Magecart group compromises customer ratings tool, affecting 'hundreds' of online storesCyberScoop·Oct 9, 13:36 UTC · Oct 9, 2018Data breach in the wild60
Report suggests Ticketmaster breach was broader than initial disclosureCyberScoop·Jul 10, 22:43 UTC · Jul 10, 2018Data breach in the wild60
RiskIQ JavaScript Threats Module protects orgs' high-traffic payment pages from JavaScript attacksHelp Net Security·Aug 1, 00:00 UTC · Aug 1, 2019Data breach60
Automated Magecart spree hit thousands of sites via misconfigured cloud servers, RiskIQ saysCyberScoop·Jul 11, 10:00 UTC · Jul 11, 2019Exploit / PoC in the wild60
Gift-card scheme went well beyond Wipro hack, RiskIQ reportsCyberScoop·Jun 27, 03:29 UTC · Jun 27, 2019Data breach in the wild60
Magecart Hackers Inject iFrame Skimmers in 19 Sites to Steal Payment DataThe Hacker News·Apr 3, 10:52 UTC · Apr 3, 2020Data breach60
Magecart hackers have spent weeks lurking on NutriBullet's websiteCyberScoop·Mar 18, 17:12 UTC · Mar 18, 2020Exploit / PoC in the wild60
Researchers implicate online cardCyberScoop·Sep 12, 14:38 UTC · Sep 12, 2018Data breach in the wild60
How scammers use faked news articles to promote coronavirus 'cures' that only defraud victimsCyberScoop·Aug 12, 10:00 UTC · Aug 12, 2020Phishing & fraud in the wild60
Russia-linked APT exploited at least 3 Exim flaws in recent attacksSecurity Affairs·Jun 3, 07:57 UTC · Jun 3, 2020VulnerabilityCVE-2019-10149CVE-2019-15846CVE-2019-1692860
Evidence suggests Russia's SVR is still using 'WellMess' malware, despite US warningsCyberScoop·Jul 30, 14:19 UTC · Jul 30, 2021Malware in the wild60
Magecart strikes more than 2 million websites as more groups get involvedCyberScoop·Oct 4, 10:00 UTC · Oct 4, 2019Exploit / PoC in the wild60
New 'Magecart' group used ad plugin to steal payment data from hundreds of websitesCyberScoop·Jan 16, 19:29 UTC · Jan 16, 2019Exploit / PoC60
CVE-2021-40444 exploitation: Researchers find connections to previous attacksHelp Net Security·Sep 16, 00:00 UTC · Sep 16, 2021VulnerabilityCVE-2021-4044460
92% of worldwide Microsoft Exchange IPs are now patched or mitigatedSecurity Affairs·Mar 24, 07:57 UTC · Mar 24, 2021Vulnerability in the wildCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs60
Magecart's 'shotgun approach' to payment card theft is wreaking havoc on eCyberScoop·Jun 7, 16:21 UTC · Jun 7, 2019Exploit / PoC in the wild60
North Korean hackers turn focus to cryptocurrency, point-ofCyberScoop·Dec 21, 14:32 UTC · Dec 21, 2017Exploit / PoC in the wild60
Digital transformation and the loss of security controlHelp Net Security·Oct 18, 00:00 UTC · Oct 18, 2017Data breach60
New details emerge on prolific ContiCyberScoop·Mar 17, 16:00 UTC · Mar 17, 2022Ransomware in the wild60
Windows MSHTML 0-Day Exploited to Deploy Cobalt Strike Beacon in Targeted AttacksThe Hacker News·Nov 12, 15:17 UTC · Nov 12, 2021RansomwareCVE-2021-4044460
ProxyLogon Microsoft Exchange exploit is completely out of the bagSecurity Affairs·Mar 15, 12:56 UTC · Mar 15, 2021Ransomware in the wildCVE-2021-2685560
New MageCart Attacks Target Bedding Retailers My Pillow and AmerisleepThe Hacker News·Mar 20, 13:31 UTC · Mar 20, 2019Data breach60
Magecart strikes again, this time at electronics retailer NeweggCyberScoop·Sep 19, 15:35 UTC · Sep 19, 2018Exploit / PoC in the wild60
Hackers hide malware, porn ads inside gaming apps on Google Play StoreCyberScoop·Jan 11, 14:00 UTC · Jan 11, 2018Malware in the wild60
RedAlpha: New Campaigns Discovered Targeting the Tibetan CommunityRecorded Future·Jun 26, 00:00 UTC · Jun 26, 2026Threat actorCVE-2017-0199160
Russian missile fuel maker targeted with recent Office zeroThe Record·Dec 14, 00:00 UTC · Dec 14, 2022RansomwareCVE-2021-4044460
European firm DSIRF behind the attacks with Subzero surveillance malwareSecurity Affairs·Jul 28, 11:04 UTC · Jul 28, 2022MalwareCVE-2022-22047CVE-2021-31199CVE-2021-31201+2 CVEs60
Exotic Lily initial access broker works with Conti gangSecurity Affairs·Mar 19, 13:15 UTC · Mar 19, 2022RansomwareCVE-2021-4044460
Week in review: Kali Linux 2021.3, how to avoid cloud configuration breaches, hybrid digital dexterityHelp Net Security·Feb 28, 14:42 UTC · Feb 28, 2022RansomwareCVE-2021-30860CVE-2021-30858CVE-2021-4044460
Critical Magento 0-Day Vulnerability Under Active Exploitation — Patch ReleasedThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2022Vulnerability in the wildCVE-2022-2408660
NSA warns about Sandworm APT exploiting Exim flawHelp Net Security·May 5, 07:53 UTC · May 5, 2021Threat actorCVE-2019-1014960
Use This One-Click Mitigation Tool from Microsoft to Prevent Exchange AttacksThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2021Ransomware in the wildCVE-2021-2685560
Splunk helps security teams modernize and unify their security operations in the cloudHelp Net Security·Oct 21, 00:00 UTC · Oct 21, 2020Threat actor60
Week in review: ERP security, early warning of ransomware, Active Directory disaster recoveryHelp Net Security·Aug 30, 00:00 UTC · Aug 30, 2020Ransomware60
Twilio breach spotlights struggle to keep corporate software kits out of the wrong handsCyberScoop·Jul 24, 16:37 UTC · Jul 24, 2020Exploit / PoC in the wild60
Magecart-related group hits 570 websites, taking 184,000 card numbersCyberScoop·Jul 7, 20:44 UTC · Jul 7, 2020Data breach in the wild60
Week in review: CISO do’s and don’ts, Windows Defender scan fail, new issue of (IN)SECUREHelp Net Security·May 12, 11:55 UTC · May 12, 2020Data breach60
Hackers Targeting Critical Healthcare Facilities With Ransomware During Coronavirus PandemicThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2020RansomwareCVE-2012-015860
Week in review: Trojanized hacking tools, coronavirus scams, (IN)SECURE Magazine special issueHelp Net Security·Mar 15, 00:00 UTC · Mar 15, 2020MalwareCVE-2020-8597CVE-2020-0796CVE-2020-1018960
Breach at e-commerce provider gave hackers an entry to Sesame StreetCyberScoop·Oct 10, 14:18 UTC · Oct 10, 2019Exploit / PoC in the wild60