cybersecurity

2024 looks set to be another record-breaking year for ransomware — and it’s likely going to get worse

The ransomware industry is thriving, not losing.  Despite various law enforcement wins against ransomware actors, like the sweeping takedown of LockBit and the seizure of Radar, hackers continue to reap the rewards of these data-theft attacks — and 2024 looks set to be their most profitable year to date. That’s according to Allan Liska, a […]

2024 looks set to be another record-breaking year for ransomware — and it’s likely going to get worse Read More »

How a series of opsec failures led US authorities to the alleged developer of the Redline password-stealing malware

U.S. prosecutors have charged Russian national Maxim Rudometov over his alleged involvement in developing and distributing the notorious Redline password-stealing malware. The charges were announced as part of “Operation Magnus,” first unveiled by the Dutch National Police on Monday. This years-in-the-making operation saw international law enforcement agencies dismantle the infrastructure of Redline and Meta, two

How a series of opsec failures led US authorities to the alleged developer of the Redline password-stealing malware Read More »

MoneyGram replaces CEO weeks after massive customer data breach

Money transfer giant MoneyGram has replaced its chief executive less than a month after confirming that hackers stole reams of customers’ personal information and transaction records in a data breach. In a statement Monday, MoneyGram said it appointed Anthony Soohoo as the company’s chief executive with immediate effect. Soohoo replaces Alex Holmes, who joined MoneyGram

MoneyGram replaces CEO weeks after massive customer data breach Read More »

Police operation claims takedown of prolific Redline and Meta password stealers

A coalition of international law enforcement agencies say they have disrupted the operations of two prolific infostealers that stole the sensitive data of millions of people.  The Dutch National Police, who led the so-called “Operation Magnus” takedown, reports it gained “full access” to the servers used by the Redline and Meta infostealers.  Infostealers are a

Police operation claims takedown of prolific Redline and Meta password stealers Read More »

How the ransomware attack at Change Healthcare went down: A timeline

A ransomware attack earlier this year on UnitedHealth-owned health tech company Change Healthcare likely stands as one of the largest data breaches of U.S. health and medical data in history. Months after the February data breach, a “substantial proportion of people living in America” are receiving notice by mail that their personal and health information

How the ransomware attack at Change Healthcare went down: A timeline Read More »

UnitedHealth says Change Healthcare data breach affects over 100 million people in America

More than 100 million individuals had their private health information stolen during the ransomware attack on Change Healthcare in February, a cyberattack that caused months of unprecedented outages and widespread disruption across the U.S. healthcare sector. This is the first time that UnitedHealth Group, the U.S. health insurance provider that owns the health tech company,

UnitedHealth says Change Healthcare data breach affects over 100 million people in America Read More »

Apple will pay security researchers up to $1 million to hack its private AI cloud

Ahead of the debut of Apple’s private AI cloud next week, dubbed Private Cloud Compute, the technology giant says it will pay security researchers up to $1 million to find vulnerabilities that can compromise the security of its private AI cloud. In a post on Apple’s security blog, the company said it would pay up

Apple will pay security researchers up to $1 million to hack its private AI cloud Read More »

SEC fines four companies $7 million for ‘misleading cyber disclosures’ regarding SolarWinds hack

The Securities and Exchange Commission (SEC) announced on Tuesday that it charged and imposed penalties on four companies for making misleading disclosures linked to the 2019 SolarWinds data breach.  The four companies charged are cybersecurity firms Check Point, which will pay a civil penalty of $995,000; Mimecast, which will pay $990,000; and the tech companies

SEC fines four companies $7 million for ‘misleading cyber disclosures’ regarding SolarWinds hack Read More »

Researchers link Polyfill supply chain attack to huge network of copycat gambling sites

One of the biggest digital supply chain attacks of the year was launched by a little-known company that redirected large numbers of internet users to a network of copycat gambling sites, according to security researchers.  Earlier this year, a company called FUNNULL purchased Polyfill.io, a domain hosting an open source JavaScript library that — if

Researchers link Polyfill supply chain attack to huge network of copycat gambling sites Read More »