Security News

American Airlines learned they were breached from phishing targets
2022-09-24 14:06

American Airlines says its Cyber Security Response Team found out about a recently disclosed data breach from the targets of a phishing campaign that was using an employee's hacked Microsoft 365 account. The investigation also revealed the attacker accessed multiple employees' accounts and used them to send more phishing emails to targets American has not yet disclosed.

American Airlines discloses data breach after employee email compromise
2022-09-19 21:50

American Airlines has notified customers of a recent data breach after attackers compromised an undisclosed number of employee email accounts and gained access to sensitive personal information. American Airlines discovered the breach on July 5th, immediately secured the impacted email accounts, and hired a cybersecurity forensic firm to investigate the security incident.

Ex-NSA trio who spied on Americans for UAE now banned from arms exports
2022-09-02 01:11

Three former US government cyber-spies who, among other things, illicitly compromised and snooped on Americans' devices for the United Arab Emirates government have been banned from participating in international arms exports under a deal reached with Uncle Sam. Per the terms of the agreements, Ryan Adams [PDF], Marc Baier [PDF] and Daniel Gericke [PDF], all three former NSA operatives, will be "Debarred," meaning they are prohibited from participating in any activities regulated under the International Traffic in Arms Regulations for three years.

CIA accused of illegally spying on Americans visiting Assange in embassy
2022-08-15 19:37

The CIA illegally spied on US citizens while they visited WikiLeaks publisher Julian Assange inside the Ecuadorian embassy in London, a lawsuit filed today has claimed. A legal complaint [PDF], filed in New York City on behalf of four attorneys and journalists, accuses the spy agency of spying on the American citizens without their knowledge or consent in violation of their Fourth Amendment rights while they met Assange at the embassy.

US govt warns Americans of escalating SMS phishing attacks
2022-07-29 15:21

The Federal Communications Commission warned Americans of an increasing wave of SMS phishing attacks attempting to steal their personal information and money. "The FCC tracks consumer complaints - rather than call or text volume - and complaints about unwanted text messages have risen steadily in recent years from approximately 5,700 in 2019, 14,000 in 2020, 15,300 in 2021, to 8,500 through June 30, 2022," the US communications watchdog's Robocall Response Team said [PDF].

Symbiote: A Stealthy Linux Malware Targeting Latin American Financial Sector
2022-06-10 07:39

Cybersecurity researchers have taken the wraps off what they call a "Nearly-impossible-to-detect" Linux malware that could be weaponized to backdoor infected systems. Dubbed Symbiote by threat intelligence firms BlackBerry and Intezer, the stealthy malware is so named for its ability to conceal itself within running processes and network traffic and drain a victim's resources like a parasite.

Feds raid dark web market selling data on 24 million Americans
2022-06-08 14:30

US law enforcement has shut down another dark web market, seizing and dismantling SSNDOB, a site dealing in stolen personal information. Prior to the takedown, SSNDOB reportedly had 24 million individuals' records available for purchase, which it regularly advertised on dark web forums.

Americans report losing over $1 billion to cryptocurrency scams
2022-06-03 17:24

The U.S. Federal Trade Commission says Americans have reported losing more than $1 billion worth of cryptocurrency to scams between January 2021 and March 2022. The U.S. law enforcement agency said that tens of thousands of reports pointed to over $1.6 billion in cryptocurrency losses.

Security is a pain for American Dental Association: Ransomware infection feared
2022-05-02 19:50

While the professional association confirmed to The Register it was the victim of a "Cybersecurity incident" that occurred on or around April 21, it did not disclose the nature of the attack. The association also notified federal law enforcement and hired third-party security specialists "To investigate the impact on ADA systems and restore full system functionality," the email said.

American Dental Association hit by new Black Basta ransomware
2022-04-26 18:42

The ADA is a dentist and oral hygiene advocacy association providing training, workshops, and courses to its 175,000 members. Last night, the ADA began emailing its members, including state dental associations, practices, and organizations, with an update about the attack and information that can be shared with the recipient's members.