Critical

US sanctions Tren de Aragua gang members in ATM hacks crackdown

BleepingComputer
Actively Exploited

Overview

The U.S. Treasury Department has imposed sanctions on eight members of the Tren de Aragua gang, a Venezuelan criminal organization linked to a series of ATM jackpotting attacks across the United States. These attacks have resulted in the theft of millions of dollars, exploiting vulnerabilities in ATM systems to dispense large sums of cash fraudulently. By targeting these gang members, the U.S. government aims to disrupt their operations and prevent further financial crimes. This action highlights the ongoing issue of organized crime groups using technology to facilitate theft and the need for continued vigilance in safeguarding financial systems. The sanctions might also serve as a warning to other criminal entities involved in similar activities.

Key Takeaways

  • Active Exploitation: This vulnerability is being actively exploited by attackers. Immediate action is recommended.
  • Affected Systems: ATM systems vulnerable to jackpotting attacks
  • Action Required: Financial institutions should enhance security measures on ATM systems, including software updates and monitoring for suspicious activity.
  • Timeline: Ongoing since [timeframe]

Original Article Summary

The U.S. Treasury Department has sanctioned eight members of the Venezuelan gang Tren de Aragua (TdA) for their role in the theft of millions of dollars in ATM jackpotting attacks across the United States. [...]

Impact

ATM systems vulnerable to jackpotting attacks

Exploitation Status

This vulnerability is confirmed to be actively exploited by attackers in real-world attacks. Organizations should prioritize patching or implementing workarounds immediately.

Timeline

Ongoing since [timeframe]

Remediation

Financial institutions should enhance security measures on ATM systems, including software updates and monitoring for suspicious activity.

Additional Information

This threat intelligence is aggregated from trusted cybersecurity sources. For the most up-to-date information, technical details, and official vendor guidance, please refer to the original article linked below.

Related Coverage

ShinyHunters hacker reportedly detained in Jordan, aiding FBI

BleepingComputer

A hacker linked to the ShinyHunters group, operating under the alias 'Rey', has reportedly been detained in Jordan. This individual is said to be cooperating with the FBI, providing information that could help locate other members of the extortion group. ShinyHunters is known for its involvement in data breaches and selling stolen information online. The arrest could potentially lead to significant developments in efforts to dismantle this hacking organization and protect victims of their attacks. The cooperation with law enforcement may also encourage other members to turn themselves in or provide intelligence on ongoing criminal activities.

Oct 3, 2026

MI5 Says China’s MSS Funded Research Involving 100+ U.K.-Linked Academics

The Hacker News

MI5, the UK's domestic intelligence agency, has issued a warning that over 100 academics in the United Kingdom have been linked to research funded by China's Ministry of State Security (MSS). This research effort is reportedly aimed at enhancing China's intelligence capabilities. The alert, released on September 30, 2026, highlights the activities of the China General Technology Research Institute (CGTRI), which is believed to play a significant role in supporting these initiatives. The implications of this situation are serious, as it raises concerns about intellectual property theft and national security, particularly given the sensitive nature of the research involved. The involvement of such a large number of academics suggests a broader trend of foreign influence and espionage in academic settings, which could undermine trust in international collaborations.

Oct 3, 2026

Fortra Patches Critical Vulnerabilities in BoKS

SecurityWeek

Fortra has released patches to address several critical vulnerabilities in its BoKS software, which is used for secure access and authentication. These vulnerabilities could allow attackers to bypass authentication, execute arbitrary shell commands, and cause memory corruption. This puts organizations that rely on BoKS at risk of unauthorized access and potential data breaches. Users of the affected software should prioritize applying these patches to protect their systems. The flaws were serious enough to warrant immediate action, and companies should ensure their installations are up to date to mitigate any risk.

Oct 3, 2026

iPhone 18 Pro Max can’t call or text on AT&T? Apple will replace it for free

news – ZDNET

Some users of the iPhone 18 Pro Max on the AT&T network are experiencing a significant issue where their devices are stuck in SOS mode, preventing them from making calls or sending texts. Apple has acknowledged the problem and announced that affected phones will need to be replaced for free. While two software updates have been identified that could potentially prevent this issue, they do not resolve the problem for devices already affected. This situation is concerning for users who rely on their phones for communication, as it disrupts essential services. Users experiencing this issue should seek a replacement from Apple to restore their device's functionality.

Oct 3, 2026

RemoteThreat Bets Security Teams Need to Test What Happens After Defenses Fail

darkreading

RemoteThreat, a startup focused on offensive cyber operations, is working to advance red teaming techniques. Their goal is to simulate the capabilities of modern attackers, which are becoming increasingly sophisticated. This approach encourages security teams to test their defenses in scenarios where standard protections may fail. By evolving traditional methods, RemoteThreat aims to help organizations better prepare for real-world cyber threats. The emphasis on understanding what happens after defenses are breached is crucial for improving overall security posture.

Oct 2, 2026

Frontline Education breach exposes school district employee data

BleepingComputer

Frontline Education has reported a data breach affecting multiple school districts after hackers exploited a weakness in third-party software. The breach allowed unauthorized access to sensitive employee information, notably including Social Security numbers. This incident raises serious concerns about the security of personal data in educational institutions, which are often targeted due to the sensitive nature of their records. Affected districts will need to address potential identity theft risks and enhance their cybersecurity measures to protect against future breaches. School employees should remain vigilant for any unusual activity related to their personal information.

Oct 2, 2026