Daily Cyber Brief
The Clop ransomware gang is back, ALPHV demands $5 from Austria as a ransom, and Space Force expands its cyber capabilities...

Cybersecurity
Brazil’s airport authority Infraero said Friday it has notified the Federal Police over an apparent hack into electronic displays at an airport in Rio de Janeiro. Instead of advertisements and flight information, travelers were shown pornographic movies…
Austrian federal state Carinthia has been hit by the BlackCat ransomware gang, also known as ALPHV, who demanded a $5 million to unlock the encrypted computer systems. The attack occurred on Tuesday and has caused severe operational disruption of government…
After effectively shutting down their entire operation for several months, between November and February, the Clop ransomware is now back, according to NCC Group researchers. "CL0P had an explosive and unexpected return to the forefront of the ransomware threat…
Space Force's Delta 6 mission, responsible for thy cyber defense of US military satellites, is adding four squadrons to boost cybersecurity throughout the military branch, as well as oversee the modernization of the aging Satellite Control Network. Each operational mission…
Cisco Talos discovered eight vulnerabilities in the Open Automation Software, two of them critical, that pose risk for critical infrastructure networks. Critical flaws in a popular platform used by industrial control systems (ICS) that allow for unauthorized device access, remote…
A 37-year-old man from New York has been sentenced to four years in prison for buying stolen credit card information and working in cahoots with a cybercrime cartel known as the Infraud Organization. John Telusma, who went by the alias "Peterelliot," pleaded guilty to…
Russian cybercrime forums are teeming with the network credentials and virtual private network accesses of employees from U.S. colleges and universities, according to a new alert from the FBI. This week, the FBI said U.S. college and university credentials are being…
Hackers are showing an increased interest in the Windows Subsystem for Linux (WSL) as an attack surface as they build new malware, the more advanced samples being suitable for espionage and downloading additional malicious modules. As the name of the feature…
Four high severity vulnerabilities have been disclosed in a framework used by pre-installed Android System apps with millions of downloads. The issues, now fixed by its Israeli developer MCE Systems, could have potentially allowed threat actors to stage remote…
Cloud-based repository hosting service GitHub on Friday shared additional details into the theft of its integration OAuth tokens last month, noting that the attacker was able to access internal NPM data and its customer information. "Using stolen OAuth user tokens…