Security News

Feds rethink warrantless search stats and – oh look, a huge drop in numbers
2023-05-02 01:56

Warrantless searches of US residents' communications by the FBI dropped sharply last year - from about 3.4 million in 2021 to 119,383 in 2022, according to Uncle Sam. For one, the FBI changed the methodology used to calculate the number of Section 702 searches, and says previous years' reports used duplicative counting methods.

Microsoft, Fortra are this fed up with cyber-gangs abusing Cobalt Strike
2023-04-10 16:29

Microsoft and Fortra are taking legal and technical actions to thwart cyber-criminals from using the latter company's Cobalt Strike software to distribute malware. The US District Court for the Eastern District of New York on March 31 issued a court order allowing Microsoft and Fortra to take down IP addresses that are hosting cracked versions of Cobalt Strike and seize the domain names.

Feds seize $112m in cryptocurrency linked to 'pig-butchering' finance scams
2023-04-04 23:00

The US Department of Justice has seized cryptocurrency worth about $112 million from accounts linked to so-called pig butchering investment scams. Judges in Arizona, California and Idaho authorized seizure warrants for six virtual currency accounts that prosecutors say were used to launder proceeds of the various frauds that cost victims millions of dollars after they were socially engineered into investing their savings in dodgy digicash schemes.

Feds arrest and charge exiled Chinese billionaire over massive crypto fraud
2023-03-17 02:59

Meet the newest member of the crypto rogues' gallery: Ho Wan Kwok, aka Guo Wengui, aka Miles Guo, whom the US Department of Justice on Wednesday arrested over what investigators have described as a "Sprawling and complex scheme to solicit investments in various entities and programs through false statements and representations to hundreds of thousands of Kwok's online followers." One of Guo's operations was called Himalaya Exchange.

Feds warn about right Royal ransomware rampage that runs the gamut of TTPs
2023-03-03 19:56

The risks you introduce by taking your eyes off the ransomware threat in 2023 to focus on the next, old-is-new-again shiny topic are similar to the risks you would have faced if you started focusing exclusively on ransomware a few years ago, when it was the hot new fear of the day. These include using phishing, searching out improperly-configured RDP servers, looking for unpatched online services on your network, or simply by buying up access credentials from crooks who were in before them.

US government sets a 30-day deadline for wiping TikTok from feds' phones
2023-03-01 00:30

The White House has ordered all federal government employees to delete TikTok from work devices, over fears the video-sharing app could be used to spy on Americans. TikTok has been downloaded by billions of people around the world, and is particularly popular among young people - but the US government believes that data could be shared with the Chinese government.

Google destroyed evidence for antitrust battle, Feds complain
2023-02-24 22:30

The US Department of Justice asked the judge hearing its antitrust case against Google to sanction the search advertising giant for destruction of evidence. The case has since progressed into the discovery phase and now the DoJ contends that Google has ignored its responsibility to preserve evidence relevant to the case.

Seven smuggled US military tech for Moscow, say Feds
2022-12-14 22:30

The US Department of Justice unsealed a 16-count indictment today accusing five Russians, an American citizen, and a lawful permanent US resident of smuggling export-controlled electronics and military ammunition out of the United States for the Russian government. Alexey Brayman, the lawful permanent US resident; and Vadim Yermolenko, the US citizen, were both apprehended in the United States.

'Pig butchering' romance scam domains seized and slaughtered by the Feds
2022-11-23 00:30

Pig butchering is a newish twist on romance scams in which fraudsters build a relationship with their victims and then con them into transferring money into accounts controlled by the crooks. While the court documents remain sealed, we're told that fraudsters tricked five victims in the US between May and August into transferring their money to the seven now-seized domains designed to look like the Singapore International Monetary Exchange.

Feds find Silk Road thief's $1b+ Bitcoin stash in popcorn tin, hidden safe
2022-11-07 22:28

A crook who stole more than 50,000 Bitcoins from the dark web souk Silk Road in 2012 has pleaded guilty and lost the lot, with a stretch behind bars likely ahead of him. James Zhong, 32, admitted committing wire fraud in September 2012 by creating nine Silk Road accounts he used to trigger "Over 140 transactions in rapid succession in order to trick Silk Road's withdrawal-processing system," the US Department of Justice said Monday.