Microsoft shares the details of a wide-scale malicious email campaign attributed to Nobelium, the group linked to the SolarWinds supply chain attack.
from Dark Reading: https://ift.tt/3p0Mayz
via IFTTT
Microsoft shares the details of a wide-scale malicious email campaign attributed to Nobelium, the group linked to the SolarWinds supply chain attack.
from Dark Reading: https://ift.tt/3p0Mayz
via IFTTT
Critical infrastructure’s cybersecurity problems are complex, deep-rooted, and daunting. Addressing them won’t be easy…but it isn’t impossible.
from Dark Reading: https://ift.tt/3uyl4zQ
via IFTTT
Researchers from Claroty today detailed the memory vuln they discovered in Siemens SIMATIC S7-1200 and S7-1500 PLCs.
from Dark Reading: https://ift.tt/3wEocM7
via IFTTT
Florian “The Shark” Tudor, the alleged ringleader of a prolific ATM skimming gang that siphoned hundreds of millions of dollars from bank accounts of tourists visiting Mexico over the last eight years, was arrested in Mexico City on Thursday in response to an extradition warrant from a Romanian court.
Florian Tudor, at a 2020 press conference in Mexico in which he asserted he was a legitimate businessman and not a mafia boss. Image: OCCRP.
Tudor, a native of Craiova, Romania, moved to Mexico to set up Top Life Servicios, an ATM servicing company which managed a fleet of relatively new ATMs based in Mexico branded as Intacash.
Intacash was the central focus of a three–part investigation KrebsOnSecurity published in September 2015. That series tracked the activities of a crime gang working with Intacash that was bribing and otherwise coercing ATM technicians to install sophisticated Bluetooth-based skimmers inside cash machines throughout popular tourist destinations in and around Mexico’s Yucatan Peninsula — including Cancun, Cozumel, Playa del Carmen and Tulum.
Follow-up reporting last year by the Organized Crime and Corruption Reporting Project (OCCRP) found Tudor and his associates compromised more than 100 ATMs across Mexico using skimmers that were able to remain in place undetected for years. The OCCRP, which dubbed Tudor’s group “The Riviera Maya Gang,” estimates the crime syndicate used cloned card data and stolen PINs to steal more than $1.2 billion from bank accounts of tourists visiting the region.
Last year, a Romanian court ordered Tudor’s capture following his conviction in absentia for attempted murder, blackmail and the creation of an organized crime network that specialized in human trafficking.
Mexican authorities have been examining bank accounts tied to Tudor and his companies, and investigators believe Tudor and his associates paid protection and hush money to various Mexican politicians and officials over the years. In February, the leader of Mexico’s Green Party stepped down after it emerged that he received funds from Tudor’s group.
This is the second time Mexican authorities have detained Tudor. In April 2019, Tudor and his deputy were arrested for illegal firearms possession. That arrest came just months after Tudor allegedly ordered the execution of a former bodyguard who was trying to help U.S. authorities bring down the group’s lucrative skimming operations.
Tudor’s arrest this week inside the premises of the Mexican Attorney General’s Office did not go smoothly, according to Mexican news outlets. El Universal reports that a brawl broke out between Tudor’s lawyers and officials at the Mexican AG’s office, and a video released by the news outlet on Twitter shows Tudor resisting arrest as he is being hauled out of the building hand and foot.
A Mexican judge will decide on Tudor’s extradition to Romania in the coming weeks.
from Krebs on Security https://ift.tt/34oq7IA
via IFTTT
There are two critical vulnerabilities in plug-ins for the popular Visual Studio Code editor, now patched, but security firm Snyk warns that popular plug-ins could put development environments in jeopardy.
from Dark Reading: https://ift.tt/3fQtZYi
via IFTTT
In the name of releasing apps quickly and delivering a smooth user experience, mobile app security is often given short shrift.
from Dark Reading: https://ift.tt/3ftIcLR
via IFTTT
Selenium 3.141.59 – Remote Code Execution (Firefox/geckodriver)
from Exploit-DB.com RSS Feed https://ift.tt/3vu3PkL
via IFTTT
Trixbox 2.8.0.4 – ‘lang’ Path Traversal
from Exploit-DB.com RSS Feed https://ift.tt/3uoAaIl
via IFTTT
Trixbox 2.8.0.4 – ‘lang’ Remote Code Execution (Unauthenticated)
from Exploit-DB.com RSS Feed https://ift.tt/2QZVPsF
via IFTTT
WordPress Plugin LifterLMS 4.21.0 – Stored Cross-Site Scripting (XSS)
from Exploit-DB.com RSS Feed https://ift.tt/3i354mS
via IFTTT