Cybersecurity

ResumeLooters Steal Millions of Unique Emails from Multiple Sites | Cyware Hacker News

A large-scale attack campaign attributed to the ResumeLotters threat group has come to the notice of Group-IB researchers. The campaign was active between November and December 2023 and was successfully launched against 65 websites to steal over two million unique emails.  Tactics used According to researchers, the group leveraged SQL injection and Cross-Site Scripting (XSS) […]

Cybersecurity

Chinese Hackers Operate Undetected in U.S. Critical Infrastructure for Half a Decade

The U.S. government on Wednesday said the Chinese state-sponsored hacking group known as Volt Typhoon had been embedded into some critical infrastructure networks in the country for at least five years. Targets of the threat actor include communications, energy, transportation, and water and wastewater systems sectors in the U.S. and Guam. “Volt Typhoon’s choice of […]

Cybersecurity

Iran-linked hackers claim attack on Albania’s Institute of Statistics

An Iran-linked hacking group with a history of targeting Albanian state agencies and businesses said on Thursday that it was behind an attack on the country’s Institute of Statistics (INSTAT), which is responsible for census information and other official statistics. Due to the “sophisticated” cyber incident that affected INSTAT’s official website and email service, the […]

Cybersecurity

Kasseika Ransomware Using BYOVD Trick to Disarms Security Pre-Encryption

The ransomware group known as Kasseika has become the latest to leverage the Bring Your Own Vulnerable Driver (BYOVD) attack to disarm security-related processes on compromised Windows hosts, joining the likes of other groups like Akira, AvosLocker, BlackByte, and RobbinHood. The tactic allows “threat actors to terminate antivirus processes and services for the deployment of […]