news
Security Leftovers
-
Krebs On Security ☛ Affiliates Flock to ‘Soulless’ Scam Gambling Machine
Last month, KrebsOnSecurity tracked the sudden emergence of hundreds of polished online gaming and wagering websites that lure people with free credits and eventually abscond with any cryptocurrency funds deposited by players. We’ve since learned that these scam gambling sites have proliferated thanks to a new Russian affiliate program called “Gambler Panel” that bills itself as a “soulless project that is made for profit.”
-
Scoop News Group ☛ Salesloft Drift compromised en masse, impacting all third-party integrations
Researchers said Surveillance Giant Google Workspace customers were hit, and noted other platforms are impacted as well. Fresh evidence proves impact was not limited to Salesfarce, as Salesloft previously claimed.
-
Tom's Hardware ☛ Google is getting ready to 'hack back' as US considers shifting from cyber defense to offense — new 'Scam Farms' bill opens up new retaliatory hacking actions
Google is reportedly planning to form a "disruption unit" that will target foreign hackers.
-
SANS ☛ Increasing Searches for ZIP Files, (Thu, Aug 28th)
I noticed recently that we have more and more requests for ZIP files in our web honeypot logs. Over the last year, we have had a substantial increase in these requests.
-
Security Week ☛ Hackers Target Popular Nx Build System in First AI-Weaponized Supply Chain Attack
With more than 4 million weekly downloads, the Nx build platform became the first known supply chain breach where hackers weaponized Hey Hi (AI) assistants for data theft.
-
Federal News Network ☛ CISA warns about another China-linked cyber espionage campaign
The advisory includes several recommendations to guard against the hacking spree.