Articles tagged "Phishing"

Found 236 articles

7-Eleven has confirmed that it suffered a data breach last month, which was claimed by the ShinyHunters hacking group. This breach raises concerns about the security of customer data, as the attackers are known for targeting organizations to steal and sell sensitive information. While 7-Eleven has not disclosed specific details regarding the extent of the breach or the types of data compromised, the incident highlights ongoing vulnerabilities in retail cybersecurity. Customers and employees alike may be at risk, and the incident underscores the need for stronger security measures in the retail sector. As investigations continue, affected individuals should remain vigilant about potential phishing attempts or other follow-up attacks.

Impact: Customer data, employee information
Remediation: N/A
Read Original

Recent research from the University of Texas at Arlington and Louisiana State University has revealed that attackers can use publicly available Instagram posts to craft highly personalized phishing emails. By analyzing social media activity, these attackers can create messages that seem credible and tailored to individual recipients, making them more likely to fall for the scams. This development poses a significant challenge for both security teams and users, as the need for stolen databases is diminished. Instead, attackers can exploit readily available information to enhance their phishing tactics. Users need to be more cautious about the personal information they share online, as it can be weaponized against them in increasingly sophisticated ways.

Impact: Instagram, phishing emails
Remediation: Users should limit the amount of personal information shared on public social media profiles and be vigilant when receiving unsolicited messages or emails.
Read Original

INTERPOL's recent Operation Ramz has led to the arrest of over 200 individuals involved in cybercrime across the Middle East and North Africa. The operation specifically targeted malware and phishing schemes, resulting in the seizure of 53 servers linked to these malicious activities. This crackdown aims to disrupt criminal networks that exploit the internet for fraudulent purposes, which can have serious consequences for individuals and businesses alike. The scale of the arrests and server seizures indicates a significant effort to combat cybercrime in regions where such activities are prevalent. The operation underscores the ongoing challenges that law enforcement faces in tackling cyber threats that continue to evolve and pose risks to online safety.

Impact: N/A
Remediation: N/A
Read Original
Scammers Send Physical Phishing Letters to Steal Ledger Wallet Seed Phrases

Hackread – Cybersecurity News, Data Breaches, AI and More

Actively Exploited

Scammers are targeting Ledger wallet users in Italy by sending out physical letters that appear to be from the company. These letters contain QR codes designed to trick recipients into revealing their wallet seed phrases. This tactic exploits the trust users have in Ledger, a well-known cryptocurrency hardware wallet provider. By obtaining these seed phrases, scammers can gain access to users' cryptocurrency funds. It's crucial for crypto users to be vigilant and verify the authenticity of any communication they receive, especially those that ask for sensitive information. The incident underscores the ongoing risks associated with cryptocurrency security and the lengths that attackers will go to steal personal information.

Impact: Ledger cryptocurrency wallets
Remediation: Users should verify the authenticity of any communication from Ledger and avoid sharing their seed phrases. It is advisable to contact Ledger directly through official channels for any concerns.
Read Original

ESET has reported a new campaign by the hacking group known as Ghostwriter, which is targeting the Ukrainian government. The campaign starts with a spear-phishing email that contains a PDF attachment disguised as an official document from Ukrtelecom, a key telecommunications provider in Ukraine. This type of attack aims to trick recipients into opening the attachment, potentially leading to further malicious activity. The focus on Ukrainian government entities indicates a continued effort by cybercriminals to exploit vulnerabilities in the region, particularly amid ongoing geopolitical tensions. Such attacks can undermine trust in government communications and disrupt essential services.

Impact: Ukrtelecom, Ukrainian government agencies
Remediation: Users should be cautious about unsolicited emails and verify the authenticity of attachments before opening them. Implementing email filtering and security awareness training can also help mitigate risks.
Read Original

A Belarus-aligned hacking group known as Ghostwriter has launched new attacks against Ukrainian government organizations. This group, which has been active since at least 2016, is known for both cyber espionage and influence campaigns, primarily targeting Ukraine and its neighboring countries. The latest operations involve phishing attacks using geofenced PDF documents, which aim to trick users into revealing sensitive information. Additionally, the attackers are utilizing Cobalt Strike, a popular tool among cybercriminals for post-exploitation activities. These actions pose significant risks to Ukrainian governmental operations and national security, especially given the ongoing geopolitical tensions in the region.

Impact: Ukrainian government organizations
Remediation: Users should be cautious with unsolicited emails and PDF attachments. Implementing advanced email filtering and security awareness training can help mitigate phishing risks.
Read Original
China-Linked Twill Typhoon Uses Fake Apple and Yahoo Sites for Espionage

Hackread – Cybersecurity News, Data Breaches, AI and More

Actively Exploited

A recent report from Darktrace reveals that a group of Chinese hackers, known as Twill Typhoon, is using counterfeit websites mimicking Apple and Yahoo to conduct espionage. These fake sites are designed to lure unsuspecting users into providing sensitive information, which the attackers can then leverage for spying on various organizations. The hackers are utilizing a malware framework called FDMTP, which further aids their operations. This tactic poses a significant risk to individuals and companies who may mistakenly trust these fraudulent sites, potentially leading to data breaches and compromised security. Organizations are urged to remain vigilant and educate their employees about the dangers of phishing and counterfeit websites.

