Cybersecurity

Fintech Giant Finastra Investigating Data Breach

   ​ The financial technology firm Finastra is investigating the alleged large-scale theft of information from its internal file transfer platform, KrebsOnSecurity has learned. Finastra, which provides software and services to 45 of the world’s top 50 banks, notified customers of a potential breach after a cybercriminal began selling more than 400 gigabytes of data purportedly …

Fintech Giant Finastra Investigating Data Breach Read More »

An Interview With the Target & Home Depot Hacker

   ​ In December 2023, KrebsOnSecurity revealed the real-life identity of Rescator, the nickname used by a Russian cybercriminal who sold more than 100 million payment cards stolen from Target and Home Depot between 2013 and 2014. Moscow resident Mikhail Shefel, who confirmed using the Rescator identity in a recent interview, also admitted reaching out because …

An Interview With the Target & Home Depot Hacker Read More »

Microsoft Patch Tuesday, November 2024 Edition

   ​ Microsoft today released updates to plug at least 89 security holes in its Windows operating systems and other software. November’s patch batch includes fixes for two zero-day vulnerabilities that are already being exploited by attackers, as well as two other flaws that were publicly disclosed prior to today.​ ​[[{“value”:” Microsoft today released updates to …

Microsoft Patch Tuesday, November 2024 Edition Read More »

FBI: Spike in Hacked Police Emails, Fake Subpoenas

   ​ The Federal Bureau of Investigation (FBI) is urging police departments and governments worldwide to beef up security around their email systems, citing a recent increase in cybercriminal services that use hacked police email accounts to send unauthorized subpoenas and customer data requests to U.S.-based technology companies.​ ​[[{“value”:” The Federal Bureau of Investigation (FBI) is …

FBI: Spike in Hacked Police Emails, Fake Subpoenas Read More »

Canadian Man Arrested in Snowflake Data Extortions

   ​ [[{“value”:”A 26-year-old man in Ontario, Canada has been arrested for allegedly stealing data from and extorting more than 160 companies that used the cloud data service Snowflake. On October 30, Canadian authorities arrested Alexander Moucka, a.k.a. Connor Riley Moucka of Kitchener, Ontario, on a provisional arrest warrant from the United States. Bloomberg first reported …

Canadian Man Arrested in Snowflake Data Extortions Read More »

Booking.com Phishers May Leave You With Reservations

   ​ A number of cybercriminal innovations are making it easier for scammers to cash in on your upcoming travel plans. This story examines a recent spear-phishing campaign that ensued when a California hotel had its booking.com credentials stolen. We’ll also explore an array of cybercrime services aimed at phishers who target hotels that rely on …

Booking.com Phishers May Leave You With Reservations Read More »

Change Healthcare Breach Hits 100M Americans

   ​ Change Healthcare says it has notified approximately 100 million Americans that their personal, financial and healthcare records may have been stolen in a February 2024 ransomware attack that caused the largest ever known data breach of protected health information.​ ​[[{“value”:” Change Healthcare says it has notified approximately 100 million Americans that their personal, financial …

Change Healthcare Breach Hits 100M Americans Read More »

Brazil Arrests ‘USDoD,’ Hacker in FBI Infragard Breach

   ​ Brazilian authorities reportedly have arrested a 33-year-old man on suspicion of being “USDoD,” a prolific cybercriminal who rose to infamy in 2022 after infiltrating the FBI’s InfraGard program and leaking contact information for 80,000 members. More recently, USDoD was behind a breach at the consumer data broker National Public Data that led to the …

Brazil Arrests ‘USDoD,’ Hacker in FBI Infragard Breach Read More »

Sudanese Brothers Arrested in ‘AnonSudan’ Takedown

   ​ The U.S. government on Wednesday announced the arrest and charging of two Sudanese brothers accused of running Anonymous Sudan (a.k.a. AnonSudan), a cybercrime business known for launching powerful distributed denial-of-service (DDoS) attacks against a range of targets, including dozens of hospitals, news websites and cloud providers. One of the brothers is facing life in …

Sudanese Brothers Arrested in ‘AnonSudan’ Takedown Read More »

Scroll to Top