Brutkey

Catalin Cimpanu
@campuscodi@mastodon.social
Catalin Cimpanu
@campuscodi@mastodon.social

Slides and other materials from the DEF CON 2025 security conference, which took place last week in Las Vegas, are available on the conference's website

https://media.defcon.org/DEF%20CON%2033/?C=M&O=A

Catalin Cimpanu
@campuscodi@mastodon.social

Trend Micro researchers have spotted a new ransomware group called Charon.

Researchers say the ransomware was spotted in targeted attacks against the Middle East's public sector and aviation industry.

It also exhibits advanced APT-style techniques.

https://www.trendmicro.com/en_us/research/25/h/new-ransomware-charon.html

Catalin Cimpanu
@campuscodi@mastodon.social

And here's the ones that shut down or disappeared

Catalin Cimpanu
@campuscodi@mastodon.social

Here's the 51 new ransomware groups that launched in the first half of the year

https://medium.com/s2wblog/ransomware-landscape-in-h1-2025-statistics-and-key-issues-9e8c1a6b4e2c

Catalin Cimpanu
@campuscodi@mastodon.social

New L1TF Reloaded side-channel attack, a new version of L1TF, works against cloud providers

https://openreview.net/forum?id=4tDNvQe2G0

But not AWS, apparently:
https://aws.amazon.com/blogs/security/ec2-defenses-against-l1tf-reloaded/

Catalin Cimpanu
@campuscodi@mastodon.social

Talks from the What Hackers Yearn 2025 security conference, which took place over the weekend in the Netherlands, are available on YouTube.

https://www.youtube.com/playlist?list=PLnOI9rJWBVjGeiOrzhanv1Hjp9Xlf-Sqy

Catalin Cimpanu
@campuscodi@mastodon.social

Some Russian software companies raised prices by up to nine times after Western companies left the Russian market

The Russian Duma now wants to remove their intellectual property rights if they abuse the market

https://www.kommersant.ru/doc/7956905

Catalin Cimpanu
@campuscodi@mastodon.social

A suspected hack and leak from a Kimsuky APT server

PDF:
https://data.ddosecrets.com/APT%20Down%20-%20The%20North%20Korea%20Files/phrack-apt-down-the-north-korea-files.pdf

Catalin Cimpanu
@campuscodi@mastodon.social

CrediX DeFi platform vanishes after $4.5 million hack, deletes socials and takes website offline

https://www.theblock.co/post/366159/credix-team-vanishes-after-4-5-million-exploit-deletes-socials-and-takes-website-offline

Catalin Cimpanu
@campuscodi@mastodon.social

Another report on that supposed Qilin ransomware exit scam

https://darkatlas.io/blog/qilin-ransomware-a-deep-dive-into-operations-opsec-breakdowns