> TODAY'S SUMMARY (14 articles)
Today's cybersecurity landscape highlights several critical developments. Canadian cybersecurity executive Edward Dubrovsky was arrested for alleged ties to extortion linked to the ShinyHunters hacking group. Meanwhile, the Silent Ransom Group reportedly extorted $207 million from law firms through social engineering tactics without encrypting files. Cyberattacks on South Korean banks were traced to a Chinese hacker utilizing ARTEX AI tools. Additionally, an insider extortion case involved a former engineer demanding ransom from an industrial firm after compromising server access. As AI continues to evolve, initiatives are leveraging it to counter cybercriminals, indicating a shift in anti-cybercrime strategies. Lastly, the sentencing of the Empire Market co-creator underscores ongoing efforts to dismantle dark web operations.
|
// AI-powered summary generated at 16:00
A vulnerability in the WordPress Paid Memberships Subscription plugin could lead to unauthenticated SQL injection on affected sites
Authors: Yun Zheng Hu and Mick Koomen Introduction In the past few years, Fox-IT and NCC Group have conducted multiple incident response cases involving a Lazarus subgroup that specifically targets organizations in the financial and cryptocurrency sector. This Lazarus subgroup overlaps with activity...
Authors: Yun Zheng Hu and Mick Koomen Introduction In the past few years, Fox-IT and NCC Group have conducted multiple incident response cases involving a Lazarus subgroup that specifically targets organizations in the financial and cryptocurrency sector. This Lazarus subgroup overlaps with activity...
Pennsylvania’s Attorney General confirmed the OAG had refused to pay a ransom demand to the attackers after files were encrypted
Authors: Yun Zheng Hu and Mick Koomen Introduction In the past few years, Fox-IT and NCC Group have conducted multiple incident response cases involving a Lazarus subgroup that specifically targets organizations in the financial and cryptocurrency sector. This Lazarus subgroup overlaps with activity...
For the latest discoveries in cyber research for the week of 1st September, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES American consumer credit reporting agency TransUnion has suffered a data breach that resulted in the exposure of sensitive personal information for o...
The campaign shows APT29’s intentions to “cast a wider net in their intelligence collection efforts,” said Amazon
In August 2025, over 1M unique email addresses appeared in a breach allegedly obtained from Italian fashion designer Giglio. The data also included names, phone numbers and physical addresses. Giglio did not respond to repeated attempts to disclose the incident.
Adversaries targeting the Salesloft Drift application integration with Salesforce have also compromised Google Workspace accounts
WhatsApp has fixed a zero-day vulnerability linked to a sophisticated cyber-attack
Mecklenburg County Public Schools est victime d'une faille de sécurité informatique, ce qui a entraîné une interruption de ses infrastructures numériques. L'école a activé ses protocoles de réponse et a fait appel à des experts en cybersécurité pour enquêter sur l'incident. Les enseignants ont été i...
Ce bulletin d'actualité du CERT-FR revient sur les vulnérabilités significatives de la semaine passée pour souligner leurs criticités. Il ne remplace pas l'analyse de l'ensemble des avis et alertes publiés par le CERT-FR dans le cadre d'une analyse de risques pour prioriser l'application des...
Artivo Surfaces detected suspicious activity on its network on September 1, 2025, and an unauthorized actor accessed or acquired certain information, including names and Social Security numbers. Artivo conducted a detailed review of the potentially impacted data and determined that information relat...
Le projet de règlement européen visant à prévenir et combattre les abus sexuels sur les enfants, proposé par la Commission européenne, est en cours de négociation entre le Parlement et le Conseil de l'UE, soulevant d'importantes questions sur la surveillance des communications privées. La propositi...
Presently sponsored by: 1Password Extended Access Management: Secure every sign-in for every app on every device.Using AI to analyse photos and send alerts if I've forgotten to take the bins out isn't going to revolutionise my life, no more so than using it to describe who's at the mailbox when a le...
That’s it.
The Month of AI Bugs is done. There won’t be a post tomorrow, because I will be at PAX West.
Overview of Posts ChatGPT: Exfiltrating Your Chat History and Memories With Prompt Injection | Video ChatGPT Codex: Turning ChatGPT Codex Into a ZombAI Agent | Video Anthropic Filesystem MCP Serve...
Une cyberattaque a paralysé les systèmes informatiques de l'AWO Karlsruhe-Land, et les investigations suggèrent que la responsabilité pourrait incomber à un groupe criminel issu du milieu russe. L'AWO Karlsruhe-Land a confirmé que les systèmes étaient hors service. Les autorités enquêtent sur l'inci...
Jaguar Land Rover, une filiale de Tata Motors, a subi une perturbation de ses systèmes informatiques à l'échelle mondiale, ce qui a un impact sur ses opérations commerciales. L'incident a été signalé dans un fichier réglementaire auprès des bourses de valeurs indiennes le 1er septembre 2025. Le sect...
New udisks2 packages are available for Slackware 15.0 and -current to fix a security issue.
L'usine Bridgestone à Joliette est à l'arrêt en raison d'une possible cyberattaque, plus de 1400 employés sont touchés. L'entreprise a indiqué avoir contenu rapidement l'incident de cybersécurité et ne pense pas que les données des employés ou des clients aient été compromises. Les dispositifs affec...