#datatheft

2026-02-05

Trying to evaluate vivaldi as a possible replacement for floorp (unless firefox reverses its stance on AI, which, very excitingly, is a possibility!).

But the lack of containers in vivaldi is so disorienting. It makes me feel so damn vulnerable because I know that ALL the sites are having a feast sharing my profile and fingerprints with each other. Nasty. It just makes me sick.

#vivaldi #firefox #browser #dataTheft #usersAreFodder

2026-02-03

DATE: February 03, 2026 at 08:28AM
SOURCE: HEALTHCARE INFO SECURITY

Direct article link at end of text block below.

Do most #ransomware #encryption attacks on #healthcare entities these days also involve #datatheft? t.co/bC2hnTeHWo

Here are any URLs found in the article text:

t.co/bC2hnTeHWo

Articles can be found by scrolling down the page at healthcareinfosecurity.com/ under the title "Latest"

-------------------------------------------------

Private, vetted email list for mental health professionals: clinicians-exchange.org

Healthcare security & privacy posts not related to IT or infosec are at @HIPAABot . Even so, they mix in some infosec with the legal & regulatory information.

-------------------------------------------------

#security #healthcare #doctors #itsecurity #hacking #doxxing #psychotherapy #securitynews #psychotherapist #mentalhealth #psychiatry #hospital #socialwork #datasecurity #webbeacons #cookies #HIPAA #privacy #datanalytics #healthcaresecurity #healthitsecurity #patientrecords @infosec #telehealth #netneutrality #socialengineering

2026-02-03

Tracking the Expansion of ShinyHunters-Branded SaaS Data Theft

Pulse ID: 69819ed94efa9a0246614ee5
Pulse Link: otx.alienvault.com/pulse/69819
Pulse Author: Tr1sa111
Created: 2026-02-03 07:08:09

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#CyberSecurity #DataTheft #InfoSec #OTX #OpenThreatExchange #bot #Tr1sa111

2026-02-02

Tracking the Expansion of ShinyHunters-Branded SaaS Data Theft

Threat actors associated with ShinyHunters-branded extortion operations are expanding their tactics, targeting cloud-based SaaS applications for data theft and extortion. The attackers use sophisticated voice phishing and credential harvesting to gain initial access, then exfiltrate sensitive data from various platforms. They employ aggressive extortion tactics, including harassment and DDoS attacks. The activity involves multiple threat clusters (UNC6661, UNC6671, UNC6240) and targets a growing number of cloud platforms. The attackers leverage social engineering to bypass MFA and use tools like ToogleBox Recall to cover their tracks. This activity highlights the effectiveness of social engineering and the importance of phishing-resistant MFA methods.

Pulse ID: 697dc01e979a31197f296e38
Pulse Link: otx.alienvault.com/pulse/697dc
Pulse Author: AlienVault
Created: 2026-01-31 08:41:02

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#Cloud #CredentialHarvesting #CyberSecurity #DDoS #DataTheft #DoS #Extortion #ICS #InfoSec #MFA #OTX #OpenThreatExchange #Phishing #RAT #SocialEngineering #bot #AlienVault

BGDon 🇨🇦 🇺🇸 👨‍💻BrentD@techhub.social
2026-01-31

ChatBots "talking" to ChatBots.

1. Ok, we knew this would happen.
2. It has enormous adoption in the geeksphere - not surprising.
3. It's wickedly insecure.
4. Yes, it can steal your Crypto - not surprising!
5. Yes, there is personal information stealing Malware (see #4 above) masquerading as prediction market trading automation tools - not surprising!
6. The odds of a "Challenger level disaster" happening are real - not surprising!
6. Finally, NO ONE knows where this is stuff will end up.

What is the stage beyond wild wild west? That is where this thing is now. simonwillison.net/2026/Jan/30/ #OpenClaw #Moltbod #Clawdbot #AI #Opensource #Malware #PromptInjection #DigitalAssistent #ChatBot #SocialNetwork #AIAgents #Security #DataProtection #PersonalData #DataTheft #Crypto #PredictionMarket #Claude

ChatBot interface on smart phone
2026-01-30

When Malware Talks Back

A sophisticated multi-stage malware campaign employs living-off-the-land techniques and in-memory payload delivery to evade security controls. The infection chain begins with a hidden batch file that executes an embedded PowerShell loader, which then injects Donut-generated shellcode into legitimate Windows processes. The final payload is a heavily obfuscated .NET framework implementing advanced anti-analysis techniques, credential harvesting, surveillance capabilities, and remote system control. Data exfiltration occurs via Discord webhooks and Telegram bots. The malware, identified as Pulsar RAT, features live chat functionality and background payload deployment, demonstrating a modern, high-evasion Windows malware operation designed for long-term access and large-scale data theft.

Pulse ID: 697c7ba66b8f43dd7b4370c5
Pulse Link: otx.alienvault.com/pulse/697c7
Pulse Author: AlienVault
Created: 2026-01-30 09:36:38

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#CredentialHarvesting #CyberSecurity #DataTheft #Discord #InfoSec #Malware #NET #OTX #OpenThreatExchange #PowerShell #RAT #ShellCode #Telegram #Windows #bot #AlienVault

2026-01-30

NFCShare Android Trojan: NFC card data theft via malicious APK

A new Android trojan, named NFCShare, has been discovered targeting Deutsche Bank customers through a phishing campaign. The malware, disguised as a banking app update, prompts users to perform a fake card verification process. It exploits NFC technology to steal card data and PINs, which are then exfiltrated to a remote WebSocket endpoint. The trojan's distribution, user flow, and technical analysis are detailed, including its NFC reading capabilities and string obfuscation techniques. The malware shows links to Chinese-linked tooling and similarities to other NFC-based threats. IOCs include hashes, package details, and network indicators.

