Security News

Atlassian Confluence Vulnerability Exploited in Crypto Mining Campaigns
2024-08-30 06:12

Threat actors are actively exploiting a now-patched, critical security flaw impacting the Atlassian Confluence Data Center and Confluence Server to conduct illicit cryptocurrency mining on...

New Malware PG_MEM Targets PostgreSQL Databases for Crypto Mining
2024-08-22 04:31

Cybersecurity researchers have unpacked a new malware strain dubbed PG_MEM that's designed to mine cryptocurrency after brute-forcing their way into PostgreSQL database instances. "Brute-force...

Hackers linked to $14M Holograph crypto heist arrested in Italy
2024-08-19 16:25

Suspected hackers behind the heist of $14,000,000 worth of cryptocurrency from blockchain tech firm Holograph was arrested in Italy after living a lavish lifestyle for weeks in the country. [...]

New Gafgyt Botnet Variant Targets Weak SSH Passwords for GPU Crypto Mining
2024-08-15 05:12

Cybersecurity researchers have discovered a new variant of the Gafgyt botnet that's targeting machines with weak SSH passwords to ultimately mine cryptocurrency on compromised instances using their GPU computational power. The infected devices are corralled into a botnet capable of launching distributed denial-of-service attacks against targets of interest.

Cryptonator seized for laundering ransom payments, stolen crypto
2024-08-02 17:27

U.S. and German law enforcement seized the domain of the crypto wallet platform Cryptonator, used by ransomware gangs, darknet marketplaces, and other illicit services, and indicted its operator. [...]

FBI warns of scammers posing as crypto exchange employees
2024-08-01 15:28

The Federal Bureau of Investigation (FBI) warns of scammers posing as employees of cryptocurrency exchanges to steal funds from unsuspecting victims. [...]

Crypto exchange Gemini discloses third-party data breach
2024-07-26 19:31

Cryptocurrency exchange Gemini is warning it suffered a data breach incident caused by a cyberattack at its Automated Clearing House service provider, whose name was not disclosed. According to the notification, Gemini suffered a third-party data breach when an unauthorized actor breached its vendor's systems between June 3 and June 7, 2024.

Ongoing Cyberattack Targets Exposed Selenium Grid Services for Crypto Mining
2024-07-26 06:19

Cybersecurity researchers are sounding the alarm over an ongoing campaign that's leveraging internet-exposed Selenium Grid services for illicit cryptocurrency mining. Selenium Grid, part of the Selenium automated testing framework, enables parallel execution of tests across multiple workloads, different browsers, and various browser versions.

North Korea likely behind takedown of Indian crypto exchange WazirX
2024-07-19 05:59

Indian crypto exchange WazirX has revealed it lost virtual assets valued at over $230 million after a cyber attack that has since been linked to North Korea. According to a late Thursday WazirX Xeet, the attack targeted one of its multi-signature wallets - digi-cash lockers that are designed to offer superior security by requiring multiple private keys to authorize a transaction.

DNS hijacks target crypto platforms registered with Squarespace
2024-07-12 18:28

A wave of coordinated DNS hijacking attacks targets decentralized finance (DeFi) cryptocurrency domains using the Squarespace registrar, redirecting visitors to phishing sites hosting wallet...