Physical Address
304 North Cardinal St.
Dorchester Center, MA 02124
Physical Address
304 North Cardinal St.
Dorchester Center, MA 02124
The worst part Your iPhone being stolen may not be stolen in itself. On the contrary, it’s a tricky problem struggle with the people you interact with. A new study this week shows that there is a thriving ecosystem of tools that allow criminals to unlock iPhones and target the phone numbers they get inside.
Foxconn, the electronics giant best known for producing iPhones, revealed this week that it had recently “experienced a cyberattack.” A ransomware group called Nitrogen, he said that he was the one who interfered and said it stole 8 TB of data from the developer. Although the theft has not been confirmed, the fact that Foxconn remains an important target is inescapable.
The skies above the United States-Canada border are about to fill up. The Department of Homeland Security and Defense Research and Development Canada is planning to test it this fall testing 5G connected drones gathering “real military intelligence.”
In the Strait of Hormuz, meanwhile, Iran’s Revolutionary Guard Corps is blocking a vital shipping channel. using “mosquito ships” of small boats as the US-Israeli war continues in the country.
And that’s not all. Every week, we create security and privacy stories that we haven’t covered in depth ourselves. Click on the headlines to read all the stories. And be safe out there.
Lesson for future hackers and fraudulent employees: When you decide to hack your employer’s network, remember to close the Microsoft Teams meeting where you were fired, so it doesn’t record you discussing your revenge.
The lesson has now been brought back to Muneeb and Sohaib Akhter, two criminals who pleaded guilty to destroying 96 government databases after they were fired from the federal firm Opexus. (Muneeb has since tried to rebut his guilty plea in handwritten notes to the judge.) Their employer had made the decision to terminate the two 34-year-old brothers after discovering their criminal records, which included multiple counts of theft and wire fraud for crimes as minor as stealing airline miles.
The Teams encounter in which the two men were kicked out lasted only a few minutes. The detailed planning and execution of their revenge campaign, took many hours and was all documented by the same meeting of the groups that failed to close – which was recorded in a court document seen by Ars Technica.
“Still connected? Still on VPN?” Sohaib is heard telling his brother who lived in the same house. “Remove all their reserves?”
“We’re doing small things now,” says Muneeb.
Instruction, the company that manages Canvas’s educational programs, said Monday it has partnered with hackers calling themselves ShinyHunters who compromised Canvas in thousands of US schools and placed ransom messages on victims’ photos. In a message on its website, the company wrote that it “contracted with an unauthorized player who was involved in this.” The statement went on to say that the data stolen by the hackers in their breach — including 275 million student records, according to the hackers — had been “returned” to Instructure, destroyed on their hacked systems, and that no Instructure customers would be recovered. Studies did not make clear whether he paid the ransom, or how much, if any, he paid.
Glad everything is settled. (Until well-intentioned ransomware companies do the next big hack.)
The Dream Market was once the world’s largest drug and paraphernalia market until it was deliberately closed in 2019, following a series of terrorist attacks that arrested many dealers. Now, the alleged operator of the market has reportedly been tracked down and charged, seven years after the illegal market disappeared from the Internet. Owe Martin Andresen was arrested during the shooting of his house and two other places earlier this month. US and German prosecutors say he made millions of dollars from Dream Market commissions, some of which was stolen through gold bars he allegedly bought from a company in Atlanta. Since Dream Market was founded in 2013—the same year that the Silk Road drug market was busted—Andresen’s arrest could lead to the longest drug investigation ever.
OpenAI revealed that two of its employees were affected by an attack on an open-source project called TanStack, a popular library used to develop web applications. In a blog post, the company said it investigated the incident and found unauthorized access and “targeted advertising activity” in limited internal environments. The company found no evidence that user data was accessed or that its manufacturing processes were compromised. However, all macOS users are required to update their OpenAI software by June 12.
The TanStack hack was part of a major attack on open source packages used by developers. Hackers installed malware designed to steal people’s privacy, called BleepingComputer report including Git credentials, GitHub Action tokens, SSH keys, and Claude Code configurations.
Findem, a major American retailer that was previously caught hiding its data-clearing site from Google, says it has taken steps to resolve the issue after three years. The company told Democrats on the Joint Economic Committee this week that a former employee placed “no-index” code on the company’s website, preventing consumers from finding exit options through Google searches, but that company executives were unaware of the issue.
Fidem said it removed the number the day Senator Maggie Hassan, a member of the group, published the February reportwhich called out the company for its conduct, and failure to answer the questions of the JEC minority. In the years since the website was updated, Findem says, only 679 people have visited it.