Impact: Fake Apple and Yahoo websites, FDMTP malware framework
Remediation: Users should verify website URLs before entering sensitive information and organizations should implement security training to recognize phishing attempts.
Read Original

Signal, the popular messaging app, is rolling out new features aimed at enhancing user security against phishing attacks, particularly those impersonating Signal Support. These new measures come in response to increasing reports of scams targeting users, where attackers pose as official support representatives to steal personal information. The updates include improved verification processes and alerts to help users spot fraudulent messages more easily. This move is crucial as phishing remains a significant threat in the digital communication landscape, affecting user trust and safety. By implementing these features, Signal aims to create a safer messaging environment for its users.

Impact: Signal messaging app
Remediation: Users are encouraged to enable new security features as they are rolled out.
Read Original

Škoda Auto has reported a data breach following a hack of its online shop, which has resulted in the theft of personal information from an undisclosed number of customers. The company, part of the Volkswagen Group, has not revealed specific details about the types of data compromised. This incident raises concerns about the security of online shopping platforms and the sensitivity of customer data stored by automotive companies. Affected customers should be vigilant for potential phishing attempts or identity theft in the wake of this breach. The incident underscores the ongoing risks faced by businesses that handle personal information online.

Impact: Škoda Auto online shop customer data
Remediation: Customers are advised to monitor their accounts for suspicious activity and change passwords as a precaution.
Read Original

Researchers from ReliaQuest have discovered that attackers are using a combination of open-source tools, specifically ClickFix and PySoxy, to maintain persistent access to compromised systems after an initial social engineering attack. This method allows them to bypass traditional security measures and maintain control over their targets. The findings highlight how attackers are increasingly leveraging readily available tools to extend their foothold within networks, making it harder for organizations to detect and respond to breaches. Companies need to be aware of these tactics and strengthen their defenses against social engineering and the use of such tools. It's essential for organizations to continuously monitor their systems and educate employees about potential phishing attacks.

Impact: ClickFix, PySoxy, various operating systems
Remediation: Organizations should enhance employee training on social engineering attacks, implement network monitoring to detect unusual activity, and review security protocols related to remote access tools.
Read Original

The article discusses the limitations of technical security measures in preventing cyber attacks, emphasizing that employees often serve as the first line of defense. It outlines four specific types of attacks that target human vulnerabilities, such as phishing and social engineering. These attacks exploit the trust and behavior of employees rather than technical flaws in systems. This highlights the need for companies to invest in training and awareness programs for their staff to recognize and respond to potential threats effectively. As cyber threats continue to evolve, a well-informed workforce is crucial for enhancing overall security.

Impact: Phishing attacks, social engineering
Remediation: Implement regular security training and awareness programs for employees
Read Original

South Staffordshire Water's parent company has been fined nearly £1 million by the UK's Information Commissioner’s Office (ICO) due to a severe security breach that lasted for almost two years. The incident began in September 2020 when an employee fell for a phishing email and opened an infected attachment, allowing hackers to install malicious software on the company’s network. This intrusion went unnoticed for 20 months, during which the personal data of 633,887 individuals was compromised. This case underscores the importance of robust cybersecurity measures, especially for organizations handling sensitive customer information. The long duration of the breach raises concerns about the effectiveness of the company's security protocols and employee training regarding potential cyber threats.

Impact: South Staffordshire Water personal data of 633,887 individuals
Remediation: Implement comprehensive employee training programs on phishing and cybersecurity awareness; enhance security measures to detect and respond to malware intrusions more effectively.
Read Original

Zara, the popular clothing retailer, has suffered a data breach affecting nearly 200,000 customers. The hacker group ShinyHunters reportedly obtained sensitive information, including email addresses and other personal data from Zara's database. This incident raises concerns about the safety of customer information and the potential for phishing attacks or identity theft. Customers who provided their data to Zara may now be at increased risk, as attackers could exploit this information for malicious purposes. Companies like Zara need to enhance their security measures to protect customer data and prevent future breaches.

Impact: Zara customer data including email addresses and personal information
Remediation: N/A
Read Original

A data breach affecting nearly 197,000 Zara customers has been linked to a cyberattack on a former technology provider, ShinyHunters. The breach exposed sensitive customer information, including emails, purchase history, and support data. This incident raises concerns about the security measures in place at third-party vendors that companies rely on. Customers whose data was compromised may face increased risks of phishing attempts and identity theft. As major retailers like Zara continue to rely on external partners, ensuring robust security practices across their supply chain becomes increasingly critical.

Impact: Zara customer data, including emails, purchase history, and support data.
Remediation: Customers should monitor their accounts for suspicious activity and consider changing passwords. Companies should evaluate their third-party vendor security practices.
Read Original
Scammers Use Hidden Text to Bypass AI Email Filters in Phishing Scams

Hackread – Cybersecurity News, Data Breaches, AI and More

Actively Exploited

Scammers are now using invisible text in phishing emails to trick AI email filters, making it easier for their fraudulent messages to reach users' inboxes. This method involves inserting hidden characters that are not visible to the naked eye but can bypass automated security systems. As a result, more phishing emails could successfully land in inboxes, increasing the risk of users falling victim to scams. This tactic poses a significant challenge for email service providers and cybersecurity experts, who must adapt their filtering techniques to combat this evolving threat. Users should be vigilant and look out for suspicious emails, even if they seem to pass through standard security filters.

Impact: Email services, AI-powered email filters
Remediation: Users should be cautious with unexpected emails and verify the sender's identity. Email providers should enhance their filtering techniques to detect hidden text and improve security measures.
Read Original
PreviousPage 2 of 16Next