellite Attack- Russia behind cyber-attack on satellite internet network KA-SAT that disrupted Ukrainian infrastructure – EU

Image
  The EU has accused Russia of a powerful cyber attack that has disrupted Ukraine's satellite broadband services  and "helped President Vladimir Putin invade the country."   An attack on the KASAT network, an hour before Russia's invasion of Ukraine began on February 24, took thousands of modems offline. The alleged   decentralized denial of service (DDoS) attack caused communication disruptions and other disruptions to Ukrainian government websites and banks, affecting some EU member states using the KASAT network. .. ‘Unacceptable’ The KASAT satellite and network are operated by US telecommunications giant Viasat, providing connectivity to both military and civilian customers.   "This unacceptable cyber-attack is  another example of a continuing pattern of Russia's irresponsible behavior in cyberspace, forming an integral part of the illegal and unjustified invasion of Ukraine," today's statement. (10 EU.   cyberattacks on critical infrastructure &

#Ferrari Hijacked- Hackers Hijacked Official Ferrari Subdomain to Host NFT Scam

Image
  On May 5, 2022, reports emerged that the official website of Italian luxury car maker Ferrari was hacked to promote a fake NFT collection. Interestingly, the company recently announced the launch of its official NFT collection, and hackers may have taken advantage of this news. The fake NFT collection was presented as an official collection aimed at potential buyers. Details of the NFT Scam White hat hacker Sam Curry claims that the attacker hijacked the forms.ferrari.com subdomain  of the company's official website and hosted an NFT scam titled "Mint Your Ferrari." Ethical hackers and bug bounty hunters have also posted screenshots of  hijacked websites on Twitter. The attackers reportedly seduced visitors to buy NFT tokens, claiming to be Ferrari's official 4458hp NFT series launched by the company  on the Ethereum network.   In December 2021, Screen Rant reported that the Ferrari collection will be launched in partnership with a technology company called Velas. F

#Anonymous Leak 82GB of Police Emails Against Australia's Offshore Detention

Image
  In total, Anonymous leaked 285,635 confidential emails belonging to the Nauru Police Force of the tiny Nauru Island infamously known for being used by Australia as an offshore refugee detention center in return for aid.   On Monday, May 2nd, 2022, the Anonymous collective released 82GB worth of emails apparently belonging to the Nauru Police Force. According to Anonymous, the data leak was in protest against the alleged ill-treatment of asylum seekers and refugees carried out by Island authorities on behalf of the Australian government.   For your information, Nauru is a tiny island country in Micronesia, northeast of Australia infamously known for being used by Australia as an offshore refugee detention center in return for aid.   As seen by the media, the total number of leaked emails is 285,635 and available for direct and torrent download through the official website of “Enlace Hacktivista,” a platform that aims to “Document hacker history.”   Although the media could not analyze

#Embarrassed - Russian TV, online platforms hacked with antiwar message on Victory Day

Image
  A hacker posted an anti-Vladimir message on Russian television on Monday, telling the Russian president  in response to the crisis in Ukraine, "You have blood in your hands."   Russia's satellite TV menu has been modified to show Moscow viewers news about the Ukrainian war. Screenshots of    show the menu of Moscow satellite TV  on the day of victory. Russia is celebrating its 77th anniversary of the Soviet Union's victory over Nazi Germany, with anti-war slogans on all channels.   "You have the blood of thousands of Ukrainians and hundreds of dead children," read the slogan.   "Television and  authorities are lying. There is no war " The message appeared on the screen but disappeared immediately. I still don't know who is responsible (Reuters)   The message was displayed just before the Victory Day parade on Red Square. Putin compared the war in Ukraine with the Soviet struggle to defeat Adolf Hitler in  World War II.    Putin said in his sp

# Dont Believe Everything- Politicians hired consultants to spread fake stories.

Image
On Monday, Filipino voters will elect the country's president-elect, lying to many truths and social media.   "I think of myself as a troll, or, politically speaking,  a social media marketing consultant."   John could be crucial in the election of the next president of the Philippines, not his real name. Is part of an industry.   He says he works most days from 10am to 3am and manages hundreds of Facebook pages and fake profiles on behalf of client politicians and their campaigns.   His clients include the governor, the House of Representatives, and the mayor, he says. 'Jon' uses fake IDs to set up multiple accounts on Facebook On Monday, Filipino voters  go to vote to choose their next president along with some lower office candidates. This is the first presidential election since the victory of Rodrigo Duterte in 2016, and critics say it was achieved behind a wave of fake news.  According to   election observers and disinformation experts, the situation has not

