Latest Tech News

Stay updated with the latest in technology, AI, cybersecurity, and more

Filtered by: actors Clear Filter

ShinyHunters claims 1.5 billion Salesforce records stolen in Drift hacks

The ShinyHunters extortion group claims to have stolen over 1.5 billion Salesforce records from 760 companies using compromised Salesloft Drift OAuth tokens. For the past year, the threat actors have been targeting Salesforce customers in data theft attacks using social engineering and malicious OAuth applications to breach Salesforce instances and download data. The stolen data is then used to extort companies into paying a ransom to prevent the data from being publicly leaked. These attacks

Google confirms fraudulent account created in law enforcement portal

Google has confirmed that hackers created a fraudulent account in its Law Enforcement Request System (LERS) platform that law enforcement uses to submit official data requests to the company "We have identified that a fraudulent account was created in our system for law enforcement requests and have disabled the account," Google told BleepingComputer. "No requests were made with this fraudulent account, and no data was accessed." The FBI declined to comment on the threat actor's claims. This

Google confirms hackers gained access to law enforcement portal

Google has confirmed that hackers created a fraudulent account in its Law Enforcement Request System (LERS) platform that law enforcement uses to submit official data requests to the company "We have identified that a fraudulent account was created in our system for law enforcement requests and have disabled the account," Google told BleepingComputer. "No requests were made with this fraudulent account, and no data was accessed." The FBI declined to comment on the threat actor's claims. This

FBI warns of UNC6040, UNC6395 hackers stealing Salesforce data

The FBI has issued a FLASH alert warning that two threat clusters, tracked as UNC6040 and UNC6395, are compromising organizations’ Salesforce environments to steal data and extort victims. "The Federal Bureau of Investigation (FBI) is releasing this FLASH to disseminate Indicators of Compromise (IOCs) associated with recent malicious cyber activities by cyber criminal groups UNC6040 and UNC6395, responsible for a rising number of data theft and extortion intrusions," reads the FBI's FLASH advis

The US is trying to kick-start a “nuclear energy renaissance”

In May, President Donald Trump signed four executive orders to facilitate the construction of nuclear reactors and the development of nuclear energy technology; the orders aim to cut red tape, ease approval processes, and reshape the role of the main regulatory agency, the Nuclear Regulatory Commission, or NRC. These moves, the administration said, were part of an effort to achieve American independence from foreign power providers by way of a “nuclear energy renaissance.” Self-reliance isn’t t

China Takes a Key Step Toward Its ‘Meltdown-Proof’ Nuclear Reactor

China’s ambitious plan to dramatically pull back from fossil fuels is perhaps most evident in the explosive growth of its nuclear energy program. The latest news suggests China may be tantalizingly close to bringing self-cooling reactors to practical use—a development with profound safety implications. In a statement earlier this week, the China Institute of Atomic Energy (CIAE) announced that it had recently concluded tests for a residual heat removal system for integral fast reactors (IFRs).

Global Salt Typhoon hacking campaigns linked to Chinese tech firms

The U.S. National Security Agency (NSA), the UK's National Cyber Security Centre (NCSC), and partners from over a dozen countries have linked the Salt Typhoon global hacking campaigns to three China-based technology firms. According to the joint advisories [NSA, NCSC], Sichuan Juxinhe Network Technology Co. Ltd., Beijing Huanyu Tianqiong Information Technology Co., and Sichuan Zhixin Ruijie Network Technology Co. Ltd. have provided cyber products and services to China's Ministry of State Securi

Show HN: Playing Piano with Prime Numbers

Mirror: Reflects primes around middle C, alternating above and below. C Major: Maps primes onto degrees of the C major scale. Harmonic: Turns each prime into a chord (root + major 3rd + 5th). Spiral: Walks upward through the keyboard cyclically, like a spiral. Factors: Number of prime factors determines chord size and richness.

After successes like Severance and The Studio, Apple TV+ gets a price hike

Apple has announced another price increase for its Apple TV+ video-streaming service. Starting today, a new monthly subscription will cost $12.99; it was previously $9.99. Existing subscribers will see the new price take effect during their next billing cycle. Annual plans and Apple TV+'s inclusion in Apple One at current pricing will remain unchanged. The price of Apple TV+ has practically doubled since its launch a few years ago. There are many reasons for this. When a streaming service fir

FBI warns of Russian hackers exploiting 7-year-old Cisco flaw

The Federal Bureau of Investigation (FBI) has warned that hackers linked to Russia's Federal Security Service (FSB) are targeting critical infrastructure organizations in attacks exploiting a 7-year-old vulnerability in Cisco devices. The FBI's public service announcement states that the state-backed hacking group, linked to the FSB's Center 16 unit and tracked as Berserk Bear (also known as Blue Kraken, Crouching Yeti, Dragonfly, and Koala Team), has been targeting Cisco networking devices usi

