Summary: The video discusses Jack Rhysider’s interview with Chris Monteiro, a cybersecurity expert who explores the dark web, particularly the hitman-for-hire site, Besa Mafia. Chris reveals the challenges and dangers of investigating such sites, including threats and real-life consequences stemming from the scams taking place. Throughout the discussion, they delve into the ethics of intervening in potentially lethal situations and the broader implications of dark web crimes.…
Read More
Threat Spotlight: Credential Theft vs. Admin Control—Two Devastating Paths to VPN Exploitation
This report discusses the ongoing exploitation of older VPN vulnerabilities, particularly CVE-2018-13379 and CVE-2022-40684, highlighting how attackers, including cybercriminal and state-sponsored groups, continue to target these flaws for credential theft and administrative control. The research indicates substantial growth in discussions around Fortinet VPN vulnerabilities on cybercriminal forums, illustrating their significance in the current threat landscape.…
Read More
Major Cyber Attacks in Review: February 2025
In February 2025, multiple significant cyber incidents revealed ongoing risks across various industries worldwide. Notable attacks included the Qilin ransomware incident at Lee Enterprises, which disrupted media distribution, and a .5 billion cryptocurrency theft attributed to North Korea’s Lazarus Group. Breaches at DISA Global Solutions, Orange, and LANIT highlighted severe vulnerabilities in finance, telecom, healthcare, media, and government sectors.…
Read More
Jaguar Land Rover Breached by HELLCAT Ransomware Group Using Its Infostealer Playbook—Then a Second Hacker Strikes
In a significant data breach, the HELLCAT ransomware group has leaked gigabytes of sensitive data from Jaguar Land Rover (JLR), exploiting compromised Jira credentials harvested from infected employees. This attack highlights the ongoing threat of infostealer malware and its capability to enable long-term exploitation of credentials.…
Read More
Ransomware Developer Extradited, Admits Working for LockBit
Summary: A dual Russian-Israeli citizen and lead developer of the LockBit ransomware group, Rostislav Panev, has been extradited to the US after being arrested in 2023. The group has reportedly attacked over 2,500 victims globally, accumulating at least 0 million in ransom payments. Panev’s extradition may lead to further investigations and arrests within LockBit’s network.…
Read More
[Law] Law enforcement op takes down Garantex cryptocurrency exchange used by cybercriminals
Summary: A major international law enforcement operation has successfully dismantled Garantex, a cryptocurrency exchange implicated in facilitating transactions for criminal organizations, including Dark Web markets and ransomware groups. Key servers were seized, and two individuals were indicted for their involvement in the illicit operations of the exchange, which processed over billion since 2019.…
Read More
Alleged Russian LockBit developer extradited from Israel, appears in New Jersey court
Summary: Rostislav Panev, a dual Russian-Israeli national, was extradited to the U.S. from Israel after being charged with developing the LockBit ransomware, which has attacked thousands of victims globally. The extradition highlights the U.S. government’s commitment to combating cybercrime as Panev faces 40 charges of computer damage and extortion.…
Read More
February 2025 Security Issues in Korean & Global Financial Sector
This report highlights recent cyber threats targeting the financial sector, specifically focusing on malware and phishing incidents, credit card information leaks, database breaches, and ransomware attacks. Notable cases include the sale of Indian credit card details on forums, a significant database leak from Union**** bank, and ransomware infections affecting fintech companies.…
Read More
Philippine National Telecommunications Commission's NetMesh Project Data Leaked on a Dark Web Forum
Summary: A hacker group has leaked a dataset from the National Telecommunications Commission (NTC) of the Philippines, compromising crucial information related to the country’s telecommunications infrastructure. The breach exposes vulnerabilities in network security, user privacy, and potential government surveillance initiatives through details from the NTC’s NetMesh Project.…
Read More
Major Cyber Attacks Targeting the Finance Industry
The finance industry is facing an increasing number of cyberattacks, with significant recent incidents exposing vast amounts of sensitive data. Notable breaches have involved major financial institutions and data theft, highlighting vulnerabilities and the need for robust cybersecurity measures. The financial sector must adapt to evolving threats, including ransomware attacks and Dark Web exploitation, to safeguard personal and financial information.…
Read More
Threat Intelligence: A Deep Dive into Cyber Kill Chains, Diamond Models, and the Zero-Day Crisis
The recent VMware zero-day vulnerability (CVE-2023–20867) has made numerous organizations—including cloud providers and financial institutions—vulnerable to serious attacks such as data theft and ransomware. This incident highlights the importance of cybersecurity frameworks like the Cyber Kill Chain and Diamond Model for developing effective defenses against increasingly sophisticated threats.…
Read More