News

Rescana
rescana. com > post > kddi-email-system-breach-exposes-up-to-14-2-million-credentials-across-six-japanese-isps

KDDI Email System Breach Exposes Up to 14. 2 Million Credentials Across Six Japanese ISPs

1+ hour, 18+ min ago  (447+ words) Upon detection, KDDI'implemented immediate technical countermeasures, including blocking the attacker and modifying the affected system to prevent further damage. The company also began a coordinated response with the affected ISPs and notified Japan's Personal Information Protection Commission and the Ministry…...

Google News
rescana. com > post > active-phishing-campaign-exploits-calendly-and-photo-zip-files-to-target-hotels-with-node-js-malware-microsoft-alerts-ho

Active Phishing Campaign Exploits Calendly and Photo ZIP Files to Target Hotels with Node. js Malware " Microsoft Alerts Hospitality Sector " Rescana

1+ hour, 18+ min ago  (266+ words) Active Phishing Campaign Exploits Calendly and Photo ZIP Files to Target Hotels with Node. js Malware " Microsoft Alerts Hospitality Sector Rescana The threat actors behind this campaign remain unattributed as of June 2026. Their operational sophistication is evidenced by the use…...

Symbols: cert-ua
Rescana
rescana. com > post > fortibleed-credential-harvesting-campaign-active-exploitation-of-fortigate-firewalls-compromises-over-110-million-creden

Forti Bleed Credential Harvesting Campaign: Active Exploitation of Forti Gate Firewalls Compromises Over 110 Million Credentials

4+ day, 12+ min ago  (619+ words) Rescana Forti Bleed Credential Harvesting Campaign: Active Exploitation of Forti Gate Firewalls Compromises Over 110 Million Credentials The Forti Bleed campaign represents a highly sophisticated, large-scale credential harvesting operation targeting Forti Gate firewalls globally. Since early 2026, a Russian-speaking, financially motivated Initial…...

Symbols: cwe-24,cwe-78
Rescana
rescana. com > post > active-exploitation-alert-fake-open-source-software-sites-dominate-google-search-to-distribute-malware-via-advanced-tds

Active Exploitation Alert: Fake Open-Source Software Sites Dominate Google Search to Distribute Malware via Advanced TDS

3+ week, 3+ day ago  (576+ words) Rescana Active Exploitation Alert: Fake Open-Source Software Sites Dominate Google Search to Distribute Malware via Advanced TDS A sophisticated and rapidly evolving cybercriminal campaign is exploiting the trust in open-source and freeware tools by deploying fake websites that closely mimic…...

Rescana
rescana. com > post > cyber-espionage-attack-five-month-compromise-of-stock-exchange-executive-s-outlook-mailbox-via-covert-cloud-exfiltration

Cyber Espionage Attack: Five-Month Compromise of Stock Exchange Executive's Outlook Mailbox via Covert Cloud Exfiltration

3+ week, 3+ day ago  (409+ words) Attribution remains unconfirmed. The operation used public tools, legitimate cloud infrastructure, and did not reuse infrastructure tied to known groups, making technical attribution difficult. However, the target profile, dwell time, and operational discipline strongly suggest a state-linked actor. No direct…...

Rescana
rescana. com > post > active-exploitation-alert-gpu-mining-malware-targeting-windows-systems-via-seo-poisoning-and-ai-chatbot-recommendations

Active Exploitation Alert: GPU Mining Malware Targeting Windows Systems via SEO Poisoning and AI Chatbot Recommendations

1+ mon, 20+ hour ago  (723+ words) Rescana Active Exploitation Alert: GPU Mining Malware Targeting Windows Systems via SEO Poisoning and AI Chatbot Recommendations A new wave of cryptojacking attacks is leveraging both SEO poisoning and AI chatbot manipulation to distribute GPU mining malware at scale. This…...

Symbols: nasdaq:msft,nyse:hpq
Rescana
rescana. com > post > active-exploitation-alert-grandoreiro-banking-trojan-and-btmob-rat-targeting-windows-and-android-users-in-global-financi

Active Exploitation Alert: Grandoreiro Banking Trojan and BTMOB RAT Targeting Windows and Android Users in Global Financial Malware Campaigns

1+ mon, 21+ hour ago  (363+ words) The malware's configuration is highly modular, enabling dynamic targeting of specific banks such as Abanca, Banco de Portugal, BBVA PT, Caixa Geral Depositos, Santander, Revolut, and Wise. It is capable of real-time web injection, credential harvesting, and session hijacking, allowing…...

Symbols: nasdaq:alkt
Rescana
rescana. com > post > first-vpn-takedown-operation-saffron-dismantles-criminal-vpn-used-by-25-ransomware-groups-2014-2026

First VPN Takedown: Operation Saffron Dismantles Criminal VPN Used by 25 Ransomware Groups (20142026)

1+ mon, 4+ day ago  (341+ words) First VPN'accepted payments via Bitcoin, Perfect Money, Webmoney, Ego Pay, and Inter Kass, with subscription durations ranging from one day ($2) to one year ($483). Technical support was provided through a self-hosted Jabber server and encrypted Telegram messaging (The Hacker News). The…...

Symbols: otcmkts:reni
Rescana
rescana. com > post > nvidia-geforce-now-data-breach-armenian-users-personal-information-exposed-via-gfn-am-partner-system

NVIDIA Ge Force NOW Data Breach: Armenian Users" Personal Information Exposed via GFN. am Partner System " Rescana

1+ mon, 2+ week ago  (373+ words) There is no evidence of impact to NVIDIA's operations in other countries managed by GFN. am, such as Azerbaijan, Georgia, Kazakhstan, Moldova, Ukraine, or Uzbekistan. The breach is confined to Armenian users, and no spillover to other sectors or geographies…...

Symbols: nasdaq:nvda
Rescana
rescana. com > post > robinhood-account-creation-vulnerability-exploited-for-phishing-html-injection-i

Robinhood Account Creation Vulnerability Exploited for Phishing: HTML Injection in Device Metadata Bypasses Email Security

1+ mon, 4+ week ago  (227+ words) From a MITRE ATT&CK perspective, the campaign leveraged techniques including T1566. 001 (Phishing: Spearphishing Attachment), T1190 (Exploit Public-Facing Application), and T1589 (Gather Victim Identity Information). The attackers" use of breached data for targeting, combined with sophisticated email and web spoofing, reflects a mature…...

Symbols: nasdaq:hood