Plus récents

The FBI has learned of a criminal group who self identifies as the « OnePercent Group » and who have used Cobalt Strike to perpetuate attacks against companies since November 2020.

OnePercent Group actors compromise victims through a phishing email in which an attachment is opened on Microsoft operating systems by the user. The attachment's macros infect the system with the IcedID . IcedID downloads additional software to include Cobalt Strike. Cobalt Strike moves laterally in the network, primarily with PowerShell remoting.

📎 (PDF) ic3.gov/Media/News/2021/210823

Les opérateurs de Cl0p diffusent des données relatives à :

  • 🇺🇸 AABCO Automation, Inc (goabco.com)

ABCO Automation has been providing innovative solutions and unrivaled client services for over 43 years. We specialize in custom design-build services, fully automated turnkey systems, and build-to-print projects. The typical project budget can range from .5 to several million.

  • 🇮🇹 Zucchetti Rubinetteria S.p.A (zucchettikos.it)

Zucchetti’s success story first began in a small foundry in Valduggia (in the province of Vercelli) set up by Alfredo Zucchetti in 1929 and arrived today at the third generation. The group consists of 2 factories, covering a total of 35,000 square metres, employing 200 people and producing 600.000 articles every year.

  • 🇺🇸 Rocky Mountain Instrument, Co (rmico.com)

Founded in 1957, RMI is proud to be one of the original precision optics companies in the US, and is headquartered in Lafayette, Colorado. Leading manufacturer of precision optics with a long history of experience in the optics and coatings industry.

  • 🇺🇸 Pension Benefit Consultants, Inc (penbens.com)

Pension Benefit Consultants, Inc. is affiliated with the law firm of Neubert, Pepe & Monteith, P.C. The close working relationship with Neubert, Pepe & Monteith, P.C. affords a unique combination of legal and administrative talent that enables us to efficiently design, implement, and administer all types of retirement plans.

Les opérateurs de BlackMatter revendiquent une attaque contre :

  • 🇺🇸 Middleton Reutlinger (middletonlaw.com)

Maintaining its status as a medium-sized law firm since 1854, Middleton Reutlinger provides a broad range of legal services for a diverse client base. Maintaining a full complement of approximately 55 attorneys best allows the firm to achieve its goal of providing quality service at reasonable costs while maintaining personalized contact. This is accomplished by controlling internal costs and adopting innovative technology. The firm’s philosophy is one of traditional service to the client with a modern approach to technology and the law.

Les opérateurs de Marketo diffusent des données sensibles relatives à :

  • 🇺🇸 Navistar (navistar.com)

Navistar is a manufacturer of commercial trucks, buses, defense vehicles & engines.

  • 🇨🇦 Otto Instrument (ottoinstrument.com)

Otto specializes in the maintenance, repair and overhaul of a diversified range of instruments, electronics, avionics, and wire harness assemblies for foreign and domestic. Their facilities house capabilities that encompass Commercial and Military Avionics, Autopilot, Air Data, and Flight Guidance Systems.

  • 🇺🇸 Virginia Defense Force (vdf.virginia.gov)

The Virginia Defense Force consists of two major subordinate commands in addition to the VDF Force Headquarters based in Richmond, Virginia.

  • 🇺🇸 Virginia Department of Military Affairs (dma.virginia.gov)

The Virginia DMA State Team provides professional and responsive state support functions to the Adjutant General of Virginia, the National Guard, and the Virginia Defense Force in order to ensure their ability to support and defend the United States and the Commonwealth of Virginia.

Les opérateurs de Conti revendiquent des attaques contre :

  • 🇨🇦 DAVACO, Inc (davacoinc.com)

  • 🇺🇸 B&H Construction, L.L.C (bhboring.com)

  • 🇪🇸 Bultzaki S.L (grupobultzaki.com)

  • 🇺🇸 Gallegos United (gallegosunited.com)

  • 🇨🇦 Alliance Mercantile, Inc (alliancemercantile.com)

  • 🇺🇸 SAC Wireless Inc (sacw.com)

  • 🇨🇦 Enns Brothers (ennsbrothers.com)

  • 🇺🇸 Greensheet Media (thegreensheet.com)

  • 🇺🇸 U.S. Vision (usvision.com)

  • 🇪🇸 Interflex (interflex.es)

  • 🇩🇪 Abel Metallsysteme GmbH & Co. KG (abelsystem.de)

  • 🇳🇿 Complete Portables (completeportables.com)

Les opérateurs de Conti diffusent des données relatives à :

  • 🇺🇸 [172 GiB] Three Rivers Regional Commission (threeriversrc.com)

This commission was created as a regional planning organization and is managed by its member governments in accordance with Georgia law. We work to create, promote, and provide services and technical assistance to make the local communities in the region better places to live and work.

