Today's News - Cybercrime Magazine
- Website
- Cybersecurityventures
- Followers
- —
- Following
- —
Key Highlights
Citizen Lab found evidence that Kenyan authorities used Cellebrite's phone-cracking technology on a human rights activist's device, indicating growing abuse of the technology. 1 post
Australian fintech platform youX confirmed a data breach exposing financial details of 444,538 borrowers, 629,597 loan applications, and 229,236 driver's licences. 1 post
Russian hackers compromised Ukraine's Diia platform, used for authorizing Starlink devices and civilian services, accessing administrative panels and developer lists. 1 post
Main Topics (3)
Latest posts

Google Warns of 'Relentless' Cyber Siege on Defense Industry
Source: Gov Info Security Cyberthreats targeting the defense industrial base are expanding beyond traditional espionage into supply-chain attacks, workforce infiltration and battlefield-adjacent cyber operations, according to a new threat intelligence report published this week by Google. Google's
Spanish Police Arrest Hacker Who Booked Luxury Hotels For One Cent
Source: Barron's Spanish police said Feb. 18 they had arrested a 20-year-old man who allegedly hacked a hotel booking website to reserve luxury rooms for as little as one cent, in the first known cybercrime of its kind. The suspect is believed to have manipulated the site's payment system, altering

DEF CON bans hackers, technologists named in Epstein documents
Source: NEXTGOV The DEF CON hacker conference has banned three people involved with the organization whose names appeared in recently released Justice Department files that exposed their ties to convicted sex offender Jeffrey Epstein. The conference banned Vincenzo Iozzo, Joichi Ito and Pablos Holm

Citizen Lab links Cellebrite to the hacking of a Kenyan presidential candidate’s phone
Source: Cyberscoop Researchers have found forensic evidence suggesting that Kenyan authorities used Cellebrite’s phone-cracking technology on the device of a prominent human rights activist after arresting him, according to a report published Feb. 16. The University of Toronto’s Citizen Lab said th

Aussie fintech platform youX confirms data breach as hacker shares massive dataset online
Source: cyberdaily.au A member of a notorious hacking platform has claimed responsibility for a hack impacting hundreds of thousands of Australians. Australian fintech platform youX, the victim of the hack, confirmed this week that it had “identified unauthorized access to its systems, by a third p
Russian Hackers Target Ukraine’s Starlink Authorization Service
Source: The Caspian Post Russian hackers have reportedly compromised Ukraine’s government digital platform Diia, which is used by Ukrainian military personnel to authorize Starlink devices and by civilians for services such as registering online marriages. Members of the hacker group, PalachPro, ac

Identity Emerges As A Primary Attack Vector
Source: Digit News AI is shrinking attack timelines, identity is now a primary attack vector, and extortion is moving beyond encryption – according to Unit 42’s Global Incident Response Report. The Palo Alto Network researchers analyzed over 750 major cyber incidents across 50 countries in every ma
Germany's Railway Operator Deutsche Bahn Recovers from Cyberattack
Source: Devdiscourse Germany's railway operator, Deutsche Bahn, announced that its booking and information systems are once again fully operational following a Distributed Denial-of-Service (DDoS) attack that disrupted services on Feb. 16. The company reported Feb. 17 that its "Information and book

Password managers’ promise that they can’t see your vaults isn’t always true
Source: ars TECHNICA All eight of the top password managers have adopted the term “zero knowledge” to describe the complex encryption system they use to protect the data vaults that users store on their servers. The vendors all make a bold assurance: that there is no way for malicious insiders or h

South Korea fines Louis Vuitton, Christian Dior, Tiffany $25M for SaaS security failures
Source: CSO Vishing involved in two of three breaches against Korean subsidiaries of prominent luxury brands impacting more than 5 million customers in total. South Korea’s data protection authority has handed down a combined KRW 36 billion ($25 million USD) in administrative fines to the local sub

Eurail confirms stolen traveler data is on sale in the dark web
Source: TechRadar Pro Hackers have begun selling the data they stole from Eurail in a recent cyberattack. Eurail is a Dutch company that sells train travel passes for European railways. Around Jan. 10, it confirmed cybercriminals accessed its servers and pulled sensitive customer information to a t

