❌

Normal view

There are new articles available, click to refresh the page.
Yesterday — 25 September 2026Main stream

Kosovar National Pleads Guilty to Operating Cybercrime Marketplace Offering Tools and Products to Cybercriminals

By: Dissent
24 September 2026 at 13:30
From the DOJ: Ardit Kutleshi, 28, a Kosovar national, pleaded guilty to charges related to his creation and operation of Rydox, an illicit website and marketplace for cybercriminals to buy, sell and trade stolen personal information, and to access devices and other tools for carrying out cybercrime and fraud. “The guilty plea of Ardit Kutleshi...

Source

Before yesterdayMain stream

The EU spent billions on a cyberattack shield — nobody checked if it worked

By: Dissent
23 September 2026 at 10:10
The EU built an early-warning system to catch the next major cyberattack before it spreads. Roughly 20 months later, auditors have found it still is not fully switched on. Jonathan Bent reports: Brussels has allocated €1.4 billion to defending Europe from cyberattacks. Its own auditors found that when that funding is passed on to third...

Source

Elsevier Evolve, ClinicalPharmacology, and GSDD APIs Hijacked: LAPSUS$ Redirect Campaign

By: Dissent
22 September 2026 at 17:30
Sorami Consulting reports: Users and systems trying to connect to Elsevier Evolve, Sherpath, and ClinicalPharmacology are being redirected to extortion splash pages tied to LAPSUS$ (pointing to domains including lapsus[.]ar[.]io and lapsus[.]bz). While public discussion on Reddit is dominated by nursing and medical students locked out of exams and simulation charting, the real blast radius...

Source

Early Scattered Spider member pleads guilty to cybercrime spree

By: Dissent
22 September 2026 at 09:05
Matt Kapko reports: Another core member of the hacker subset of The Com involved in a spree of extortion attacks from at least 2021 to 2023 pleaded guilty to federal charges, according to court records released Tuesday. Ahmed Hossam Eldin Elbadawy, a 24-year-old from Texas, pleaded guilty exactly one year ago to wire fraud conspiracy...

Source

ShinyHunters hacks Clop leak site, threatens to extort ransomware gang (1)

By: Dissent
19 September 2026 at 10:04
Lawrence Abrams reports: The ShinyHunters extortion gang breached the Clop (aka Cl0p) ransomware operation’s data leak site, defacing the Tor site and allegedly stealing server data and the private keys for its onion service. The attack began Friday night when ShinyHunters exploited what they claim is an unauthenticated file upload vulnerability in Grav CMS, which...

Source

Revolut’s paperwork breach shows why insurers are rethinking what counts as a ‘cyber attack’

By: Dissent
15 September 2026 at 07:49
Matthew Sellers reports: Revolut wasn’t hacked in the usual sense. No one broke into its servers or slipped malware past its defences. Someone asked for customer data, from what looked like a genuine government email address, and Revolut handed it over. That email is now behind one of the stranger data incidents to hit a...

Source

Russian suspect in bank account takeovers is extradited to US

By: Dissent
9 September 2026 at 08:08
Joe Warminsky reports: A Russian web developer who played a role in a multimillion-dollar bank account takeover scheme has been extradited to the U.S. to face an indictment in the case, federal authorities said Tuesday. Sergei Anatolyevich Filimonov, 36, appeared in an Atlanta federal court on September 4, pleading not guilty to charges of fraud...

Source

Singaporean Ringleader of $245 Million Cryptocurrency Racketeering Enterprise Pleads Guilty in Washington D.C.

By: Dissent
8 September 2026 at 14:04
WASHINGTON – Malone Lam, 22, a citizen of Singapore and recent resident of Miami, pleaded guilty today in U.S. District Court in Washington D.C. in connection with his role as ringleader of an international cybercrime conspiracy that used social engineering to steal and launder cryptocurrency valued at more than $245 million, announced U.S. Attorney Jeanine...

Source

Party’s over for scammers who went on spending spree after $240M bitcoin theft

By: Dissent
8 September 2026 at 07:32
Michael Kunzelman of the AP reports: They pulled off one of the largest cryptocurrency thefts in U.S. history, duping a stranger out of bitcoin worth over $240 million. They tried to hide their digital fingerprints, carrying out a sophisticated scheme to launder the proceeds. And then the party started. The scammers — a network of young men...

Source

Hackers drain $320M in Bitcoin from Liquid Network, claim they’re the good guys

By: Dissent
7 September 2026 at 12:37
Carly Page reports: Hackers have drained roughly $320 million in Bitcoin from the federation wallet backing the Liquid Network, while claiming to be the good guys. Liquid, a Bitcoin sidechain developed by Blockstream and used by exchanges and other financial institutions, said in a post on X on Sunday that around 4,000 BTC had been withdrawn from...

