cybercrime

Prison Sentence for Former US Soldier Who Hacked AT&T and Verizon

Prison Sentence for Former US Soldier Who Hacked AT&T and Verizon 2026-09-28 at 15:36 By Ionut Arghire Cameron John Wagenius was sentenced to 70 months in prison for stealing information from the wireless carriers. The post Prison Sentence for Former US Soldier Who Hacked AT&T and Verizon appeared first on SecurityWeek. This article is an […]

Prison Sentence for Former US Soldier Who Hacked AT&T and Verizon Read More »

Google Warns of ShinyHunters’ Fresh Oracle PeopleSoft Campaign

Google Warns of ShinyHunters’ Fresh Oracle PeopleSoft Campaign 2026-09-28 at 13:56 By Ionut Arghire The extortion group has modified its exploit in new attacks targeting the PeopleSoft vulnerability CVE-2026-35273. The post Google Warns of ShinyHunters’ Fresh Oracle PeopleSoft Campaign appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Google Warns of ShinyHunters’ Fresh Oracle PeopleSoft Campaign Read More »

Ex-US soldier gets 70 months for role in AT&T, Snowflake data thefts

Ex-US soldier gets 70 months for role in AT&T, Snowflake data thefts 2026-09-28 at 11:45 By Sinisa Markovic A former U.S. Army soldier who was part of a group that stole data from telecom companies, including AT&T, has been sentenced to 70 months in prison. Cameron John Wagenius, 22, was part of the group that […]

Ex-US soldier gets 70 months for role in AT&T, Snowflake data thefts Read More »

North Korea Suspected in $351 Million Bitget Crypto Heist

North Korea Suspected in $351 Million Bitget Crypto Heist 2026-09-25 at 17:16 By Eduard Kovacs Bitget’s security systems caught the unauthorized transfers on September 24, and some wallet addresses linked to the attacker have been frozen. The post North Korea Suspected in $351 Million Bitget Crypto Heist appeared first on SecurityWeek. This article is an […]

North Korea Suspected in $351 Million Bitget Crypto Heist Read More »

Kosovar Owner of Rydox Marketplace Pleads Guilty in US Court

Kosovar Owner of Rydox Marketplace Pleads Guilty in US Court 2026-09-25 at 15:16 By Ionut Arghire Ardit Kutleshi created and operated Rydox, which allowed miscreants to trade PII and cybercrime tools and services. The post Kosovar Owner of Rydox Marketplace Pleads Guilty in US Court appeared first on SecurityWeek. This article is an excerpt from […]

Kosovar Owner of Rydox Marketplace Pleads Guilty in US Court Read More »

Fake payroll desktop apps hand attackers a route to company paychecks

Fake payroll desktop apps hand attackers a route to company paychecks 2026-09-25 at 10:52 By Sinisa Markovic An attacker has been offering “desktop apps” for three large US payroll and HR platforms that have never released one, Allure Security have found. Anyone who runs the installer gets a copy of ScreenConnect, a legitimate remote access […]

Fake payroll desktop apps hand attackers a route to company paychecks Read More »

New Android malware RemControl steals banking PINs and blocks removal attempts

New Android malware RemControl steals banking PINs and blocks removal attempts 2026-09-24 at 12:40 By Sinisa Markovic A new Android banking trojan called RemControl tricks victims into installing a fake TV app, then takes control of their phones to steal banking PINs, Group-IB has found. Researchers confirmed that the malware targets customers of more than […]

New Android malware RemControl steals banking PINs and blocks removal attempts Read More »

US Court Sentences Armenian Man to Prison for Ryuk Ransomware Attacks

US Court Sentences Armenian Man to Prison for Ryuk Ransomware Attacks 2026-09-24 at 11:38 By Eduard Kovacs Karen Vardanyan has also been ordered to pay over $1.2 million in restitution to victims. The post US Court Sentences Armenian Man to Prison for Ryuk Ransomware Attacks appeared first on SecurityWeek. This article is an excerpt from […]

US Court Sentences Armenian Man to Prison for Ryuk Ransomware Attacks Read More »

AI-Powered Phishing Platform EvilTokens Disrupted by Microsoft

AI-Powered Phishing Platform EvilTokens Disrupted by Microsoft 2026-09-23 at 14:23 By Eduard Kovacs The cybercrime platform leveraged AI at every step of the attack chain, including writing social engineering messages and deciding targets. The post AI-Powered Phishing Platform EvilTokens Disrupted by Microsoft appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

AI-Powered Phishing Platform EvilTokens Disrupted by Microsoft Read More »

Microsoft disrupts EvilTokens phishing service that gave criminals access to 12,000 inboxes

Microsoft disrupts EvilTokens phishing service that gave criminals access to 12,000 inboxes 2026-09-23 at 11:34 By Sinisa Markovic The EvilTokens phishing service, which compromised more than 12,000 inboxes at over 10,000 organizations, has been disrupted by a coalition of law enforcement and private-sector partners led by Microsoft. With authorization from the US District Court for […]

Microsoft disrupts EvilTokens phishing service that gave criminals access to 12,000 inboxes Read More »

