The latest Magecart iteration is finding success with a new PHP web shell skimmer.
Threatpost
Security
Ransomware’s New Swindle: Triple Extortion
Ransomware attackers are now demanding cash from the customers of victims too.
Threatpost
Verizon: Pandemic Ushers in ⅓ More Cyber-Misery
The DBIR – Verizon’s 2021 data breach report – shows spikes in sophisticated phishing, financially motivated cyberattacks and a criminal focus on web-application servers.
‘Scheme Flooding’ Allows Websites to Track Users Across Browsers
A flaw that allows browsers to enumerate applications on a machine threatens cross-browser anonymity in Chrome, Firefox, Microsoft Edge, Safari and even Tor.
Threatpost
DarkSide Ransomware Suffers ‘Oh, Crap!’ Server Shutdowns
The RaaS that crippled Colonial Pipeline lost the servers it uses to pull off ransomware attacks, while REvil’s gonads shrank in response.
IOTW: Ransomware Attack Closes Colonial Pipeline
U.S. critical infrastructure has become a popular cyberwarfare target. The weak underbelly has been aging tech and industrial control systems (ICSs) which may lack adequate physical and cyber security…
FIN7 Backdoor Masquerades as Ethical Hacking Tool
The financially motivated cybercrime gang behind the Carbanak RAT is back with the Lizar malware, which can harvest all kinds of info from Windows machines.
Threatpost
Colonial Pipeline Shells Out $5M in Extortion Payout, Report
According to news reports, Colonial Pipeline paid the cybergang known as DarkSide the ransom it demanded in return for a decryption key.
Threatpost
Researchers Flag e-Voting Security Flaws
Paper ballots and source-code transparency are recommended to improve election security.
Threatpost
Pending Data Protection and Security Laws At-A-Glance: APAC
We have focused on the latest laws protecting PII in the United States, Regulation through Global Data Protection and Security Laws, and APAC Data Protection and Security Laws. This is an overview of…