Source

US offers $10 million for info on Iranian allegedly behind cyberattacks on critical infrastructure

By: Dissent
6 September 2026 at 07:11
Jonathan Greig reports: A $10 million reward has been posted by the State Department for information on the whereabouts of senior Iranian official Amir Yaryab. Yaryab allegedly leads the Islamic Revolutionary Guard Corps’ (IRGC) Cyber-Electronic Command (CEC). U.S. officials accused Yaryab of directing multiple Iranian hacking groups that have targeted “critical infrastructure sectors including defense, news, shipping,...

Source

Hackers expose donor data from Russian fundraisers for Ukrainians, political prisoners

By: Dissent
2 September 2026 at 16:23
Daryna Antoniuk reports: Hackers reportedly gained access to payment accounts used by two Russian fundraising projects supporting Ukrainians and political prisoners, exposing donor email addresses and limited payment card information. The unknown threat actor targeted Davayte, which raises money for civilians in Ukraine affected by Russia’s invasion, and You Are Not Alone, a project supporting...

Source

Two different groups have recently attacked Interim HealthCare entities. Should other franchises be concerned?

By: Dissent
29 August 2026 at 09:45
In April, Interim HealthCare of West Texas LLC (Lubbock, Amarillo, and Pampa) and Interim HealthCare of Amarillo notified the U.S. Department of Health and Human Services of a breach. West Texas notified HHS that 2,071 patients were affected, while the Amarillo franchise notified HHS that 666 patients were affected. In closing its investigation into Interim...

Source

Star Health’s public record: A data breach, a ₹3.39-crore fine, 13,000 ombudsman complaints — and still no accounting for the policyholder

By: Dissent
29 August 2026 at 07:47
Nitin Naresh revisits the significant Star Health breach of 2024. Previous coverage of the hack-and-leak incident can be found linked in the Related section below this post, which includes coverage of threats made to the insurance firm’s executives, court injunctions that, of course, did not stop a threat actor from leaking data, and lawsuits against...

Source

UK: HIV charity has ‘sensitive’ health data stolen

By: Dissent
28 August 2026 at 09:53
Matt Trewern reports on another charity hit by the Beacon CRM data breach that affected more than 1,000 charities and non-profits: People using an HIV charity have been told their “sensitive and personal” health information may have been stolen in a data breach. In an email sent to George House Trust users and seen by...

Source

NSA to host a hacker reunion in bid to rebuild secretive unit

By: Dissent
26 August 2026 at 17:39
Martin Matishak reports: A top U.S. spy agency will resemble a college for a while on Friday, as it hosts a first-of-its-kind reunion for alumni of its most secretive hacking unit. The National Security Agency will welcome back to campus potentially hundreds of former members of the elite group known as Tailored Access Operations (TAO)...

Source

National Kidney Registry allegedly hacked by DireWolf ransomware group

By: Dissent
26 August 2026 at 09:29
Since its emergence in May 2025, DireWolf has attacked several U.S. healthcare entities, as listed among its more than 100 targets on its dedicated leak site. As early analysts reporting on the group have noted, DireWolf encrypts victims’ files as part of their double-extortion attacks. Their “About” statement describes them as financially motivated: We are...

Source

A recommendation from the Saskatchewan Information and Privacy Commissioner caught our eye

By: Dissent
26 August 2026 at 08:47
Here’s one we missed last week. Hannah Spray reports: The personal information of more than 2,000 people was stolen from Autism Services of Saskatoon during a data breach last year. In the aftermath, the organization properly notified the affected individuals and enhanced its IT security, according to a report by Saskatchewan Information and Privacy Commissioner Grace Hession...

Source

2 weeks after JPS Health Network outage, patients still dealing with fallout

By: Dissent
25 August 2026 at 16:50
Giles Bruce reports: Patients at Fort Worth, Texas-based JPS Health Network are facing lasting consequences from a network outage that stretched nearly two weeks, the Fort Worth Star-Telegram reported. JPS Health Network operated under a “controlled network downtime” starting Aug. 3 after detecting suspicious activity in its technology environment. The hospital, clinics and other locations stayed open, but online...

Source

Health systems warn of coordinated phishing targeting Epic’s patient portal

By: Dissent
25 August 2026 at 11:14
Chad Van Alstin reports: Numerous health systems across the country have issued alerts, warning patients to ignore scam messages that are attempting to phish passwords from patients, allowing hackers to gain access to Epic Systems’ MyChart patient portal. The effort appears to be coordinated by a single cybercriminal or a group, as more than a...

Source

❌
❌