News

Short summaries of the cyber-crime stories moving in India and globally. We link back to the original source — always.

India Establishes AI Centre to Enhance Defence Capabilities
Phishing

India Establishes AI Centre to Enhance Defence Capabilities

India is set to strengthen its defence system with the establishment of a new Centre of Excellence for Artificial Intelligence, funded with Rs 300 crore. Collaborative discussions are underway between local AI labs, including Sarvam, and the defence ministry to develop AI technologies specifically suited to the country's operational requirements. This initiative aims to decrease India's dependence on foreign technology while promoting self-reliance in national security. The focus on homegrown solutions is expected to contribute positively to the nation's defense industry and innovation.

via Economic Times TechRead source
French Government Agency Confirms Data Breach Incident
Data Breaches

French Government Agency Confirms Data Breach Incident

France Titres, the agency responsible for issuing and managing official documents in France, has confirmed a data breach. A hacker has claimed responsibility for the attack and is allegedly attempting to sell the stolen personal data of French citizens. The agency is working to assess the extent of the breach and to implement necessary security measures to prevent further incidents. Authorities are urging affected individuals to be vigilant against possible identity theft and fraud stemming from the breach. This incident highlights the ongoing risks posed by cyber threats, emphasizing the importance of maintaining robust cybersecurity practices.

via BleepingComputerRead source
Ransomware Negotiator Admits Guilt in BlackCat Case
Ransomware

Ransomware Negotiator Admits Guilt in BlackCat Case

A ransomware negotiator has pleaded guilty in relation to the BlackCat ransomware operation. Legal experts suggest this case highlights an important lesson in cybersecurity: individuals involved in negotiating should remain separate from the ransom payment process. This distinction is crucial to ensure integrity and transparency during negotiations with cybercriminals. The BlackCat ransomware group has been involved in various attacks affecting organizations by demanding significant sums for the return of stolen data. This case serves as a reminder of the ethical dilemmas and legal implications surrounding ransom payments in cybercrime. Source: [publication name].

via Dark ReadingRead source
Active Exploits Target Windows Defender Security Features
Malware

Active Exploits Target Windows Defender Security Features

Three new exploits have been discovered that can manipulate Microsoft's Windows Defender, turning it into a tool for attackers. This has raised concerns as two of these vulnerabilities remain unpatched, leaving the built-in security software vulnerable during ongoing attacks. Users are advised to remain vigilant and keep their systems updated to minimize risks. Regular updates can help protect against potential exploits and maintain system integrity. It is essential for users to stay informed about such vulnerabilities to ensure better cybersecurity practices.

via Dark ReadingRead source
Lotus Malware Targets Venezuelan Energy Sector
Malware

Lotus Malware Targets Venezuelan Energy Sector

A new type of malware known as Lotus has been identified as a data-wiping tool used in attacks against energy and utility companies in Venezuela. This malware, which had not been documented previously, was deployed to disrupt operations within these critical infrastructure sectors last year. The attacks highlight ongoing cybersecurity threats targeting essential services, emphasizing the need for robust protection measures against similar incidents. Organizations globally, including in India, should remain vigilant to such evolving cyber threats that can impact their data security.

via BleepingComputerRead source
SystemBC Malware Exposes Over 1,570 Victims of Ransomware Operation
Ransomware

SystemBC Malware Exposes Over 1,570 Victims of Ransomware Operation

Research by Check Point has revealed that the SystemBC command-and-control server is associated with over 1,570 victims of The Gentlemen ransomware operation. The Gentlemen operates as a ransomware-as-a-service (RaaS) model, which allows attackers to deploy ransomware by utilizing various tools, including the known proxy malware SystemBC. This malware is particularly notable for establishing SOCKS5 network tunnels, which facilitate further malicious activities. The discovery raises concerns about the scale and impact of ransomware operations, demonstrating the ongoing threat to individuals and organizations. Cybersecurity awareness is essential in combating such risks. Source: Check Point.

via The Hacker NewsRead source
22 Vulnerabilities Found in Lantronix and Silex Converters
Data Breaches

