CyberInt

Capital One Hack ‘Could be Tip of the Iceberg’

The data breach of US bank Capital One that this week exposed the personal data of over 100-million US customers may be only the start of a series of breach notifications from other organisations. According to research conducted by Israel-based cybersecurity company CyberInt, the threat actor allegedly responsible for the Capital One breach tried to mask their identity and IP address by connecting to ‘IPredator’, a Sweden-based virtual private network.

Suspected Russian-speaking Threat Actors “TA505” Continues Cybercrime Spree Against Global Retailers & Financial Institutions

Investigation from CyberInt’s Research Lab has connected a single gang to a range of attacks against retailers and financial institutions around the world using legitimate remote access software. CyberInt’s managed detection and response solutions protect the world’s leading companies. The group has used the same tactics, techniques and procedures along with the repeated nefarious use of an off-the-shelf commercial remote administration tool, “Remote Manipulator System”.