The Breach News

Kasseika Ransomware Employs BYOVD Technique to Bypass Security Before Encryption

The Kasseika ransomware group has emerged as the latest threat actor exploiting the Bring Your Own Vulnerable Driver (BYOVD) technique to disable security processes on compromised Windows systems. This method allows cybercriminals to terminate antivirus software, facilitating the deployment of ransomware. Kasseika joins other prominent groups, including Akira, AvosLocker, BlackByte,…

Read MoreKasseika Ransomware Employs BYOVD Technique to Bypass Security Before Encryption

Nigeria Dismisses Charges Against Tigran Gambaryan, Imprisoned Binance Executive and Ex-IRS Agent

For eight months, a notable figure in cryptocurrency tracing within law enforcement has experienced a reversal of fortune, as he finds himself imprisoned in Nigeria facing allegations of money laundering and tax evasion. This individual, who has played a pivotal role in developing techniques for tracking cryptocurrency transactions, is now…

Read MoreNigeria Dismisses Charges Against Tigran Gambaryan, Imprisoned Binance Executive and Ex-IRS Agent

Attackers Linked to Black Basta Target Users with SystemBC Malware

Ongoing Social Engineering Campaign Linked to Black Basta Ransomware Group Targets Enterprises A recent investigation has revealed an unfolding social engineering campaign that is reportedly associated with the Black Basta ransomware group. This campaign has led to multiple attempts to breach enterprise defenses, primarily aimed at credential theft and the…

Read MoreAttackers Linked to Black Basta Target Users with SystemBC Malware

Hong Kong Prohibits Access to WhatsApp and Google Drive on Government Computers

HONG KONG: The Hong Kong government has enacted a ban on the use of widely popular applications, including WhatsApp, WeChat, and Google Drive, on work computers for the majority of civil servants, citing concerns about potential security vulnerabilities. The decision, communicated through the latest IT security guidelines from the Digital…

Read MoreHong Kong Prohibits Access to WhatsApp and Google Drive on Government Computers

Severe SQL Injection Vulnerability Discovered in Fortra FileCatalyst Workflow Application

A significant security vulnerability has been identified in Fortra FileCatalyst Workflow that could potentially allow attackers to compromise the application database if not addressed promptly. The issue, designated CVE-2024-5276, has been assigned a critical CVSS score of 9.8. This flaw affects all FileCatalyst Workflow versions up to and including 5.1.6…

Read MoreSevere SQL Injection Vulnerability Discovered in Fortra FileCatalyst Workflow Application

Microsoft Alerts to Increasing APT29 Espionage Campaigns Aiming at International Organizations

On Thursday, Microsoft disclosed that a group of Russian state-sponsored threat actors, linked to a cyber attack on its systems in late November 2023, has been targeting additional organizations. The company is now in the process of notifying affected entities. This announcement follows Hewlett Packard Enterprise’s revelation that it fell…

Read MoreMicrosoft Alerts to Increasing APT29 Espionage Campaigns Aiming at International Organizations

U.S. Courts and Government Systems Plagued by Vulnerabilities

Recent investigations have revealed critical vulnerabilities within public records systems that are essential for managing voter registrations and legal filings utilized by courts and government agencies. These flaws have potentially allowed malicious users to manipulate voter registration databases, as well as add, delete, or alter official documents. In a comprehensive…

Read MoreU.S. Courts and Government Systems Plagued by Vulnerabilities