■■■□□ UNC2891 Bank Heist: Physical ATM Backdoor & Linux Forensic Evasion Evasion Deep dive into UNC2891’s multi‑stage bank intrusion: Raspberry Pi ATM implant, bind mount evasion, Dynamic DNS C2, and a CAKETAP move toward HSM manipulation. https://www.group-ib.com/blog/unc2891-bank-heist/
All posts by John Doe
July 31, 2025 at 11:42PM
■■□□□ Use of OSINT in criminal cases.
July 31, 2025 at 11:36PM
■■■□□ Hackers plant 4G Raspberry Pi on bank network in failed ATM heist. https://www.bleepingcomputer.com/news/security/hackers-plant-4g-raspberry-pi-on-bank-network-in-failed-atm-heist/
July 31, 2025 at 07:39PM
■■■■□ After genocide; Microsoft targets open source ‘Libre Office’ developer Mike Kaganski. This happened without warning, and Microsoft also rejected appeal. https://www.neowin.net/news/microsoft-bans-libreoffice-developers-account-without-warning-rejects-appeal/
July 31, 2025 at 12:10PM
■■■■■ IoT / DJI Drones: The research paper, published last year by Yejun Kim, Kwangsoo Cho, and Seungjoo Lee from the School of Cybersecurity in South Korea, provides a comprehensive overview of existing knowledge and proposes a methodology and framework for analyzing drone firmware to identify security flaws and vulnerabilities, specifically focusing on DJI drones.…
July 31, 2025 at 10:00AM
■■□□□ UAE: Emirates Group (owners of famous airline) has decided to stop advertising as there has been a surge in phishing campaigns. 📻 Radio Dubai (Dubai Eye)
July 31, 2025 at 12:41AM
■■■□□ Following the major Aeroflot breach, more Russian organisations have been experiencing severe disruption caused by cyberattacks. Namely, Gosuslugi — the app for all government services i.e. document issuing, and Pochta Rossii — the largest state-owned post service.
July 30, 2025 at 09:20PM
■■□□□ Hacker-Group claim of cyberattack on Israeli news. Source: #DieNet_Network Five minutes separate us from a complete disconnection from the Israeli Channel i24 and the complete loss of the Internet broadcast.
July 30, 2025 at 02:35PM
■■■□□ Denial of Service Attack: The Jerusalem Post Downed By DieNet v4. https://check-host.net/check-report/2a8cb7b6k14e
July 29, 2025 at 07:39PM
■■■□□ UNC3886 Hackers Exploiting 0-Days in VMware vCenter/ESXi, Fortinet FortiOS, and Junos OS. UNC3886 Hackers Exploiting 0-Days in VMware vCenter/ESXi, Fortinet FortiOS, and Junos OS
