Close Menu
World Forbes – Business, Tech, AI & Global Insights
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
What's Hot

Edmunds small luxury SUV test: 2025 Acura ADX vs 2025 BMW X1

July 30, 2025

How composting works wherever you live

July 30, 2025

PHOTO ESSAY: A rickshaw driver and his dog are winning hearts in Nepal’s Kathmandu

July 30, 2025
Facebook X (Twitter) Instagram
Trending
  • Edmunds small luxury SUV test: 2025 Acura ADX vs 2025 BMW X1
  • How composting works wherever you live
  • PHOTO ESSAY: A rickshaw driver and his dog are winning hearts in Nepal’s Kathmandu
  • Female tour guides in Afghanistan lead women-only groups as some travelers return
  • Starbucks looks to protein drinks, other new products to turn around lagging sales
  • How Larry Ellison And David Ellison Pulled Off The Paramount Deal
  • Tracee Ellis Ross offers tips on solo travel in new docuseries for Roku
  • Booker Prize winner Kiran Desai is up for the award again with a long-awaited novel
World Forbes – Business, Tech, AI & Global InsightsWorld Forbes – Business, Tech, AI & Global Insights
Wednesday, July 30
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
World Forbes – Business, Tech, AI & Global Insights
Home » In Other News: Scattered Spider Still Active, EncryptHub Unmasked, Rydox Extraditions
Cybersecurity

In Other News: Scattered Spider Still Active, EncryptHub Unmasked, Rydox Extraditions

adminBy adminApril 11, 2025No Comments4 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email
Post Views: 53


SecurityWeek’s cybersecurity news roundup provides a concise compilation of noteworthy stories that might have slipped under the radar.

We provide a valuable summary of stories that may not warrant an entire article, but are nonetheless important for a comprehensive understanding of the cybersecurity landscape.

Each week, we curate and present a collection of noteworthy developments, ranging from the latest vulnerability discoveries and emerging attack techniques to significant policy changes and industry reports. 

Here are this week’s stories:

EncryptHub unmasked

The threat actor known as EncryptHub (aka Larva-208) appears to be a Ukrainian national who has been involved in cybercrime activities while trying to find a legitimate job, according to Outpost24. Poor OPSEC enabled Outpost24 researchers to track the man’s life in recent years, but they have not made his name public. He was recently credited by Microsoft for responsibly disclosing two vulnerabilities. 

Neptune RAT steals passwords from 270 applications

Cyfirma has analyzed Neptune RAT, a remote access trojan targeting Windows systems with destructive capabilities and the ability to steal passwords from over 270 applications. The malware uses various persistence methods and anti-analysis techniques, and it also packs ransomware, cryptocurrency clipper, desktop monitoring, and anti-antivirus capabilities. 

Advertisement. Scroll to continue reading.

Google details Russian espionage aimed at Europe

Google Cloud has shared details on the tactics and techniques of UNC5837, a Russia-linked threat actor, in cyberespionage attacks aimed at government and military organizations in Europe. Google’s report focuses on how the attackers leveraged lesser-known RDP features to gain access to victims’ devices and exfiltrate data. The campaign was previously analyzed by Microsoft and AWS.

WK Kellogg data breach

Food giant WK Kellogg is notifying employees that their information may have been compromised in the Cleo attack conducted by the Cl0p ransomware group. It’s unclear how many people are impacted by the data breach, but the number may be low. In Maine, for instance, only one impacted individual has been identified. 

Rydox cybercrime marketplace admins extradited to US

Kosovo nationals Ardit Kutleshi and Jetmir Kutleshi have been extradited from Kosovo to the United States, where they face identity theft, money laundering, and access device fraud charges related to their alleged roles as administrators of the Rydox cybercrime marketplace, which authorities disrupted late last year. 

Significant healthcare data breaches

Two more relatively significant healthcare data breaches came to light recently. Mercer County Joint Township Community Hospital is notifying 88,000 people that their personal information, including SSNs and financial information, may have been stolen in a cyberattack that took place in April 2024. 

The second involves Central Texas Pediatric Orthopedics, which was recently targeted by the Qilin ransomware group. An investigation showed that the cybercriminals managed to steal personal and health information belonging to 140,000 people.

