TLDR; Security researchers have identified two malicious npm packages, warbeast2000 and kodiak2k, designed to exfiltrate SSH keys from developers’ systems. These packages utilized GitHub repositories to store the stolen SSH keys, encrypted in Base64. A staggering 1300% increase in malicious packages on open-source package managers has been reported from 2020 to the end of 2023. In a concerning trend for […]
TLDR; Vladimir Dunaev, a 40-year-old Russian national, has been sentenced to over five years in prison for his role in developing and deploying the TrickBot malware, which caused significant financial damage globally. TrickBot, initially a banking Trojan, evolved to facilitate ransomware attacks, impacting hospitals, schools, and businesses with tens of millions of dollars in losses. The U.S. Department of […]
TLDR; Southern Water, a major UK water supplier, confirms a data breach after the Black Basta ransomware group claims responsibility. Black Basta threatens to release 750GB of sensitive data, including identity documents and personal information. Southern Water assures that customer services are not affected, and an investigation with cybersecurity specialists is underway. The breach highlights the growing cyber-threat to critical infrastructure […]
In a startling breach of digital security, the email marketing platform MailerLite has been compromised, leading to a sophisticated phishing campaign that drained over $600,000 in cryptocurrency from unsuspecting victims’ wallets. The attack targeted users of several high-profile cryptocurrency services, exploiting the trusted communication channels established by these platforms. MailerLite, known for its email marketing […]
In the vast ecosystem of Windows applications, OneLaunch has emerged as a controversial figure, stirring debates among users and IT professionals alike. Marketed as a productivity tool designed to enhance the Windows desktop experience, OneLaunch has found itself at the center of discussions regarding its legitimacy, safety, and overall utility. This article delves into the […]
Apple users beware: a new and sophisticated form of malware has been uncovered by Kaspersky Labs, targeting the digital sanctuaries of cryptocurrency enthusiasts – their Bitcoin and Exodus wallets. This malicious software, which has been found to affect users predominantly in the United States and Germany, is distributed through pirated applications and is specifically engineered […]
In a sector where security is paramount, the DeFi community was rocked by the news that Concentric Finance, a platform known for its robust security measures, fell victim to a cyber heist resulting in the loss of $1.6 million. The breach, which has sent shockwaves through the industry, highlights the ongoing battle against cyber threats […]
Denver-based pastor Eli Regalado has found himself at the center of a legal storm as he faces allegations of defrauding investors through a cryptocurrency scheme. The pastor, who collected over $1.3 million from investors, is being charged with securities fraud after reportedly using religious rhetoric to manipulate individuals into purchasing a digital token, INDXcoin, which […]
In a sobering reminder of the perpetual threat posed by cybercriminals, Trezor, a leading hardware cryptocurrency wallet provider, has confirmed it is grappling with the aftermath of a phishing attack. The security breach, which came to light on January 17, 2024, saw unauthorized access to a third-party support ticketing portal, potentially placing the contact details […]
Ransomware has emerged as one of the most formidable challenges, with 2023 marking a year of unprecedented activity. As we look ahead, it’s crucial to arm ourselves with knowledge about the top ransomware to watch in 2024. This article delves into the trends and threats that have shaped the cyber-sphere and what we can anticipate in the […]