News for April 27, 2025

By I_g_o_r | Some news | 26 Apr 2025


Cozy Bear’s Wine Lure Drops WineLoader Malware on EU Diplomats

https://hackread.com/cozy-bear-wine-lure-wineloader-malware-eu-diplomats/

 

The FBI Can't Find 'Missing' Records of Its Hacking Tools

https://news.slashdot.org/story/25/04/21/1528216/the-fbi-cant-find-missing-records-of-its-hacking-tools

 

Phishers abuse Google OAuth to spoof Google in DKIM replay attack

https://www.bleepingcomputer.com/news/security/phishers-abuse-google-oauth-to-spoof-google-in-dkim-replay-attack/

 

Microsoft Is Dedicated To Building A Dodgy New Database Of Every Windows 11 User’s Online Behaviors

https://www.techdirt.com/2025/04/21/microsoft-is-dedicated-to-building-a-dodgy-new-database-of-every-windows-11-users-online-behaviors/

 

CZ receives fake ‘Grok’ coins amid new wave of Elon Musk scam tokens

https://cointelegraph.com/news/cz-fake-grok-coin-elon-musk-scam-tokens

 

Sensitive documents, including White House floor plans, improperly shared with thousands

https://www.msn.com/en-us/politics/government/sensitive-documents-including-white-house-floor-plans-improperly-shared-with-thousands/ar-AA1DheLN

 

Microsoft Entra account lockouts caused by user token logging mishap

https://www.bleepingcomputer.com/news/microsoft/microsoft-entra-account-lockouts-caused-by-user-token-logging-mishap/

 

Binance Investigates Scam Reports Linked to Fraudulent Wallet Platform

https://www.binance.com/en/square/post/04-21-2025-binance-investigates-scam-reports-linked-to-fraudulent-wallet-platform-23220926588018

 

Hackers Exploit Stolen Certificates and Private Keys to Breach Organizations

https://gbhackers.com/hackers-exploit-stolen-certificates-and-private-keys/

 

RE. THE CLAIM THAT THE US HAS TECHNOLOGY THAT CAN CONTROL SPACE/TIME

https://gizadeathstar.com/2025/04/re-the-claim-that-the-us-has-technology-that-can-control-space-time/

 

Booking.com Phishing Scam Uses Fake CAPTCHA to Install AsyncRAT

https://hackread.com/booking-com-phishing-scam-fake-captcha-asyncrat/

 

White House plagued by Signal controversy as Pentagon in “full-blown meltdown”

https://arstechnica.com/tech-policy/2025/04/white-house-plagued-by-signal-controversy-as-pentagon-in-full-blown-meltdown/

 

ZKsync Offers Bounty to Hacker for Stolen Funds Return

https://www.binance.com/en/square/post/04-21-2025-zksync-offers-bounty-to-hacker-for-stolen-funds-return-23223508313426

 

North Korean Cryptocurrency Thieves Caught Hijacking Zoom ‘Remote Control’ Feature

https://www.securityweek.com/north-korean-cryptocurrency-thieves-caught-hijacking-zoom-remote-control-feature/

 

Cekura (Formerly Vocera) (YC F24) Is Hiring

https://www.ycombinator.com/companies/cekura-2/jobs/xaoCPco-founding-engineer

 

Infostealer Attacks Surge 84% Weekly Through Phishing Emails

https://gbhackers.com/infostealer-attacks-surge-84-weekly/

 

Want your own personal satellite? Here's how and what it'll cost

https://techxplore.com/news/2025-04-personal-satellite-itll.html

 

Circle unveils a network designed to link financial institutions and enable real-time settlement of cross-border payments, starting with USDC and EURC in May

https://www.bloomberg.com/news/articles/2025-04-21/circle-plans-stablecoin-powered-cross-border-payments-network

 

New quantum-based navigation system 50 times more accurate than traditional GPS

https://techxplore.com/news/2025-04-quantum-based-accurate-traditional-gps.html

 

WordPress ad-fraud plugins generated 1.4 billion ad requests per day

https://www.bleepingcomputer.com/news/security/scallywag-ad-fraud-operation-generated-14-billion-ad-requests-per-day/

 

Ethereum DeFi Project R0AR Suffers $780,000 Loss Due to Contract Backdoor

https://www.binance.com/en/square/post/04-22-2025-ethereum-defi-project-r0ar-suffers-780-000-loss-due-to-contract-backdoor-23264382736553

