user avatar
Lawrence Abrams
@LawrenceAbrams
Ransomware, Online Security, and Malware. Owner, Editor in Chief of @bleepincomputer. DM on Signal: LawrenceA.11 * infosec.exchange/@lawrenceabrams
New York
Joined July 2008
Posts
  • user avatar
    All REvil sites are down, including the payment sites and data leak site. 🤔 The public ransomware gang represenative, Unknown, is strangely quiet.
  • user avatar
    TeamViewer warns its corporate network was breached and that they will be transparent with updates. However, they noindexed/nofollowed the breach notification page so its not indexed by search engines. teamviewer.com/en/resources/t…
  • user avatar
    Mogilevich tells me they are selling the data for 15K and will not provide proof of the breach unless you are looking to purchase it and show "proof of funds." Doesn't feel real.
    🚨ALERT🚨 Allegedly, #Mogilevich has breached Epic Games. Country: #USA🇺🇸 Threat Actor: Mogilevich Company: Epic Games Revenue: $5.8 Billion Data Stolen: 189GB Price: Unknown Date: 2024-02-27 #Ransomware #DarkWeb #DarkWebInformer #Leaks #Leaked #Cybersecurity #Cyberattack
  • user avatar
    When an old, defunct ransomware gang releases master decryption keys a year+ later, don't automatically assume they are useless. This person just used a tool to decrypt files stored on an old HDD encrypted by TeslaCrypt. 𝐓𝐞𝐬𝐥𝐚𝐂𝐫𝐲𝐩𝐭 𝐬𝐡𝐮𝐭 𝐝𝐨𝐰𝐧 𝐢𝐧 𝟐𝟎𝟏𝟔.
  • user avatar
    Confused with these PowerShell obfuscation techniques. Anyone able to share how these results in actual commands that are executed?
  • user avatar
    Windows is now prompting users to update their printer drivers after Microsoft's recent PrintNightmare fix However, users can't update the drivers as the update only allows admins to do so now. This is creating an additional Print Nightmare for admins.
  • user avatar
    Setup MFA on your accounts. DarkSide, and almost all ransomware gangs, are buying access to your networks. Even Darkside doesn't know how the victim was initially breached.
  • user avatar
    FBI posting from BreachForum admin, Baphomet's, Telegram account. Possible arrest announcement coming soon?
  • user avatar
    Maze ransomware developer posted again in the BleepingCompuer forums to help people whose antivirus deleted the ransom note.
  • user avatar
    Conti Leaks is bananas. The ransomware gang needed to pay $10k to their lawyer to represent Alla Witte, who was arrested by the FBI.
    2022-02-28:👁️Most fascinating detail yet reveals the Conti/TrickBot cybercrime group plan to support extradited 🇱🇻Latvian national "Allka" aka Alla Witte legal defense with $10K while she is being transferred from FL to OH 🔆Alla Witte was arrested/indicted for the related crime
  • user avatar
    Microsoft is now calling info-stealers that target cryptocurrency wallets .... cryware! Almost all info-stealing malware steal crypto wallets, and have been for years. Please stop making up new malware classifications. It's confusing enough for many as it is.
  • user avatar
    T-Mobile's 7th breach since 2018
    T-Mobile says hackers stole data on 37 million customers - @serghei bleepingcomputer.com/news/security/…
  • user avatar
    Trend Micro making it a little too easy to find vulnerable Log4j servers. Someone is using it to scan server (including BleepingComputer)
  • user avatar
    This is a 𝐬𝐢𝐠𝐧𝐢𝐟𝐢𝐜𝐚𝐧𝐭 security change by Microsoft. We will see a dramatic reduction in malware infections through downloaded Office documents with malicious macros. bleepingcomputer.com/news/microsoft…