Mandiant and VMware Product Security found that the UNC3886 espionage group has been exploiting CVE-2023-34048 since late 2021, even though it was publicly reported and patched in October 2023. Mandiant found new ways that UNC3886 uses to attack computer systems. They focus on technologies that don’t have EDR protection and …
Read More »Mandiant report
Vast Voter Data Leaks Cast Shadow Over Indonesia’s 2024 Presidential Election
Investigators from Resecurity’s HUNTER (HUMINT) have found that Indonesia is increasingly being targeted by cyber-threat actors who have staged attacks that pose significant long-term risks to the integrity of the country’s elections. These findings coincide with the critical and fast-approaching Indonesian presidential election set to take place in February this …
Read More »
Google blog post
Google Cloud eliminates data transfer fees
Google Cloud will no longer charge users when they seek to transfer their data to a competitor, the firm has announced. This will apply to all customers globally from today. A blog post announcing the decision also took aim at hyperscaler rivals that have continued to charge such fees, arguing …
Read More »
Google’s New Email Requirements For 2024
February 1, 2024: A Date All Email Senders Should Care About
If your organization sends a large number of emails to Google and Yahoo accounts, there’s an important date to remember: February 1st. On this day, it is important to be aware if you are sending more than 5000 emails daily to Google and Yahoo mailboxes. So, What Is the Issue? …
Read More »
CloudSek report
Without password, hackers access your Google account
Security researchers found a hack that lets cybercriminals access people’s Google accounts without needing their passwords. CloudSEK, a security firm, has discovered a highly perilous type of malware that illicitly obtains individuals’ sensitive data by exploiting third-party cookies. Disturbingly, this malicious software has already caught the attention of hacking groups, …
Read More »
Have a quick check
X (twitter) gold accounts flood dark web to sell
Cybercriminals have increased the sale of new or stolen Gold checkmarked accounts from the X/Twitter platform. These accounts are being used by threat actors to share links to malware on the social media site, making it appear as a post from a trusted source. Researchers at CloudSEK in Singapore have …
Read More »
To sell over 160 million records
Mysterious hacker strikes Iran with 23 organizations: Hudson Rock
Hudson Researchers reported that on December 20th, ‘irleaks’ claimed to have 160 million records from 23 top insurance companies in Iran for sale. The hacker says they have stolen data like names, birth dates, phone numbers, national codes, and more. They have shared a sample of the data and want …
Read More »
Deep fake video
Tanjin Tisha’s deep fake porn video goes viral
A deepfake video of actress Tanjin Tisha went viral on social media. The video was shared on multiple Facebook pages and personal profiles, but it was edited with Tisha’s face placed over another woman’s face. The video was edited and shared from the Facebook page “Sushmita”. It was posted on …
Read More »
“Leaksmas” Event
Dark Web Expose Massive Volumes Of Leaked PII And Compromised Data
On Christmas Eve, Resecurity protecting Fortune 100 and government agencies worldwide, noticed that multiple actors on the Dark Web were leaking a large amount of data. More than 50 million records containing personal information about consumers from different countries were leaked. The damage caused by this could potentially be worth …
Read More »
Big Defence Boost For India
India’s ISRO to launch AI enabled 50 Spy Satellites
India’s space ambitions have grown with the announcement from the Indian Space Research Organisation (ISRO) that they plan to launch 50 satellites in the next five years. These satellites will be important for improving the country’s geo-intelligence capabilities. The satellites will form a network at different levels, allowing for monitoring …
Read More »