Cybersecurity Negotiator Gets 70 Months for Helping BlackCat Extort Victims
Former ransomware negotiator Angelo Martino gets 70 months in prison for helping BlackCat extort US victims and misuse confidential client data in cyberattacks.
Former ransomware negotiator Angelo Martino gets 70 months in prison for helping BlackCat extort US victims and misuse confidential client data in cyberattacks.
The China-linked cybercrime group known as Silver Fox has been attributed to a new Rust-based remote access trojan (RAR) called MODBEACON. Chinese cybersecurity company QiAnXin said that while the threat cluster may appear like a low-sophistication, high-activity operation that …
AI coding tools cost $19-$200/month/user, but security scanning, remediation, and false positives add hidden costs. Are the productivity gains worth it?
Study of Healthcare Websites Shows Widespread and Risky Use of Tracking and Analytics Tools The HIPAA Journal
A recent analysis of healthcare websites has revealed that the majority use marketing and analytics tools that could potentially disclose […] The post Study of Healthcare Websites Shows Widespread and Risky Use of Tracking and Analytics Tools appeared first on The HIPAA Journal.
Cibercriminosos estão abusando do processo de cadastro de passkeys no Microsoft Entra para assumir contas corporativas. A campanha combina ligações fraudulentas com páginas falsas que imitam o fluxo legítimo da Microsoft. O ataque foi associado ao grupo UNC066, também chamado de …
A single wrong variable on one line in XQUIC, Alibaba's QUIC and HTTP/3 library, lets any remote client crash the server with a short burst of completely legal traffic. There is no patch. FoxIO researcher Sébastien Féry disclosed the flaw on July 8 and nicknamed it XRING. He say…
The Zimbra security team urged customers to patch a critical vulnerability affecting the Classic Web Client used to access the Zimbra Collaboration suite. [...]
Most enterprises assume their asset inventory is close enough to accurate. The evidence suggests otherwise. According to a survey of over 600 security leaders in the 2026 Axonius Actionability Report, only 45% of organizations consolidate their asset and exposure data into a sing…
Aitkin County Health and Human Services in Minnesota has identified a breach of its email environment. Data breaches have also […] The post Aitkin County Health and Human Services Data Breach Affects 81,000 Individuals appeared first on The HIPAA Journal.
Um invasor aparentemente agindo sozinho comprometeu um amplo ambiente da Amazon Web Services em cerca de 72 horas, usando inteligência artificial para acelerar o reconhecimento, adaptar comandos e avançar por diferentes serviços da vítima. O incidente foi investigado pela Sygnia …
A cybercrime crew left one of its own servers wide open on the internet for three weeks, and it exposed the operation's inner workings: the hacking tools, the activity logs, and target lists naming more than 1.4 million websites. Far fewer were actually broken into, but the expo…
A Microsoft lançou uma correção para a vulnerabilidade RoguePlanet no Microsoft Defender, capaz de permitir que invasores obtenham o nível mais alto de acesso em computadores com Windows. A falha, identificada como CVE-2026-50656, recebeu pontuação CVSS 7.8 e afeta o mecanismo de…
Researchers ran 281 of the most popular free VPN apps on the Google Play Store through a new testing system and found that many fail at the basics people install a VPN for, i.e., keeping their traffic private and secure. The apps flagged with at least one problem have been insta…
Ética, compliance e transparência são pilares para fortalecer a confiança, ampliar a eficiência e garantir decisões orientadas pelo interesse dos pacientes. The post Integridade é condição indispensável para uma saúde mais eficiente e sustentável appeared first on Saúde Business.
A threat actor has been targeting organizations spanning multiple sectors with voice-based fake security requests that prompt Microsoft 365 users to enroll a new Entra passkey with an aim to carry out data extortion attacks. The threat actor, tracked by Okta under the moniker O-…
London, United Kingdom, 10th July 2026, CyberNewswire
Security firm Coinspect has disclosed a crypto wallet flaw it calls Ill Bloom, and attackers are already using it. The flaw is in how some wallet software generated its recovery phrase, the words that control the money. When that phrase is made with weak randomness, an attacker c…
A former employee of cybersecurity incident response company DigitalMint was sentenced to 70 months in prison for targeting U.S. companies in BlackCat (ALPHV) ransomware attacks. [...]
A 41-year-old former ransomware negotiator has been sentenced to nearly six years (i.e., 70 months) in prison in the U.S. for their role in conspiring with the now-defunct BlackCat ransomware operators to extort multiple victims and working with two other cybersecurity profession…