Kazakhstani ransomware suspect arrested in South Koreau2019s criminal case
Authorities allege he led a ransomware operation that breached corporate servers, encrypted sensitive data, and demanded Bitcoin payments.
The technique exploits the .NET AppDomainManager mechanism, allowing attackers to run malicious code inside a trusted process.
Authorities allege he led a ransomware operation that breached corporate servers, encrypted sensitive data, and demanded Bitcoin payments.
The attacker posed as an external IT support worker using a fake Microsoft 365 domain designed to appear legitimate.
Tyler Buchanan and his co-conspirators targeted at least a dozen companies and stole at least $8 million from victims across the US.
More recent incidents show a shift toward social engineering and alternative entry points.
Attackers are exploiting a known vulnerability (CVE-2024-3721) affecting TBK DVR-4104 and DVR-4216 devices.
In brief: Microsoft and Adobe fix zero-days, the Russian Grinex crypto exchange hacked for 1 billion rubles, and more.