The Breach News

They Modified AirPods to Create Hearing Aids for Their Grandmas

Researchers with expertise in both hardware and software have uncovered a way to circumvent Apple’s geographic restrictions affecting AirPods. This hack emerged from their collaborative efforts within a tech collective called Lagrange Point. They have reported receiving inquiries from numerous individuals, particularly in India, who are facing difficulties using AirPods,…

Read MoreThey Modified AirPods to Create Hearing Aids for Their Grandmas

Schneider Electric Issues Warning About Severe Flaws in Modicon Systems

Multiple Critical Vulnerabilities Uncovered in Schneider Electric’s Industrial Controllers Schneider Electric, a global leader in energy management and automation solutions, has revealed critical vulnerabilities in its Modicon M340, Momentum, and MC80 programmable automation controllers. These risks pose substantial threats to industries relying on these devices, which play a significant role…

Read MoreSchneider Electric Issues Warning About Severe Flaws in Modicon Systems

Important: Your Social Security Number May Already Be Compromised

In a significant data breach, the personal information of potentially hundreds of millions of individuals has been compromised following a cyberattack on National Public Data (NPD), a data brokerage firm based in the United States. Initial reports inaccurately claimed that 2.9 billion records had been breached; however, cybersecurity experts have…

Read MoreImportant: Your Social Security Number May Already Be Compromised

Hacking Groups Join Forces for Double Ransom Operation

A concerning trend has emerged in the cybersecurity landscape, as identified by Kaspersky, the prominent cybersecurity firm with origins in Russia. Cybercriminal organizations are increasingly collaborating to optimize their gains by executing consecutive malware attacks. The strategy typically involves initial infiltration using information-stealing malware, followed subsequently by a ransomware attack,…

Read MoreHacking Groups Join Forces for Double Ransom Operation

Hamas Linked to October Wiper Attacks via Eset Email

Cyberwarfare / Nation-State Attacks, Fraud Management & Cybercrime ‘Wirte’ Threat Actor Employs Wiper Malware Targeting Victims in Israel David Perera (@daveperera) • November 12, 2024 Hamas launches a significant rocket offensive towards Israel from Rafah in the southern Gaza Strip on October 7, 2023. (Image: Shutterstock) Recent investigations indicate that…

Read MoreHamas Linked to October Wiper Attacks via Eset Email

How Incogni Protects Your Data After a Data Breach

Recent Cybersecurity Breach Targets Personal Information, Heightening Risks for Affected Individuals In the evolving landscape of cybersecurity threats, a recent data breach underscores the vulnerabilities faced by individuals and organizations alike. Reports indicate that a significant amount of sensitive personal data has been compromised, potentially impacting numerous individuals whose information…

Read MoreHow Incogni Protects Your Data After a Data Breach

Turla’s New ‘DeliveryCheck’ Backdoor Compromises Ukrainian Defense Sector

On July 20, 2023, reports emerged of a sophisticated .NET-based backdoor known as DeliveryCheck (also referred to as CAPIBAR or GAMEDAY) targeting the defense sector in Ukraine and Eastern Europe. Attributed to the Russian nation-state actor Turla—also recognized by aliases such as Iron Hunter, Secret Blizzard (formerly Krypton), Uroburos, Venomous Bear, and Waterbug—this malware is associated with Russia’s Federal Security Service (FSB). According to the Microsoft threat intelligence team, in partnership with the Computer Emergency Response Team of Ukraine (CERT-UA), DeliveryCheck is distributed through malicious email attachments containing harmful macros. The backdoor maintains persistence via a scheduled task that downloads and executes it in memory. Additionally, it connects to a command-and-control (C2) server to receive instructions, which may include deploying various payloads embedded within XSLT stylesheets. Successful initial accesses are sometimes accompanied by additional malicious activities.

New Threat Discovered: Turla’s DeliveryCheck Backdoor Targets Ukrainian Defense Infrastructure On July 20, 2023, cybersecurity experts revealed a new threat targeting the defense sector in Ukraine and Eastern Europe. The malware, identified as DeliveryCheck—also referred to by the codename CAPIBAR or GAMEDAY—is a .NET-based backdoor designed to facilitate the delivery…

Read More

Turla’s New ‘DeliveryCheck’ Backdoor Compromises Ukrainian Defense Sector

On July 20, 2023, reports emerged of a sophisticated .NET-based backdoor known as DeliveryCheck (also referred to as CAPIBAR or GAMEDAY) targeting the defense sector in Ukraine and Eastern Europe. Attributed to the Russian nation-state actor Turla—also recognized by aliases such as Iron Hunter, Secret Blizzard (formerly Krypton), Uroburos, Venomous Bear, and Waterbug—this malware is associated with Russia’s Federal Security Service (FSB). According to the Microsoft threat intelligence team, in partnership with the Computer Emergency Response Team of Ukraine (CERT-UA), DeliveryCheck is distributed through malicious email attachments containing harmful macros. The backdoor maintains persistence via a scheduled task that downloads and executes it in memory. Additionally, it connects to a command-and-control (C2) server to receive instructions, which may include deploying various payloads embedded within XSLT stylesheets. Successful initial accesses are sometimes accompanied by additional malicious activities.