Cybercrime

Pierluigi Paganini May 13, 2019
Pacha Group declares war to rival crypto mining hacking groups

Two hacking groups associated with large-scale crypto mining campaigns, Pacha Group and Rocke Group, wage war to compromise as much as possible cloud-based infrastructure. The first group tracked as Pacha Group has Chinese origins, it was first detected in September 2018 and is known to deliver the Linux.GreedyAntd miner. The Pacha Group’s attack chain starts […]

Pierluigi Paganini May 11, 2019
U.S. DoJ charges 9 individuals that stole $2.5M through SIM swapping

The U.S. Department of Justice charged nine individuals connected to a hacking crew focused on identity theft and SIM swapping attacks. The U.S. DoJ announced charges against nine individuals, 6 members of a hacking group known as ‘The Community’ and 3 former employees of mobile phone providers. The latter group helped the hackers to steal roughly […]

Pierluigi Paganini May 10, 2019
Top-Tier Russian Hacking group Fxmsp claims hack of major AntiVirus Companies

A Russian hacking group Fxmsp is offering for sale the access to the networks of at least three antivirus companies in the US and source code of their software. Fxmsp is a high-profile Russian- and English-speaking hacking group focused on breaching high-profile private corporate and government information. The group is offering the accesses to the […]

Pierluigi Paganini May 08, 2019
International Police operation seized DeepDotWeb and arrested its administrators

Police seized the DeepDotWeb website and arrested its operators for their business in facilitating the access to darkweb marketplaces and vendors. DeepDotWeb was a website for facilitating access to dark web sites and marketplaces. The site was seized and the arrests were made as part of an international operation involving the FBI, Europol, and Federal […]

Pierluigi Paganini May 08, 2019
Hackers Steal $41 Million worth of Bitcoin from Binance Exchange

Hackers steal $41 Million worth of Bitcoin from Binance, one of the world’s largest cryptocurrency exchange The hack of another cryptocurrency exchange made the headlines, hackers steal $41 Million worth of Bitcoin (over 7,000 bitcoins) from Binance. Binance is one of the world’s largest cryptocurrency exchanges, its founder and CEO Changpeng Zhao confirmed that the […]

Pierluigi Paganini May 07, 2019
ATMitch: New Evidence Spotted In The Wild

Early April, experts at Yoroi-Cybaze ZLab spotted a new interesting malware sample, likely active since 2017, that was linked to ATMitch attacks.  In the first days of April, our threat monitoring operations spotted a new interesting malware sample possibly active in the wild since 2017. Its initial triage suggests it may be part of an […]

Pierluigi Paganini May 06, 2019
Retefe Banking Trojan resurfaces in the threat landscape with innovations

Security experts at Proofpoint warn of the resurfacing of the Retefe banking Trojan that implements new techniques to avoid detection. The Retefe banking Trojan resurfaces in that threat landscape and implements new techniques to avoid detection. The new variant resurfaced in April, it uses the stunnel encrypted tunneling mechanism and abuses a legitimate shareware app. […]

Pierluigi Paganini May 05, 2019
Ukrainian national Oleksii Petrovich Ivanov extradited to US facing hacking charges

International ‘Malvertiser’ Oleksii Petrovich Ivanov extradited from the Netherlands to face hacking charges in New Jersey The Ukrainian national Oleksii Petrovich Ivanov (31) was extradited to the U.S. from the Netherlands and is facing charges of conspiracy to commit wire fraud, wire fraud, and computer fraud. The man is suspected to have carried out malvertising […]

Pierluigi Paganini May 05, 2019
Hackers stole card data from 201 campus online stores in US and Canada, is it the Magecart group?

Magecart group stole payment card details from the e-commerce system used by colleges and universities in Canada and the US. Security firms have monitored the activities of a dozen Magecart groups at least since 2015. The gangs use to implant skimming script into compromised online stores in order to steal payment card data, but they are quite […]

Pierluigi Paganini May 04, 2019
Mysterious attacks wipe Git repositories and ask a ransom to rescue code

Extortion practice hit programmers’ Git repositories, experts observed a new piece of ransomware that wipes them and replaces the code with a ransom note. Hackers are using a new piece of ransomware to target GitHub, GitLab, and Bitbucket repositories, wiping code and commiting, and leaving a ransom note. The hackers wipe out all commit history […]