 

Japan’s Fujitsu and RIKEN Unveil 256-Qubit Superconducting Quantum Computer, Quadrupling Processing Power

https://thequantuminsider.com/2025/04/22/japans-fujitsu-and-riken-unveil-256-qubit-superconducting-quantum-computer-quadrupling-processing-power/

 

Hackers Exploit Legitimate Microsoft Utility to Deliver Malicious DLL Payload

https://gbhackers.com/hackers-exploit-legitimate-microsoft-utility/

 

Spanish Guitar And Violin

https://www.youtube.com/watch?v=MxgWsFFvrs0

 

SK Telecom warns customer USIM data exposed in malware attack

https://www.bleepingcomputer.com/news/security/sk-telecom-warns-customer-usim-data-exposed-in-malware-attack/

 

Gold and cash-like ETFs are sucking up money as investors seek safety

https://financialpost.com/news/gold-and-etfs-are-sucking-up-money

 

XRP Ledger Foundation Urges Update Due to Potential Vulnerability

https://www.binance.com/en/square/post/04-22-2025-xrp-ledger-foundation-urges-update-due-to-potential-vulnerability-23276974125961

 

Crocodilus malware explained: how it targets android crypto wallets

https://cointelegraph.com/explained/crocodilus-malware-explained-how-it-targets-android-crypto-wallets

 

Cyberattack Knocks Texas City’s Systems Offline

https://www.securityweek.com/cyberattack-knocks-texas-citys-systems-offline/

 

Marks & Spencer confirms a cyberattack as customers face delayed orders

https://www.bleepingcomputer.com/news/security/marks-and-spencer-confirms-a-cyberattack-as-customers-face-delayed-orders/

 

SSL.com Vulnerability Allowed Fraudulent SSL Certificates for Major Domains

https://hackread.com/ssl-com-vulnerability-fraud-ssl-certificates-domains/

 

Gold-Backed Tokens See Increased Trading Activity Amid Rising Spot Gold Prices

https://www.binance.com/en/square/post/04-22-2025-gold-backed-tokens-see-increased-trading-activity-amid-rising-spot-gold-prices-23258835694474

 

Ripple’s recommended XRP library xrpl.js hacked to steal wallets

https://www.bleepingcomputer.com/news/security/ripples-recommended-xrp-library-xrpljs-hacked-to-steal-wallets/

 

Hackers Exploit Cloudflare Tunnel Infrastructure to Deploy Multiple Remote Access Trojans

https://gbhackers.com/hackers-exploit-cloudflare-tunnel-infrastructure/

 

Carmen's Tango, Destiny Quartet

https://www.youtube.com/watch?v=WwpygZMNjRk

 

M&S Cyberattack Disrupts Contactless Payments and Click & Collect Services

https://hackread.com/ms-cyberattack-contactless-payments-click-collect/

 

Hackers Weaponize Google Forms to Bypass Email Security and Steal Login Credentials

https://gbhackers.com/hackers-weaponize-google-forms-to-bypass-email-security/

 

UN Says Asian Scam Call Center Epidemic Expanding Globally Amid Political Heat

https://yro.slashdot.org/story/25/04/22/191219/un-says-asian-scam-call-center-epidemic-expanding-globally-amid-political-heat

 

Files Deleted From GitHub Repos Leak Valuable Secrets

https://www.securityweek.com/files-deleted-from-github-repos-leak-valuable-secrets/

 

EU Hits Apple, Meta With €700 Million Fines For Violating Digital Markets Act

https://www.zerohedge.com/markets/eu-hits-apple-meta-eu700-million-fines-violating-digital-markets-act

 

Your Crypto Wallet Could Vanish Thanks to a Chrome Extension—And You’d Never Know

https://hackernoon.com/your-crypto-wallet-could-vanish-thanks-to-a-chrome-extensionand-youd-never-know

 

America's cyber defenses are being dismantled from the inside

https://www.theregister.com/2025/04/23/trump_us_security/

 

Cryptocurrency Firms Seek Banking Licenses from U.S. OCC

https://www.binance.com/en/square/post/04-23-2025-cryptocurrency-firms-seek-banking-licenses-from-u-s-occ-23306762433361

 

Ransomware Surge Hits US Healthcare: AOA, DaVita and Bell Ambulance Breached

https://hackread.com/ransomware-us-healthcare-aoa-davita-bell-ambulance-breach/

 

