Daily Cyber Brief
US puts 3 dozen Chinese companies on trade blacklist, T-Mobile hacker gets 10 years for $25 Million phone unlock scheme, client-side encryption coming to Gmail, and researcher bypasses Akamai WAF...

The U.S. Department of Commerce is adding 36 Chinese high-tech companies, including makers of aviation equipment, chemicals and computer chips, to an export controls blacklist, citing concerns over national security, U.S. interests and human rights. The inclusion of the…
Argishti Khudaverdyan, the former owner of a T-Mobile retail store, was sentenced to 10 years in prison for a $25 million scheme where he unlocked and unblocked cellphones by hacking into T-Mobile's internal systems. Between August 2014 and June 2019, the 44-year-old man…
Google on Friday announced that its client-side encryption for Gmail is in beta for Workspace and education customers as part of its efforts to secure emails sent using the web version of the platform. This development comes at a time when concerns about online privacy and…
Akamai's Web application firewall (WAF) is intended to fend off potential attacks like distributed denial-of-service (DDoS), but a researcher discovered a way to bypass its protections by using complex payloads to confuse its rules. The researcher, known as Peter H…
A Twitter employee who spied for the Saudi government and royal family has been sentenced to three and half years behind bars in America. Ahmad Abouammo, 45, was in August convicted by a jury of acting as an unlawful foreign agent, and committing conspiracy, wire…
Colombian energy company Empresas Públicas de Medellín (EPM) suffered a BlackCat/ALPHV ransomware attack on Monday, disrupting the company's operations and taking down online services. EPM is one of Colombia’s largest public energy, water, and gas…
The Glupteba malware botnet has sprung back into action, infecting devices worldwide after its operation was disrupted by Google almost a year ago. In December 2021, Google managed to cause a massive disruption to the blockchain-enabled botnet, securing the court orders to…
Business email compromise (BEC) continues to be a multibillion-dollar threat, but it's evolving, with the FBI and other federal agencies warning that cybercriminals have started using spoofed emails to steal shipments of physical goods – in this case, food. Along with the…
As Argentina and France prepare to face off in Doha for the final of the 2022 FIFA Men's World Cup, stadium staff and tournament organizers likely have more on their minds than whether Lionel Messi or Kylian Mbappe will claim the title of top goal-scorer. The event…
The persistence and spread of a newly identified botnet targeting private Minecraft Java servers has far wider ramifications for enterprises than bumming out a Biome. Microsoft researchers revealed in a report published Dec. 16 that this new botnet is used to launch…