Google confirms data breach exposed potential Google Ads customers' info

Google has confirmed that a recently disclosed data breach of one of its Salesforce CRM instances involved the information of potential Google Ads customers. "We're writing to let you know about an event that affected a limited set of data in one of Google's corporate Salesforce instances used to communicate with prospective Ads customers," reads a data breach notification shared with BleepingComputer. "Our records indicate basic business contact information and related notes were impacted by

Voice phishers strike again, this time hitting Cisco

Cisco said that one of its representatives fell victim to a voice phishing attack that allowed threat actors to download profile information belonging to users of a third-party customer relationship management system. “Our investigation has determined that the exported data primarily consisted of basic account profile information of individuals who registered for a user account on Cisco.com,” the company disclosed. Information included names, organization names, addresses, Cisco assigned user I

Microsoft links Sharepoint ToolShell attacks to Chinese hackers

Several hacking groups with ties to the Chinese government have been linked to a recent wave of widespread attacks targeting a Microsoft SharePoint zero-day vulnerability chain. They used this exploit chain (dubbed "ToolShell") to breach dozens of organizations worldwide after hacking into their on-premise SharePoint servers. "Microsoft has observed two named Chinese nation-state actors, Linen Typhoon and Violet Typhoon exploiting these vulnerabilities targeting internet-facing SharePoint serv

Microsoft says Chinese hacking groups are behind SharePoint attacks

Some of the attacks that targeted organizations using an exploit in Microsoft’s SharePoint server platform over the last few days have been linked to hacking groups affiliated with the Chinese government, according to a new Microsoft security blog. “As of this writing, Microsoft has observed two named Chinese nation-state actors, Linen Typhoon and Violet Typhoon, exploiting these vulnerabilities targeting internet-facing SharePoint servers,” Microsoft said on Tuesday. “In addition, we have obse

Microsoft links Sharepoint attacks to Chinese hacking groups

Several hacking groups with ties to the Chinese government have been linked to a recent wave of widespread attacks targeting a Microsoft SharePoint zero-day vulnerability chain. They used this exploit chain (dubbed "ToolShell") to breach dozens of organizations worldwide after hacking into their on-premise SharePoint servers. "Microsoft has observed two named Chinese nation-state actors, Linen Typhoon and Violet Typhoon exploiting these vulnerabilities targeting internet-facing SharePoint serv

Microsoft Sharepoint ToolShell attacks linked to Chinese hackers

Hackers with ties to the Chinese government have been linked to a recent wave of widespread attacks targeting a Microsoft SharePoint zero-day vulnerability chain. They used this exploit chain (dubbed "ToolShell") to breach dozens of organizations worldwide after hacking into their on-premise SharePoint servers. "We assess that at least one of the actors responsible for this early exploitation is a China-nexus threat actor. It's critical to understand that multiple actors are now actively explo

Co-op confirms data of 6.5 million members stolen in cyberattack

UK retailer Co-op has confirmed that personal data of 6.5 million members was stolen in the massive cyberattack in April that shut down systems and caused food shortages in its grocery stores. Co-op (short for the Co-operative Group) is one of the United Kingdom's largest consumer co-operatives, operating food stores, funeral services, insurance, and legal services. It is owned by millions of members who receive discounts on services and share in the company's governance. Co-op's CEO, Shirine

The U.S. Is Testing Tiny Nuclear Reactors That Can Go Practically Anywhere

In contrast to other technological advances, the objective for next-generation nuclear reactors seems to be to scale down, not up—an initiative backed by the Department of Energy (DOE). Earlier this month, the DOE announced a conditional agreement made with private firms Westinghouse and Radiant to conduct the first reactor tests at its Demonstration on Microreactor Experiment (DOME) facility, located at Idaho National Laboratory. These experiments, featuring two trailer-sized microreactors, w

Samsung is exploring new wearable form factors such as earrings and necklaces

In Brief Samsung released its first fitness-focused smart ring last year, adding to its stable of wearables that’s mostly comprised of smartwatches. The company is now looking to bolster its lineup with new wearables in different form factors, like glasses, earrings, and necklaces, CNN reported. Won-joon Choi, COO of Samsung’s mobile experience division, told CNN that the company wants to explore form factors that let users communicate and do things without needing their phones. “We believe i

Four arrested in UK over M&S, Co-op, Harrods cyberattacks

The UK's National Crime Agency (NCA) arrested four people suspected of being involved in cyberattacks on major retailers in the country, including Marks & Spencer, Co-op, and Harrods. The arrested individuals are two 19-year-old males, one 17-year-old male, and a 20-year-old female, who were apprehended earlier today in their homes in London and the West Midlands. One of them is Latvian, and the rest are English. The police also confiscated electronic devices to examine them for potential incr