Juillet 2021

  • 🇫🇷 [121.69 GiB] ARIS (aris-services.com)

ARIS est spécialisé dans les chantiers de désamiantage avec contraintes particulières et se positionne comme un des leaders du marché notamment dans les secteurs du nucléaire civil et militaire.

Juillet 2021

  • 🇫🇷 Inserm Transfert (inserm-transfert.fr)

Inserm was created in 1964 as a successor to the French National Institute of Health. It's the only public research institution solely focused on human health and medical research in France.

Les opérateurs de Conti diffusent des données relatives à :

  • 🇫🇷 [268.21 GiB] Groupe Traon Industrie Developpement (GTID) (gtid-brest.fr)

Le groupe GTID regroupe aujourd'hui 3 fleurons de l'éléctronique de pointe : Protecno, Elliptika, Arc 3D ainsi que 2 sociétés spécialisées dans la mécanique magnétique : TE2M et Api2m. Elliptika a construit sa réputation en concevant des filtres pour l'industrie spatiale et de la défense. Acteur important de la recherche dans le domaine des hyperfréquences et est l'un des leaders français de la fabrication additive appliquée aux composants RF.

Les opérateurs de Xing 星Team diffusent des données relatives à :

  • 🇺🇸 J.Irwin Company, Ltd (jirwinco.com)

For over 10 years, we’ve installed hundreds of miles of pipeline and constructed processing plants, compressor stations and other facilities to the satisfaction of our customers with a sterling safety record.

Les opérateurs de LockBit 2.0 revendiquent des attaques contre :

  • 🇨🇳 VeriSilicon Holdings Co., Ltd (verisilicon.com)
  • 🇮🇹 Gicinque SpA (gicinque.com)
  • 🇺🇸 Smith, Gambrell & Russell Law Firm (sgrlaw.com)
  • 🇨🇮 Teyliom Group SA (teyliom.com)
  • 🇲🇾 GD Express Sdn Bhd (gdexpress.com)
  • 🇵🇭 JACCS Finance Philippines Corporation (jaccs.com.ph)
  • 🇯🇵 Yamato-Esulon Co., Ltd. (yamato-esulon.co.jp)
  • 🇳🇿 Inline Plumbing, Ltd. (inlineplumbing.co.nz)
  • 🇺🇸 MegaWatts (megawatts.com)
  • 🇺🇸 ESR Motor Systems, LLC (esrmotors.com)
  • 🇮🇨 Petrologis Canarias, S.L. (petrologiscanarias.com)
  • 🇺🇸 National Wild Turkey Federation (nwtf.org)
  • 🇮🇩 PT Nusantara Regas (nusantararegas.com)
  • 🇨🇦 Sabre Instrument Services, Ltd. (sabre.ca)
  • 🌍 Accenture, PLC (accenture.com)
  • 🇲🇰 Μακεδονικη Εταιρεια Χαρτου Μ.Α.Ε. (melpaper.com)

Les opérateurs de LockBit 2.0 revendiquent des attaques contre :

  • 🇶🇦 Oriental Trading Co., Ltd. (otcqatar.com)
  • 🇨🇦 Lanex Manufacturing, Inc (lanexmfg.com)
  • 🇧🇷 Hotel Luzeiros Fortaleza (luzeirosfortaleza.com.br)
  • 🇺🇸 KMA Zuckert (kmazuckert.com)
  • 🇧🇷 Grupo Protege (protege.com.br)
  • 🇺🇸 YMCA of Metropolitan Washington (ymcadc.org)
  • 🇮🇩 Nutrifood Indonesia (nutrifood.co.id)
  • 🇦🇺 Bennetts Office Supplies (bennetts.com.au)
  • 🇹🇼 Kaohsiung City, shop (fuwl.com) -- ( error detected )
  • 🇺🇸 Julian & Grube, Inc. (J&G) (jginc.biz)
  • 🇻🇪 Cenco Zotti Quimica S.A. (cenco-zotti.com)
  • 🇺🇸 Hoi Meng Group (hoimeng.com)
  • 🇮🇹 Mascherpa Tecnologie Gestionali Srl (mtgsrl.com)
  • 🇯🇵 Yazaki Corporation (yazaki-group.com)
  • 🇨🇦 HiTech (hitechpiping.ca)

