Cybersecurity

Hackers Hijack GitHub Accounts in Supply Chain Attack Affecting Top-gg and Others

Unidentified adversaries orchestrated a sophisticated attack campaign that has impacted several individual developers as well as the GitHub organization account associated with Top.gg, a Discord bot discovery site. “The threat actors used multiple TTPs in this attack, including account takeover via stolen browser cookies, contributing malicious code with verified commits, setting up a custom Python […]

Cybersecurity

PAX PoS Terminal Flaw Could Allow Attackers to Tamper with Transactions

Jan 17, 2024NewsroomFinancial Data / Vulnerability The point-of-sale (PoS) terminals from PAX Technology are impacted by a collection of high-severity vulnerabilities that can be weaponized by threat actors to execute arbitrary code. The STM Cyber R&D team, which reverse engineered the Android-based devices manufactured by the Chinese firm owing to their rapid deployment in Poland, […]

Cybersecurity

Stanley Steemer hack breached data of almost 67K customers

Stanley Steemer International was the target of an external hack that impacted almost 67,000 customers, according to a consumer breach notification posted Wednesday with the Maine Attorney General’s office.  The Dublin, Ohio-based carpet cleaning company said it originally detected suspicious activity on March 6. After an initial investigation, the company determined the attackers gained access […]

Cybersecurity

Critical systems restored at English council following ransomware attack

Less than two months after a ransomware attack impacted St Helens Borough Council in northwest England, most services at the council are running again. Located between Liverpool and Manchester, the council — the local government authority in an area with about 180,000 residents — announced a “suspected ransomware incident” toward the end of August. It […]