22 Vulnerabilities Found in Lantronix and Silex Converters

Researchers from Forescout Research Vedere Labs have discovered 22 vulnerabilities in serial-to-IP converters made by Lantronix and Silex. These flaws could potentially allow cybercriminals to take control of devices and interfere with data transmissions. Nearly 20,000 Serial-to-Ethernet converters are at risk due to these vulnerabilities, which have been collectively named BRIDGE:BREAK. Users of these devices should be aware of the risks associated with these vulnerabilities and consider implementing security measures to protect against possible exploits. Keeping firmware updated is advisable for enhanced security. Source: [publication name].

via The Hacker NewsRead source
Exploitation of Bomgar RMM Flaw Highlights Supply Chain Vulnerabilities
Ransomware

Exploitation of Bomgar RMM Flaw Highlights Supply Chain Vulnerabilities

A significant security vulnerability identified as CVE-2026-1731 in the Bomgar remote monitoring and management (RMM) tool poses a serious risk. This flaw can allow cybercriminals to execute remote code, potentially enabling them to deploy ransomware and compromise supply chains. Organizations using this tool need to be aware of these risks and ensure they have proper security measures in place. Continuous monitoring and prompt updates can help mitigate the dangers associated with such vulnerabilities.

via Dark ReadingRead source
Google Addresses Important Vulnerability in AI Tool
Malware

Google Addresses Important Vulnerability in AI Tool

Google has resolved a significant security vulnerability in its AI-based Antigravity tool, which is used for filesystem operations. This flaw was related to prompt injection, allowing attackers to bypass security measures and execute arbitrary code, potentially leading to a sandbox escape. The company has implemented fixes to enhance the product's security and protect users from potential threats. It is essential for users of such technologies to stay updated and apply necessary security measures to safeguard their systems. Regular updates are critical for maintaining cybersecurity in advanced tools. Source: [publication name].

via Dark ReadingRead source
British Cybercriminal Pleads Guilty to Fraud and Identity Theft
Phishing

British Cybercriminal Pleads Guilty to Fraud and Identity Theft

A 24-year-old British man, Tyler Robert Buchanan, has admitted guilt in a court for his involvement with the cybercrime group 'Scattered Spider.' Charged with wire fraud conspiracy and aggravated identity theft, he acknowledged participating in text-message phishing attacks during the summer of 2022. These attacks enabled the group to infiltrate at least twelve prominent technology companies, resulting in the theft of tens of millions of dollars in cryptocurrency from investors. This case highlights ongoing issues with cybercrime and the tactics used to exploit individuals and organizations. Source: [publication name].

via Krebs on SecurityRead source
Ransomware Negotiator Admits Role in BlackCat Attacks
Ransomware

Ransomware Negotiator Admits Role in BlackCat Attacks

A ransomware negotiator from Florida, Angelo Martino, has admitted to his involvement in ransomware attacks targeting U.S. companies in 2023. He began working with the BlackCat ransomware group in April 2023, helping them negotiate higher ransom payments. Martino, who is 41 years old, communicated with multiple companies as part of his role in these cybercrimes. His plea highlights ongoing challenges in combating ransomware and underscores the importance of cybersecurity measures for businesses worldwide. This case illustrates the growing sophistication of cybercriminal networks and the involvement of various individuals in facilitating these attacks. Source: [publication name].

via The Hacker NewsRead source
Effective Fraud Prevention During Customer Interactions
Identity Theft

Effective Fraud Prevention During Customer Interactions

A recent discussion highlighted that preventing fraud does not need to compromise user experience. IPQS emphasizes the importance of integrating various signals, such as identity, device, and network information, to effectively combat fraud while maintaining ease of access for consumers. By leveraging these techniques, businesses can better secure transactions without imposing additional barriers on genuine users. This approach aims to enhance overall customer satisfaction while effectively minimizing fraudulent activities. As the digital landscape evolves, improving safety in online transactions becomes increasingly critical for both businesses and customers. Source: [publication name].

via BleepingComputerRead source