mastodon.xyz is one of the many independent Mastodon servers you can use to participate in the fediverse.
A Mastodon instance, open to everyone, but mainly English and French speaking.

Administered by:

Server stats:

795
active users

#cyberattacks

4 posts3 participants0 posts today

Surge in cyberattacks tied to Russian bulletproof host Proton66 since Jan 8, 2025.

New research links it to brute-force, malware, ransomware—even traffic routed via Kaspersky Lab’s network path.

Attackers exploit 2024–25 zero-days, deploy SuperBlack & WeaXor ransomware, and run phishing via hacked WordPress sites.
#CyberAlerts #CyberAttacks
thehackernews.com/2025/04/hack

The Hacker NewsHackers Abuse Russian Bulletproof Host Proton66 for Global Attacks and Malware DeliveryProton66-hosted IPs launched global cyberattacks since Jan 8, 2025, exploiting critical CVEs to deploy malware.

📨 Latest issue of my curated #cybersecurity and #infosec list of resources for week #16/2025 is out!

It includes the following and much more:

🇪🇺 🇺🇸 The European Commission is providing staff with burner phones and laptops for trips to the U.S.;

🇨🇳 🇺🇸 China is pursuing three alleged U.S. operatives for #cyberattacks on its infrastructure;

🇺🇸 A whistleblower revealed that DOGE may have accessed sensitive labor data from the National Labor Relations Board (NLRB);

💰 A new #ransomware called "DOGE BIG BALLS";

🇺🇸 💸 The U.S. government is ending funding for the Common Vulnerabilities and Exposures (CVE) program... and reverses course, extends MITRE CVE contract;

Subscribe to the #infosecMASHUP newsletter to have it piping hot in your inbox every week-end ⬇️

infosec-mashup.santolaria.net/

The European Commission is providing staff with burner phones and laptops for trips to the US; China is pursuing three alleged U.S. operatives for cyberattacks on its infrastructure; A whistleblower revealed that DOGE may have accessed sensitive labor data from the National Labor Relations Board (NLRB); A new ransomware called "DOGE BIG BALLS"; The U.S. government is ending funding for the Common Vulnerabilities and Exposures (CVE) program... and reverses course, extends MITRE CVE contract;
X’s InfoSec Newsletter🕵🏻‍♂️ [InfoSec MASHUP] 16/2025The European Commission is providing staff with burner phones and laptops for trips to the US; China is pursuing three alleged U.S. operatives for cyberattacks on its infrastructure; A whistleblower revealed that DOGE may have accessed sensitive labor data from the National Labor Relations Board (NLRB); A new ransomware called "DOGE BIG BALLS"; The U.S. government is ending funding for the Common Vulnerabilities and Exposures (CVE) program... and reverses course, extends MITRE CVE contract;

DATE: April 16, 2025 at 08:45AM
SOURCE: HEALTHCARE INFO SECURITY

Direct article link at end of text block below.

Is any #healthcare organization immune from #cyberattacks? t.co/8b9QP70w9D

Here are any URLs found in the article text:

t.co/8b9QP70w9D

Articles can be found by scrolling down the page at healthcareinfosecurity.com/ under the title "Latest"

-------------------------------------------------

Private, vetted email list for mental health professionals: clinicians-exchange.org

Healthcare security & privacy posts not related to IT or infosec are at @HIPAABot . Even so, they mix in some infosec with the legal & regulatory information.

-------------------------------------------------

#security #healthcare #doctors #itsecurity #hacking #doxxing #psychotherapy #securitynews #psychotherapist #mentalhealth #psychiatry #hospital #socialwork #datasecurity #webbeacons #cookies #HIPAA #privacy #datanalytics #healthcaresecurity #healthitsecurity #patientrecords @infosec #telehealth #netneutrality #socialengineering

🚨 Hired by Hackers?

Devs on LinkedIn targeted in stealth malware attacks disguised as job offers.

Slow Pisces, linked to North Korea’s Bybit hack (Feb 2025), is now luring coders with fake challenges to drop RN Stealer—a macOS info-stealer pulling iCloud, SSH, and cloud config files.
#CyberAttacks
thehackernews.com/2025/04/cryp

The Hacker NewsCrypto Developers Targeted by Python Malware Disguised as Coding ChallengesNorth Korea’s Slow Pisces used LinkedIn lures in 2025 to drop RN Stealer malware on crypto developers.

DATE: April 15, 2025 at 08:23AM
SOURCE: HEALTHCARE INFO SECURITY

Direct article link at end of text block below.

What makes #cyberattacks on specialty #healthcare entities, like #dialysis providers, so concerning? t.co/cUze5VE3HS

Here are any URLs found in the article text:

t.co/cUze5VE3HS

Articles can be found by scrolling down the page at healthcareinfosecurity.com/ under the title "Latest"

-------------------------------------------------

Private, vetted email list for mental health professionals: clinicians-exchange.org

Healthcare security & privacy posts not related to IT or infosec are at @HIPAABot . Even so, they mix in some infosec with the legal & regulatory information.

-------------------------------------------------

#security #healthcare #doctors #itsecurity #hacking #doxxing #psychotherapy #securitynews #psychotherapist #mentalhealth #psychiatry #hospital #socialwork #datasecurity #webbeacons #cookies #HIPAA #privacy #datanalytics #healthcaresecurity #healthitsecurity #patientrecords @infosec #telehealth #netneutrality #socialengineering

📨 Latest issue of my curated #cybersecurity and #infosec list of resources for week #15/2025 is out!

