Hackmanac Cyber Alerts
Open in Telegram
No data
Subscribers
-624 hours
-567 days
-15230 days
Posts Archive
🚨 #DataLeak - Celebrity Leak Continues
After claiming to have leaked 170K tickets for Taylor Swift's ERAS Tour, today Sp1d3rHunters claims to have leaked another 30K+ tickets for main events.
The tickets allegedly leaked today include events for:
- P!NK: Summer Carnival 2024 (Multiple cities)
- Aerosmith: PEACE OUT The Farewell Tour - (10+ cities)
- Chris Brown - The 11:11 Tour
- Neil Young - Crazy Horse - Love Earth Tour July 08
- Alanis Morissette - The Triple Moon Tour - July 13
- Red Hot Chili Peppers: Unlimited Love Tour - July 17
- Bruce Springsteen and The E Street Band 2024 Tour
- USHER: Past Present Future
- Pearl Jam
- Sammy Hagar
- Stevie Nicks
- Steve Miller Band
- Cirque du Soleil
#DataBreach #Ticketmaster #Snowflake
https://x.com/H4ckManac/status/1810238964407718215
📢 Only 3 days left until we launch our cutting-edge Cyber Threat Monitoring & Impact Analysis platform.
🗓️Don't miss out!
#hackrisk #hackmanac #cyberthreatmonitoring #attackimpactanalysis
🚨 #CyberAttack 🚨
🇻🇳 #Vietnam: HITC Telecom has been listed as a victim by the Stormous ransomware group.
Allegedly, the attack led to the exfiltration of 182 GB of data.
#Ransomware
https://x.com/H4ckManac/status/1809943053324431829
Do you know what the largest crypto theft of the first half of 2024 is?
The theft at the 🇯🇵Japanese cryptocurrency exchange DMM Bitcoin, which on May 31st reported a significant theft of 4,502.9 Bitcoin (approximately $308 million) from one of its wallets.
"At approximately 1:26 p.m. on Friday, May 31, 2024, we detected an unauthorized leak of Bitcoin (BTC) from our wallet," DMM Bitcoin told customers.
This crypto theft ranks "only" eighth in the list of the largest crypto heists of all time.
Below is the top 10 ranking:
1️⃣Poly Network - $611 million
2️⃣BSC Token Hub - $569 million
3️⃣Ronin Network - $540 million
4️⃣Coincheck - $532 million
5️⃣FTX - $482 million
6️⃣Mt. Gox - $470 million
7️⃣Wormhole Portal - $325 million
8️⃣DMM Bitcoin - $308 million
9️⃣Kucoin - $281 million
🔟BitMart - $225 million
In fact, DMM Bitcoin displaces Euler Finance, which with $199 million, was previously in the tenth position.
#Crypto #Bitcoin
https://x.com/H4ckManac/status/1809898409861513520
⚠️#DataBreach
Roblox has informed all developers registered on FNTech about a recent data breach.
The compromised data includes full names, email addresses, and IP addresses. Affected individuals have been notified via email at their FNTech registration address.
HIBP reports that impacted data included 10k unique email addresses, names, and IP addresses.
https://haveibeenpwned.com/PwnedWebsites#RobloxDeveloperConference2024
#Roblox
https://x.com/H4ckManac/status/1809841632553865313
⚠️ CVE-2024-6376 (CVSS 9.8) in MongoDB Compass Exposes Systems to Code Injection Risks
A critical security vulnerability, CVE-2024-6376, has been discovered in MongoDB Compass, a widely-used GUI for MongoDB data management.
This vulnerability affects MongoDB Compass versions prior to 1.42.2, posing severe risks such as data loss and unauthorized access.
The National Vulnerability Database (NIST) has rated this flaw with a CVSS score of 9.8. MongoDB, Inc. has released version 1.42.2 to address the issue, urging users to update immediately.
NIST: https://nvd.nist.gov/vuln/detail/CVE-2024-6376
Full article: https://securityonline.info/cve-2024-6376-cvss-9-8-in-mongodb-compass-exposes-systems-to-code-injection-risks/
#MongoDB #CVE
https://x.com/H4ckManac/status/1809838917203493180
🚨 #CyberAttack 🚨
🇺🇸 #USA: Baim Institute for Clinical Research has been listed as a victim by the RansomHub ransomware group.
Allegedly, the attack led to the exfiltration of 175 GB of data.
Ransom deadline: 24th Jul 24.
#Ransomware
https://x.com/H4ckManac/status/1809829459572171127
📢 Exciting news! We're just 4 days away from unveiling a new era in Cyber Threat Monitoring and Attack Impact Analysis.
🗓️Stay tuned for the launch!
#hackrisk #hackmanac #cyberthreatmonitoring #attackimpactanalysis
+3
🚨 NTT #CyberAttack Update: 🚨
The hacking group RansomHub leaks the data they claim to have exfiltrated from Romanian branch of NTT.
