Wednesday, April 9

Malware

Malware

International Hacker Arrested in Thailand Following Collaboration Between Singapore and Thai Authorities

A 39-year-old hacker suspected of orchestrating a series of international data breaches was arrested in Thailand on Wednesday, February 26. The arrest follows a joint effort between the Singapore Police Force (SPF) and the Royal Thai Police (RTP), marking a significant milestone in the fight against cybercrime. Background of the Investigation The investigation into the hacker’s activities began in 2020 when 11 victims in Singapore reported receiving ransom demands from multiple threat actors operating under various aliases, including ALTDOS, DESORDEN, GHOSTR, and 0mid16B. However, further analysis by SPF revealed that these identities were likely linked to a single threat actor responsible for at least 75 data breaches worldwide. Authorities suspect the hacker exploited vulnerabilitie...
Malware

The Bybit Hack: A $1.4 Billion Ethereum Heist – Technical Breakdown

The Bybit Hack: A $1.4 Billion Ethereum Heist – Technical Breakdown On February 21, 2025, Bybit, one of the world’s leading cryptocurrency exchanges, suffered a staggering $1.4–1.5 billion Ethereum (ETH) theft from one of its cold wallets—the largest single crypto heist in history. This breach didn’t exploit a flaw in Ethereum itself but rather targeted the exchange’s operational security through a blend of social engineering, UI spoofing, and smart contract manipulation. Here’s a deep dive into how it happened, the technical mechanics, and what it means for the crypto ecosystem. The Setup: Bybit’s Cold Wallet Infrastructure Bybit, like most major exchanges, uses a tiered wallet system: Hot Wallets: Online, low-value wallets for instant user withdrawals. Warm Wallets: Semi-o...
Malware

APT34: Jason project

Today I want to share a quick analysis on a new leaked APT34 Tool in order to track similarities between APT34 public available toolsets. This time is the APT34 Jason – Exchange Mail BF project to be leaked by Lab Dookhtegan on June 3 2019 Context According to FireEye, APT 34 has been active since 2014. APT 34, also referred to as “OilRig” or Helix Kitten, has been known to target regional corporations and industries. Although there was information about APT34 prior to 2019, a series of leaks on the website Telegram by an individual named “Lab Dookhtegan”, including Jason project, exposed many names and activities of the organization. “APT34 conducts cyber espionage on behalf of Iran. Iran seeks to diminish the capabilities of other regional powers to create leverage and better esta...
Malware

Analize teknike per sulmin kibernetik ne shqiperi.

Me 15 korrik 2022 u krye nje sulm shkaterimtar ndaj infrastruktures se shtetit shqipetar. Sulmi u krue ne disa hapa: Hyrja fillestare ne sistem Marrja e te dhenave Kodifikimi I te dhenave the shkaterimi Operacione inteligjence Aktoret qe moren pjese ne sulm: DEV-0842 ngarkoi ransomware dhe fshiresin e te dhenave DEV-0861 mori kontrollin fillestar dhe nxorri te dhenat DEV-0166 nxorri te dhenat DEV-0133 mblodhi informacion mbi infrastrukturen Aktoret qe moren pjese jane te lidhur me grupin e hakerave EUROPIUM I cili eshte ne varesi te ministries se inteligjences iraniane (MOIS). Fig 1. Aktoret e sulmit dhe varesia.       Provat qe sulmi ishte nga aktorete lidhur me qeverine e iranit: Sulmuesit veprojne jashte Iranit ...
Our 2020 Prediction: Automotive Cybersecurity Will Finally Be Regulated
Applications, Malware

Our 2020 Prediction: Automotive Cybersecurity Will Finally Be Regulated

With more and more connected cars on the roads these days, the issue of automotive cybersecurity is increasingly making its way into industrial and governmental awareness as a critical priority. With cybersecurity expected to become a clear requirement for automotive stakeholders in the near future, it’s not surprising that a wave of relevant standards, regulations, rules and best practice guidelines has recently emerged, and is expected to take over the automotive industry in the upcoming months. Existing Automotive Cybersecurity Initiatives Several automotive cybersecurity projects have been established over the past few years with the goal of bringing unison to the penetrable world of connected vehicles. Frameworks such as the Global Auto Alliance’s Framework for Automotive Cybersecur...