サイバーセキュリティ

U.S. Authorities Seize Domains Used in ‘Pig butchering’ Cryptocurrency Scams

U.S. Authorities Seize Domains Used in ‘Pig butchering’ Cryptocurrency Scams The U.S. Justice Department (DoJ) on Monday announced the takedown of seven domain names in connection to a “pig butchering” cryptocurrency scam. The fraudulent scheme, which operated from May to August 2022, netted the actors over $10 million from five victims, the DoJ said. Pig butchering, also known as Sha Zhu Pan, is a type of scam in which swindlers trick unsuspecting investors into sending their crypto assets. The criminals pound potential victims on dating apps, social media sites, and SMS messages. These individuals initiate and build fake relationships in an attempt to build trust, only to trick them into […]

続きを読む
サイバーセキュリティ

Luna Moth Gang Invests in Call Centers to Target Businesses with Callback Phishing Campaigns

Luna Moth Gang Invests in Call Centers to Target Businesses with Callback Phishing Campaigns The Luna Moth campaign has extorted hundreds of thousands of dollars from several victims in the legal and retail sectors. The victims were attacked through a process called callback phishing or telephone-oriented attack delivery (TOAD), wherein the victims are socially engineered into making a phone call through phishing emails containing invoices and subscription-themed lures. Palo Alto Networks Unit 42 said the attacks are the “product of a single highly organized campaign,” adding, “this threat actor has significantly invested in call centers and infrastructure that’s unique to each victim.” The cybersecurity firm described the activity as a […]

続きを読む
サイバーセキュリティ

Indian Government Publishes Draft of Digital Personal Data Protection Bill 2022

Indian Government Publishes Draft of Digital Personal Data Protection Bill 2022 The Indian government on Friday released a draft version of the much-awaited data protection regulation, making it the fourth such effort since it was first proposed in July 2018. The Digital Personal Data Protection Bill, 2022, aims to secure personal data, while also seeking users’ consent in what the draft claims is “clear and plain language” describing the exact kinds of information that will be collected and for what purpose. The draft is open for public consultation until December 17, 2022. India has over 760 million active internet users, pointing out to the fact that data generated and used […]

続きを読む
サイバーセキュリティ

Daixin Ransomware Gang Steals 5 Million AirAsia Passengers’ and Employees’ Data

Daixin Ransomware Gang Steals 5 Million AirAsia Passengers’ and Employees’ Data Cybersecurity cases are still rising and there’s no stopping it. So what’s in the news today?The cybercrime group called Daixin Team has leaked sample data belonging to AirAsia, a Malaysian low-cost airline, on its data leak portal. The development came a little over a week after the company fell victim to a ransomware attack on November 11 and 12, per DataBreaches.net. The authorities have confirmed that the threat actors have obtained the personal data associated with five million unique passengers and all of its employees. The samples uploaded to the leak site reveal passenger information and the booking IDs […]

続きを読む
サイバーセキュリティ

Meta Reportedly Fires Dozens of Employees in 2022 for Hijacking Users’ Facebook and Instagram Accounts

Meta Reportedly Fires Dozens of Employees for Hijacking Users’ Facebook and Instagram Accounts Meta is the new hype these days. Education, the fashion industry etc are stepping into this world. But the new world i e, Meta is not safe from cyberattacks. Meta Platforms is said to have fired or disciplined over two dozen employees and contractors over the past year for allegedly compromising and taking over user accounts, The Wall Street Journal reported Thursday. Some of these cases involved bribery, the publication said, citing sources and documents. Included among those fired were contractors who worked as security guards at the social media firm’s facilities and were given access to […]

続きを読む
サイバーセキュリティ

Indian Entrepreneur Invited By US Vice President, Discusses Cyber Security

Indian Entrepreneur Invited By US Vice President, Discusses Cyber Security Indian tech entrepreneur Trishneet Arora has shared his vision to deal with the growing menace of cyber security with US Vice President Kamala Harris during aTrishneet Arora, the CEO of TAC Security, was invited by Kamala Harris to the gathering in Albuquerque, New Mexico. During the special gathering of young business leaders , “I am profusely honoured to have met the Vice President of the United States of America. She is empowering women across the world and stands as a strong inspiration for them,” Mr Arora said.Kamala Harris, 57, is the first woman, the first Black American, and the first […]

続きを読む
サイバーセキュリティ

CDSL services down due to cyber attacks

CDSL services down due to cyber attacks Settlement services at Central Depository Services (India), the country’s largest depository by way of active demat accounts, were affected on Friday due to cyber attacks. Brokers said services such as pay-in, pay-out, pledge, or unpledged securities for margin were down due to system failure at the CDSL. However, trading was not affected, they added. CDSL, in a press release, said it has detected malware in a few of its internal machines. “As a matter of abundant caution, the company immediately isolated the machines and disconnected itself from other constituents of the capital market,” CDSL said. A malware attack is a cyberattack where malicious […]

続きを読む
サイバーセキュリティ

Many financial institutions say their own IT staffs pose the biggest risk to cloud security

44% of financial institutions say their own IT staffs pose the biggest risk to data security in the cloud. A follow-on to a report released earlier this year, this deep dive into the financial sector also found that 32% of financial organizations experienced accidental data leakage compared to the average of 25% in other verticals. Dirk Schrader, vice president of security research at Netwrix, said organizations need to implement a zero-standing privilege approach in which elevated access rights are granted only when they are needed and only for as long as required. “Cloud misconfigurations are another common reason for accidental data leakage,” said Schrader. “Therefore, security teams must continually monitor […]

続きを読む
サイバーセキュリティ

Russia’s cyber personnel has ‘underperformed’ in Ukraine:

U.S. Defense official said that Russia’s cyber personnel underperformed during Ukraine’s initial invasion A senior Pentagon official on Wednesday said that Russia’s cyber personnel “underperformed” during the initial invasion of Ukraine, prompting it to ultimately rely less on digital attacks during the now months-long conflict than was expected. Speaking at the Aspen Cyber Summit, Mieke Eoyang, the deputy assistant secretary of defense for cyber policy, said Moscow “was not prepared for the conflict to go on as long as it did” and noted the Kremlin had sacrificed “intensity and sophistication” in order to rebuild its arsenal and avoid potential conflict that would draw in NATO. “We have to understand how […]

続きを読む
サイバーセキュリティ

Chinese Hackers Using 42,000 Imposter Domains in Massive Phishing Attack Campaign

The threat actor have registered over 42,000 imposter domains A China-based financially motivated group is leveraging the trust associated with popular international brands to orchestrate a large-scale phishing campaign dating back as far as 2019. The threat actor, dubbed Fangxiao by Cyjax, is said to have registered over 42,000 imposter domains, with initial activity observed in 2017. “It targets businesses in multiple verticals including retail, banking, travel, and energy,” researchers Emily Dennison and Alana Witten said. “Promised financial or physical incentives are used to trick victims into further spreading the campaign via WhatsApp.” The Users are sent a message with a link and on clicking the link, they are directed to an actor-controlled site, which, […]

続きを読む