A ransomware group is threatening to publish a huge cache of stolen data following a cyber attack on a Scottish health board. The group called INC Ransom claims to have three terabytes of data. NHS Dumfries and Galloway is aware that clinical data relating to a small number of patients …
Read More »
“Operation FlightNight”
Hackers Hit Indian Gov.t, Energy Sectors with Malware: EclecticIQ Report
A new spying campaign has been discovered that targets Indian government agencies and the energy sector, using a modified open-source tool called HackBrowserData to steal browser credentials, cookies, and history. Researchers from EclecticIQ, a Dutch cybersecurity firm, found a hacking campaign in early March. They didn’t identify the hackers but …
Read More »
Trend Micro report
Earth Krahang hackers breach 70 orgs in 23 countries
The APT group ‘Earth Krahang’ has hacked 70 organizations and attacked at least 116 in 45 countries. Trend Micro researchers have been monitoring a campaign targeting government organizations since early 2022. The group targeted 116 organizations in 35 countries and confirmed at least 70 compromises, including organizations linked to world …
Read More »
‘Hell Paradise’ Claims
Government Websites in 49 Countries at Risk
According to FalconFeeds x post, a threat actor has listed 49 countries as part of an experiment. They also claim that over 1000 government sites are vulnerable. According to Cyber Express, the threat actor is promoting an onion website called ‘Hell Paradise’ which aims to obtain vulnerable government sites and …
Read More »IMF email account compromised: Investigates ongoing
The International Monetary Fund (IMF) recently experienced a cyber incident, which was detected on February 16, 2024. After further investigation with help from cybersecurity experts, the breach was identified, and steps were taken to fix it. The investigation found that 11 IMF email accounts were hacked. The affected accounts have …
Read More »Login Credentials for 15 Banks Up for Sale on Dark Web
Login details for 15 banking websites have apparently been made available for purchase on the dark web. This concerning information about a cyberattack on banks comes from a person who says they found a server belonging to an IT company responsible for upkeep and improvement. The hacker has set the …
Read More »Bank of America warns customers of data breach
Bank of America is warning customers about a data breach that exposed their personal information due to a hack at one of its service providers, Infosys McCamish Systems (IMS), last year. The customer’s personal information that was exposed in the security breach includes their names, addresses, social security numbers, dates …
Read More »AnyDesk confirms breach: Release late Friday advisory
AnyDesk, a German remote access software company, has confirmed that their production systems were compromised in a security incident. They have 170,000 customers worldwide, including Comcast and Thales. The company’s client logins were not working for three days. During this time, the company informed the customers about unexpected maintenance. According …
Read More »
Cloudflare Blog
Cloudflare hacked using auth tokens stolen in Okta attack
Cloudflare disclosed that its internal Atlassian server was breached by a suspected ‘nation-state attacker’. The attacker gained access to Cloudflare’s Confluence wiki, Jira bug database, and Bitbucket source code management system. The attacker first accessed Cloudflare’s self-hosted Atlassian server on November 14, and then accessed the company’s Confluence and Jira …
Read More »
CloudSEK Report
750 million Indian mobile subscribers’ info for sale
After the ‘MOAB’ data breach exposing 26 billion records, a new leak has occurred. It includes 1.8 terabytes of data from an “Indian Mobile Network Consumer Database” with personal information of 750 million people. This database is now being sold on the dark web. CloudSEK, a cybersecurity firm, revealed a …
Read More »
InfoSecBulletin Cybersecurity for mankind