Malicious cyber activity affected water systems in at least seven states last week, forcing some facilities to switch to manual operations and prompting the FBI and Environmental Protection Agency (EPA) to warn facilities nationwide of hackers. Minnesota IT Services said in a statement last week that at least 30 municipal water facilities were targeted 26-27 July and that it had “immediately activated the state's cybersecurity incident response capabilities.” Over the weekend, Michigan also re
fbi (76)
The National Cyber Security Center (NCSC), alongside the FBI, NSA, and sixteen other international partners, has issued a joint advisory for critical national infrastructure (CNI) sectors. The guidance urges organizations to improve defenses against Russian intelligence services, specifically FSB Center 16. This actor is actively scanning for vulnerable routers, exploiting well-known Cisco device flaws, weak SNMP passwords, and legacy protocols.[1]
In an expert comment, Ian Robinson, Chief Pro
The FBI and DOJ announced earlier this month the seizure of a cloud computing account used by subsidiaries of the Cambodia-based Huione Group. These subsidiaries are alleged to have assisted individuals and organizations who move proceeds of cryptocurrency investment frauds, cyber scams, and other criminal activities across cryptocurrency blockchains and to convert those illicit gains into the legitimate banking system undetected. Law enforcement traced cyber-enabled fraud proceeds to cryptocu
The FBI have remotely reset thousands of home and small office routers after releasing a joint press release detailing how Russia has been compromising devices.
Some brands of routers are known for lasting upwards of a decade, and while that's great for the consumer, the developers will often stop releasing updates to keep the router secure. This leaves them open to compromise by attackers, specifically Russia’s Main Directorate of the General Staff (GRU), tracked as APT28 or Fancy Bear, which
In an increasingly interconnected, digital world, it's essential to make the right choices for your security on the Internet. There are good habits to get into to improve online safety, and you should keep your ear to the ground to know when a new threat has emerged or become more prevalent. For example, the Federal Bureau of Investigation recently warned that something as seemingly safe and secure as a home or small business Wi-Fi network could be in danger. This increasingly common criminal th
The Federal Bureau of Investigation (FBI) has officially confirmed that a limited number of its servers have been compromised in a cybersecurity incident. The breach affected surveillance systems used by the FBI for lawful foreign intelligence interception operations, with investigators suspecting state-backed Chinese hackers based on suspicious activity patterns. The security breach occurred during the second week of February 2026 and was detected on 17 February 2026. The incident has raised
Even though Valentine’s Day is over, the romance scam schemes still persist. While you might be out there searching for your Valentine, scammers were out there looking for victims. The FBI is reporting record-high numbers of what they are calling "romance scams," people online pretending to be a potential love interest in an attempt to steal your money.
The FBI is urging people to think twice about who they might be engaging. "This is a whiteboard that was found in the scam compound in Cambod
Recently, the Federal Bureau of Investigation (FBI) released Operation Winter Shield. This document outlines critical actions organizations can take to enhance resilience against cyber intrusions, based on FBI recommendations.
Phish-Resistant Authentication:
- Implement phish-resistant methods like FIDO2 security keys for high-impact accounts and critical systems.
- Require number-matching and domain display for authenticator apps, avoiding push-only approvals.
- Eliminate SMS-based multi-factor au
The US Federal Bureau of Investigation (FBI) has issued a recent advisory, dated 8 January 2026, warning about an emerging and sophisticated cyber threat: North Korean state-sponsored actors, notably the group Kimsuky, are employing malicious QR codes in spear-phishing campaigns. The FBI's flash alert highlights that, as of 2025, Kimsuky actors, also known by aliases such as APT43, have consistently targeted organizations by embedding malicious QR codes.
These attacks, termed "quishing," are de
Get advice and information to help protect your children from dangers lurking in both the online and offline worlds. Learn how to contact us and report child abductions and sexual exploitation.
