Tux Machines

Security Leftovers

Posted by Roy Schestowitz on Mar 14, 2023

=> Programming Leftovers | Need a Simple Reminder App? Try Reminders for Linux (UPDATED)

Housing Authority of the City of Los Angeles discloses a “complex cyber-attack.” We call it a ransomware attack. [Ed: Windows TCO]

=> ↺ Housing Authority of the City of Los Angeles discloses a “complex cyber-attack.” We call it a ransomware attack.

As many of us were waking up to a brand new year, DataBreaches reported that LockBit 3.0 had claimed an attack on the Housing Authority of the City of Los Angeles (HACLA). Screencaps of directories and some files were provided by LockBit as proof of claims. Numerous news outlets picked up the news of the attack, and HACLA quickly confirmed that they were investigating what they called a “cyber event” that was causing disruptions.

Shopee, Carousell most popular platforms used by phishing scammers - Focus Taiwan

=> ↺ Shopee, Carousell most popular platforms used by phishing scammers - Focus Taiwan

Shopee and Carousell, two online marketplaces based in Singapore, have been the two C2C platforms on which customers were most likely to fall victim to phishing scams in Taiwan over the past five weeks, the Criminal Investigation Bureau (CIB) said Sunday.
After analyzing information reported by the public on the 165 anti-fraud hotline, it was found that hackers have recently carried out phishing attacks on C2C ("consumer to consumer" or "customer to customer") online auction platforms such as Shopee and Carousell.

A joke gone too far: “thekilob” falsely accused of being responsible for DC Links breach

=> ↺ A joke gone too far: “thekilob” falsely accused of being responsible for DC Links breach

On March 6, a forum post appeared on BreachForums that listed data for sale from the Health Benefit Exchange Authority, DC.gov
The seller, a respected forum user known as IntelBroker, claimed that the data had been hacked within the past hour and contained information on 170,000 users.

AsynRAT Trojan - Bill Payment (Pago de la factura), (Sun, Mar 12th)

=> ↺ AsynRAT Trojan - Bill Payment (Pago de la factura), (Sun, Mar 12th)

This week the mail server quarantined this file FautraPago392023.gz. I did find it a bit strange after I extracted (gunzip) the file, there was no .exe extension associated with this file. The source and destination addresses are both blank without an actual email address.

=> gemini.tuxmachines.org

Proxy Information
Original URL
gemini://gemini.tuxmachines.org/n/2023/03/14/Security_Leftovers.gmi
Status Code
Success (20)
Meta
text/gemini;lang=en-GB
Capsule Response Time
140.092201 milliseconds
Gemini-to-HTML Time
0.626554 milliseconds

This content has been proxied by September (ba2dc).