The ransomware economy is shifting toward straight-up data extortion

Google’s research report on ransomware activity last year underscores how cybercrime is evolving and clouding a collective understanding of its full impact and scale.

The post The ransomware economy is shifting toward straight-up data extortion appeared first on CyberScoop.

Continue reading The ransomware economy is shifting toward straight-up data extortion

Authorities takedown global proxy network SocksEscort

The botnet, which compromised routers and IoT devices in 163 countries, claimed about 369,000 victims and $5.8 million from its cybercriminal customers, officials said.

The post Authorities takedown global proxy network SocksEscort appeared first on CyberScoop.

Continue reading Authorities takedown global proxy network SocksEscort

Feds say another DigitalMint negotiator ran ransomware attacks and extorted $75 million

Angelo Martino is accused of playing both sides — committing attacks and conducting ransomware negotiations on some of the same cases on behalf of his former employer.

The post Feds say another DigitalMint negotiator ran ransomware attacks and extorted $75 million appeared first on CyberScoop.

Continue reading Feds say another DigitalMint negotiator ran ransomware attacks and extorted $75 million

Salesforce issues new security alert tied to third customer attack spree in six months

Researchers said the threat group behind the campaign is associated with ShinyHunters, an outfit that’s previously stolen data from Salesforce instances for extortion attempts.

The post Salesforce issues new security alert tied to third customer attack spree in six months appeared first on CyberScoop.

Continue reading Salesforce issues new security alert tied to third customer attack spree in six months

Microsoft’s monthly Patch Tuesday is first in 6 months with no actively exploited zero-days

The vendor said six of the 83 vulnerabilities it addressed this month are more likely to be exploited.

The post Microsoft’s monthly Patch Tuesday is first in 6 months with no actively exploited zero-days appeared first on CyberScoop.

Continue reading Microsoft’s monthly Patch Tuesday is first in 6 months with no actively exploited zero-days

Critical defect in Java security engine poses serious downstream security risks

Attackers can exploit the defect in the widely deployed pac4j with relative ease, but researchers haven’t observed active exploitation in the wild.

The post Critical defect in Java security engine poses serious downstream security risks appeared first on CyberScoop.

Continue reading Critical defect in Java security engine poses serious downstream security risks

Microsoft warns North Korean threat groups are scaling up fake worker schemes with generative AI

Attackers have turned AI into a “force multiplier” for the country’s expansive scheme to get and keep operatives hired at global companies, researchers said.

The post Microsoft warns North Korean threat groups are scaling up fake worker schemes with generative AI appeared first on CyberScoop.

Continue reading Microsoft warns North Korean threat groups are scaling up fake worker schemes with generative AI

Phobos ransomware leader pleads guilty, faces up to 20 years in prison

The 43-year-old Russian national ran a ransomware operation that impacted more than 1,000 victims globally. The conspiracy netted more than $39 million in extortion payments.

The post Phobos ransomware leader pleads guilty, faces up to 20 years in prison appeared first on CyberScoop.

Continue reading Phobos ransomware leader pleads guilty, faces up to 20 years in prison

Cisco reveals 2 max-severity defects in firewall management software

The vendor said it’s not aware of any active exploitation of the vulnerabilities, which could allow remote attackers to achieve root access and execute code.

The post Cisco reveals 2 max-severity defects in firewall management software appeared first on CyberScoop.

Continue reading Cisco reveals 2 max-severity defects in firewall management software

Global coalition dismantles Tycoon 2FA phishing kit

Microsoft, which led the effort, said it seized 330 domains that powered the phishing platform’s core infrastructure. The alleged creator was also named in a civil complaint.

The post Global coalition dismantles Tycoon 2FA phishing kit appeared first on CyberScoop.

Continue reading Global coalition dismantles Tycoon 2FA phishing kit