The latest deepfake numbers give CISOs plenty to worry about

The latest deepfake numbers give CISOs plenty to worry about 2026-09-22 at 15:05 By Sinisa Markovic AI is letting cybercriminals reach deeper into organizations than a phishing email ever could. 41% of CISOs reported at least one social engineering incident involving a deepfake during an employee audio call in the past 12 months, according to […]

The latest deepfake numbers give CISOs plenty to worry about Read More »

Scammers impersonate cops, use arrest threats to extort victims

Scammers impersonate cops, use arrest threats to extort victims 2026-09-21 at 13:53 By Sinisa Markovic Scammers are posing as police officers and federal agents, threatening arrest unless victims pay up, the FBI warns. The FBI’s Internet Crime Complaint Center (IC3) updated an alert it first issued in 2022, citing “losses totaling more than $1.6 billion” […]

Scammers impersonate cops, use arrest threats to extort victims Read More »

Hackers exploit Gyazo server flaw to steal 23.6 million user records

Hackers exploit Gyazo server flaw to steal 23.6 million user records 2026-09-21 at 11:57 By Sinisa Markovic Japanese software company Helpfeel has confirmed a data breach on its screenshot-sharing platform Gyazo, in which attackers exploited a vulnerability in its image upload server, stealing approximately 23.62 million user records and metadata tied to hundreds of millions […]

Hackers exploit Gyazo server flaw to steal 23.6 million user records Read More »

In Other News: Ransomware Developer Sentenced, Plugin4Shell AI Attack, Critical SAP Flaw

In Other News: Ransomware Developer Sentenced, Plugin4Shell AI Attack, Critical SAP Flaw 2026-09-18 at 17:25 By SecurityWeek News Noteworthy stories that might have slipped under the radar: Mandiant’s 2026 AI risk report, PhantomRaven malware used by bug bounty hunter, WordPress plugin bug exploited. The post In Other News: Ransomware Developer Sentenced, Plugin4Shell AI Attack, Critical […]

In Other News: Ransomware Developer Sentenced, Plugin4Shell AI Attack, Critical SAP Flaw Read More »

A fake ChatGPT billing email is after your OpenAI password

A fake ChatGPT billing email is after your OpenAI password 2026-09-17 at 16:01 By Anamarija Pogorelec A fake ChatGPT billing email is steering users to a copy of the OpenAI login page that keeps whatever username and password they type. Josh Varden of Cofense’s Phishing Defense Center traced the email’s payment button through a Google […]

A fake ChatGPT billing email is after your OpenAI password Read More »

Scammers leave AI fingerprints all over fake antivirus renewal page

Scammers leave AI fingerprints all over fake antivirus renewal page 2026-09-17 at 13:10 By Sinisa Markovic AI appears to be helping scammers with little web development skill build convincing fake antivirus-renewal pages, Malwarebytes found. The researchers came across a scam page impersonating Avast, aimed at users in Belgium, that was more polished than most sites […]

Scammers leave AI fingerprints all over fake antivirus renewal page Read More »

Fake AI trading agent steals crypto wallet passwords

Fake AI trading agent steals crypto wallet passwords 2026-09-17 at 11:00 By Anamarija Pogorelec Attackers built a website for a fake AI crypto trading agent and used it to install Needle Stealer, malware that replaces a victim’s browser wallet with a copy that sends the wallet password to the attacker. HP caught the campaign between […]

Fake AI trading agent steals crypto wallet passwords Read More »

CenterPoint Energy confirms data breach following claims on hacking forum

CenterPoint Energy confirms data breach following claims on hacking forum 2026-09-16 at 13:35 By Sinisa Markovic CenterPoint Energy disclosed that an unauthorized third party got into customer data through one of its external systems, after online claims by a hacker that millions of records had been stolen from the company. CenterPoint Energy is a Houston-based […]

CenterPoint Energy confirms data breach following claims on hacking forum Read More »

Uncensored AI sold on hacking forum as alternative to ChatGPT and Claude jailbreaks

Uncensored AI sold on hacking forum as alternative to ChatGPT and Claude jailbreaks 2026-09-15 at 15:32 By Sinisa Markovic A new AI subscription service called Luciferus is being marketed on a hacking forum as an alternative to jailbreaking ChatGPT or Claude, Sophos found. The Counter Threat Unit (CTU) spotted the advertisement on August 24 on […]

Uncensored AI sold on hacking forum as alternative to ChatGPT and Claude jailbreaks Read More »

Attackers hijack HBO Max’s Reddit account for 48-hour malvertising blitz

Attackers hijack HBO Max’s Reddit account for 48-hour malvertising blitz 2026-09-15 at 13:10 By Sinisa Markovic Attackers compromised the verified official HBO Max Reddit account, u/hbomax, and used its trusted advertising status to launch a ClickFix campaign targeting macOS and Windows devices with information-stealing malware. Screenshot of the fraudulent ad (Source: Alex Cutts) ClickFix has […]

Attackers hijack HBO Max’s Reddit account for 48-hour malvertising blitz Read More »

Scroll to Top