Red Hot Cyber. The Cybersecurity Blog

Threat Actors Release 2022 Electronic Arts (EA) Employee Database
Recently, a threat actor allegedly leaked a database containing information on Electronic Arts (EA) employees from 2022. The data breach was confirmed by the threat actor himself, who explained the reasons behind his decision to make the data public. Currently,

OpenSSH: An RCE run as Root puts 14 million instances on Linux at risk
A recent critical vulnerability in OpenSSH, identified as CVE-2024-6387, could allow unauthenticated remote code execution with root privileges on glibc-based Linux systems. This flaw resides in the server component of OpenSSH (sshd) and is due to a race condition in

Possible Data Breach of the Internal Security Operations Command (ISOC)
A member of BreachForums has announced a significant data breach involving Thailand’s Internal Security Operations Command (ISOC), an agency known as the political arm of the Royal Thai Armed Forces. Currently, we are unable to accurately confirm the veracity of

Bulgarian Hacker “Emil Külev” Arrested
On June 30, 2024, the Sofia police arrested Teodor Iliev, a 21-year-old Bulgarian who called himself “Emil Külev” online. The announcement was made by the Prosecutor’s Office of the Republic of Bulgaria, which stated that they had charged and detained

Cybercriminals exploit ARC popularity to spread Poseidon Malware : Mac users are the target!
In teh last months Mac users have been targeted by a new wave of cyberattack trough malvertising campaigns. The last threat, called “Poseidon” by their creators, has been revealed this 24th June and exploits Google ADV to spread the infostealer.

Possible Data Breach Affecting TÜV Rheinland AG
Recently, TÜV Rheinland AG, one of the leading global certification and inspection companies, has appeared on the data leak site of the ransomware group RansomEXX. At present, there are no official confirmations from the organization regarding the veracity of the

RHC interviews RADAR and DISPOSSESSOR: “When it comes to security, the best defense is a good offense.”
RHC Dark Lab - July 25th, 2024
In our usual underground analysis activities, we came into contact with the cyber gang DISPOSSESSOR, which came to attention in February 2024 in the cyber threat landscape. Accessing their Data...

IntelBroker Strikes Again: Unauthorized Access to Two Major American Companies Up for Sale
Raffaela Crisci - July 24th, 2024
IntelBroker strikes again, announcing the sale of unauthorized access to two major American companies, each with revenues reaching hundreds of billions. This announcement was made public through a post on...

Exposed the Data of 3,379 Spanish Doctors! When Fraud Becomes “On-Target”
Redazione RHC - July 24th, 2024
Recently, a threat actor in an underground forum called Breach Forums published an alleged data breach. The post claims to have exposed the names, departments, and emails of 3,379 Spanish...

The other side of cybersecurity: stress and burnout are “by design” in domain experts
Redazione RHC - July 23rd, 2024
We often talk about cyber security and the importance of a complete cyber program today. Today, however, we will focus on analyzing another important point in the profession of the...
Sign up for the newsletter