Upon initial analysis, the published leak contains Personal and Recruitment Data, Project and Business Data, Backup Files, Client and Financial Data, legal documents, Covid files, and numerous other miscellaneous documents.
#Ransomware
https://x.com/H4ckManac/status/1809469397058109863
📢Want to see how we combine Cyber Threat Monitoring with Attack Impact Analysis?
🗓Only 5 days until the big reveal. Stay tuned!
#hackrisk #hackmanac #cyberrisk #threatintelligence
🇺🇸#USA:Florida Department of Health #CyberAttack Update:
The hacking group RansomHub leaks the data they claim to have exfiltrated from the Florida Department of Health.
#ransomware
https://x.com/H4ckManac/status/1809200205713096736
🚨🚨 #CyberAttack #Healthcare 🚨🚨
🇿🇦 #SouthAfrica: National Health Laboratory Services (NHLS) has been listed as a victim by the Black Suit ransomware group.
The hackers allegedly exfiltrated 1.2 TB of data, including business data employee data, product data (analysis, etc.), financial data, genetic tests, medical data, and other data from shares and personal folders.
NHLS announced at the end of June that it is grappling with a ransomware attack that has severely disrupted the distribution of lab results, as the country deals with an mpox outbreak.
June 26th article:
https://therecord.media/south-africa-lab-ransomware-mpox-outbreak
#Ransomware
Airtel #DataBreach Update
Airtel has published an official statement regarding the alleged breach. "We have conducted a thorough investigation and can confirm that there has been no breach whatsoever from Airtel systems."
https://x.com/H4ckManac/status/1809167445027856623
Hackers compromised #Ethereum ‘s mailing list provider and sent phishing messages to the members attempting to drain their crypto funds
https://securityaffairs.com/165254/hacking/hackers-compromised-ethereum-mailing.html
🚨 #CyberAttack 🚨
🇺🇸#USA - The ransomware group Play has added six US companies to its victim list:
- Fareri Associates
- Prairie Athletic Club
- Innerspec Technologies
- INDA
- Texas Recycling
- Elyria Foundry
For all of them, the ransom deadline is set for July 11.
#ransomware
https://x.com/H4ckManac/status/1809140171683528910
🚨 #CyberAttack 🚨 - #Supplychain attack?
🇨🇦#Canada: The ransomware group Space Bears has added three Canadian entities to its victim list: Haylem, Lexibar, and Un Museau vaut mille Mots.
What do these three companies have in common?
They are all based in Terrebonne and share a mission to support individuals with language-related difficulties.
Are there signs of a supply chain attack?
Evidence suggests that the criminal group initially breached Haylem, the parent company, and subsequently infiltrated the systems of Lexibar and Un Museau vaut mille Mots.
Further analysis will reveal more details.
#Ransomware
https://x.com/H4ckManac/status/1809136148914078200
A threat actor is claiming to sell the records of 375 million Airtel India customers.
There are red flags indicating that it might be the data previously stolen in a breach in 2019, where personal details like names, phone numbers, email addresses, and Aadhaar card numbers of 320 million customer records were exposed due to a system vulnerability.
Moreover, the sample provided by the threat actor is very small, and the post in the hacking forum has been removed.
Analysis still ongoing.
#DataBreach
https://x.com/H4ckManac/status/1809120687614763090
🚨#BREAKING - Allegedly, 170k Taylor Swift ERAS Tour Barcodes Leaked for Free, 30 Million More Event Barcodes Threatened; Hackers Demand $2 Million from Ticketmaster
A few hours ago, Sp1d3rHunters—a fusion of the names of two threat actors, ShinyHunters and Sp1d3r, known for the claimed breaches at Ticketmaster and multiple Snowflake-related breaches—leaked 170k valid barcodes for free for Taylor Swift's ERAS Tour events, which can be used for entry at upcoming concerts in Miami, New Orleans, and Indianapolis.
According to their post, this is just the first of many data leaks the cybercriminals will expose if their demand of $2,000,000 is not paid. They threaten to leak 680 million users' information and 30 million more event barcodes, valued at $4,665,615,212.00. These include tickets for events featuring P!nk, Sting, sporting events like F1 Formula Racing, MLB, NFL, and thousands more.
Next week, Sp1d3rHunters plans to release another celebrity leak.
#DataBreach #Ticketmaster #Snowflake #TaylorSwift
New #ransomware group Volcano Demon uses phone calls to pressure victims
https://therecord.media/ransomware-group-volcano-demon-lukalocker
🚨 #CyberAttack 🚨
🇮🇳 #India: Eicher Motors Limited (EML) has been listed as a victim by the LockBit 3.0 ransomware group.
The sample provided by the hacking group shows data such as PII and confidentiality agreements.
Ransom deadline: 23rd Jul 24.
Eicher Motors Limited is an Indian multinational automotive company that manufactures motorcycles and commercial vehicles, headquartered in New Delhi. Eicher is the parent company of Royal Enfield, a manufacturer of middleweight motorcycles.
#Ransomware
https://x.com/H4ckManac/status/1808912853526794442