How to report a missing child or online child exploitation - The FBI has jurisdiction to immediately investigate any reported mysterious disappearance or kidnapping involving a child. Do not wait to report a missing child. Call your local law enforcement and FBI field office or the closest internation
The cyber threat landscape is constantly evolving, but few threats demand immediate, sector-wide attention like the latest joint advisory on the Akira ransomware. The US Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), and international partners recently issued a crucial advisory (AA24-109A) detailing the tactics, techniques, and procedures (TTPs) of the Akira ransomware group. Their accompanying press release highlighted the need for decisi
The FBI warned that attackers are spoofing the official Crime Complaint Center (IC3) website to steal personal data and commit financial fraud, targeting users who report cybercrimes.
The fake websites mimic the real IC3 domain by making slight changes in spelling or top-level domains, tricking users into submitting sensitive details such as names, addresses, emails, and banking information. Victims may unknowingly land on these sites while trying to file cybercrime complaints, exposing them to
The FBI has issued a critical alert regarding a sophisticated cyber campaign in which malicious actors are impersonating senior US officials using AI-generated voice and text messages. According to an FBI alert, the campaign, which has been active since April 2025, primarily targets current and former federal and state government officials, as well as their contacts.
Attackers use Smishing (SMS phishing) and Vishing (voice phishing) techniques, now augmented with AI-generated content, to deceiv
Several government security agencies worldwide are warning people about spyware that has been snooping on mobile phone users' private data. An advisory from the various agencies recently revealed that the spyware variants have been targeting users connected to Taiwanese independence and similar movements. Known as Badbazaar and Moonshine, the two spyware strains have been spoofing legitimate apps to trick unsuspecting victims. [1]
The advisory comes from a host of agencies, including the Austral
The Cybersecurity and Infrastructure Security Agency (CISA) and the FBI have issued a joint cyber security advisory on the growing threat of Ghost ransomware. A variation of this strain of malware called GhostSocks uses SOCKS5 to bypass anti-fraud mechanisms and geographic restrictions. First detected in 2021, this ransomware group has targeted organizations in over 70 countries, exploiting unpatched software, weak credentials, and outdated security configurations to infiltrate enterprise networ
BT Group (formerly British Telecom)’s Conferencing division shut down some of its servers following a Black Basta ransomware attack. British multinational telecommunications holding company BT Group (formerly British Telecom) announced it has shut down some of its servers following a Black Basta ransomware attack. “We identified an attempt to compromise our BT Conferencing platform. This incident was restricted to specific elements of the platform, which were rapidly taken offline and isolated,”
The FTC announced on 03 December 2024 that it had banned data brokers Mobilewalla and Gravy Analytics from harvesting and selling Americans' location tracking data linked to sensitive locations, like churches, healthcare facilities, military installations, and schools. The FTC says Mobilewalla and Gravy Analytics unlawfully collected and sold location data collected from consumers, including data linked to their visits to places of worship and health-related locations.
Virginia-based Gravy Analy
Criminals are using text messaging, dating apps, social media, and email to perpetrate a form of financial fraud, most known as 'pig-butchering,' where victims are lured into fraudulent investment schemes. Meta has confirmed it has removed around 2 million scam accounts across its platforms since the beginning of 2024. “This year alone, we’ve taken down over two million accounts linked to scam centers in Myanmar, Laos, Cambodia, the United Arab Emirates, and the Philippines,” says Meta.
See: http
FortiGuard Labs gathers data on ransomware variants of interest that are gaining traction within its datasets and the OSINT community. The report below provides brief insights into the evolving ransomware landscape.
Interlock Ransomware Overview - Interlock is a new ransomware variant that was first publicly discovered in an available file-scanning site in early October 2024. This could indicate that the ransomware emerged as early as September. The Interlock ransomware comes in Windows and Free
The US Department of Justice (DoJ) has announced arrests and charges against several individuals and entities for allegedly manipulating digital asset markets as part of a widespread fraud operation. The law enforcement action, codenamed Operation Token Mirrors, is the result of the US Federal Bureau of Investigation (FBI) taking the "unprecedented step" of creating its own cryptocurrency token and company, NexFundAI.
NexFundAI, as per information on the website, was marketed as redefining the "