Jon Greig

@jgreig@ioc.exchange
328 Followers
140 Following
1.9K Posts
Breaking News Reporter for The Record. 
send tips along to jonathangreig11@protonmail.com or signal: jgreig.51

Crazy story about the DOJ takedown of the Social Engineering Enterprise - a gang of 20-somethings living like rappers after stealing more than $300 million worth of crypto through social engineering attacks

https://therecord.media/california-man-pleads-guilty-rico-charges-crypto-theft

California man pleads guilty to RICO charges as DOJ indicts crypto theft gang

Evan Tangeman became the ninth person to plead guilty as part of a wider Justice Department takedown of a criminal group known as the Social Engineering Enterprise.

Amazon researchers said they saw two Chinese state-backed groups - Earth Lamia and Jackpot Panda - exploiting React2Shell

CISA also added it to the known exploited bugs list today as well

Patch CVE-2025-55182 ASAP

https://therecord.media/chinese-hackers-exploiting-react2shell-vulnerability-amazon

Chinese hackers exploiting React2Shell bug impacting countless websites, Amazon researchers say

The bug, tagged as CVE-2025-55182 and referred to colloquially as React2Shell, was reported to Meta by researcher Lachlan Davidson on November 29 and publicly disclosed on Wednesday, when a fix was rolled out.

Trump’s FCC just removed cyber regulations governing telecoms that were put in place after Chinese hackers stole the call records of Trump and JD Vance last year

Several senators told me telecoms lobbied heavily for the rules to be removed

https://therecord.media/fcc-removes-biden-era-cybersecurity-rules-telecoms-salt-typhoon

FCC spikes Biden-era cyber regulations prompted by Salt Typhoon telecom breaches

The Republican-led FCC voted to remove cybersecurity rules for telecom companies that were put in place before Donald Trump's inauguration as a response to 2024 breaches attributed to state-backed Chinese hackers.

IGT told the SEC almost exactly one year ago that it was forced to take some systems offline following a cyberattack.

The company hasn't responded to inquiries about whether that incident and this post are connected

https://therecord.media/gambling-lottery-giant-hit-with-disruptive-cyberattack

The director of the Congressional Budget Office (CBO) told lawmakers on Tuesday morning that the agency has removed hackers from its systems following a cyberattack disclosed two weeks ago

https://therecord.media/congressional-budget-office-director-testifies-hackers-expelled

CBO director testifies that hackers have been expelled from email systems

Officials at the Congressional Budget Office “have not observed further evidence of unauthorized access" to the legislative branch agency's systems, Director Phillip Swagel told lawmakers.

South Korea-based LG Energy Solution confirmed it was affected by a ransomware attack following claims made by the Akira group spotlighted by the FBI last week

https://therecord.media/lg-energy-solution-ransomware-incident-battery-maker

LG battery subsidiary says ransomware attack targeted overseas facility

A "specific overseas facility" fell prey to a ransomware attack but is now operating normally, according to LG Energy Solution — the South Korean multinational's battery-making subsidiary.

CISA warned that several federal agencies have not sufficiently patched the Cisco ASA bugs being exploited by Chinese hackers

https://therecord.media/federal-cisco-patches-warning

Federal agencies not fully patching vulnerable Cisco devices amid ‘active exploitation,’ CISA warns

Federal civilian agencies are not patching vulnerable Cisco devices sufficiently to protect themselves from an active hacking campaign, the Cybersecurity and Infrastructure Security Agency warned.

New UI to RansomLook.io

The open source project providing real-time ransomware intelligence.

Thanks to @F_kZ_ for the incredible work.

#ransomware #threatintelligence #threatintel #opensource

🔗 https://www.ransomlook.io/

A group used stolen credit card data from over 4.3 million cardholders to set up 19 million fake online subscriptions that charged monthly billing payments with vague descriptions.

https://therecord.media/europe-police-bust-global-fraud-ring-payment-firms

Europe police bust global fraud ring that used German payment firms to launder millions

The cross-border investigation led to more than 60 house searches and 18 arrests across Germany, the U.S., Canada, Singapore, Luxembourg, Cyprus, Spain, Italy and the Netherlands.

Marks & Spencer (M&S) said a cyberattack earlier this year was an "extraordinary" moment for the company, nearly wiping out profits.

https://therecord.media/marks-spencer-profits-wiped-out-cyberattack

Cyberattack ate up profits for first half of year, retailer M&S says

British retailer Marks & Spencer (M&S) said a cyberattack earlier this year was an "extraordinary" moment for the company, nearly wiping out profits.