Category Archives: Uncategorized

Tracking Threat Actors: Akira, a New Offshoot of Conti

The dozens of cybercriminals that made up the Conti group continue to launch campaigns unabated. Previously in 2022, I blogged about how following the Conti Leaks, the operators of Conti continued on via multiple rebranded ransomware campaigns, such as Royal, BlackBasta, and Quantum, among others.  Since my last two blogs on the Conti/TrickBot gang, multiple members have been […]

Insights from the iSOON Data Leaks

iSOON (also known as Anxun Information), a contractor for the Chinese Ministry of Public Security (MPS) specializing in network penetration research and related services, has had its data exposed on GitHub. The leak has been deemed highly credible due to the detailed nature of the information, including chat logs, vast data volumes, and corroborating indicators […]

Geopolitical Cybercrime: LockBit Ransomware Targets ICBC

What happened? On 8 November 2023, the Industrial and Commercial Bank of China (ICBC) was attacked by the LockBit ransomware group. The ICBC is one of the world’s largest banks and is a Chinese state-owned asset. Financial media sources, such as the Financial Times and Bloomberg reported that the wider financial system was impacted as certain trades on the US Treasury market were […]

Cybercriminals Exploit Compromised Booking.com Accounts for Phishing Attacks

I recently heard about a wave of scams exploiting Booking.com users. So I went and researched it for myself. I came across a post on the r/travel subreddit about such an incident. [1] The user received a seemingly authentic message with a URL via Booking.com’s app. They provided their credit card information and said that “within […]

Top 10 Cyber Threats of 2023

Introduction The year 2023 saw numerous significant events that prompted many organizations to reevaluate their security strategies, including rethinking their choice of vendors and the size of their cybersecurity teams. Unfortunately, amidst these challenges, we witnessed thousands of layoffs in the tech sector, including cybersecurity departments. This occurred despite the relentless and ever-growing threat posed […]