$2.3 Million of Colonial Pipeline Ransom Payment Recovered

$2.3 Million of Colonial Pipeline Ransom Payment Recovered

Justice Department Tracked the Payment to an FBI-Controlled Bitcoin Wallet Doug Olenick (DougOlenick) • June 7, 2021     The U.S. Justice Department on Monday reported it recouped $2.3 million of the $4.4 million ransom Colonial Pipeline Co. paid following a May 7 DarkSide ransomware attack. The DOJ’s Ransomware and Digital Extortion Task Force…

Attackers are scanning for vulnerable VMware servers, patch now!

Attackers are scanning for vulnerable VMware servers, patch now!

Threat actors are actively scanning for Internet-exposed VMware vCenter servers unpatched against a critical remote code execution (RCE) vulnerability impacting all vCenter deployments and patched by VMware ten days ago. The ongoing scanning activity was spotted by threat intelligence company Bad Packets yesterday and confirmed earlier today by cybersecurity expert Kevin Beaumont. Security researchers have also developed and published a proof-of-concept…

Cobalt Gang Members Sentenced by Kazakhstan District Court

Cobalt Gang Members Sentenced by Kazakhstan District Court

Cybercrime , Cybercrime as-a-service , Fraud Management & Cybercrime Money Mule Convictions Unlikely to Slow Gang Activity Rashmi Ramesh • June 7, 2021     Cobalt gang members arrested, sentenced (Photo: Pixabay) A district court in Kazakhstan last Wednesday sentenced two unidentified Cobalt, aka Carbanak, gang members to serve eight years in prison on robbery…

Live Updates: Majority of Colonial Pipeline Ransom Recovered, Justice Dept. Says

Live Updates: Majority of Colonial Pipeline Ransom Recovered, Justice Dept. Says

Here’s what you need to know: Video transcript Back transcript Justice Dept. Recovers Millions from Colonial Pipeline Hack The Justice Department said on Monday that it had recovered the majority of the ransom paid to the hackers who shut down the computer systems of the Colonial Pipeline last month. The Department of Justice, working with…

US Has Recovered Ransom Payment Made After Pipeline Hack

US Has Recovered Ransom Payment Made After Pipeline Hack

US Has Recovered Ransom Payment Made After Pipeline Hack | IT Security News Android App Android App with push notifications Sponsors Endpoint Cybersecurity www.endpoint-cybersecurity.com – Consulting in building your security products– Employee awareness training– Security tests for applications and pentesting… and more. Daily Summary Categories CategoriesSelect Category(ISC)2 Blog  (323)(ISC)2 Blog infosec  (13)(ISC)² Blog  (369)2020-12-08 – Files for an…

Ransomware Attacks to Get Similar Priority as Terrorism in US, Official Says

Ransomware Attacks to Get Similar Priority as Terrorism in US, Official Says

The US Department of Justice is elevating investigations of ransomware attacks to a similar priority as terrorism in the wake of the Colonial Pipeline hack and mounting damage caused by cyber criminals, a senior department official told Reuters. Internal guidance sent on Thursday to US attorney’s offices across the country said information about ransomware investigations…

Latvian Woman Charged for Role In Crafting Trickbot …

Latvian Woman Charged for Role In Crafting Trickbot …

Alla Witte and her associates are accused of using Trickbot to infect tens of millions of computers around the world, the Justice Department reports. The US government has charged a Latvian woman for her role in creating the Trickbot malware.  Alla Witte was charged in federal court in Cleveland with 19 counts of a 47-count indictment. The indictment…

Lawmaker Wants Spies ‘Hacking Back’

Lawmaker Wants Spies ‘Hacking Back’

Cybercrime , Cybercrime as-a-service , Endpoint Detection & Response (EDR) Australian Politician Argues ‘Releasing the Hounds’ Necessary to Deter Attacks Jeremy Kirk (jeremy_kirk) • June 7, 2021     The Australian Parliament Building in Canberra A member of Australia’s Parliament is calling for the government’s spy agency to take offensive action against some of the…

Researchers Discover First Known Malware Targeting Windows Containers

Researchers Discover First Known Malware Targeting Windows Containers

Security researchers have discovered the first known malware, dubbed “Siloscope,” targeting Windows Server containers to infect Kubernetes clusters in cloud environments. “Siloscape is heavily obfuscated malware targeting Kubernetes clusters through Windows containers,” said Unit 42 researcher Daniel Prizmant. “Its main purpose is to open a backdoor into poorly configured Kubernetes clusters in order to run…