BlackSuit, Royal ransomware group hit over 450 US victims before last month’s takedown

The Department of Homeland Security said the Russian cybercrime collective received at least $370 million in ransom payments, based on current cryptocurrency valuations.

The post BlackSuit, Royal ransomware group hit over 450 US victims before last month’s takedown appeared first on CyberScoop.

Continue reading BlackSuit, Royal ransomware group hit over 450 US victims before last month’s takedown

CISA, Microsoft warn organizations of high-severity Microsoft Exchange vulnerability

The public disclosure and advisories came late Wednesday during Black Hat, but Microsoft said the timing was coordinated.

The post CISA, Microsoft warn organizations of high-severity Microsoft Exchange vulnerability appeared first on CyberScoop.

Continue reading CISA, Microsoft warn organizations of high-severity Microsoft Exchange vulnerability

Nigerian accused of hacking tax preparation businesses extradited to US

Prosecutors accuse Chukwuemeka Victor Amachukwu, who was arrested in France, of multiple fraud schemes, including tax refund fraud and identity theft.

The post Nigerian accused of hacking tax preparation businesses extradited to US appeared first on CyberScoop.

Continue reading Nigerian accused of hacking tax preparation businesses extradited to US

SonicWall firewalls hit by active mass exploitation of suspected zero-day

About 20 organizations have been impacted and the pace of attacks is rising. Threat researchers and SonicWall are scrambling to determine the root cause.

The post SonicWall firewalls hit by active mass exploitation of suspected zero-day appeared first on CyberScoop.

Continue reading SonicWall firewalls hit by active mass exploitation of suspected zero-day

Google addresses six vulnerabilities in August’s Android security update

Android partners and customers have experienced a temporary respite from double-digit vulnerabilities this summer. Google issued no security patches in its update last month.

The post Google addresses six vulnerabilities in August’s Android security update appeared first on CyberScoop.

Continue reading Google addresses six vulnerabilities in August’s Android security update

Details emerge on BlackSuit ransomware takedown

The Russian cybercrime group attacked more than 180 organizations before members abandoned the brand and dispersed to new ransomware groups earlier this year.

The post Details emerge on BlackSuit ransomware takedown appeared first on CyberScoop.

Continue reading Details emerge on BlackSuit ransomware takedown

CrowdStrike investigated 320 North Korean IT worker cases in the past year

Threat hunters saw North Korean operatives almost daily, reflecting a 220% year-over-year increase in activity, CrowdStrike said in a new report.

The post CrowdStrike investigated 320 North Korean IT worker cases in the past year appeared first on CyberScoop.

Continue reading CrowdStrike investigated 320 North Korean IT worker cases in the past year

Social engineering attacks surged this past year, Palo Alto Networks report finds

Unit 42 said social engineering — the method of choice for groups as diverse as Scattered Spider and North Korean tech workers — was the top initial attack vector over the past year.

The post Social engineering attacks surged this past year, Palo Alto Networks report finds appeared first on CyberScoop.

Continue reading Social engineering attacks surged this past year, Palo Alto Networks report finds

Russia-affiliated Secret Blizzard conducting ongoing espionage against embassies in Moscow

A new Microsoft report finds that the long-running threat group has gained positions on state-aligned ISPs and Russian telecoms, while tricking foreign embassy staff to download custom malware.

The post Russia-affiliated Secret Blizzard conducting ongoing espionage against embassies in Moscow appeared first on CyberScoop.

Continue reading Russia-affiliated Secret Blizzard conducting ongoing espionage against embassies in Moscow

Project Zero disclosure policy change puts vendors on early notice

Google wants to shorten delays in the vulnerability lifecycle by sharing limited details about newly discovered defects within a week of reporting to the affected vendor.

The post Project Zero disclosure policy change puts vendors on early notice appeared first on CyberScoop.

Continue reading Project Zero disclosure policy change puts vendors on early notice