Krebs on Security In-depth security news and investigation

  • Russia Hacked Routers to Steal Microsoft Office Tokens
    by BrianKrebs on April 7, 2026 at 5:02 pm

    Hackers linked to Russia's military intelligence units are using known flaws in older Internet routers to mass harvest authentication tokens from Microsoft Office users, security experts warned today. The spying campaign allowed state-backed Russian hackers to quietly siphon authentication tokens from users on more than 18,000 networks without deploying any malicious software or code.

  • Germany Doxes “UNKN,” Head of RU Ransomware Gangs REvil, GandCrab
    by BrianKrebs on April 6, 2026 at 2:07 am

    An elusive hacker who went by the handle "UNKN" and ran the early Russian ransomware groups GandCrab and REvil now has a name and a face. Authorities in Germany say 31-year-old Russian Daniil Maksimovich Shchukin headed both cybercrime gangs and helped carry out at least 130 acts of computer sabotage and extortion against victims across the country between 2019 and 2021.

  • ‘CanisterWorm’ Springs Wiper Attack Targeting Iran
    by BrianKrebs on March 23, 2026 at 3:43 pm

    A financially motivated data theft and extortion group is attempting to inject itself into the Iran war, unleashing a worm that spreads through poorly secured cloud services and wipes data on infected systems that use Iran's time zone or have Farsi set as the default language.

  • Feds Disrupt IoT Botnets Behind Huge DDoS Attacks
    by BrianKrebs on March 20, 2026 at 12:49 am

    The U.S. Justice Department joined authorities in Canada and Germany in dismantling the online infrastructure behind four highly disruptive botnets that compromised more than three million hacked Internet of Things (IoT) devices, such as routers and web cameras. The feds say the four botnets -- named Aisuru, Kimwolf, JackSkid and Mossad -- are responsible for a series of recent record-smashing distributed denial-of-service (DDoS) attacks capable of knocking nearly any target offline.

  • Iran-Backed Hackers Claim Wiper Attack on Medtech Firm Stryker
    by BrianKrebs on March 11, 2026 at 4:20 pm

    A hacktivist group with links to Iran's intelligence agencies is claiming responsibility for a data-wiping attack against Stryker, a global medical technology company based in Michigan. News reports out of Ireland, Stryker's largest hub outside of the United States, said the company sent home more than 5,000 workers there today. Meanwhile, a voicemail message at Stryker's main U.S. headquarters says the company is currently experiencing a building emergency.



BleepingComputer BleepingComputer - All Stories



The Hacker News Most trusted, widely-read independent cybersecurity news source for everyone; supported by hackers and IT professionals — Send TIPs to admin@thehackernews.com