Les opérateurs de RansomExx diffusent un lot de données relatives à :

  • 🇹🇼 Gigabyte Technology (gigabyte.com)

L'un des plus grands constructeurs de matériel au monde. 2e fabricant mondial de cartes mères. Taiwanese manufacturer and distributor of computer hardware

Les opérateurs de Lorenz revendiquent une attaque contre :

  • 🇺🇸 Sebastian Corp (sebastiancorp.com)

Specializes in a variety of electrical, security, and communications services. Sebastian has been dedicated to proving the best local and long-distance phone service, high-speed internet, and monitored security systems to our customers for 75 years. We provide you commercial and residential options to keep you connected and secured. Our in-house IT team provides helpdesk support 24/7 for all your Sebastian managed services. We can design and customize all audio/video, communications, security, and IT solutions for your business.

Les opérateurs Everest revendiquent une attaque contre :

Being part of the Attieh Group of companies that was established in 1952, we have over 60 years of steel heritage and over 20 years of experience in the steel business. Since our production started in 1994, AIC has successfully fabricated over one million tons of steel with exports to GCC, America, Europe, Africa, and Asia. In serving the global market, we have established facilities in key regions of the KSA and UAE and in-house specialized engineering center in Egypt with more than 250 Engineers. AIC Translift is providing diversified services of heavy haulage and transportation industry needed by the growing construction industry throughout the Kingdom of Saudi Arabia.

Les opérateurs Hive revendiquent des attaques contre :

  • 🇵🇪 Palacios & Asociados (pasoc.pe)

Logistics Operator that provides comprehensive solutions in customs agency, cargo, transportation, storage and advice in different jurisdictions throughout the Peruvian territory. More than 50 years of experience. We are a Class A Foreign Trade Operator (OCE) and we have strategic alliances with first-line shippers in a network of branches worldwide. We have our own fleet and strategic alliances. We design logistics solutions for industrial projects with great flexibility and knowledge. Integrated logistics that develops, implements and manages solutions that streamline your supply chain.

  • 🇺🇸 Advanced Geosciences Inc. (agiusa.com)

Leading developer and manufacturers of resistivity/IP/SP imaging systems since 1989. Since then, we've been producing state-of-the-art products for electrical resistivity and IP imaging. All of our hardware, software, and accessories are made in-house by our team of engineers and technicians. AGI customers include government labs, universities, research institutions, mineral exploration companies, water drilling companies, and environmental and geotechnical engineering firms.

  • 🇨🇭 Résidence Les Chtaigniers (chataigniers.ch)

Le plan de protection déployé au sein de l'EMS Résidence les Châtaigniers, intègre les recommandations des autorités Fédérales OFSP et Cantonales DGS ainsi que les bonnes pratiques retenues par la Direction, le Médecin répondant et les cadres de l'établissement.

Les opérateurs Hive revendiquent des attaques contre :

  • 🇹🇭 Guts Superpols Co., Ltd. (guts.co.th)

Largest security firm in Thailand. We always realize that in the moments of a life crisis someone is waiting for help, in just a few moments of command control through advanced security equipment and technologies including the work of professional team, fast and efficient teamwork to help prevent and mitigate the loss of life and property that may not be assessed values.

Net Ninjas is a full-service digital agency operating in Melbourne, Australia. Business grade web hosting solutions and web development services. Our world-class web hosting.

  • 🇺🇸 W.H. Stovall & Company, Inc. (whstovall.com)

Engineered Building Products General Info Operational since 1927. W. H. Stovall & Company Inc. is an engineering building company. Located in Ashland, Va., the company provides services in fabrication, distribution and installation of aluminum composite panels, profile metal panels, storefronts, entrances, curtain walls, skylights and glass and glazing.

Les opérateurs de Lorenz revendiquent une attaque contre :

  • 🇺🇸 Miami Postal Service Credit Union (mpscu.org)

Created in 1928 when a small group of postal workers got together and opened the credit union doors for business. In January 1930 the credit union was chartered under the state charter as Miami Postal Service Credit Union. MPS Credit Union was formed for the sole purpose of providing financial services to our owner-members.

Plus anciens

👁 socat recommande :

nanao

Comme le soleil, les machines ne se couchent jamais.