article thumbnail

Russian e-commerce giant Elevel exposed buyers’ delivery addresses

Security Affairs

Original post at [link] Founded in 1991, Elevel (previously Eleko) positions itself as the leading Russian electrical engineering company that runs both an e-commerce business and wholesale stores. The dataset is now closed.

article thumbnail

A supply chain attack compromised the update mechanism of Passwordstate Password Manager

Security Affairs

The software company Click Studios was the victim of a supply chain attack, hackers compromised its Passwordstate password management application. Producent informuje ofiary e-mailem. Passwordstate is the Enterprise Password Management solution used by more than 29,000 customers and 370,000 security and IT professionals globally.

Passwords 103
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Cybercriminals Deliver IRS Tax Scams & Phishing Campaigns By Mimicking Government Vendors

Security Affairs

Cybercriminals are leveraging advanced tactics in their phishing-kits granting them a high delivery success rate of spoofed e-mails which contain malicious attachments right before the end of the 2021 IRS income tax return deadline in the U.S. Easter), that’s why you need to be especially careful during these times. com” domain.

Phishing 120
article thumbnail

JD Sports discloses a data breach impacting 10 million customers

Security Affairs

JD Sports does not hold full payment card data and, further, has no reason to believe that account passwords were accessed.” According to the company, account passwords were compromised. We are advising them to be vigilant about potential scam e-mails, calls and texts and providing details on how to report these.

article thumbnail

Visa warns of new sophisticated credit card skimmer dubbed Baka

Security Affairs

Visa issued a warning regarding a new e-skimmer known as Baka that removes itself from memory after having exfiltrating payment card details. Baka is a sophisticated e-skimmer developed by a skilled malware developer that implements a unique obfuscation method and loader. SecurityAffairs – hacking, Baka e-skimmer).

article thumbnail

New QBot campaign delivered hijacking business correspondence

Security Affairs

The threat actors behind the campaign observed by Kaspersky used e-mail written in different languages, including English, German, Italian, and French. New QBot infection chain “The QBot malware delivery scheme begins with an e-mail letter with a PDF file in the attachment being sent.

article thumbnail

“Smishing Triad” Targeted USPS and US Citizens for Data Theft

Security Affairs

These scammers often attempt to disguise themselves as a government agency, bank, or other organization to lend legitimacy to their claims, for example, a postal service like the United States Postal Service (USPS), asking to pay additional delivery fees via credit card.