DOJ seizes $7.7M from crypto funds linked to North Korea’s IT worker scheme

Authorities said they froze and seized the allegedly illegally obtained funds when North Korean nationals attempted to launder money linked to the long-running conspiracy.

The post DOJ seizes $7.7M from crypto funds linked to North Korea’s IT worker scheme appeared first on CyberScoop.

Continue reading DOJ seizes $7.7M from crypto funds linked to North Korea’s IT worker scheme

Feds seize 145 domains associated with BidenCash cybercrime platform

The cybercrime marketplace was used by more than 117,000 customers and trafficked more than 15 million credit card numbers since March 2022, the Justice Department said.

The post Feds seize 145 domains associated with BidenCash cybercrime platform appeared first on CyberScoop.

Continue reading Feds seize 145 domains associated with BidenCash cybercrime platform

Salesforce customers duped by series of social-engineering attacks

Google Threat Intelligence Group said about 20 organizations have been hit by a cybercrime group it tracks as UNC6040.

The post Salesforce customers duped by series of social-engineering attacks appeared first on CyberScoop.

Continue reading Salesforce customers duped by series of social-engineering attacks

Google addresses 34 high-severity vulnerabilities in June’s Android security update

The most serious flaw in the monthly security update affects the Android system and could be exploited to achieve local escalation of privilege, the company said.

The post Google addresses 34 high-severity vulnerabilities in June’s Android security update appeared first on CyberScoop.

Continue reading Google addresses 34 high-severity vulnerabilities in June’s Android security update

CrowdStrike, Microsoft aim to eliminate confusion in threat group attribution

Wild variances in naming taxonomies aren’t going away, but a new initiative from the security vendors aims to more publicly address obvious overlap in threat group attribution.

The post CrowdStrike, Microsoft aim to eliminate confusion in threat group attribution appeared first on CyberScoop.

Continue reading CrowdStrike, Microsoft aim to eliminate confusion in threat group attribution

Top counter antivirus service disrupted in global takedown

AVCheck and related crypting services helped cybercriminals make malware difficult to detect and confirm that malware could slip through various antivirus tools undetected, officials said.

The post Top counter antivirus service disrupted in global takedown appeared first on CyberScoop.

Continue reading Top counter antivirus service disrupted in global takedown

US intelligence employee arrested for alleged double-dealing of classified info

The 28-year-old, who’d been employed by the Defense Intelligence Agency since 2019, specialized in insider threats and had top secret security clearance, officials said.

The post US intelligence employee arrested for alleged double-dealing of classified info appeared first on CyberScoop.

Continue reading US intelligence employee arrested for alleged double-dealing of classified info

Treasury sanctions crypto scam facilitator that allegedly stole $200M from US victims

The Philippines-based company Funnull operated a large cybercrime platform encompassing more than 332,000 domains, the FBI said.

The post Treasury sanctions crypto scam facilitator that allegedly stole $200M from US victims appeared first on CyberScoop.

Continue reading Treasury sanctions crypto scam facilitator that allegedly stole $200M from US victims

Questions mount as Ivanti tackles another round of zero-days

The besieged security vendor maintains the latest exploited vulnerabilities in its products are entirely linked to unspecified security issues in open-source libraries. Some researchers aren’t buying it.

The post Questions mount as Ivanti tackles another round of zero-days appeared first on CyberScoop.

Continue reading Questions mount as Ivanti tackles another round of zero-days

New Russian state-sponsored APT quickly gains global reach, hitting expansive targets

Laundry Bear, a group recently identified by Dutch intelligence and security services, stole work-related contact details on the Netherlands’ national police force in September 2024, Microsoft researchers said.

The post New Russian state-sponsored APT quickly gains global reach, hitting expansive targets appeared first on CyberScoop.

Continue reading New Russian state-sponsored APT quickly gains global reach, hitting expansive targets