For weeks, Bob Diachenko, has been trying to convince a cloud provider to intervene and take down a malware group's server that was leaking hundreds of thousands of stolen passwords and millions of authentication cookies. The data was leaked via an Elasticsearch server left exposed online without password. This Elasticsearch server is believed to be one of these data lakes, where crooks were aggregating their stolen information. Racoon (RaccoonStealer) is fairly typical Malware-as-a-Service where for $75-$200 per month you get access to the toolkit to generate malware payloads and a backend website to administer your campaign from. It is designed to steal login credentials, credit card information, cryptocurrency wallets, and browser information. In the leaked data, we found credentials and cookies for email accounts, social media profiles, work applications, and even government portals. Of the entire data collected in the server, the most prevalent were authentication cookies, collected in the millions, rather than passwords, which were only hundreds of thousands. « Auth cookies » allow intruders to access victim accounts without needing to authenticate using usernames and passwords and even bypass any two-step verification process that victims might have had in place. While Diachenko has been fighting for weeks with poor success to get the cloud provider to intervene and take down this malware gang's data, this server .. mysteriously disappeared ..
https://therecord.media/malware-group-leaks-millions-of-stolen-authentication-cookies/
Many online service providers make it difficult or impossible for users to reach a human to resolve a problem with their services. That's because employing people to resolve these issues often costs more than the small amounts they save by reinstating wrongfully banned accounts.
https://www.eff.org/deeplinks/2021/06/paypal-shuts-down-long-time-tor-supporter-no-recourse
An astonishing data security blunder saw the personal data of #UK Special Forces soldiers circulating around WhatsApp in a leaked British Army spreadsheet.
https://www.theregister.com/2021/06/02/uk_special_forces_data_breach_whatsapp/
A hacking group believed to have links to the Chinese government penetrated the Metropolitan Transportation Authority's computer systems in April 2021, exposing vulnerabilities in a vast transportation network that carries millions of people every day. Hackers compromised 3 of the transit authority's 18 computer systems. The response to the intrusion cost the agency an estimated $370,000.
https://www.nytimes.com/2021/06/02/nyregion/mta-cyber-attack.html
Today, FUJIFILM announced that their Tokyo headquarters suffered a cyberattack Tuesday night that they indicate is a #ransomware attack.
Le guichet de la gare de Coutances (Manche) est fermé à cause d'une panne informatique, pour une durée indéterminée.
Pour le mois de mai 2021, nous avons compté plus de 260 attaques de ransomware à travers le monde, à peu près autant qu'en mars 2021, plus qu'en février 2021 ou encore janvier 2021, mais moins qu'en avril 2021. Pour ce mois-ci, notre compte s'établit aujourd'hui à 295. Cette intensité de l’activité malveillante renvoie à l'automne dernier et semble s'imposer désormais comme la norme.
https://www.lemagit.fr/actualites/252501731/Ransomware-un-mois-de-mai-marque-par-les-rebondissements
Une nouvelle tentative de réunir le 15, le 17, le 18, ou encore le 116-117 sous la bannière du 112 a suscité la colère des urgentistes.
Une panne d'envergure nationale empêche de joindre le 15, 18 et 112. Pour une raison inconnue, les appels émis depuis les téléphones mobiles en direction des numéros d'urgence 18, 15 et 112 ne fonctionnent plus. Les services d'appels dédiés aux urgences sont réellement difficiles à joindre en ce mercredi 2 juin 2021 confirme le Ministère de l'Intérieur. Il est recommandé de renouveler vos appels depuis un autre opérateur ou une ligne fixe.
WiFi Shootout: O.MG Cable vs Smartphone
MG joins Darren Kitchen to talk hardware hacking and the future of the infamous O.MG Cable
Conti #ransomware group has compromised a U.S Texas-based debt-collecting agency and stole troves of sensitive data. Conti has added « Southwest Recovery Services » (SRS) into its victims page, claiming to have stolen 122GB of data from the company. Employee home addresses, phone numbers, dates of birth, and SSNs, financial documents from accounting, client databases containing addresses, phone numbers, e-mails, payroll, tax returns, contracts with partners including non-disclosure agreements, databases containing confidential legal information, payments, etc.
Blizzard announced it was under a DDoS attack shortly after the launch of WoW: The Burning Crusade Classic.
Marlène Schiappa s'est fait dérober un disque dur au sein même du ministère de l'Intérieur
Microsoft's Anti-Malware Software Interface (AMSI) can play a particularly important role in keeping Windows 10 and Windows Server systems from being compromised. But AMSI is not a panacea. Attackers are continuously finding ways to obfuscate and conceal malicious content from anti-malware signature detections.
https://news.sophos.com/en-us/2021/06/02/amsi-bypasses-remain-tricks-of-the-malware-trade/
Steamship Authority (steamshipauthority.com
) Nantucket targeted in #ransomware attack and Martha's Vineyard passengers may be hit by delays. The United States has experienced a soar in #cyber attacks during recent weeks.
Chinese game developer AMT Games, which has produced a string of mobile and social titles with tens of millions of downloads between them, exposed 1.5TB of data via an Elasticsearch server. 5.9 million player profiles, two million transactions, and 587,000 feedback messages.
Les usagers ( 32 millions de foyers ) devront rembourser dès l'an prochain le compteur Linky dont on leur a pourtant assuré qu'il serait gratuit : « pas un centime aux particuliers » ( Eric Besson ). L'UFC-Que Choisir a récemment publié une étude qui tire le bilan de l'actuelle régulation du marché.
sc(r)apy | full metal packets
> We Are the Borg
> You Will be Assimilated
> Resistance is Futile