UAT-5918 Targets Taiwan’s Critical Infrastructure Using Web Shells and Open-Source Tools
Summary: A new advanced persistent threat (APT) group named UAT-5918 has been identified, targeting critical infrastructure and various sectors in Taiwan since 2023. Their tactics include gaining long-term access for information theft using web shells and open-source tools, leveraging known security flaws in outdated systems. Researchers associate their methods with other Chinese hacking groups and highlight a sophisticated approach to credential harvesting and data theft.…
Read More
DOTr HRIS System Compromised, Threat Actor Exposes Government Weaknesses
Summary: The Philippine Department of Transportation’s HRIS system has experienced a serious cybersecurity breach, compromising employee records and credentials. Hackers not only defaced the system but also criticized governmental cybersecurity policies, suggesting a lack of competence in protecting critical infrastructure. To date, there has been no response from the government regarding the breach, raising concerns about national cyber defense capabilities.…
Read More

Victim: exostar.com TOP Defense AS Country : Actor: babuk2 Source: http:/bxwu33iefqfc3rxigynn3ghvq4gdw3gxgxna5m4aa3o4vscdeeqhiqad.onion/blog/f1e7412278c348e23c84729e5befb9a1e2b5edd1e58903452f5578e30513a010/ Discovered: 2025-03-21 02:53:30.611779 Published: 2025-03-21 02:52:23.559871 Description : Exostar.com, a prominent player in the defense sector, fell victim to a ransomware attack orchestrated by the Babuk2 threat actor, raising significant concerns about cybersecurity within the industry.…
Read More
Taiwan critical infrastructure targeted by hackers with possible ties to Volt Typhoon
Summary: Hackers linked to China-based groups, especially UAT-5918, are targeting critical infrastructure in Taiwan to gain long-term access and steal sensitive information. This malicious activity aligns with tactics used by other state-backed groups, such as Volt Typhoon and Flax Typhoon, which have been known to exploit vulnerabilities in internet-facing systems.…
Read More

Victim: Corporate access, up to Shipping Apps in QATAR Country : QA Actor: babuk2 Source: http:/bxwu33iefqfc3rxigynn3ghvq4gdw3gxgxna5m4aa3o4vscdeeqhiqad.onion/blog/345b9d9a8ff8d46121bcb22a787654becef59c35fa7f13e5489693a22437268d/ Discovered: 2025-03-20 13:55:58.377218 Published: 2025-03-20 13:54:52.610055 Description : A ransomware incident involving the Babuk2 actor has targeted corporate entities in Qatar, specifically compromising access to shipping applications. This breach highlights the vulnerability of critical infrastructure within the region, raising concerns about data security and operational disruptions in the logistics and shipping sectors.…
Read More

Victim: Municipal taxation Secretariat Access – Brazil Goverment Country : BR Actor: babuk2 Source: http:/bxwu33iefqfc3rxigynn3ghvq4gdw3gxgxna5m4aa3o4vscdeeqhiqad.onion/blog/a6192b6dd1341e11255961b0434a7f6b3ecbe1ca982dc4d8cb8035c2bbc8978e/ Discovered: 2025-03-19 19:55:10.541623 Published: 2025-03-19 19:54:03.171337 Description :Overview of Municipal Taxation in Brazil Responsibilities of the Municipal Taxation Secretariat Accessing Tax Information and Services Key Tax Types Managed by the Secretariat Taxpayer Rights and Obligations Online Services and Portals Guidance for Tax Compliance Contact Information for Assistance Important Deadlines and Updates

About Country: Brazil – Brazil has seen a significant increase in ransomware cases, often targeting critical infrastructure and businesses, highlighting the urgent need for enhanced cybersecurity measures.…

Read More

Victim: United States County Palm Beach Goverment Country : US Actor: babuk2 Source: http:/bxwu33iefqfc3rxigynn3ghvq4gdw3gxgxna5m4aa3o4vscdeeqhiqad.onion/blog/eef2674fa5fbd480f4e5d9e74b67388f89ebd936cb7b47cd9ac6449a0545c0de/ Discovered: 2025-03-19 19:56:19.915513 Published: 2025-03-19 19:55:13.364051 Description :Palm Beach County is located in the state of Florida, United States. The government of Palm Beach County is a local administrative division that provides various services to residents.…
Read More

Victim: The Ely Company, Inc. Country : US Actor: akira Source: Discovered: 2025-03-19 13:48:49.218217 Published: 2025-03-19 00:00:00.000000 Description :The Ely Company, Inc. has over 50 years of experience in manufacturing and producing quality machined parts. The company serves both the Commercial and Aerospace Industries. Prepared to upload more than 14 GB of essential corporate documents.…
Read More
Securing XIoT in the Era of Convergence and Zero Trust
The article discusses the rise of the Extended Internet of Things (XIoT) and its implications for cybersecurity. As connected devices proliferate, they increase automation and innovation while also expanding the attack surface for potential cyber threats. The convergence of IT and XIoT environments necessitates a shift to Zero Trust security models to safeguard critical infrastructure.…
Read More

