Red Hot Cyber
Cybersecurity is about sharing. Recognize the risk, combat it, share your experiences, and encourage others to do better than you.
Search
Banner Mobile
Banner Ancharia Desktop 1 1

Author: Pietro Melillo

Alleged Data Breach of the United States Department of Defense and National Security Agency

Recently, alarming news has emerged on a well-known underground forum regarding alleged data breaches of the United States Department of Defense and the National Security Agency (NSA). The announcements, posted by the user “Gostingr,” have raised concerns among users and cybersecurity experts, particularly due to the sensitive nature of the information involved. Details of the Alleged Breaches According to the post published by the user, the compromised data includes 325,498 lines containing names, emails, phone numbers, and addresses. The file, in CSV format, was compressed into a ZIP archive with a size of 6.3 MB, while the uncompressed size reaches 14.6 MB.

New Ransomware Group “Vanir Group”: Three Victims Immediately in Their Data Leak Site

A new ransomware group, calling themselves “Vanir Group,” has recently made its debut in the cybercrime landscape. This group has quickly garnered attention for the aggressiveness and professionalism of their operations, hitting three victims in a short time and making their actions public through a data leak site. On their website, the Vanir Group has left an intimidating message for their targets, addressed to the CEOs or domain administrators of the affected companies. Here is part of the message: “Hello, You must be the domain administrator or CEO, in other words, our latest victim. You reading this message means that the internal

Meow ransomware claims attack in its Data Leak Site at HPE giant

Introduction Today, the ransomware gang known as Meow has claimed responsibility for a cyberattack on the multinational giant Hewlett Packard Enterprise (HPE). The claim was published on their Data Leak Site (DLS), where the group offered access to an alleged confidential HPE database for $199. HPE Hewlett Packard Enterprise (HPE) is one of the leading global technology companies, established as a result of the split of Hewlett-Packard Company in November 2015. Hewlett-Packard, founded by Bill Hewlett and Dave Packard in 1939, was divided into two separate entities: HP Inc., which focuses primarily on printers and personal computers, and Hewlett Packard Enterprise, which

The Threat Actor 888 claimed a compromise against Microsoft

On July 9, 2024, a user known as “888” posted on BreachForums claiming to have leaked sensitive data of Microsoft employees. This alleged breach has exposed personal information of 2,073 company employees, reportedly due to a flaw in a third-party system. Details of the Breach According to the post published by “888,” the compromised data includes: The extent of the breach is significant, as the disclosed information can be used for a range of malicious activities, including phishing, fraud, and targeted attacks. Situation Analysis At the moment, we cannot precisely confirm the veracity of the breach. Microsoft has not released any official

The Threat Actor 888 claims responsibility for a breach at Nokia.

A malicious actor, known by the alias “888,” recently claimed responsibility for disclosing sensitive data belonging to Nokia. The attack, which occurred in July 2024, compromised a wide range of information, raising significant concerns about data security and the protection of personal information. Breach Details According to 888’s statements, the breach led to the exposure of several sensitive data points. Among the compromised information are: Current Status At this time, we cannot confirm the exact accuracy of the breach claims, as the organization has yet to release any official press statement on its website regarding the incident. Therefore, this article should be

Massive Data Exposure on X (Twitter) Affects 200 Million Users

Recently, X (Twitter) experienced a massive data exposure, compromising nearly 200 million user records. This incident could be one of the largest user data exposures in recent history, jeopardizing the security and privacy of millions of users. In this article, we analyze the details of the exposure, its implications, and the potential risks for the affected users. Currently, we are unable to accurately confirm the veracity of the breach, as no press release has been issued on the official website regarding the incident. Therefore, this article should be used as an “intelligence source.” Scope and Source of the Data Leak The leaked

Alleged NATO Data BreachAlleged NATO Data Breach: 643 CSV Files with User Data and Server Details Leaked

A threat actor claims to have leaked sensitive data from NATO – TIDE (Think-Tank for Information Decision and Execution Superiority). NATO-TIDE (Think-Tank for Information Decision and Execution Superiority) is a specialized division of NATO (North Atlantic Treaty Organization), focused on enhancing decision-making and execution capabilities through advanced use of information. This organization aims to optimize the collection, analysis, and use of data to support military and strategic operations. The actor, identified by the username “natohub” on an online forum, posted an announcement on July 7, 2024, claiming to have obtained and shared 643 CSV files containing user data, user groups, physical and

Access to UK Accounting System for Sale: 600 Clients and 1TB of Data at Risk

A malicious actor is allegedly selling access to an RDWeb system in the United Kingdom, belonging to an accounting firm. This breach represents a serious threat to the security of sensitive data for over 600 clients, containing tax return files and other confidential documents. Offer Details The ad posted on an online forum details access to the compromised system: The advertiser claims that the files contain tax return documents and other related documents for over 600 clients. It is specified that there are many other unverified files, suggesting the possible presence of additional sensitive data. Access Price Access to the RDWeb system

Ticketmaster Breach: 30,000 Free Tickets Released

After claiming to have stolen 170,000 tickets for Taylor Swift’s ERAS Tour, the hacker group Sp1d3rHunters today announced they have distributed over 30,000 more tickets for high-profile events. The allegedly leaked tickets today include events for: Sp1d3rHunters, known for their illicit activities in the cybercrime world, posted a detailed message on a dark forum claiming they had breached Ticketmaster’s security. Reportedly, the flaw exploited by the hacker group allows them to print physical tickets (Ticketfast, e-tickets, and tickets sent via mail) which, unlike Ticketmaster’s dynamic electronic tickets, cannot be automatically updated. How To: 4-Step Guide to Creating Your Own Ticketfast Tickets Current

China: 7.5 Million Tourist Data Stolen!

On the morning of July 6, 2024, a user known as “BlackKing” revealed a significant data breach involving a Chinese travel and tourism platform on a hacking forum. This information leak, which occurred in March 2024, led to the exposure of 7.5 million records, 5.82 million of which contain resident identifiers. Breach Details According to BlackKing, the breach compromised a wide range of personal data. The data fields included in the leak comprise: Implications of the Breach If confirmed, this data breach would represent a serious threat to the privacy of the individuals involved. The exposed personal data could be used for