Daily Cyber Brief
Iranian hackers steal and post footage of bombing in Jerusalem, Bahamut targets Android users with fake VPN apps, and iSpoof is dismantled as 145 are arrested...

Cybersecurity
INTERPOL has announced the seizure of $130,000,000 million worth of money and virtual assets linked to various cybercrimes and money laundering operations. The law enforcement operation is codenamed "HAECHI III" and lasted between June 28 and November 23, 2022…
Iranian-backed Palestinian terror group Hamas, the de facto rulers of the impoverished Gaza Strip, is stepping up its cyber activities against Israel. And it's time for Western nations, including the U.S., to take such threats more seriously, a report published recently by…
The 'iSpoof' online spoofing service has been dismantled following an international law enforcement investigation that also led to the arrest of 146 people, including the suspected mastermind of the operation. Over a hundred of these arrests, including that of the…
Hospitality company Sonder has confirmed a data breach that has potentially compromised guest records. According to a security update published on Wednesday, November 23, 2022, Sonder learned of unauthorized access to one of its systems on November 14…
Variants of the SharkBot malware were found in several file manager Android apps on the Google Play Store, some of them with thousands of downloads. While the apps have now been taken down by Google, security researchers at Bitdefender published an advisory earlier this…
The operators of the RansomExx ransomware have become the latest to develop a new variant fully rewritten in the Rust programming language, following other strains like BlackCat, Hive, and Luna. The latest version, dubbed RansomExx2 by the threat actor known as Hive0091…
A set of five medium-severity security flaws in Arm's Mali GPU driver has continued to remain unpatched on Android devices for months, despite fixes released by the chipmaker. Google Project Zero, which discovered and reported the bugs, said Arm addressed the…
Over 1,600 publicly available Docker Hub images hide malicious behavior, including cryptocurrency miners, embedded secrets that can be used as backdoors, DNS hijackers, and website redirectors. Docker Hub is a cloud-based container library allowing people to freely…
Previously unseen footage that was published on Thursday on the Telegram social media service by an Iranian hacker group showing a bombing attack in Jerusalem a day earlier came from surveillance cameras used by a major Israeli security organization. The group, Moses…
The cyber espionage group known as Bahamut has been attributed as behind a highly targeted campaign that infects users of Android devices with malicious apps designed to extract sensitive information. The activity, which has been active since January 2022, entails…