Washington Hotel in Japan discloses ransomware infection incident
Source: BleepingComputer The Washington Hotel brand in Japan has announced that that its servers were compromised in a ransomware attack, exposing various business data. The hospitality group has established an internal task force and engaged external cybersecurity experts to assess the impact of t

Over 500K VKontakte accounts hijacked through malicious Chrome extensions
Source: The Record Cybersecurity researchers have uncovered a malware campaign that reportedly hijacked half a million accounts on VKontakte — Russia’s most popular social network — through Google Chrome browser extensions disguised as customization tools. In a report published last week, researche

EU Parliament blocks AI tools over cyber, privacy fears
Source: Politico The European Parliament has disabled AI features on the work devices of lawmakers and their staff over cybersecurity and data protection concerns, according to an internal email seen by POLITICO. The chamber emailed its members Feb. 16 to say it had disabled "built-in artificial in

Phobos ransomware affiliate arrested in Poland
Source: Help Net Security Officers from Poland’s Central Bureau for Combating Cybercrime (CBZC) detained a 47-year-old man suspected of creating, acquiring, and sharing computer programs used to unlawfully obtain information stored in computer systems. He faces a potential prison sentence of up to
Pennsylvania City Paid $500K to Ransomware Perpetrators
Source: York Daily Record A cyberattack last summer that cut York City in Pennsylvania off from its computer systems resulted in a $500,000 ransom payout. Former Mayor Michael Helfrich confirmed the details, saying the attack began Jul. 8, 2025 and seized control of the city's IT infrastructure – s

Japanese sex toys maker Tenga says hacker stole customer information
Source: TechCrunch Sex toy maker Tenga notified customers of a data breach Feb. 13, according to an email obtained by TechCrunch. The Japanese company said that “an unauthorized party gained access to the professional email account of one of our employees,” which gave the hacker access to the conte

Luxury Outerwear Brand Canada Goose Investigates Alleged Data Breach
Source: News4Hackers A prominent data extortion group, ShinyHunters, claims to have compromised over 600,000 customer records belonging to Canada Goose, a high-end outerwear brand. The leaked dataset, which totals 1.67 gigabytes in size, contains detailed e-commerce order records, including sensiti

Amazon’s Ring cancels controversial partnership with tech company Flock amid privacy concerns
Source: CMToday Ring, the Amazon-owned video doorbell company, has canceled its partnership with technology firm Flock Safety, the company said last week. The termination comes after weeks of backlash over the partnership and Ring’s Super Bowl commercial which advertised a feature for finding lost

Blockchain Lender Figure Confirms Customer Data Breach
Source: Decrypt Figure Technology (NASDAQ: FIGR) confirmed Feb. 13 that it suffered a customer data breach after an employee was targeted in a social engineering attack. The hacking group ShinyHunters claimed responsibility, saying Figure refused to pay a ransom and that it published 2.5 gigabytes

Hacker linked to Epstein removed from Black Hat cyber conference website
Source: TechCrunch Vincenzo Iozzo, a renowned hacker linked to convicted sex offender Jeffrey Epstein, is no longer listed on the website of Black Hat, one of the largest cybersecurity conferences in the world, nor on the Japanese security conference Code Blue. He was still listed on both pages as

Ransomware attack halts online payments for 70K Bryan Texas Utilities customers
Source: KBTX 3 Bryan Texas Utilities (BTU) customers continue to experience disruptions from a ransomware attack tied to third-party payment processor BridgePay. It’s six days into the incident, and thousands of customers remain unable to pay their bills online using credit or debit cards. The outa

Dutch mobile phone giant Odido announces data breach
Source: The Record The largest mobile phone provider in the Netherlands announced a cyberattack on Feb. 12 that led to the theft of customer information. The company Odido, told a local news outlet that 6.2 million people had information stolen. In a statement about the incident, Odido CEO Søren Ab

Leaked Docs Show China Rehearsing Cyberattacks on Neighbors’ Critical Infrastructure
Source: Homeland Security Today China appears to be using a secret training platform to rehearse cyberattacks against the critical infrastructure of its closest neighbors, according to a cache of leaked technical documents reviewed by Recorded Future News.The leaked materials, which include source
New York Sent MFA Tokens to Its Towns, Counties and Schools
Source: Government Technology New York state is sending physical security keys called multifactor authentication (MFA) tokens to 161 of its cities, counties, school districts and other public-sector organizations. MFA tokens, which are about the size of a novelty keychain, generate one-time codes o