Cyber attack on a payment provider in the Netherlands

https://www.adyen.com/knowledge-hub/mitigating-a-ddos-april-2025

 

Japan warns of hundreds of millions of dollars in unauthorized trades from hacked accounts

https://therecord.media/japan-warns-of-unauthorized-trades-hacked-accounts

 

Why the Most Foolish People End Up in Power – Machiavelli Knew This

https://www.youtube.com/watch?v=Ix4nKNDKhTQ

 

Chinese Cybercriminals Released Z-NFC Tool for Payment Fraud

https://securityaffairs.com/176829/cyber-crime/chinese-cybercriminals-released-z-nfc-tool-for-payment-fraud.html

 

'Elusive Comet' Attackers Use Zoom to Swindle Victims

https://www.darkreading.com/remote-workforce/elusive-comet-zoom-victims

 

Android Spyware Disguised as Alpine Quest App Targets Russian Military Devices

https://thehackernews.com/2025/04/android-spyware-disguised-as-alpine.html

 

Quantum Communications Breakthrough Could Improve Online Security

https://www.wsj.com/podcasts/tech-news-briefing/quantum-communications-breakthrough-could-improve-online-security/5892303e-003d-496c-a354-6c811a25cbbe

 

All Gmail users at risk from clever replay attack

https://www.malwarebytes.com/blog/news/2025/04/all-gmail-users-at-risk-by-clever-replay-attack

 

70s Greatest Hits - Old School Music Hits

https://www.youtube.com/watch?v=d-ac5VBxYu8

 

Satoshi Nakamoto's Bitcoin Holdings Surpass $100 Billion

https://www.binance.com/en/square/post/04-23-2025-satoshi-nakamoto-s-bitcoin-holdings-surpass-100-billion-23301852471009

 

Scientists Say New Species in Quantum Zoo Could Lead to Topological Quantum Computers

https://thequantuminsider.com/2025/04/23/scientists-say-new-species-in-quantum-zoo-could-lead-to-topological-quantum-computers/

 

Bessent Calls For 'Reforms' Among 'Bretton Woods Institutions' To Rein In Global Trade Imbalances

https://www.zerohedge.com/political/watch-live-bessent-discuses-tariffs-global-financial-system

 

City of Abilene suffers cyber attack

https://ktxs.com/news/local/city-of-abilene-suffers-cyber-attack

 

BACKDOORS TO ELECTRICAL TRANSFORMERS, AND A THOUGHT…

https://gizadeathstar.com/2025/04/backdoors-to-electrical-transformers-and-a-thought/

 

Crypto drainers now sold as easy-to-use malware at IT industry fairs

https://cointelegraph.com/news/crypto-drainers-sold-as-malware-at-it-conferences

 

Don’t Open That Email! - Hackers Are Watching

https://www.youtube.com/watch?v=sm6oW4CrAF4

 

A Stagflation Survival Guide

https://dailyreckoning.com/a-stagflation-survival-guide/

 

Cryptocurrency Scams Targeting Seniors Surge in 2024, FBI Reports

https://www.binance.com/en/square/post/04-23-2025-cryptocurrency-scams-targeting-seniors-surge-in-2024-fbi-reports-23327342406770

 

US Markets Starting To Look Like A 'Banana Republic'? | New Harbor Financial

https://www.youtube.com/watch?v=KJJ19rL3Grk

 

Frederick Health data breach impacts nearly 1 million patients

https://www.bleepingcomputer.com/news/security/frederick-health-data-breach-impacts-nearly-1-million-patients/

 

Hackers Exploit NFC Technology to Steal Money from ATMs and POS Terminals

https://gbhackers.com/hackers-exploit-nfc-technology-to-steal-money/

 

Who needs phishing when your login's already in the wild?

https://www.theregister.com/2025/04/23/stolen_credentials_mandiant/

 

Quantum Messages Travel 254 km Using Existing Infrastructure For the First Time

https://science.slashdot.org/story/25/04/23/2227211/quantum-messages-travel-254-km-using-existing-infrastructure-for-the-first-time

 

Cardano Founder Questions Ethereum's Long-Term Viability

https://www.binance.com/en/square/post/04-24-2025-cardano-founder-questions-ethereum-s-long-term-viability-23350696558986

 

'You Can't Lick a Badger Twice': Google Failures Highlight a Fundamental AI Flaw

https://www.wired.com/story/google-ai-overviews-meaning/

 

