> TODAY'S SUMMARY (3 articles)
Raheim Hamilton, co-creator of the Empire Market dark web marketplace, has been sentenced to 40 years in prison for facilitating over $430 million in illegal trades, highlighting ongoing law enforcement efforts against cybercrime. Hamilton's guilty plea included the forfeiture of $100 million in Bitcoin and assets. Additionally, the FBI has arrested the founder of a Canadian cybersecurity firm, linked to the ShinyHunters hacking group, signaling a crackdown on organizations involved in ransomware negotiations. These developments underscore the increasing focus on dismantling criminal enterprises in the dark web and addressing ransomware threats.
|
// AI-powered summary generated at 08:00
Four senior members of a Ghana-based criminal network have been indicted for stealing over $100 million through romance scams and BEC frau
Today we cover Claude Code and a high severity vulnerability that Anthropic fixed in early June. The vulnerability allowed an attacker to hijack Claude Code via indirect prompt injection and leak sensitive information from the developer’s machine, e.g. API keys, to external servers by issuing DNS re...
TRM Labs observed crypto payments worth $34.2m moved from victims addresses to a range of destinations likely associated with the group
So, a weird thing happened over the last couple of days, and my Tesla Powerwalls weren't working properly, or, at all, actually... What's even more strange is that Tesla has been completely silent about this and hasn't made a single announcement about the issue
Eight European countries have yet to transpose NIS2 into law, exposing them to regulatory action
ESET Research discovered a zero-day vulnerability in WinRAR being exploited in the wild in the guise of job application documents; the weaponized archives exploited a path traversal flaw to compromise their targets
Commercial red team experts believe AI’s current impact on cyber is overstated
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Apple macOS. Interaction with the AudioToolboxCore framework is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The ZDI has assigned a CVSS ra...
JetBrains TeamCity 2023.11.4 - Authentication Bypass
ServiceNow Multiple Versions - Input Validation & Template Injection
Yes24, le plus grand détaillant de billets et de livres en ligne de Corée du Sud, a subi une attaque de ransomware qui a mis son site Web et son application mobile hors ligne pendant plusieurs heures. Il s'agit de la deuxième attaque de ce type en moins de deux mois pour l'entreprise. Les services o...
Ghost CMS 5.59.1 - Arbitrary File Read
Ghost CMS 5.42.1 - Path Traversal
Le bureau de l'avocat général de Pennsylvanie a été victime d'une cyberattaque qui a mis hors ligne ses systèmes téléphoniques et de messagerie électronique. Les enquêteurs travaillent pour déterminer la cause de l'incident et restaurer les services. Les procureurs continuent de travailler sur les a...
Belkin F9K1009 F9K1010 2.00.04/2.00.09 - Hard Coded Credentials
VMware vSphere Client 8.0.3.0 - Reflected Cross-Site Scripting (XSS)
Une cyberattaque a visé le fournisseur français de services de gestion de fonds Linedata, ce qui a entraîné la suspension de fonds utilisant Tutman Fund Solutions en tant que directeur corporatif autorisé. L'attaque a eu un impact sur environ 80 fonds. Linedata est une entreprise de technologie, de...
Microsoft SharePoint Server 2019 (16.0.10383.20020) - Remote Code Execution (RCE)
Tigo Energy Cloud Connect Advanced (CCA) 4.0.1 - Command Injection
Un groupe russe a revendiqué une attaque par ransomware contre Welrix I&F, une filiale de Welcome Financial Group, et a affirmé avoir acquis la base de données des clients. L'entreprise a alerté les autorités de cybersécurité et les autorités financières. L'attaque est la dernière d'une série de cyb...