DanaBot malware operation seized in global takedown

The successful break-up of DanaBot marks the second high-profile law enforcement disruption of a widespread malware operation in as many days.

The post DanaBot malware operation seized in global takedown appeared first on CyberScoop.

Continue reading DanaBot malware operation seized in global takedown

Lumma infostealer infected about 10 million systems before global disruption

Cybercriminals used the prolific malware to target individuals and businesses, including Fortune 500 companies, according to the FBI.

The post Lumma infostealer infected about 10 million systems before global disruption appeared first on CyberScoop.

Continue reading Lumma infostealer infected about 10 million systems before global disruption

Lumma Stealer toppled by globally coordinated takedown

Global law enforcement authorities and Microsoft seized or disrupted the prolific infostealer’s central command infrastructure, malicious domains and marketplaces where the malware was sold.

The post Lumma Stealer toppled by globally coordinated takedown appeared first on CyberScoop.

Continue reading Lumma Stealer toppled by globally coordinated takedown

Coinbase flips $20M extortion demand into bounty for info on attackers

The largest cryptocurrency exchange in the U.S. said cybercriminals bribed insiders to steal data on customers, some of whom were duped into handing over crypto assets.

The post Coinbase flips $20M extortion demand into bounty for info on attackers appeared first on CyberScoop.

Continue reading Coinbase flips $20M extortion demand into bounty for info on attackers

Who needs VC funding? How cybercriminals spread their ill-gotten gains to everyday business ventures

The benefits of cybercrime aren’t all flashy cars and watches. Sophos X-Ops researchers discovered it also fuels a far-reaching mix of ordinary, sometimes unremarkable businesses.

The post Who needs VC funding? How cybercriminals spread their ill-gotten gains to everyday business ventures appeared first on CyberScoop.

Continue reading Who needs VC funding? How cybercriminals spread their ill-gotten gains to everyday business ventures

Microsoft’s Patch Tuesday closes 72 vulnerabilities, including 5 zero-days

The company has addressed zero-day vulnerabilities for eight consecutive months without deeming any of them critical at the time of disclosure.

The post Microsoft’s Patch Tuesday closes 72 vulnerabilities, including 5 zero-days appeared first on CyberScoop.

Continue reading Microsoft’s Patch Tuesday closes 72 vulnerabilities, including 5 zero-days

Federal prosecutors extradite alleged leader of BlackBD.cc cybercrime marketplace

Authorities arrested Kosovo citizen Liridon Masurica in late 2024. He faces six charges that could keep him behind bars for 55 years.

The post Federal prosecutors extradite alleged leader of BlackBD.cc cybercrime marketplace appeared first on CyberScoop.

Continue reading Federal prosecutors extradite alleged leader of BlackBD.cc cybercrime marketplace

US seizes Anyproxy, 5socks botnets and indicts alleged administrators

The long-running botnet operation used malware that infected older wireless internet routers over a 20-year period, according to federal prosecutors.

The post US seizes Anyproxy, 5socks botnets and indicts alleged administrators appeared first on CyberScoop.

Continue reading US seizes Anyproxy, 5socks botnets and indicts alleged administrators

SonicWall customers confront resurgence of actively exploited vulnerabilities

The network security device vendor is making a regular appearance on CISA’s known exploited vulnerabilities catalog. Unlike its competitors, SonicWall hasn’t signed the secure-by-design pledge.

The post SonicWall customers confront resurgence of actively exploited vulnerabilities appeared first on CyberScoop.

Continue reading SonicWall customers confront resurgence of actively exploited vulnerabilities

PowerSchool customers hit by downstream extortion threats

The large education tech vendor was hit by a cyberattack and paid a ransom in December. Now, a threat actor is attempting to extort the company’s customers with stolen data.

The post PowerSchool customers hit by downstream extortion threats appeared first on CyberScoop.

Continue reading PowerSchool customers hit by downstream extortion threats