Security News

Millions of Docker repos found pushing malware, phishing sites
2024-04-30 17:32

Three large-scale campaigns targeted Docker Hub users, planting millions of repositories that pushed malware and phishing sites since early 2021. As JFrog security researchers found, around 20% of the 15 million repositories hosted by Docker Hub contained malicious content, ranging from spam to dangerous malware and phishing sites.

US Post Office phishing sites get as much traffic as the real one
2024-04-28 15:29

Security researchers analyzing phishing campaigns that target United States Postal Service saw that the traffic to the fake domains is typically similar to what the legitimate site records and it is even higher during holidays. "The amount of traffic to the illegitimate domains was almost equal to the amount of traffic to legitimate domains on a normal day - and greatly exceeded legitimate traffic during the holidays." - Akamai.

LA County Health Services: Patients' data exposed in phishing attack
2024-04-25 19:55

The Los Angeles County Department of Health Services disclosed a data breach after thousands of patients' personal and health information was exposed in a data breach resulting from a recent phishing attack impacting over two dozen employees. This integrated health system operates the public hospitals and clinics in L.A. County and is the second largest public health care system in the country after NYC Health + Hospitals.

LA County Health Services: Patients' data exposed in phishing attack
2024-04-25 19:55

The Los Angeles County Department of Health Services disclosed a data breach after patients' personal and health information was exposed in a data breach resulting from a recent phishing attack impacting over two dozen employees. This integrated health system operates the public hospitals and clinics in L.A. County and is the second largest public health care system in the country after NYC Health + Hospitals.

AI set to play key role in future phishing attacks
2024-04-24 04:00

Social engineering has also increased, now representing 19% of phishing attacks and phishing emails are over three times longer than they were in 2021, likely due to the increase in use of generative AI. On the other hand, the use of attachment-based payloads has decreased since 2021; three years ago, these accounted for 72.7% of attacks detected by Egress, and by the first quarter of 2024, this had fallen to 35.7% as threat actors evolve their payloads to evade cybersecurity efforts. Generative AI is also expected to increase attack success rate, including creating payloads such as malware, phishing websites and invoices for wire fraud attacks as cybercriminals look to streamline their processes and deliver more efficient campaigns at even swifter pace.

Global Police Operation Disrupts 'LabHost' Phishing Service, Over 30 Arrested Worldwide
2024-04-18 10:28

As many as 37 individuals have been arrested as part of an international crackdown on a cybercrime service called LabHost that has been used by criminal actors to steal personal credentials from...

Prolific phishing-made-easy emporium LabHost knocked offline in cyber-cop op
2024-04-18 10:15

Will LabHost stay offline following this latest action, or will it bounce back like LockBit seemingly did after the National Crime Agency - the UK's FBI - and its partners dramatically attempted to dismantle the crew earlier this year? Richter told us LabHost, at its peak, offered phishing kits for about 170 organizations, 47 of which had a UK focus.

LabHost phishing service with 40,000 domains disrupted, 37 arrested
2024-04-18 09:52

The LabHost phishing-as-a-service platform has been disrupted in a year-long global law enforcement operation that compromised the infrastructure and arrested 37 suspects, among them the original developer. The phishing platform launched in 2021 and enabled cybercriminals paying a monthly subscription fee to launch effective attacks using a variety of phishing kits for banks and services in North America.

Authorities take down LabHost, phishing-as-a-service platform
2024-04-18 08:55

Law enforcement from 19 countries severely disrupted one of the world's largest phishing-as-a-service platform, known as LabHost. International investigation disrupts phishing-as-a-service platform LabHost.

FIN7 targets American automaker’s IT staff in phishing attacks
2024-04-17 20:40

The financially motivated threat actor FIN7 targeted a large U.S. car maker with spear-phishing emails for employees in the IT department to infect systems with the Anunak backdoor. BlackBerry attributed the attacks to FIN7 with a high level of confidence based on the use of unique PowerShell scripts using the adversary's signature 'PowerTrash' obfuscated shellcode invoker, first seen in a 2022 campaign.