Authorities disrupt Evil Corp’s SocGholish botnet

Cybersecurity firms, researchers and officials took down 106 servers and remediated nearly 15,000 sites that were infected with the malware.

The post Authorities disrupt Evil Corp’s SocGholish botnet appeared first on CyberScoop.

Continue reading Authorities disrupt Evil Corp’s SocGholish botnet

How software development’s speed obsession enabled TeamPCP’s chaos crusade

The threat group’s remarkable success targeting open-source software was inevitable and fueled by the industry’s decision to prioritize code shipping over security.

The post How software development’s speed obsession enabled TeamPCP’s chaos crusade appeared first on CyberScoop.

Continue reading How software development’s speed obsession enabled TeamPCP’s chaos crusade

Attackers hit pair of critical Fortinet vulnerabilities the vendor disclosed in April

Multiple firms have observed active exploitation of the FortiSandbox defects, and warn that the attacks originate from multiple sources, not a single campaign.

The post Attackers hit pair of critical Fortinet vulnerabilities the vendor disclosed in April appeared first on CyberScoop.

Continue reading Attackers hit pair of critical Fortinet vulnerabilities the vendor disclosed in April

Google exposes China espionage group that’s been lurking in networks undetected since 2023

The revelation mirrors an alarming pattern of Chinese espionage groups dropping backdoors into critical infrastructure to intercept research and steal data with national security implications.

The post Google exposes China espionage group that’s been lurking in networks undetected since 2023 appeared first on CyberScoop.

Continue reading Google exposes China espionage group that’s been lurking in networks undetected since 2023

FBI takes down massive China-based cybercrime network that caused $1.9B in losses

Outsider provided phishing kits and infrastructure for cybercriminals to scam victims with lures claiming they missed packages, had unpaid tolls or parking violations.

The post FBI takes down massive China-based cybercrime network that caused $1.9B in losses appeared first on CyberScoop.

Continue reading FBI takes down massive China-based cybercrime network that caused $1.9B in losses

Conti ransomware group member pleads guilty, faces up to 20 years in prison

Oleksii Lytvynenko, a 44-year-old Ukrainian national, admitted to joining the prolific cybercrime group in 2021. Officials said he engaged in cybercrime up until his arrest in Ireland in 2023.

The post Conti ransomware group member pleads guilty, faces up to 20 years in prison appeared first on CyberScoop.

Continue reading Conti ransomware group member pleads guilty, faces up to 20 years in prison

Conti ransomware group member pleads guilty, faces up to 20 years in prison

Oleksii Lytvynenko, a 44-year-old Ukrainian national, admitted to joining the prolific cybercrime group in 2021. Officials said he engaged in cybercrime up until his arrest in Ireland in 2023.

The post Conti ransomware group member pleads guilty, faces up to 20 years in prison appeared first on CyberScoop.

Continue reading Conti ransomware group member pleads guilty, faces up to 20 years in prison

ShinyHunters is actively extorting universities after exploiting an unpatched Oracle flaw

Oracle still hasn’t patched the vulnerability the group has been using in its attacks since late May.

The post ShinyHunters is actively extorting universities after exploiting an unpatched Oracle flaw appeared first on CyberScoop.

Continue reading ShinyHunters is actively extorting universities after exploiting an unpatched Oracle flaw

Microsoft breaks Patch Tuesday record with 206 vulnerabilities

Fears and warnings about a roaring flood of error-riddled software have materialized. And the disease is spreading.

The post Microsoft breaks Patch Tuesday record with 206 vulnerabilities appeared first on CyberScoop.

Continue reading Microsoft breaks Patch Tuesday record with 206 vulnerabilities

Cisco customers encounter another SD-WAN zero-day under attack

The defect marks the seventh actively exploited zero-day in Cisco SD-WANs this year, and the vendor has yet to release a patch.

The post Cisco customers encounter another SD-WAN zero-day under attack appeared first on CyberScoop.

Continue reading Cisco customers encounter another SD-WAN zero-day under attack