Daily Cyber Brief
Costa Rica declares national emergency following Conti attack, NFTs emerge as a new threat vector, and DCRat backdoor sold on Russian forums...

Cybersecurity
Russians tuning in to view the country's Victory Day parade were shown an anti-war message after the country's television listings system was hacked. The descriptions of programs on several major networks including Channel One, Rossiya-1 and NTV-Plus were changed…
Clearview AI has agreed to a court settlement that will ban the biometrics company from selling its huge database of faceprints to private business or individuals anywhere in the U.S., a move that the American Civil Liberties Union is calling a big victory for privacy advocates…
Lincoln College, a liberal-arts school from rural Illinois, says it will close its doors later this month, 157 years since its founding and following a brutal hit on its finances from the COVID-19 pandemic and a recent ransomware attack. This decision was made even harder…
Cybersecurity researchers have shed light on an actively maintained remote access trojan called DCRat (aka DarkCrystal RAT) that's offered on sale for "dirt cheap" prices, making it accessible to professional cybercriminal groups and novice actors alike. "Unlike the well…
A recent malware campaign that targeted online artists with a lure about lucrative nonfungible token (NFT) projects is a good indication of how threat actors are capitalizing on the snowballing interest in digital goods — and it has implications for the growing number…
The US authorities have offered a multimillion-dollar reward for information leading to the identification, arrest and/or conviction of individuals involved in attacks using the Conti ransomware variant. Offered under the Department of State’s Transnational Organized…
Microsoft has released security updates to address a security flaw affecting Azure Synapse and Azure Data Factory pipelines that could let attackers execute remote commands across Integration Runtime infrastructure. The Integration Runtime (IR) compute infrastructure is…
A new set of trojanized apps spread via the Google Play Store has been observed distributing the notorious Joker malware on compromised Android devices. Joker, a repeat offender, refers to a class of harmful apps that are used for billing and SMS fraud, while also performing a…
US agricultural equipment manufacturer AGCO has been hit by a ransomware attack, disrupting its operations during the critical planting season. The company confirmed the attack in a statement on Friday May 6, which it admitted will impact its operations…
The Costa Rican President Rodrigo Chaves has declared a national emergency following cyber attacks from Conti ransomware group on multiple government bodies. BleepingComputer also observed Conti published most of the 672 GB dump that appears to contain data…