menu
techminis

A naukri.com initiative

google-web-stories
Home

>

Cyber Crime News

Cyber Crime News

source image

Securityaffairs

1w

read

332

img
dot

Image Credit: Securityaffairs

Marks and Spencer confirms data breach after April cyber attack

  • Marks and Spencer confirms data breach after April cyber attack, where threat actors stole customer data.
  • The cyber incident led to temporary changes in store operations and affected card payments, gift cards, and Click and Collect service.
  • The stolen data includes customer contact details, birthdate, order history, and masked card details, but not full payment info.
  • M&S recommends caution against phishing attempts, resetting passwords, and staying updated on security practices post-breach.

Read Full Article

like

19 Likes

source image

Silicon

1w

read

319

img
dot

Image Credit: Silicon

Marks & Spencer Warns Customers Over Data Theft

  • Marks & Spencer informed online customers of data theft during a cyber-attack on 25 April.
  • The stolen data included contact details, dates of birth, and online order history.
  • No card details, payment information, or account passwords were compromised.
  • Customers are advised to change passwords as a precaution, and M&S is working on resolving the issue.

Read Full Article

like

19 Likes

source image

TechCrunch

1w

read

87

img
dot

Image Credit: TechCrunch

Marks & Spencer confirms customers’ personal data was stolen in hack

  • Marks & Spencer confirms customers’ personal data was stolen in a recent hack, including names, dates of birth, addresses, phone numbers, and more.
  • The company is resetting online account passwords as a precautionary measure.
  • Marks & Spencer is facing disruptions and outages across its stores, leading to empty grocery shelves and online ordering system remaining offline.
  • Ransomware gang DragonForce claimed responsibility for cyberattacks on Marks & Spencer, Co-op, and Harrods in the U.K., with Co-op confirming customer data theft.

Read Full Article

like

4 Likes

source image

Securityaffairs

1w

read

42

img
dot

Image Credit: Securityaffairs

Moldovan Police arrested a 45-year-old foreign man participating in ransomware attacks on Dutch companies

  • A 45-year-old foreign man was arrested in Moldova for participating in ransomware attacks on Dutch companies in 2021.
  • The arrest was a result of a joint international operation involving Moldovan and Dutch authorities, with the suspect wanted for cybercrimes including ransomware attacks and money laundering.
  • The suspect was linked to a ransomware attack on the Netherlands Organization for Scientific Research, resulting in €4.5 million in damages, attributed to the DoppelPaymer ransomware operation.
  • In a related development, Europol announced an international operation targeting key members of the DoppelPaymer ransomware group in March 2023.

Read Full Article

like

2 Likes

source image

TechDigest

1w

read

257

img
dot

Image Credit: TechDigest

M&S admits customer data was stolen in cyber attack

  • Marks & Spencer has confirmed a cyber attack resulted in stolen customer data and disruptions to their operations.
  • The incident affected customers' personal information, prompting password resets, but no payment details were compromised.
  • The cyber attack led to online order halts, empty shelves, and a drop in M&S's share price.
  • M&S is taking measures to investigate the breach, improve security, and recover from the incident that impacted its supply chain.

Read Full Article

like

15 Likes

source image

Guardian

1w

read

286

img
dot

Image Credit: Guardian

M&S says some personal data was taken in cyber-attack

  • Marks & Spencer has confirmed that personal customer data was accessed in a recent cyber-attack, prompting the retailer to halt online orders and affecting product availability in stores.
  • The accessed data includes names, addresses, and order histories, but not payment details or account passwords. M&S reassured customers that no action is required, although a password reset may be prompted for extra security.
  • The cyber-attack, suspected to be linked to hacking group Scattered Spider, led M&S to take offline its IT systems since April 25. The retailer has reported the incident to authorities and is working to resolve the issues with cybersecurity experts.
  • The Information Commissioner's Office is investigating reports from M&S and the Co-op Group, another victim of a cyber-attack, collaborating with the National Cyber Security Centre to address such incidents.

Read Full Article

like

17 Likes

source image

Hackernoon

1w

read

67

img
dot

Image Credit: Hackernoon

Android Users Can Now Simulate Phishing Attacks with PyPhisher on Termux—Here's How

  • PyPhisher is a tool that helps ethical hackers create fake login pages for popular sites on Android phones using Termux.
  • Users can simulate phishing attacks by following a step-by-step guide to install and run PyPhisher on Termux.
  • Installing PyPhisher involves updating Termux packages, installing required dependencies like Git, Python3, Pip, PHP, and OpenSSH, cloning the PyPhisher repository, and running the tool.
  • Once PyPhisher is set up, users can select a phishing template, generate phishing links, open them in a browser, and capture login credentials for ethical hacking purposes.

Read Full Article

like

4 Likes

source image

Securityaffairs

1w

read

67

img
dot

Image Credit: Securityaffairs

Threat actors use fake AI tools to deliver the information stealer Noodlophile

  • Threat actors are using fake AI tools to distribute the information stealer Noodlophile, as warned by Morphisec researchers.
  • Attackers exploit the AI hype through viral posts and Facebook groups to trick users into downloading Noodlophile Stealer, a new malware that steals browser credentials and crypto wallets.
  • Noodlophile Stealer, a previously undisclosed malware, is being sold on cybercrime forums as part of malware-as-a-service schemes and is often bundled with tools for credential theft.
  • Fake AI tools like 'Dream Machine' or 'CapCut' spread through social media, attracting users seeking free video/image editors, but instead delivering malware like Noodlophile or XWorm.