The GREAT DECEPTION of modern society

https://www.youtube.com/watch?v=i5DfHFjYEQ4

 

Verizon DBIR Report: Small Businesses Identified as Key Targets in Ransomware Attacks

https://gbhackers.com/verizon-dbir-report-small-businesses-identified-as-key-targets/

 

Looking for a budget-friendly student laptop? This one’s on sale for $300

https://www.digitaltrends.com/computing/nimo-young-book-laptop-deal-amazon-april-2025/

 

The list of major companies laying off staff this year, including Morgan Stanley, Wayfair, Block, and Meta

https://www.businessinsider.com/recent-company-layoffs-laying-off-workers-2025

 

Lazarus hackers breach six companies in watering hole attacks

https://www.bleepingcomputer.com/news/security/lazarus-hackers-breach-six-companies-in-watering-hole-attacks/

 

Max Cracking Down on Password Sharing With New 'Extra Member' Feature

https://www.macrumors.com/2025/04/23/max-password-sharing-crackdown-2/

 

Tango Rhythms – Accordion & Guitar

https://www.youtube.com/watch?v=lK8t9SyKSJI

 

DeFi platform KiloEx to compensate users impacted by $7.5M hack

https://cointelegraph.com/news/kiloex-compensation-plan-7-million-hack-april

 

South Korea says DeepSeek transferred user data to China and the U.S. without consent

https://www.cnbc.com/2025/04/24/south-korea-says-deepseek-transferred-user-data-to-china-us-without-consent.html

 

NVIDIA NeMo Vulnerability Enables Remote Exploits

https://gbhackers.com/nvidia-nemo-vulnerability/

 

Gold: The Everything Hedge

https://dailyreckoning.com/gold-the-everything-hedge/

 

D-Wave, Davidson Technologies Near Installation Completion of Alabama’s First On-Site Annealing Quantum Computer

https://thequantuminsider.com/2025/04/24/d-wave-davidson-technologies-near-installation-completion-of-alabamas-first-on-site-annealing-quantum-computer/

 

Interlock ransomware claims DaVita attack, leaks stolen data

https://www.bleepingcomputer.com/news/security/interlock-ransomware-claims-davita-attack-leaks-stolen-data/

 

This SCAM Looks So Real, Even Experts Are Fooled

https://www.youtube.com/watch?v=CfT8udQz3-U

 

Cryptocurrency-Related Crimes Lead to $9.3 Billion Loss in the U.S. in 2024

https://www.binance.com/en/square/post/04-24-2025-cryptocurrency-related-crimes-lead-to-9-3-billion-loss-in-the-u-s-in-2024-23350381364618

 

Protecting Your Phone—and Your Privacy—at the US Border

https://www.wired.com/story/uncanny-valley-podcast-phone-privacy-us-border-travel/

 

SSNs and more on 5.5M+ patients feared stolen from Yale Health

https://www.theregister.com/2025/04/24/yale_new_haven_health_breach/

 

Microsoft Defender XDR False Positive Leaked Massive 1,700+ Sensitive Documents to Publish

https://gbhackers.com/microsoft-defender-xdr-leaked-sensitive-documents/

 

FBI seeks help to unmask Salt Typhoon hackers behind telecom breaches

https://www.bleepingcomputer.com/news/security/fbi-seeks-help-to-unmask-salt-typhoon-hackers-behind-telecom-breaches/

 

Perplexity CEO Says Its Browser Will Track Everything Users Do Online To Sell Ads

https://tech.slashdot.org/story/25/04/25/044215/perplexity-ceo-says-its-browser-will-track-everything-users-do-online-to-sell-ads

 

AI-Powered Polymorphic Phishing Is Changing the Threat Landscape

https://www.securityweek.com/ai-powered-polymorphic-phishing-is-changing-the-threat-landscape/

 

Charlie Munger’s Mental Models

https://dailyreckoning.com/charlie-mungers-mental-models-2/

 

New SessionShark Phishing Kit Bypasses MFA to Steal Office 365 Logins

https://hackread.com/sessionshark-phishing-kit-bypass-mfa-steal-office-365-logins/

 

70,000 Bets a Minute: How FanDuel’s Parent Is Winning at Sports Gambling

https://www.wsj.com/podcasts/wsj-the-future-of-everything/70000-bets-a-minute-how-fanduels-parent-is-winning-at-sports-gambling/0fc210bb-4392-469e-bbba-1d20e59fa67f

