News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

A comeback from Lockbit is likely
B2B Cyber ​​Security ShortNews

It is fundamentally important for Lockbit to be visible again quickly. Victims are presumably less willing to pay as long as there are rumors that the group is no longer operational. “It has now become known that Lockbit, contrary to its own statements, does not delete the stolen data. One more reason to stand firm and not pay in the event of blackmail. They have set up a new .onion leak site. The group claims there that the investigating authorities used a PHP vulnerability for the takedown. This is a PR campaign. Lockbit wants to put the damage of the takedown into perspective and show strength...

Read more

Classification of the LockBit breakup
B2B Cyber ​​Security ShortNews

European and American law enforcement authorities have managed to arrest two members of the notorious LockBit group. This important strike against the ransomware group represents a significant step forward in the fight against organized cybercrime. LockBit is one of the most well-known threat actors, which, unlike many of its competitors, brazenly attacks hospitals and critical infrastructure itself. With the arrest of two people and the ongoing investigation against the group's developers and partners, law enforcement authorities are sending a clear message to other malware operators: cybercrime has significant consequences. Cybercrime groups are increasingly exposed The current arrest...

Read more

FBI, Europol, NCA: APT group LockBit smashed!

According to the authorities, Europol, the FBI and the British NCA have dismantled the APT group LockBit. At least it has all darknet leak sites under control and is probably already distributing decryption tools. The authorities even used the system of leak sites to distribute information and tools. It sounds too good to be true: A global network of authorities such as the FBI, Eruopol, NCA and many more have succeeded in striking a significant blow against the APT group LockBit. Officially, the group's network has been dismantled, the servers taken over, source codes and documents confiscated and...

Read more

Comments on the Hive ransomware network takedown
Ransomware network Hive smashed

Investigators from Germany, the USA and the Netherlands have broken up the global ransomware network "Hive". The German prosecutors stated that of the more than 1.500 cyber attacks on organizations worldwide, 70 attacks were in Germany. Experts Kimberly Goody and John Hultquist commented on the Hive network and the likely consequences of the takedown: “In our 2022 incident response surveys, Hive was the most active of all ransomware families observed: Hive was responsible for more than 15 percent of ransomware attacks responsible to which we have responded. Those affected come from a large number of countries. The biggest…

Read more

FBI, BKA, Europol smash Hive ransomware network
FBI, BKA, Europol smash Hive ransomware network

The FBI secretly infiltrated the Hive network and, in addition to key servers and decryption keys, even took over the Hive group's leak page on the dark web. In doing so, the FBI, the German BKA, the Baden-Württemberg police and Europol thwarted ransom demands of over 130 million US dollars. The US Department of Justice announced that its month-long disruption campaign against the Hive ransomware group has now borne fruit. The ransomware group was responsible for more than 1.500 victims in over 80 countries. Including hospitals, school districts, financial companies and critical infrastructure (KRITIS). The action was a joint effort by the FBI, the German BKA, the…

Read more

Gangster VPN network VPNLab.net shut down by law enforcement
B2B Cyber ​​Security ShortNews

Anyone who calls up the VPNLab.net page only gets a “This domain has been seized” – This page has been confiscated. Various ransomware attacks were routed and malware distributed via the VPN network, such as Ryuk. The special VPN network with two cascaded servers run by over 12 international law enforcement agencies in Operation Cyborg. On Monday, January 17.01.2022th, XNUMX, the investigators from the Hanover police department and the Verden public prosecutor's office managed to take several servers of VPNLab.net, from which cybercriminal groups operate, offline (so-called "takedown"). Various law enforcement agencies around the world were involved in the large-scale operation...

Read more

Russian authorities are said to have broken up the REvil group
B2B Cyber ​​Security ShortNews

As reported by Tageschau.de, the Russian authorities state that they tracked down and smashed the hacker group REvil. Hackers from the REvil group are said to be behind thousands of ransomware attacks, such as on the American IT service provider Kaseya and its 40.000 business customers. As reported by Tageschau.de, the US has asked the Russian authorities whether reports of the hacker group REvil being broken up are true. According to their own statements, Russian investigators have now dissolved the REvil infrastructure. The domestic secret service FSB announced that the illegal activities of the members had been smashed. During searches at 14 places of residence, money and equipment were...

Read more

Sophos comment on the Emotet off
SophosNews

“The world will definitely be a safe place now that Emotet has been temporarily neutralized, but unfortunately it is not the ultimate solution to the problem. It seems that the really big fish behind the Emotet operation were not caught. A comment from Chester Wisniewski, Principal Research Scientist at Sophos. It is very likely that the unconcerned backers will build a new infrastructure and sooner or later resume their machinations as usual. Given the massive profits associated with their previous cybercrime activities, they could also simply choose to ...

Read more