Governments detail spyware targeting Uyghur, Taiwanese and Tibetan groups

Government agencies in the UK, US, Germany, Canada, Australia, and New Zealand have published a joint report detailing BadBazaar and Moonshine, two pieces of spyware used in attacks aimed at Uyghur, Taiwanese and Tibetan groups. Unsurprisingly, the malware has been attributed to Chinese state-sponsored threat actors.

Splunk and Palo Alto Networks patches

Splunk has published 15 advisories describing the third-party package updates of April 2025. The updates mostly address critical- and high-severity vulnerabilities in Juniper, Microsoft, Symantec, and other components. 

Palo Alto Networks has published nearly a dozen new advisories. A majority of them address medium- and low-severity issues affecting Cortex XDR, PAN-OS, Prisma and GlobalProtect products. The security holes can allow command injection, DoS attacks, information disclosure, user impersonation, and privilege escalation. The security giant says there is no evidence of in-the-wild exploitation. 

Scattered Spider still active despite arrests

Despite several of its members being arrested and prosecuted, the Scattered Spider cybercrime group is still active. According to Silent Push, the hackers this year have targeted services such as Klaviyo, HubSpot, and Pure Storage, as well as brands such as Chick-fil-A, Forbes, Instacart, Louis Vuitton, Morningstar, News Corporation, Nike, X, Tinder, T-Mobile, and Vodafone.

Fortinet says hackers exploiting known vulnerabilities with new techniques

Fortinet has informed customers that threat actors have been observed exploiting known vulnerabilities “with a new technique to maintain read-only access to vulnerable FortiGate devices after the original access vector was locked down”. The company’s investigation determined that the attacks were not aimed at a specific region or sector. 

Related: In Other News: Hellcat Hackers Unmasked, CrushFTP Bug Controversy, NYU Hacked

Related: In Other News: Apple Improving Malware Detection, Cybersecurity Funding, Cyber Command Chief Fired



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
admin
  • Website

Related Posts

O2 Service Vulnerability Exposed User Location

May 20, 2025

Madhu Gottumukkala Officially Announced as CISA Deputy Director

May 20, 2025

BreachRx Lands $15 Million as Investors Bet on Breach-Workflow Software

May 19, 2025

Printer Company Procolored Served Infected Software for Months

May 19, 2025

UK Legal Aid Agency Finds Data Breach Following Cyberattack

May 19, 2025

480,000 Catholic Health Patients Impacted by Serviceaide Data Leak

May 19, 2025
Add A Comment
Leave A Reply Cancel Reply

Don't Miss
Billionaires

How Larry Ellison And David Ellison Pulled Off The Paramount Deal

July 29, 2025

David Ellison, son of software centi-billionaire Larry Ellison, nurtured a relationship with Paramount over the…

The Founder Of Shake Shack Is Now A Billionaire

July 26, 2025

‘South Park’ Creators Trey Parker and Matt Stone Are Now Billionaires

July 25, 2025

How Jeffrey Epstein Got So Rich

July 25, 2025
Our Picks

Edmunds small luxury SUV test: 2025 Acura ADX vs 2025 BMW X1

July 30, 2025

How composting works wherever you live

July 30, 2025

PHOTO ESSAY: A rickshaw driver and his dog are winning hearts in Nepal’s Kathmandu

July 30, 2025

Female tour guides in Afghanistan lead women-only groups as some travelers return

July 30, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

About Us
About Us

Welcome to World-Forbes.com
At World-Forbes.com, we bring you the latest insights, trends, and analysis across various industries, empowering our readers with valuable knowledge. Our platform is dedicated to covering a wide range of topics, including sports, small business, business, technology, AI, cybersecurity, and lifestyle.

Our Picks

After Klarna, Zoom’s CEO also uses an AI avatar on quarterly call

May 23, 2025

Anthropic CEO claims AI models hallucinate less than humans

May 22, 2025

Anthropic’s latest flagship AI sure seems to love using the ‘cyclone’ emoji

May 22, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Facebook X (Twitter) Instagram Pinterest
  • Home
  • About Us
  • Advertise With Us
  • Contact Us
  • DMCA Policy
  • Privacy Policy
  • Terms & Conditions
© 2025 world-forbes. Designed by world-forbes.

Type above and press Enter to search. Press Esc to cancel.