 

M-Trends 2025: State-Sponsored IT Workers Emerge as Global Threat

https://www.securityweek.com/m-trends-2025-state-sponsored-it-workers-emerge-as-new-global-threat/

 

Interlock Ransomware Say It Stole 20TB of DaVita Healthcare Data

https://hackread.com/interlock-ransomware-stole-davita-healthcare-data/

 

OTTA-orchestra, "MediaStorm" 2025

https://www.youtube.com/watch?v=c0imHNvD2EY

 

Receiving odd texts for someone else? Rise of ‘wrong number’ messages is new payday for scammers

https://www.cnbc.com/2025/04/25/odd-text-wrong-number-messages-new-scam-payday-hackers.html

 

Phishing Alert: Solscan Search Result on Google Leads to Scam

https://www.binance.com/en/square/post/04-26-2025-phishing-alert-solscan-search-result-on-google-leads-to-scam-23420117728538

 

Deloitte predicts $4T tokenized real estate on blockchain by 2035

https://cointelegraph.com/news/real-estate-tokenization-forecast-4-trillion-2035

 

Gamers Beware! New Attack Targets Gamers to Deploy AgeoStealer Malware

https://gbhackers.com/new-attack-targets-gamers-to-deploy-ageostealer-malware/

 

IQM to install Poland’s first superconducting quantum computer

https://thenextweb.com/news/iqm-polands-first-superconducting-quantum-computer

 

Cyber incident at a school district in Texas, USA

https://abc13.com/post/santa-fe-isd-working-fix-network-issues-cyber-event-disrupts-internet-phone-service-campus/16242442/

 

Understanding Crypto Order Books Could Save Your Next Trade

https://hackernoon.com/understanding-crypto-order-books-could-save-your-next-trade

 

Wallet Transfers $1.08 Million in Ethereum Amid Scam Concerns

https://www.binance.com/en/square/post/04-26-2025-wallet-transfers-1-08-million-in-ethereum-amid-scam-concerns-23423499253073

 

Spy vs. spy: A new automated removal tool can stop most remote-controlled malware

https://techxplore.com/news/2025-04-spy-automated-tool-remote-malware.html

 

MORE BULLION “BACKED” “CURRENCY” NONSENSE

https://gizadeathstar.com/2025/04/more-gold-silver-backed-currency-nonsense/

 

Baltimore City Public Schools data breach affects over 31,000 people

https://www.bleepingcomputer.com/news/security/baltimore-city-public-schools-data-breach-affects-over-31-000-people/

 

ToyMaker Uses LAGTOY to Sell Access to CACTUS Ransomware Gangs for Double Extortion

https://thehackernews.com/2025/04/toymaker-uses-lagtoy-to-sell-access-to.html

 

Trump Offers a Private Dinner to Top 220 Investors of His Memecoin

https://www.cnn.com/2025/04/24/politics/meme-coin-trump-dinner/index.html

https://www.nytimes.com/2025/04/23/technology/trump-private-dinner-crypto-memecoin.html

 

CEO of cybersecurity firm charged with installing malware on hospital systems

https://securityaffairs.com/177020/cyber-crime/ceo-of-cybersecurity-firm-charged-with-installing-malware-on-hospital-systems.html

 

SAP NetWeaver Flaw Scores 10.0 Severity as Hackers Deploy Web Shells

https://hackread.com/sap-netweaver-flaw-severity-hackers-deploy-web-shells/

 

Ignite Your Soul with Music

https://www.youtube.com/watch?v=IA0l8qBqfn4

 

 

 

P.S. For those who want to have a list of annotations, here is the link to the article on how to do it with ChatGPT and Zapier

https://zapier.com/blog/how-to-use-chatgpt-to-summarize-an-article/

 

 

Some links:

Get highly discounted domains

Get public DPG for mobile devices

Get free XNO

Get an offline public DPG

Get working memory stimulator

Get post-quantum crypto wallet

Get your passwords and private keys to be prepared for the Q day

How to estimate time for the Q-day, in a simple way?

How do you rate this article?

23


I_g_o_r
I_g_o_r

I am curious about science, technologies and their applications to solving real problems.


Some news
Some news

News on cyber security, data breaches, crypto security, trends, etc. Image of Suzy Hazelwood from pexels.com

Send a $0.01 microtip in crypto to the author, and earn yourself as you read!

20% to author / 80% to me.
We pay the tips from our rewards pool.