article thumbnail

Phishers Target Aviation Execs to Scam Customers

Krebs on Security

A search at DomainTools found justyjohn50@yahoo.com has been registering one-off phishing domains since at least 2012. That Rsmith Gmail address is connected to the 2012 phishing domain alibala[.]biz For example, the street address used by the Justy John domain axisupdate[.]net com, acctlogin[.]biz, biz, and loginaccount[.]biz,

article thumbnail

North Korea-linked APT37 exploited IE zero-day in a recent attack

Security Affairs

APT37 has been active since at least 2012 , it made the headlines in early February 2028, when researchers revealed that the APT group leveraged a zero-day vulnerability in Adobe Flash Player to deliver malware to South Korean users.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

IT threat evolution in Q3 2024. Non-mobile statistics

SecureList

According to the UK’s National Crime Agency (NCA), this individual also was behind the infamous Reveton ransomware Trojan spread in 2012 — 2014. Ransomware Quarterly trends and highlights Progress in law enforcement In August, Spain arrested a cybercriminal who founded Ransom Cartel in 2021 and set up a malvertizing campaign.

article thumbnail

North Korea-linked APT group ScarCruft spotted using new Android spyware KoSpy

Security Affairs

ScarCruft has been active since at least 2012, it made the headlines in early February 2018 when researchers revealed that the APT group leveraged a zero-day vulnerability in Adobe Flash Player to deliver malware to South Korean users. Kaspersky first documented the operations of the group in 2016.

article thumbnail

Microsoft linked attacks on SharePoint flaws to China-nexus actors

Security Affairs

Violet Typhoon (aka APT31 , BRONZE VINEWOOD, JUDGMENT PANDA , Red keres, TA412 , ZIRCONIUM ) focuses on espionage against NGOs, media, and academia. Violet Typhoon is a China-linked actor that has been active since at least 2015.

article thumbnail

Microsoft fixes two SharePoint zero-days under attack, but one is still unresolved - how to patch

Zero Day

Active since 2012, Linen Typhoon specializes in stealing intellectual property, mainly targeting government, defense, strategic planning, and human rights organizations. The group typically relies on exploiting security vulnerabilities to launch its attacks. This group also looks for security vulnerabilities to exploit.

article thumbnail

Meta execs pay the pain away with $8 billion privacy settlement

Malwarebytes

Meta chief Mark Zuckerberg and several other members of the social media giant’s top brass agreed to settle increasingly heated privacy violation claims for the price of $8 billion. We don’t just report on threats – we help protect your social media Cybersecurity risks should never spread beyond a headline.