article thumbnail

Booking.com Phishers May Leave You With Reservations

Krebs on Security

Booking.com did not respond to questions about that, and its current account security advice urges customers to enable 2FA. In November 2023, the security firm SecureWorks detailed how scammers targeted booking.com hospitality partners with data-stealing malware. million phishing attempts in 2023.”

Phishing 259
article thumbnail

FBI: Spike in Hacked Police Emails, Fake Subpoenas

Krebs on Security

For example, in its most recent transparency report (PDF) Verizon said it received more than 127,000 law enforcement demands for customer data in the second half of 2023 — including more than 36,000 EDRs — and that the company provided records in response to approximately 90 percent of requests. dot-gov emails get hacked.

Hacking 276
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

5 Best Bot Protection Solutions and Software for 2023

eSecurity Planet

And customers that experience a consistently good and secure web experience are more likely to become repeat customers, one more reason that a bot protection solution can be a good investment.

Software 109
article thumbnail

Google Cybersecurity Action Team Threat Horizons Report #8 Is Out!

Anton on Security

as usual, shocking but not surprising.

article thumbnail

A massive phishing campaign using QR codes targets the energy sector

Security Affairs

Starting from May 2023, researchers from Cofense discovered a large-scale phishing campaign using QR codes in attacks aimed at stealing the Microsoft credentials of users from multiple industries One of the organizations targeted by hackers is a notable energy company in the US. ” reads Cofense’s report.

article thumbnail

How Microsoft's highly secure environment was breached

Malwarebytes

An investigation by Microsoft has finally revealed how China-based hackers circumvented the protections of a "highly isolated and restricted production environment" in May 2023 to unlock sensitive email accounts belonging to US government agencies.

article thumbnail

Infostealers Abuse Google OAuth Endpoint to ‘Revive’ Cookies, Hijack Accounts

Security Boulevard

This critical vulnerability, discovered by security researchers following a disclosure on Telegram by a threat actor known as Prisma on Oct. 20, 2023, poses a substantial risk to user sessions and account security. Tell me more about the.