Read Full Article

like

4 Likes

source image

TechDigest

1w

read

97

img
dot

Image Credit: TechDigest

Inside hacking meltdown at M&S, iOS19 to let you sync Public WiFi across devices

  • Marks & Spencer faced a hacking meltdown after a promising financial year, impacting its reputation and future prospects.
  • Apple is set to introduce a new feature in iOS 19 that will automatically sync public Wi-Fi networks across all Apple devices, simplifying the connection process.
  • Virgin Media O2 and Daisy Group are merging their business communications and IT operations to create a £3bn telecoms powerhouse.
  • Rockstar Games released the second trailer for Grand Theft Auto 6, showcasing advanced graphics and gameplay elements, setting high expectations for the upcoming game.

Read Full Article

like

5 Likes

source image

Securityaffairs

1w

read

46

img
dot

Image Credit: Securityaffairs

German police seized eXch crypto exchange

  • Germany's Federal Criminal Police (BKA) shut down the eXch crypto exchange (eXch.cx), seizing its infrastructure over money laundering and illegal trading allegations.
  • The German law enforcement seized €34M in crypto and 8TB of data from the platform, marking its third-largest crypto asset seizure ever.
  • eXch crypto exchange had been active since 2014, enabling anonymous crypto swaps via clearnet and darknet, avoiding Anti Money Laundering rules. Authorities suspect the platform allowed laundering $1.9B.
  • eXch announced it would shut down on May 1, 2025, amid suspicions of money laundering and illegal trading. Despite the shutdown announcement, authorities swiftly seized data and crypto assets from the platform.

Read Full Article

like

2 Likes

source image

Securityaffairs

1w

read

242

img
dot

Image Credit: Securityaffairs

Security Affairs newsletter Round 523 by Pierluigi Paganini – INTERNATIONAL EDITION

  • 437,329 patients' personal data exposed in Ascension cyberattack.
  • Operation Moonlander dismantles cybercriminal services Anyproxy and 5socks.
  • SonicWall fixes critical flaws in SMA 100.
  • NSO Group ordered to pay over $167M to WhatsApp for spyware campaign.

Read Full Article

like

14 Likes

source image

Securityaffairs

1w

read

225

img
dot

Image Credit: Securityaffairs

Ascension reveals personal data of 437,329 patients exposed in cyberattack

  • A data breach at Ascension, caused by a former partner's compromise, exposed the health information of over 430,000 patients.
  • The breach disclosed personal and clinical data, including names, contact info, SSNs, and medical visit details, with specific information varying by individual.
  • Ascension initiated an investigation after learning of the security incident, discovering that patient information was accidentally disclosed to a former business partner, likely leading to data theft.
  • The healthcare organization is offering two years of free identity monitoring to those affected by the breach and has reported the incident to the U.S. Department of Health & Human Services.

Read Full Article

like

13 Likes

source image

Securityaffairs

1w

read

85

img
dot

Image Credit: Securityaffairs

Operation Moonlander dismantled the botnet behind Anyproxy and 5socks cybercriminals services

  • Operation Moonlander dismantled a 20-year botnet behind Anyproxy and 5socks cybercriminals services and arrested four suspects.
  • U.S. Justice Department charged Russian and Kazakhstani nationals for maintaining, operating, and profiting from Anyproxy and 5socks services.
  • The botnet operators enabled cryptocurrency payments and targeted IOT and SOHO devices for malicious activities like ad fraud, DDoS attacks, and brute force attacks.
  • FBI released a FLASH alert warning about 5Socks and Anyproxy malicious services targeting end-of-life routers and urged replacing compromised routers or preventing infection by disabling remote admin and rebooting.

Read Full Article

like

5 Likes

source image

Securityaffairs

1w

read

389

img
dot

Image Credit: Securityaffairs

A cyber attack briefly disrupted South African Airways operations

  • A cyberattack briefly disrupted South African Airways’ website, app, and systems, but core flight operations remained unaffected.
  • SAA activated disaster and continuity protocols immediately, enabling the resumption of impacted systems on the same day.
  • Investigation into the cyberattack is ongoing with the assistance of independent digital forensic experts to determine the root cause and full scope of the security breach.
  • The incident was reported to national authorities for criminal investigation, and steps are being taken to enhance security measures and mitigate potential risks.

Read Full Article

like

23 Likes

source image

TechCrunch

1w

read

205

img
dot

Image Credit: TechCrunch

FBI and Dutch police seize and shut down botnet of hacked routers

  • FBI and Dutch police have seized and shut down botnet services involving hacked internet-connected devices, including routers.
  • U.S. prosecutors indicted four individuals, including three Russians and one Kazakhstan national, for hacking into routers and running the botnet under the guise of legitimate proxy services.
  • The accused individuals targeted vulnerable internet-connected devices to build a botnet, offering access through services like Anyproxy and 5Socks and making over $46 million from selling botnet access.
  • Black Lotus Labs assisted in tracking the proxy networks used for malicious activities, with the botnet offering anonymity for cybercriminals and having about 1,000 weekly active proxies in over 80 countries.

Read Full Article

like

12 Likes

For uninterrupted reading, download the app