Red Hot Cyber. The Cybersecurity Blog

Threat Actor “DragonForce” Seeks New Partners
A recent post on a dark web forum reveals that a cybercriminal group known as “DragonForce” is actively seeking new partners to join their Ransomware-as-a-Service (RaaS) operation. This recruitment drive is aimed at expanding their capabilities by incorporating specialists from

Threat Actors 888 claimed a compromise at Credit Suisse
A malicious actor, known by the alias 888, has recently claimed to be selling sensitive data belonging to Credit Suisse, one of the leading institutions in private banking and asset management. Details of the Alleged Breach According to 888, the

Cyber catastrophe in sight? The new Bug on MOVEit has an Online PoC Exploit
In the realm of cybersecurity, vulnerabilities constantly represent a significant risk for businesses and institutions. Many system administrators may recall CVE-2023-34362 from last year, a catastrophic vulnerability in Progress MOVEit Transfer that shook the industry, affecting high-profile victims like the

KillSec Announces New Ransomware-as-a-Service (RaaS) Platform
June 25, 2024 – KillSec, a well-known hacktivist group, has announced the launch of their latest offering on their Telegram channel: KillSec RaaS (Ransomware-as-a-Service). This new platform promises to enhance the capabilities of aspiring cybercriminals by providing advanced tools and

UNZIPPED DATA – LEVI STRAUSS COMPROMISED ACCOUNTS
The legendary Jeans retailer Levi Strauss & Co. identified a significant data breach that affected over 72,000 customers. The incident was discovered on June 13th, 2024 and it was the result of a credential stuffing attack, where attackers used combination

LockBit: The Bluff of Double Extortion Against the Federal Reserve
In recent years, the cybersecurity landscape has been dominated by the growing threat posed by ransomware groups. Among these, LockBit has emerged as one of the most notorious and feared. However, a recent event has called their credibility into question:

Potential Data Leak from Google: 1 Million Records Exposed
Pietro Melillo - July 15th, 2024
Recently, a threat actor claimed to have publicly released one million records scraped from Google, raising significant alarm regarding personal data security. The information appeared on an online forum in...

Threat Actor 888 Claims Compromise of BMW (Hong Kong) Customers
Pietro Melillo - July 15th, 2024
Recently, a concerning news story has emerged in the world of cybersecurity. A well-known hacker, identified by the nickname 888, has allegedly leaked sensitive data belonging to BMW customers in...

RHC interviews Ransomcortex, the gang targeting Hospitals. “pay the ransom, we won’t even spare the CEO’s family.”
RHC Dark Lab - July 15th, 2024
Ransomcortex is a new cyber ransomware gang that resonates menacingly in the healthcare sector. This group has quickly attracted attention for its specialization in attacks on healthcare facilities, striking four...

Threat Actors IntelBroker Release Alleged Equifax Data on Underground Forum
RHC Dark Lab - July 13th, 2024
Recently, a threat actor in an underground forum published an alleged data breach. This incident was revealed by a user named IntelBroker on BreachForums, a notorious online community for cybercriminal...
Sign up for the newsletter