#Thousands of Borrowers' Data Exposed from ENCollect Debt Collection Service

Image
  An ElasticSearch server instance that remained open on the Internet without a password contained sensitive financial information about loans from financial services providers in India and Africa. The leak discovered by researchers at   information security company UpGuard was 5.8 GB and consisted of a total of 1,686,363 records.   "These records contained personal information such as name, loan amount, date of birth, account number, etc.," UpGuard said in a report shared with The Hacker News. "The collection has a total of 48,043 unique email addresses, some of which were intended for their respective product managers, corporate customers, and collection personnel." Discovered in February 2022. .. The leaked server has not been open to the public since February 28, with the intervention of  the Indian Computer Emergency Response Team  (CERTIn).   ENCollect is called the "World's Best Collector App" that enables debt collectors to track loan payments,

#Don't Do This - The five most dangerous Social Media posts revealed

Image
  Posting to Facebook, Instagram, and Twitter may seem harmless, but if you provide too much information, you can be hacked.   Cyber ​​experts say that even the most harmless posts can be used against you.   "All publicly posted information may be used by criminals," said Javvad, a leader in the security awareness of KnowBe4.   "Even seemingly trivial information can be stitched together to create a better picture of the victim."   You may think you are very confident.   However, posting about  your activity, whereabouts, family, or stories on Facebook, Instagram, or Twitter can leave you vulnerable.   "In general, the most dangerous information we can release is related to the question about password reset," Jay told  Sun.   "That is, the mother's maiden name, school, street, etc.  " It is also important to recognize that the information  people post may be targeted to their surroundings.   "Therefore, parents who post excessive informa

#Disrupted- Russian Alcohol Supply Chain Disrupted By Hacktivists

Image
  Attackers from the  IT Army of Ukraine have successfully targeted EGAIS, Russia's main alcohol distribution portal, to thwart alcohol transport in Russia.   According to Russian news portal Vedomosti, Ukrainian hacktivist launched a DDoS attack on May 2-3, destroying Russia's central alcohol distribution platform called the Unified National Automatic Alcohol Accounting Information System (EGAIS).   EGAIS is an important portal. This is because the law requires all alcohol manufacturers and distributors to register their shipments with EGAIS. Therefore, the attack on this platform caused a full-scale service interruption across Russia. Details of the Attack Three websites belonging to the platform were reportedly attacked by DDoS. When I checked on May 4th, I got the error "Server stopped responding" on two EGAIS sites, and the third one wasn't working. The   attack began on May 2, and the next day, more and more system failures became apparent. Wine Merchant For

#All ventilators will be attacked "Russian hackers threaten to target ventilators in revenge plot"

Image
  Russian hacker group Killnet has threatened to suspend ventilators in British hospitals in retaliation for the suspect's arrest. 23-year-old Killnet  was arrested in London on Monday for attacking the  Romanian government's website.   Reportedly, Kinet demanded his release and threatened to use a life-saving ventilator in a British hospital if their demands were not met.   "If he is not released within 48 hours, I will destroy your Romania, England, Moldova," read the Kirnet warning  posted on  the messaging site Telegram.   "I will destroy your entire information structure and even your Ministry of Health. All ventilators will be attacked,` said the message. `Only then will you begin to realize the mistake you have made.`   The alleged Killnet member was reportedly arrested by National Crime Agency officers alongside officials from Romania.   The raid took place at an address in Tottenham, North London where the hacker was detained on suspicion of assisting wi

#RevengeHack- Former employee accused of hacking customers' computers

Image
  A judge found probable cause Wednesday to charge a Jonesboro man with felony computer trespass after police said he hacked his former employer`s computer system.   According to the affidavit, 39 year old Brian Paul Jackson “unlawfully accessed” Sound Concepts` computer system and “manipulated several home entertainment accounts.”   Sudden link provided detectives information on the IP address that accessed the accounts that returned to Jackson, the court documents stated.   During an interview with investigators, Jackson reportedly “admitted that when he installed the home entertainment systems for approximately four clients, he had added their accounts to his home entertainment phone app.”   After leaving Sound Concepts on “less than ideal terms,” Jackson told detectives he would “randomly use the phone app to turn off lights and manipulate the lighting systems for the four clients,” the affidavit said.   According to invoice statements provided by Sound Concepts, the business lost