How Video Games Became the New Battleground for Actors and AI Protections

On Wednesday, members of the Screen Actors Guild–American Federation of Television and Radio Artists, or SAG-AFTRA, voted to ratify a new contract for video game performers, officially bringing an end to a nearly yearlong strike. A majority, 95 percent of members, voted in favor of the contract, which guarantees annual raises for three years, increased compensation, and guardrails designed to prevent game companies from giving their work to AI. Actors in the video game industry had been on stri

Four arrested in UK over M&S, Co-op, Harrod cyberattacks

The UK's National Crime Agency (NCA) arrested four people suspected of being involved in cyberattacks on major retailers in the country, including Marks & Spencer, Co-op, and Harrods. The arrested individuals are two 19-year-old males, one 17-year-old male, and a 20-year-old female, who were apprehended earlier today in their homes in London and the West Midlands. One of them is Latvian, and the rest are English. The police also confiscated electronic devices to examine them for potential incr

M&S confirms social engineering led to massive ransomware attack

M&S confirmed today that the retail outlet's network was initially breached in a "sophisticated impersonation attack" that ultimately led to a DragonForce ransomware attack. M&S chairman Archie Norman revealed this in a hearing with the UK Parliament's Business and Trade Sub-Committee on Economic Security regarding the recent attacks on the retail sector in the country. While Norman did not go into details, he stated that the threat actors impersonated one of the 50,000 people working with the

Qantas is being extorted in recent data-theft cyberattack

Qantas has confirmed that it is now being extorted by threat actors following a cyberattack that potentially exposed the data for 6 million customers. "A potential cyber criminal has made contact, and we are currently working to validate this," Qantas shared in an updated statement. "As this is a criminal matter, we have engaged the Australian Federal Police and won't be commenting any further on the details of the contact." Qantas disclosed the attack on July 1st, stating it detected unusual

New macOS malware targets crypto and Web3 startups with fake Zoom update

North Korean hackers are behind a new and unusually sophisticated macOS malware campaign that targets the crypto industry using fake Zoom invites. Here’s how it works. Dubbed “NimDoor” by researchers at SentinelLabs, the attack is more sophisticated than the typical macOS threat, and it chains together AppleScript, Bash, C++, and Nim to exfiltrate data and maintain access in compromised systems. Here’s SentinelLabs’ executive summary of the hack: DPRK threat actors are utilizing Nim-compiled

Qantas discloses cyberattack amid Scattered Spider aviation breaches

Australian airline Qantas disclosed that it detected a cyberattack on Monday after threat actors gained access to a third-party platform containing customer data. Qantas is Australia's largest airline, operating domestic and international flights across six continents and employing around 24,000 people. In a press release issued Monday night, the airline states that the attack has been contained, but a "significant" amount of data is believed to have been stolen. The breach began after a threa

Scattered Spider hackers shift focus to aviation, transportation firms

Hackers associated with "Scattered Spider" tactics have expanded their targeting to the aviation and transportation industries after previously attacking insurance and retail sectors These threat actors have employed a sector-by-sector approach, initially targeting retail companies, such as M&S and Co-op, in the United Kingdom and the United States and subsequently shifting their focus to insurance companies. While the threat actors were not officially named as responsible for insurance sector

BreachForums hacking forum operators reportedly arrested in France

The French police have reportedly arrested five operators of the BreachForum cybercrime forum, a website used by cybercriminals to leak and sell stolen data that exposed the sensitive information of millions. News of the arrests come from Le Parisien, which claims the law enforcement operation was carried out by the cybercrime unit (BL2C) of the Paris police department on Monday. According to reporters, the police carried out simultaneous raids in the regions of Hauts-de-Seine (Paris), Seine-M

Nvidia wants in on the nuclear renaissance, invests in Bill Gates-backed TerraPower

TerraPower, the nuclear startup founded and backed by Bill Gates, announced a new $650 million funding round this week. The investment will help the company build its first commercial power plant. Like other nuclear startups, TerraPower has been riding a wave of interest from hyperscalers, data center developers, and, now, chip designers. Nvidia’s venture arm, NVentures, participated in the round, marking its first energy investment. Bill Gates and HD Hyundai, both already on the cap table, al

Nvidia wants in on the nuclear renaissance, invests in Bill-Gates backed TerraPower

TerraPower, the nuclear startup founded and backed by Bill Gates, announced a new $650 million funding round this week. The investment will help the company build its first commercial power plant. Like other nuclear startups, TerraPower has been riding a wave of interest from hyperscalers, data center developers, and, now, chip designers. Nvidia’s venture arm, NVentures, participated in the round, marking its first energy investment. Bill Gates and HD Hyundai, both already on the cap table, al