Over 200 Arrested for Defrauding Euro830,000 via eBanking Scams
Read also: Spanish police cuff 3 in a phishing gang bust, $3M in Bitcoin stolen by Palestinian scammers recovered, and more.
Read also: Spanish police cuff 3 in a phishing gang bust, $3M in Bitcoin stolen by Palestinian scammers recovered, and more.
A selection of this week’s more interesting vulnerability disclosures and cyber security news. I wish they hadn’t suggested that using more machines might have brought the Internet down properly…
Researchers successfully extracted valid hard-coded secrets from Copilot and CodeWhisperer, shedding light on a novel security risk associated with the proliferation of secrets.
A practical guide to phishing and best practices to avoid falling victim.
Threat actors launched 156,000 business email compromise (BEC) attempts per day between April 2022 and April 2023, according to Microsoft’s latest Digital Defense Report. While most of these attempts go unanswered, criminals can receive massive payouts when they succeed.
As attackers leave little-to-no traces of their attack patterns, more ransomware groups are shifting from automated attacks to manual attacks. According to the newly-released Microsoft Digital Defense Report 2023, about 40% of the ransomware attacks detected were human-driven and tracked back to over 120 ransomware-as-a-service (RWaaS) affiliates. This spike in human-operated ransomware attacks likely goes back to attackers wanting to minimize their footprint within an organization.
Credential harvesting has become a business in and of itself within the cybercrime economy. New insight from Microsoft details the types of attacks your organization should watch out for. I’ve attempted to cover every Microsoft 365 credential harvesting attack since the platform is so popular and is an easy target for cybercriminals. But the news coming from their newly-released Microsoft Digital Defense Report 2023 puts this type of attack into perspective.