A threat actor has announced the sale of a 0day vulnerability for Dahua cameras, which is claimed to be compatible with all versions of the device. In their announcement, the threat actor describes the vulnerability as a Remote Code Execution (RCE) exploit that allows unrestricted access to all functions of the…
Category: Cyber Attack
A threat actor has announced that they are selling a database containing information on over 49,000 members and partners of NATO, alongside classified documents and technical reports. The threat actor’s claims were made in an online post. According to the post, the documents include various security classifications: NATO Restricted (NR) NATO…
A threat actor has announced the sale of a highly sophisticated Android Remote Code Execution (RCE) exploit. The exploit is purportedly a zero-click type, meaning it requires no interaction from the target to execute, significantly increasing its potential threat. The details of the announcement are as follows: Exploit Type: Zero-click Price:…
Ph1ns claimed responsibility which he has access to approximately 91 gigabytes of data from MARINA’s servers and exfiltrating about 20 gigabytes, including operational and administrative information vital to maritime operations. This compromised data encompasses detailed information such as principal names, company details, ship specifications (including official numbers and tonnage), and other critical maritime records stored in MARINA’s database
A threat actor has surfaced, claiming to sell unauthorized access to a vast array of companies, predominantly based in the United States. This alarming claim was made public through an announcement detailing the extensive range of access being offered. According to the threat actor, they have breached a contracting company that…
A threat actor has announced the sale of a crypto database, allegedly containing 19,396 rows of data, along with access to the database itself. Threat Actor’s Announcement: Database: Crypto-DB Deals: Processed through BF Escrow Only Solo DB Price: $1,500 DB + Access Price: $2,500 Total DB Rows: 19,396 Contact: PM on…
On June 1st, the Chinese University of Hong Kong (CUSCS) allegedly suffered a significant data breach, affecting approximately 100,000 individuals, including employees, part-time tutors, students, graduates, and some visitors. The breach has been attributed to the efforts of a hacker known as @Valerie. The attackers claim to have exfiltrated a substantial…
A threat actor on a dark web forum is allegedly offering access to a cryptocurrency exchange’s system administrator panel for $30,000 USD. According to the post, the access includes RDP via a VPN, providing view-only access to the user database, including user portfolios, emails, and phone numbers. The threat actor indicates…
According to a threat actor on a dark web forum, patient data from a diagnostic lab named Anand Lab is on sale. According to the language of the post owner, they are initially selling 7,677,998 records of private patient information and the whole breach is 1.02 TB. Those who are interested…
Axido, une entreprise de services numériques, a été victime d’une cyberattaque, ce qui a nécessité l’isolement de son système d’information pour limiter les impacts. Les investigations sont en cours avec l’aide d’un cabinet d’expertise indépendant recommandé par l’Anssi, et les autorités compétentes ont été contactées. Pour l’instant, aucune fuite de données sensibles ou personnelles n’a été détectée, mais la restauration des systèmes prendra du temps.
Threat actors shared messages on their Telegram channels about their attack on several organizations from Canada. Threat actor NoName057(16) indicated in their message that they joined the UserSec and attacked to the Canadian Internet infrastructure and allegedly took down several sites. UserSec indicated that they started a large-scale attack on one…
Kulicke & Soffa Industries, un fournisseur de solutions d’emballage de semi-conducteurs et d’assemblage électronique, a subi une violation de données qui a compromis environ 12 millions de fichiers, notamment du code source, des données d’ingénierie, des informations sur les partenaires commerciaux et des informations personnelles. L’équipe de sécurité de l’entreprise a réagi rapidement pour contenir et isoler les serveurs affectés et a signalé l’incident aux autorités. L’enquête est en cours pour déterminer l’étendue de la violation et prendre des mesures pour renforcer la sécurité des systèmes de l’entreprise.
A threat actor has announced the alleged leak of a database containing records of more than 5 million Ecuadorian citizens. The leaked data reportedly includes a total of 5,360,157 records, making it a significant breach of personal information. According to the threat actor, the database was scraped in 2024 and contains…
A threat actor from a dark web forum shared a post about alleged access to a company from South Africa. According to the post, the company operates in chemicals, and manufacturing sectors. The company name is not disclosed in the forum post but the post owner shares the revenue of the…
Threat actor under the moniker 62IX GROUP is inviting new hackers to their group. The message shared on their Telegram channel indicates that they are looking for new hackers. The threat actor is specifically looking for hackers with DDoS or Pentesting skills. In their Telegram message 62IX GROUP shared a questionnaire…