November 30, 2025
Dark Light

Blog Post

Cyber Intelligence > Articles by: admin

60,000 emails seized in US State Department breach – September 28th

Travel itineraries and diplomatic deliberations were among the data within seized emails in a recent hacker breach of the US State Department systems. As many as 60,000 emails were compromised in the attack.

Allegedly, this attack had been done by threat actors linked with the Chinese government and reports say the incident is likely to raise concerns on Capitol Hill concerning the ramped-up efforts by Chinese hackers.

Read More

HTX falls victim to crypto thieves – September 27th

Cryptocurrency is being increasingly targeted by hackers, with $7.9 million recently stolen in a hack targeting cryptocurrency exchange HTX. The hack attack was identified as soon as it occurred, with HTX authorities stepping up promptly in an innovative way to recover losses. 

Following the attack, HTX offered a ‘white hat’ ethical hacker a 5% bonus to return the stolen cryptocurrency, amounting to a total bonus of $400,000.

Read More

Pizza Hut threatened by hackers – September 20th

It seems that no one and no business is immune to hacker activity. Recent reports say that Pizza Hut Australia has again been the victim of threat actors a year after its newsmaking Optus cyber attack. 

Reports allege customers’ data has been compromised by the incident, which occurred in early September, with the fast food outlet having contacted clients to notify them of the data breach.

Read More

US fleet management systems impacted in ransomware attack – September 19th

ORBCOMM, the US trucking and fleet management software provider, has linked recent service outages across freight transportation firms throughout the US to a ransomware attack. 

These outages prevented the Blue Tree Electronic Logging Device usage and inventory tracking capabilities of the fleet management software. Investigations continue into the identity of the threat actors. 

Read More

DarkGate again threatens online computer systems – September 15th

A new phishing attack campaign using DarkGate Loader malware has been identified, with Microsoft Teams users being urged to exercise caution.

This malware is specifically a ‘loader malware’ meaning that it is able to download and execute other malware programs on the infected device. The additional malware then downloads in the infected device’s memory structure, making it hard to detect since it isn’t in the device’s file system.

Read More

New RAT variant gives control over Android devices – September 6th

New RAT variant gives control over Android devices The Indian government has warned of a malware attacking Android users through social media. Called DogeRAT, the new malware is able to access sensitive data, such as contacts, messages, and bank credentials, and grant hackers control over infected Android devices. New Chaes malware variant displays ‘significant transformations’ […]

Read More

Biggest malware culprits of 2023 – August 29th

New updated KmsdBot now targets Internet of Things (IoT) An updated version of KmsdBot now includes support for Telnet scanning and more CPU architectures, making it more destructive than before. As a result of its increased capabilities, the updated botnet malware is now targeting the Internet of Things (IoT). Main 2023 malware culprits identified Malware […]

Read More

GhostSec exposes Iran’s surveillance of its citizens – August 28th

Hackers hold Prospect Medical’s data ‘hostage’ Hacker group Rhysida has been identified as the mastermind behind the recent ransomware attack on Prospect Medical Holdings, where 500,000 social security numbers, patient records, and corporate documents were stolen. The group identified themselves in ransom notes on employee screens after the August 3 attack.  GhostSec exposes Iran’s surveillance […]

Read More

Lazarus Group arises with new malware strategy – August 25th

A new malware strain that gives the location of an infected device has been identified.

The Hacker News explains that the malware has one operation: ‘Every minute it triangulates the infected systems’ positions by scanning nearby Wi-Fi Access points as a data point for Google’s geolocation API.’ Cyber experts aren’t yet clear ‘who or what’ is interested in the location of an infected device or the motives behind why this specific form of malware was produced.

Read More

Grip Security raises $41M & Duolingo suffers data leak – August 22nd

Popular language learning app Duolingo saw a bug exploited that resulted in a compilation of account information from over 2.6 million users. According to VX-Underground, the largest collection of malware source code, samples, and papers on the internet, “sending a valid email to the API returns generic account information on the user (name, email, languages studied).” The data collected will be used for Doxxing.

Read More

Cyber slowdown and major companies announce layoffs – August 17th

According to the Wall Street Journal, a trio of major cyber companies announced layoffs, further highlighting a slowdown in the sector, which though resilient, is starting to feel the impact of a wider downturn. Rapid 7, a Boston-based company, announced layoffs affecting 400 people, while Atlanta’s Secureworks cut 300, and Dragos let go of 50.

Read More

Barracuda again the target of malware attack – August 14th

Barracuda Email Security Gateway devices have again been violated, this time through a novel backdoor malware named ‘Whirlpool.’ The US Cybersecurity and Infrastructure Security Agency (CISA) has identified the breach to be the work of a pro-China group of hackers. The threat actors have targeted a zero-day remote command injection vulnerability through the malware. Reports say this vulnerability was used to plant malware payloads of Seapsy and Whirlpool backdoors on compromised devices.

Read More

Popular hosting service proves less than “bulletproof” – August 11th

Hackers impersonate city’s COO The city of New Haven, Connecticut, reportedly lost more than $ 6 million during a recent spate of multiple cyberattacks. These attacks were targeted at its public school district, with hackers impersonating private vendors and the city’s Chief Operating Officer in emails.  Panasonic commits to strengthening device security Manufacturer Panasonic has […]

Read More

Teachers targeted while popular malware resurfaces – August 10th

Interpol forces unite to bring phishing platform down A phishing-as-a-service (PaaS) platform called 16shop, responsible for over 150,000 phishing domains, has been identified and taken offline. The successful dismantling of the platform followed an Interpol-led operation, using investigators from Indonesia, Japan, and the US, together with the Cyber Defense Institute, Group-IB, Palo Alto Networks Unit […]

Read More

Infamous Ransomware Groups Linked – August 9th

Rhysida’s Link to Infamous Ransomware Group Check Point Incident Response Team (CPIRT), in collaboration with Check Point Research (CPR), published a report linking the Rhysida ransomware group to another infamous actor, Vice Society. Rhysida was responsible for the attack against Prospect Medical Holdings, affecting 17 hospitals and 166 clinics across the United States. UK Electoral […]

Read More

Free Tesla premium features & $100M – August 8th

Tesla’s Unpatchable “Jailbreak” Unlocks Premoum Features Pay-as-you-go premium features are offered by Tesla for self-driving features, heated seats, and more. However, a group of researchers from TU Berlin claim they discovered a “jailbreak” that allows for free access to premium features and that it can only be stopped by replacing vehicles’ hardware. Israel’s Mayanei HaYeshua […]

Read More