Frame-14

Privacy Ninja

        • DATA PROTECTION

        • CYBERSECURITY

        • Secure your network against various threat points. VA starts at only S$1,000, while VAPT starts at S$4,000. With Price Beat Guarantee!

        • API Penetration Testing
        • Enhance your digital security posture with our approach that identifies and addresses vulnerabilities within your API framework, ensuring robust protection against cyber threats targeting your digital interfaces.

        • On-Prem & Cloud Network Penetration Testing
        • Boost your network’s resilience with our assessment that uncovers security gaps, so you can strengthen your defences against sophisticated cyber threats targeting your network

        • Web Penetration Testing
        • Fortify your web presence with our specialised web app penetration testing service, designed to uncover and address vulnerabilities, ensuring your website stands resilient against online threats

        • Mobile Penetration Testing
        • Strengthen your mobile ecosystem’s resilience with our in-depth penetration testing service. From applications to underlying systems, we meticulously probe for vulnerabilities

        • Cyber Hygiene Training
        • Empower your team with essential cybersecurity knowledge, covering the latest vulnerabilities, best practices, and proactive defence strategies

        • Thick Client Penetration Testing
        • Elevate your application’s security with our thorough thick client penetration testing service. From standalone desktop applications to complex client-server systems, we meticulously probe for vulnerabilities to fortify your software against potential cyber threats.

        • Source Code Review
        • Ensure the integrity and security of your codebase with our comprehensive service, meticulously analysing code quality, identifying vulnerabilities, and optimising performance for various types of applications, scripts, plugins, and more

        • Email Spoofing Prevention
        • Check if your organisation’s email is vulnerable to hackers and put a stop to it. Receive your free test today!

        • Email Phishing Excercise
        • Strengthen your defense against email threats via simulated attacks that test and educate your team on spotting malicious emails, reducing breach risks and boosting security.

        • Cyber Essentials Bundle
        • Equip your organisation with essential cyber protection through our packages, featuring quarterly breached accounts monitoring, email phishing campaigns, cyber hygiene training, and more. LAUNCHING SOON.

Ukranian Police Arrests Ransomware Gang that Hit over 50 Firms

Ukranian Police Arrests Ransomware Gang that Hit over 50 Firms

Ukrainian police officers have arrested a ransomware affiliate group responsible for attacking at least 50 companies in the U.S. and Europe.

It is estimated that the total losses resulting from the attacks is in excess of one million U.S. dollars.

A 36-year-old resident of Ukraine’s capital Kiev was identified as the leader of the group, which included his wife and three other acquaintances, the police states.

Also Read: The 7 Fundamental Guide on SOP for Social Media Marketing

It is unclear what ransomware strain the gang used to encrypt data on victim computers but they delivered the malware through spam emails.

Three members of the gang received the ransoms from paying victims in cryptocurrency. In exchange, they provided the decryption tool to restore data, the Ukrainian police says in an announcement today.

“According to preliminary data, more than 50 companies were affected by the attacks, the total amount of damage reaches more than one million US dollars,” the police adds.

SSU agent inspecting the actor's computer
SSU agent inspecting the actor’s computer
Source: SSU

To legalize the funds received as ransom payments, the attackers carried out complex financial transactions using online payment services that are banned in Ukraine, passing them around in an extensive network of fictitious identities.

Apart from the ransomware activity, the actors also VPN-like services that enabled other cybercriminals to carry out illegal activities ranging from downloading malware to hacking.

The investigation revealed that these services were used to compromise systems belonging tio government and commercial organizations to steal sensitive data, deploy ransomware, or launch distributed denial-of-service (DDoS) attacks.

Also Read: 7 Principles of Personal Data Processing

One of the defendants was also stealing card data of British citizens to buy items from online stores and then resell them online. This process is a simple way to convert into cash the funds on stolen cards.

The police raided the homes and cars of nine suspects and confiscated computer equipment, bank cards, and flash drives which investigators will examine for additional evidence that could lead to more arrests.

The suspects face criminal charges relevant to money laundering, interference in computers and networks, and the creation, use, distribution, and sale of malicious software.

These arrests are a joint effort from law enforcement officers in the U.K., the U.S. and Ukraine.

Law enforcement crackdown

The cybercrime unit of the Ukrainian police has been very active in recent months, arresting ransomware actors, fraudsters, botnet operators, and phishing actors.

More specifically, the SSU arrested the following actors recently:

0 Comments

KEEP IN TOUCH

Subscribe to our mailing list to get free tips on Data Protection and Data Privacy updates weekly!

Personal Data Protection

REPORTING DATA BREACH TO PDPC?

We have assisted numerous companies to prepare proper and accurate reports to PDPC to minimise financial penalties.
×

Hello!

Click one of our contacts below to chat on WhatsApp

× Chat with us