Salesloft Drift attacks hit Cloudflare, Palo Alto Networks, Zscaler

Salesloft said the AI chat agent for sales and leads will be taken offline, as investigations into the attack spree widen and reveal more victims.

The post Salesloft Drift attacks hit Cloudflare, Palo Alto Networks, Zscaler appeared first on CyberScoop.

Continue reading Salesloft Drift attacks hit Cloudflare, Palo Alto Networks, Zscaler

Prolific Russian ransomware operator living in California enjoys rare leniency awaiting trial

Ianis Aleksandrovich Antropenko allegedly committed ransomware attacks from 2018 to 2022. He’s been out on bond since his arrest almost a year ago, despite multiple run-ins with police.

The post Prolific Russian ransomware operator living in California enjoys rare leniency awaiting trial appeared first on CyberScoop.

Continue reading Prolific Russian ransomware operator living in California enjoys rare leniency awaiting trial

Salesloft Drift compromised en masse, impacting all third-party integrations

Researchers said Google Workspace customers were hit, and noted other platforms are impacted as well. Fresh evidence proves impact was not limited to Salesforce, as Salesloft previously claimed.

The post Salesloft Drift compromised en masse, impacting all third-party integrations appeared first on CyberScoop.

Continue reading Salesloft Drift compromised en masse, impacting all third-party integrations

Treasury sanctions North Korea IT worker scheme facilitators and front organizations

As the sanctions-evading scheme has grown, so too has the U.S. government’s response.

The post Treasury sanctions North Korea IT worker scheme facilitators and front organizations appeared first on CyberScoop.

Continue reading Treasury sanctions North Korea IT worker scheme facilitators and front organizations

Microsoft details Storm-0501’s focus on ransomware in the cloud

The financially motivated threat group demonstrates deep knowledge of hybrid cloud environments, which allows it to rapidly steal sensitive data, destroy backups and encrypt systems for ransomware.

The post Microsoft details Storm-0501’s focus on ransomware in the cloud appeared first on CyberScoop.

Continue reading Microsoft details Storm-0501’s focus on ransomware in the cloud

Citrix NetScaler customers hit by third actively exploited zero-day vulnerability since June

The vendor, which has been widely targeted, said the memory-overflow vulnerability can result in remote-code execution or denial of service.

The post Citrix NetScaler customers hit by third actively exploited zero-day vulnerability since June appeared first on CyberScoop.

Continue reading Citrix NetScaler customers hit by third actively exploited zero-day vulnerability since June

Hundreds of Salesforce customers impacted by attack spree linked to third-party AI agent

A threat group Google tracks as UNC6395 systematically stole large amounts of data from Salesforce customer instances by using OAuth tokens stolen from Salesloft Drift, researchers said.

The post Hundreds of Salesforce customers impacted by attack spree linked to third-party AI agent appeared first on CyberScoop.

Continue reading Hundreds of Salesforce customers impacted by attack spree linked to third-party AI agent

Data I/O reports business disruptions in wake of ransomware attack

The electronics manufacturer and software vendor serves major automotive suppliers and top tech firms.

The post Data I/O reports business disruptions in wake of ransomware attack appeared first on CyberScoop.

Continue reading Data I/O reports business disruptions in wake of ransomware attack

Interpol-led crackdown disrupts cybercrime networks in Africa that caused $485 million in losses

Operation Serengeti 2.0 dismantled almost 11,500 malicious infrastructures between June and August. Officials arrested more than 1,200 alleged cybercriminals.

The post Interpol-led crackdown disrupts cybercrime networks in Africa that caused $485 million in losses appeared first on CyberScoop.

Continue reading Interpol-led crackdown disrupts cybercrime networks in Africa that caused $485 million in losses

Apple discloses actively exploited zero-day affecting iOS, iPadOS and macOS

The defect, which affects the company’s most popular devices, has been exploited in an “extremely sophisticated attack against specific targeted individuals,” Apple said.

The post Apple discloses actively exploited zero-day affecting iOS, iPadOS and macOS appeared first on CyberScoop.

Continue reading Apple discloses actively exploited zero-day affecting iOS, iPadOS and macOS