Pulse ID: 697c693880e53e3f443b484c
Pulse Link: otx.alienvault.com/pulse/697c6
Pulse Author: AlienVault
Created: 2026-01-30 08:18:00

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#APK #Android #Bank #Chinese #CyberSecurity #DataTheft #Endpoint #InfoSec #Malware #OTX #OpenThreatExchange #Phishing #RAT #Trojan #bot #AlienVault

2026-01-20

Inside a Multi-Stage Windows Malware Campaign

A sophisticated multi-stage malware campaign targeting Windows users in Russia has been identified. The attack chain begins with social engineering lures and progresses to a full system compromise, including security bypass, surveillance, and ransomware delivery. It abuses Defendnot to disable Microsoft Defender and uses modular hosting across cloud services. The attack employs various techniques such as PowerShell scripts, obfuscated VBScript, and COM object manipulation. It deploys Amnesia RAT for data theft and surveillance, Hakuna Matata ransomware for file encryption, and a WinLocker component for system lockout. The campaign demonstrates how full system compromise can be achieved without exploiting software vulnerabilities, instead relying on social engineering and abuse of legitimate Windows features.

Pulse ID: 696fc0723c9020d483708e56
Pulse Link: otx.alienvault.com/pulse/696fc
Pulse Author: AlienVault
Created: 2026-01-20 17:50:42

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#Cloud #CyberSecurity #DataTheft #Encryption #InfoSec #Malware #Microsoft #MicrosoftDefender #OTX #OpenThreatExchange #PowerShell #RAT #RansomWare #Russia #SocialEngineering #VBS #Windows #bot #AlienVault

He called himself an ‘untouchable hacker god’. But who was behind the biggest crime Finland has ever known? theguardian.com/technology/202
#cybersecurity #datatheft #medical #psychiatrist #threatactor

2026-01-12

ValleyRAT_S2 Financial Data Theft Campaign

Pulse ID: 69655ae69953e1b6eaf1b3e4
Pulse Link: otx.alienvault.com/pulse/69655
Pulse Author: cryptocti
Created: 2026-01-12 20:34:46

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#CyberSecurity #DataTheft #FinancialData #InfoSec #OTX #OpenThreatExchange #RAT #bot #cryptocti

Negative PID Inc.negativepid
2025-12-29

The Equifax data breach was one of the worst cases of identity theft across North America and the UK. It exposed credit card numbers, loan and mortgage information, credit scores, job history, and real addresses, making the victims extremely vulnerable targets. Here's what we've learnt from it.

negativepid.blog/the-equifax-d
negativepid.blog/the-equifax-d

2025-12-28

Preventing AI Chat Data Theft: Enhancing Security Against Malicious Chrome Extensions & How to Protect Your Privacy

A recent exposé by PCMag, based on research from cybersecurity firm Koi, revealed that several popular Chrome and Edge browser extensions were secretly collecting entire conversation logs from users' interactions with major AI chatbots..

This case of malicious extensions powerfully underscores the critical importance of transparency, informed consent, robust regulatory oversight, and continuous user education in protecting sensitive AI chat data.

#AIChat #AIChatData #ChromeExtensions #Browser #GoogleChrome #BrowserExtensions #ChromeExtensionsPrivacyRisk #Tech #Technology #TechNews #DigitalPrivacy #TheGeekline #DataTheft

maniainc.com/technology/preven

2025-12-24

I left FB 15yrs ago. Never regretted it. I don't use LinkedIn or Insta or TikTok.

95% of my friends message through Signal rather than Meta ie Messenger (FB) or WApp

One of my dearest friends refuses to get a Signal account and leave Meta/WApp bc she says "it's another app to download and they're all the same".  Im in Aus. She's in UK. I don't want to lose touch but I want to close WApp.

Give me sthg WATERTIGHT, people, to convince her Meta/WApp is fucked. Bc it is.

I've told her about Meta's anti LGBTQI stance, the data theft, the lack of privacy. Her son is gay but so far nothing has got through to her...

#lgbtqiaplus #datatheft #meta #signalapp #onlineprivacyconcerns #onlineprivacy #facebooksucks #tiktoksucks #instagramsucks

image/jpeg
Negative PID Inc.negativepid
2025-12-08

The Equifax data breach was one of the worst cases of identity theft across North America and the UK. It exposed credit card numbers, loan and mortgage information, credit scores, job history, and real addresses, making the victims extremely vulnerable targets. Here's what we've learnt from it.

negativepid.blog/the-equifax-d
negativepid.blog/the-equifax-d

Ars Technica Newsarstechnica@c.im
2025-12-04

In comedy of errors, men accused of wiping gov databases turned to an AI tool arstechni.ca/Rpne #contractors #datatheft #Biz&IT #courts #AI

2025-11-28

Perth hacker Michael Clapsis jailed after setting up fake Qantas Wi-Fi, stealing sex videos

A Perth hacker who stole intimate videos from women and set up a fake Qantas Wi-Fi network to…
#NewsBeep #News #Headlines #afp #Airportsecurity #AU #Australia #datasecurity #DataTheft #fakewifi #michaelclapsis #perthairport #perthcourts #perthmagistratescourt #perthnews #Qantas #socialmediasecurity #wacourts #wadatatheft #wanews #WAPolice #wifi
newsbeep.com/277013/

Negative PID Inc.negativepid
2025-11-25

The Equifax data breach was one of the worst cases of identity theft across North America and the UK. It exposed credit card numbers, loan and mortgage information, credit scores, job history, and real addresses, making the victims extremely vulnerable targets. Here's what we've learnt from it.

negativepid.blog/the-equifax-d
negativepid.blog/the-equifax-d

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst