Daily Cyber Brief
Russian hackers target Lithuanian sites, the Black Basta RaaS syndicate is becoming a prominent threat, and the Bank of the West has found card skimmers at their ATMs...

Cybersecurity
Lithuanian state and private websites were targeted on Monday by Russian hackers who claimed the attack was retaliation for Vilnius's decision to cease the transit of some goods under European Union sanctions to Russia's Kaliningrad exclave. Lithuania's tax authority…
Armed with little more than a computer, hackers are increasingly setting their sights on some of the biggest things that humans can build. Vast container ships and chunky freight planes — essential in today's global economy — can now be brought to a halt by a new generation of…
One of Iran’s major steel companies said Monday it was forced to halt production after being hit by a cyberattack that also targeted two other plants, apparently marking one of the biggest such assaults on the country’s strategic industrial sector in recent memory. The Iranian…
The Bank of the West is warning customers that their debit card numbers and PINs have been stolen by skimmers installed on several of the bank's ATMs. The financial institute, which operates over 600 branches in the United States, first detected a wave of suspicious…
The Black Basta ransomware-as-a-service (RaaS) syndicate has amassed nearly 50 victims in the U.S., Canada, the U.K., Australia, and New Zealand within two months of its emergence in the wild, making it a prominent threat in a short window. "Black Basta has been observed…
A new Android banking malware named Revive has been discovered that impersonates a 2FA application required to log into BBVA bank accounts in Spain. The new banking trojan follows a more focused approach targeting the BBVA bank instead of attempting to…
A malware-as-a-service (Maas) dubbed Matanbuchus has been observed spreading through phishing campaigns, ultimately dropping the Cobalt Strike post-exploitation framework on compromised machines. Matanbuchus, like other malware loaders such as BazarLoader…
A leading US regulator has fined CafePress half a million dollars following a 2019 data breach that impacted 23 million customers. Consumer rights agency the FTC argued in its finalized order that the online merchandise site failed to implement reasonable security…
The domains of six websites that streamed and provided illegal downloads of copyrighted music were seized by U.S. Homeland Security Investigations (HSI) and the Department of Justice. 266 other websites part of the same network were also taken down in Brazil, with…
CODESYS has released patches to address as many as 11 security flaws that, if successfully exploited, could result in information disclosure and a denial-of-service (DoS) condition, among others. "These vulnerabilities are simple to exploit, and they can be successfully…