Victim: newhollandwood.com Country : US Actor: incransom Source: http://incblog6qu4y4mm4zvw5nrmue6qbwtgjsxpw6b7ixzssu36tsajldoad.onion/blog/disclosures/67da0c10576c6c71783db04b Discovered: 2025-03-19 00:53:20.533497 Published: 2025-03-18 17:12:00.000000 Description :Established in 1919 Location: Lancaster County, Central Pennsylvania Dutch Country Custom manufacturer of worship furniture Offers traditional church pews with standard or custom pew ends Leading manufacturer of radius curved pews with over 800 installations since 1962 Produces pulpits, altars, clergy chairs, and baptismal fonts Focus on aesthetically pleasing worship furniture of virtually any design Dedicated craftsmen create unique custom pieces including retablos, reredos, and organ casework Manufactures wood chairs, courtroom seating, custom synagogue furniture, and synagogue seating Phone Number: (717) 354-2481 Revenue: .3 Million Industry: Retail Data Size: 73.4Gb SQL Database Includes: dbo.CUSTOMER,…
Read More

Victim: THX Transport Country : Actor: arcusmedia Source: http://arcuufpr5xxbbkin4mlidt7itmr6znlppk63jbtkeguuhszmc5g7qdyd.onion/?p=461 Discovered: 2025-03-19 00:25:46.455306 Published: 2025-03-18 23:06:06.000000 Description :Days: 00006666 Hours: 22222222 Minutes: 44448888 Seconds: 22224545

About Country: United States – Country Code = US; the U.S. faces a significant cybersecurity threat landscape, with increasing ransomware cases targeting industries ranging from healthcare to critical infrastructure.…

Read More
China Names Four Hackers of Taiwan’s Cyber Army Targeting Beijing Critical Infrastructure
Summary: China has accused four Taiwanese individuals of being part of a military cyber force responsible for cyberattacks on Chinese infrastructure, escalating tensions between the two nations. Taiwan’s Ministry of National Defense rejected these allegations, asserting that their cyber units focus solely on defense, while detailing Beijing’s invasive cyber tactics.…
Read More

Victim: AMICIO Country : FR Actor: lynx Source: http://lynxblog.net/leaks/67d9c5a051e131d63479e0b1 Discovered: 2025-03-18 20:27:55.960548 Published: 2025-03-18 19:12:32.793000 Description :AMICIO operates in the call centers sector. Location: 17 RUE DES GRANDES TERRES, 92500 RUEIL-MALMAISON, France. AMICIO has an online presence with at least one website: www.amicio.fr.

About Country: France – France has been actively reinforcing its cybersecurity measures in response to a rise in ransomware cases, emphasizing the protection of critical infrastructure and the importance of public-private collaboration to combat cyber threats.…

Read More
AI Is Turbocharging Organized Crime, EU Police Agency Warns
Summary: The European Union’s law enforcement agency, Europol, warns that artificial intelligence is significantly amplifying organized crime, posing a threat to societal stability across member nations. A recent report highlights the increasing sophistication of cybercrime, with AI-driven attacks merging profit motives with state-sponsored destabilization efforts. As the EU prepares to address these challenges, there is an urgent call for integrated security measures to counteract the evolving threats.…
Read More

Victim: dukcapil.kemendagri.go.id (SIAK DUKCAPIL MINISTRY OF HOME AFFAIRS OF INDONESIA) Country : ID Actor: babuk2 Source: http:/bxwu33iefqfc3rxigynn3ghvq4gdw3gxgxna5m4aa3o4vscdeeqhiqad.onion/blog/a4b7783f228e95d687242d90c562f3c82007667ab2c25634bc4dcc7a97dd6b7f/ Discovered: 2025-03-18 18:22:09.638144 Published: 2025-03-18 18:20:56.592981 Description : Sure! Here are the key points about the SIAK DUKCAPIL Ministry of Home Affairs of Indonesia presented in a list format:Official website of the Directorate General of Population and Civil Registration, Indonesia.…
Read More
China identifies Taiwanese hackers allegedly behind cyberattacks and espionage
Summary: China’s Ministry of State Security has accused four individuals linked to Taiwan’s military of cyberattacks and espionage against Chinese infrastructure. The allegations, which Taiwan denies, highlight the increasing cyber tensions between the two entities amid an ongoing complex relationship. Reports from Chinese cybersecurity firms suggest coordinated efforts with the government to address alleged threats from Taiwan.…
Read More