It includes the following and much more:

🇺🇸 The U.S. Department of Justice has disbanded its National #Cryptocurrency Enforcement Unit;

🇳🇱 To tackle #espionage, Dutch government plans to screen university students and researchers;

🐛 Another busy #PatchTuesday;

🐛 #NIST will mark all CVEs published before January 1, 2018, as 'Deferred';

🇺🇸 Trump Signs Memorandum Revoking Security Clearance of Former #CISA Director Chris Krebs;

🇨🇳 #China Admitted to Volt Typhoon #Cyberattacks on US Critical Infrastructure;

Subscribe to the #infosecMASHUP newsletter to have it piping hot in your inbox every week-end ⬇️

infosec-mashup.santolaria.net/

The U.S. Department of Justice has disbanded its National Cryptocurrency Enforcement Unit; To tackle espionage, Dutch government plans to screen university students and researchers; Another busy Patch Tuesday; NIST will mark all CVEs published before January 1, 2018, as 'Deferred'; Trump Signs Memorandum Revoking Security Clearance of Former CISA Director Chris Krebs; China Admitted to Volt Typhoon Cyberattacks on US Critical Infrastructure;
X’s InfoSec Newsletter🕵🏻‍♂️ [InfoSec MASHUP] 15/2025The U.S. Department of Justice has disbanded its National Cryptocurrency Enforcement Unit; To tackle espionage, Dutch government plans to screen university students and researchers; Another busy Patch Tuesday; NIST will mark all CVEs published before January 1, 2018, as 'Deferred'; Trump Signs Memorandum Revoking Security Clearance of Former CISA Director Chris Krebs; China Admitted to Volt Typhoon Cyberattacks on US Critical Infrastructure;

Autonome KI könnte die Handelsmärkte zum Absturz bringen. Einem Bericht des Finanzausschusses der Bank of England zufolge könnten fortschrittliche KI-Handelsmodelle lernen, Märkte zu manipulieren, um „Gewinnchancen auszunutzen“, und zwar auf eine Weise, die die Finanzbranche destabilisiert oder absichtlich eine Krise herbeiführt...

#ki #ai #AutonomousAI #crash #trading #handel #manipulation #finanzbranche #krise #cyberattacks

theverge.com/news/646350/auton

The Verge · Autonomous AI could crash trading markets.By Jess Weatherbed

Cyberattacks by AI agents are coming

Agents could make it easier and cheaper for criminals to hack systems at scale. We need to be ready.

by Rhiannon Williams, April 4, 2025

"Agents are the talk of the AI industry—they’re capable of planning, reasoning, and executing complex tasks like scheduling meetings, ordering groceries, or even taking over your computer to change settings on your behalf. But the same sophisticated abilities that make agents helpful assistants could also make them powerful tools for conducting cyberattacks. They could readily be used to identify vulnerable targets, hijack their systems, and steal valuable data from unsuspecting victims.

"At present, cybercriminals are not deploying AI agents to hack at scale. But researchers have demonstrated that agents are capable of executing complex attacks (Anthropic, for example, observed its Claude LLM successfully replicating an attack designed to steal sensitive information), and cybersecurity experts warn that we should expect to start seeing these types of attacks spilling over into the real world."

Read more:
technologyreview.com/2025/04/0
#Cyberattacks #ZeroDay #AI #LLMs #Cyberwarfare

MIT Technology Review · Cyberattacks by AI agents are comingBy Rhiannon Williams

#AI is turbocharging #organizedcrime, #EU #police agency warns🧐⚖️
"States seeking geopolitical advantage r also using criminals as contractors, e report said, citing #cyberattacks against critical #infrastructure & #public institutions.. AI & other #technologies “are a catalyst for crime, & drive #criminal operations’ efficiency by amplifying their speed, reach, & sophistication,” the report said.. EU aims to provide enough funds in coming years to double #Europol's staff"
apnews.com/article/europe-crim

The exterior view of the European police agency Europol headquarters in The Hague, Netherlands, Friday, Dec. 2, 2016. (AP Photo/Mike Corder, File)
AP News · AI is turbocharging organized crime, EU police agency warnsBy Mike Corder

One IP. 180+ C2 domains. One malware: Raspberry Robin.

This Russia-linked botnet is back—smarter, stealthier, and spreading fast.

Used by ransomware gangs + nation-state actors like Cadet Blizzard via USBs, Discord, and fast-flux C2s.

Not just a worm—it's a launchpad for LockBit, Dridex, Clop, and more.
#CyberAlerts #CyberAttacks
thehackernews.com/2025/03/rese

The Hacker NewsResearchers Uncover ~200 Unique C2 Domains Linked to Raspberry Robin Access Broker200+ Raspberry Robin C2 domains mapped via NetFlow; Russian GRU link intensifies cyber threat tracking.

DATE: March 20, 2025 at 09:04AM
SOURCE: HEALTHCARE INFO SECURITY

Direct article link at end of text block below.

Why are some #nursinghomes so vulnerable to #cyberattacks? t.co/MRoSrsH5tU

Here are any URLs found in the article text:

t.co/MRoSrsH5tU

Articles can be found by scrolling down the page at healthcareinfosecurity.com/ under the title "Latest"

-------------------------------------------------

Private, vetted email list for mental health professionals: clinicians-exchange.org

Healthcare security & privacy posts not related to IT or infosec are at @HIPAABot . Even so, they mix in some infosec with the legal & regulatory information.

-------------------------------------------------

#security #healthcare #doctors #itsecurity #hacking #doxxing #psychotherapy #securitynews #psychotherapist #mentalhealth #psychiatry #hospital #socialwork #datasecurity #webbeacons #cookies #HIPAA #privacy #datanalytics #healthcaresecurity #healthitsecurity #patientrecords @infosec #telehealth #netneutrality #socialengineering