-iOS 26 change deletes clues of old spyware infections -Starlink disables 2.5k scam compound terminals -Caribbean hospital still down 5 months after ransomware attack -Poland charges officials in Pegasus scandal -South Korea to inspect 1,600 IT systems -EU rolls out digital driver licenses -UN cybercrime treaty to be signed this weekend -Canada fines Cryptomus for money laundering -CISA shutters SED team Newsletter: Podcast: image
A malicious network of YouTube accounts is publishing and promoting videos that lead to malware downloads. The network has been active since 2021 and has published more than 3,000 malicious videos.
"Recorded Future intelligence shows that the Russian government’s relationship with cybercriminals has evolved from passive tolerance to active management"
The Aeroflot hack is apparently having some long-term unintended consequences to Russian flight safety protocols. Lots of cut corners
A simple misconfiguration in the Smithery AI hosting platform could have exposed credentials for more than 3,000 MCP servers
The personal details of all F1 and other drivers could have been stolen via an FIA web portal
After the South Korean government has confirmed a breach disclosed in Phrack, a local telco, LG Uplus, is also re-opening the investigation into its Phrack-related hack... which it initially dismissed
A hospital in the US Virgin Islands has been offline for nearly five months due to a ransomware attack CEO Darlene A. Baptiste estimated the hospital has been losing up to $800,000 a week in revenue due to the IT outage
A new Iranian cyber-espionage operation (MuddyWater) has targeted more than 100 government entities across the MENA region. The campaign spread a new backdoor named Phoenix https://www.group-ib.com/blog/muddywater-espionage/ image
Russia's blocking access to Telegram and WhatsApp again... a second time this year after an August round of blocking