Lumma Stealer toppled by globally coordinated takedown

Global law enforcement authorities and Microsoft seized or disrupted the prolific infostealer’s central command infrastructure, malicious domains and marketplaces where the malware was sold.

The post Lumma Stealer toppled by globally coordinated takedown appeared first on CyberScoop.

Continue reading Lumma Stealer toppled by globally coordinated takedown

Coinbase flips $20M extortion demand into bounty for info on attackers

The largest cryptocurrency exchange in the U.S. said cybercriminals bribed insiders to steal data on customers, some of whom were duped into handing over crypto assets.

The post Coinbase flips $20M extortion demand into bounty for info on attackers appeared first on CyberScoop.

Continue reading Coinbase flips $20M extortion demand into bounty for info on attackers

Who needs VC funding? How cybercriminals spread their ill-gotten gains to everyday business ventures

The benefits of cybercrime aren’t all flashy cars and watches. Sophos X-Ops researchers discovered it also fuels a far-reaching mix of ordinary, sometimes unremarkable businesses.

The post Who needs VC funding? How cybercriminals spread their ill-gotten gains to everyday business ventures appeared first on CyberScoop.

Continue reading Who needs VC funding? How cybercriminals spread their ill-gotten gains to everyday business ventures

Microsoft’s Patch Tuesday closes 72 vulnerabilities, including 5 zero-days

The company has addressed zero-day vulnerabilities for eight consecutive months without deeming any of them critical at the time of disclosure.

The post Microsoft’s Patch Tuesday closes 72 vulnerabilities, including 5 zero-days appeared first on CyberScoop.

Continue reading Microsoft’s Patch Tuesday closes 72 vulnerabilities, including 5 zero-days

Federal prosecutors extradite alleged leader of BlackBD.cc cybercrime marketplace

Authorities arrested Kosovo citizen Liridon Masurica in late 2024. He faces six charges that could keep him behind bars for 55 years.

The post Federal prosecutors extradite alleged leader of BlackBD.cc cybercrime marketplace appeared first on CyberScoop.

Continue reading Federal prosecutors extradite alleged leader of BlackBD.cc cybercrime marketplace

US seizes Anyproxy, 5socks botnets and indicts alleged administrators

The long-running botnet operation used malware that infected older wireless internet routers over a 20-year period, according to federal prosecutors.

The post US seizes Anyproxy, 5socks botnets and indicts alleged administrators appeared first on CyberScoop.

Continue reading US seizes Anyproxy, 5socks botnets and indicts alleged administrators

SonicWall customers confront resurgence of actively exploited vulnerabilities

The network security device vendor is making a regular appearance on CISA’s known exploited vulnerabilities catalog. Unlike its competitors, SonicWall hasn’t signed the secure-by-design pledge.

The post SonicWall customers confront resurgence of actively exploited vulnerabilities appeared first on CyberScoop.

Continue reading SonicWall customers confront resurgence of actively exploited vulnerabilities

PowerSchool customers hit by downstream extortion threats

The large education tech vendor was hit by a cyberattack and paid a ransom in December. Now, a threat actor is attempting to extort the company’s customers with stolen data.

The post PowerSchool customers hit by downstream extortion threats appeared first on CyberScoop.

Continue reading PowerSchool customers hit by downstream extortion threats

CrowdStrike cuts 5% of workforce after revenue jumped 29% last year

CEO George Kurtz said the decision to cut about 500 jobs was driven by internal efficiency gains from AI and multibillion-dollar opportunities in new market segments.

The post CrowdStrike cuts 5% of workforce after revenue jumped 29% last year appeared first on CyberScoop.

Continue reading CrowdStrike cuts 5% of workforce after revenue jumped 29% last year

Google addresses 1 actively exploited vulnerability in May’s Android security update

The monthly Android security update covers 47 vulnerabilities, including a high-severity defect in the widely used FreeType software library.

The post Google addresses 1 actively exploited vulnerability in May’s Android security update appeared first on CyberScoop.

Continue reading Google addresses 1 actively exploited vulnerability in May’s Android security update