335 Followers
140 Following
2K Posts
Breaking News Reporter for The Record. 
send tips along to [email protected] or signal: jgreig.51

US officials claimed cyber scam compounds across SE Asia causing $16 billion in American losses each year are quietly backed by China's government

China has not prosecuted scam bosses targeting Americans and Belt + Road projects are used as scam centers. Scam funds have also commingled with Chinese gov't infrastructure investments

https://therecord.media/china-scam-compounds-southeast-asia

US official accuses China of supporting, exploiting cyber scam crisis in Southeast Asia

A senior U.S. official accused China’s government of implicitly backing Chinese criminal syndicates running cyber scam compounds across Southeast Asia and of exploiting a crisis that has resulted in billions being stolen from Americans each year.

LiteLLM has been compromised by hackers in a supply chain attack that researchers say could impact tens of thousands of corporate environments

Important one from Alex Martin

https://therecord.media/supply-chain-attack-hits-widely-used-ai-package

Supply chain attack hits widely-used AI package, risks impacting thousands of companies

The incident highlights growing concerns over the security of the open-source software supply chain, where widely-used tools maintained by small teams can provide a gateway into thousands of organizations if compromised.

Puerto Rican authorities continued investigating a cyberattack on Wednesday that forced them to cancel appointment's at the agency managing driver's licenses and permits

https://therecord.media/puerto-rico-gov-agency-cancels-driver-license-appointments-cyber-incident

Puerto Rico government agency cancels driver’s license appointments after cyberattack

Services at Centros de Servicios al Conductor (CESCO) — the agency responsible for issuing licenses, permits and vehicle registrations in Puerto Rico — cancelled all appointments due to a cyber incident.

In an update this week, Kaplan said 1.4 million people were impacted by a data breach in October

https://therecord.media/kaplan-data-breach-hack-notification

Education company Kaplan reports data breach impacting more than 230,000

The educational services company Kaplan told state regulators that at least 230,000 people had Social Security and driver’s license numbers leaked following a cybersecurity incident in the fall of 2025.

Iran's Pay2Key ransomware gang attacked another US healthcare firm before the Stryker wiper attack

Researchers said its likely other US organizations have been attacked by Iranian government-affiliated hacking groups

https://therecord.media/iran-linked-ransomware-gang-targeted-us-healthcare-org

Iran-linked ransomware gang targeted US healthcare org amid military conflict

The incident responders noted that there was no evidence that data was exfiltrated during the intrusion — an unusual development considering U.S. intelligence agencies previously said Pay2Key attacks were largely conducted for information theft.

Crunchyroll confirmed to The Record that a batch of customer information leaked online over the weekend is legitimate

They said the stolen info is "primarily limited to customer service ticket data following an incident with a third-party vendor."

https://therecord.media/crunchyroll-hacker-anime-data-theft

Anime streaming giant Crunchyroll says hacker stole data related to customer service tickets

The popular anime streaming platform Crunchyroll confirmed that a batch of customer information that was stolen through a third-party customer service vendor and leaked online is legitimate.

A US soldier was sentenced to 1 year in prison after pleading guilty to charges related to a scheme where he allowed North Koreans to use his identity for job applications

North Korea's government earned about $1.3 million through Travis and 2 other men

https://therecord.media/us-soldier-sentencer-for-helping-nk-it-workers

US soldier sentenced for helping North Korean IT workers

The man pleaded guilty to accusations that he allowed North Korean IT workers to use his identity on resumes and during employer vetting processes that involved interviews, drug tests and fingerprints.

A semiconductor testing company warned regulators on Friday that its subsidiary in Singapore suffered a ransomware attack earlier this month

https://therecord.media/ransomware-trio-tech-semiconductor-sec

California-based semiconductor testing company reports ransomware attack to SEC

A semiconductor testing company warned regulators that its subsidiary in Singapore suffered a ransomware attack earlier this month.

California city reports ransomware attack as LA transit agency finds ‘unauthorized activity’

https://therecord.media/california-city-reports-ransomware-attack-la-metro

California city reports ransomware attack as LA transit agency finds ‘unauthorized activity’

Foster City warned that it is possible the hackers obtained public information, urging anyone that has done business with the city to change personal passwords and take measures to protect personal data.

The Los Angeles Metro department confirmed that it had to shut down systems due to "unauthorized activity" - causing issues for bus and rail riders.

A ransomware gang claimed it attacked the city on Friday morning. Another California municipality, Foster City, reported a ransomware attack on Thursday

https://therecord.media/california-city-reports-ransomware-attack-la-metro

California city reports ransomware attack as LA transit agency finds ‘unauthorized activity’

Foster City warned that it is possible the hackers obtained public information, urging anyone that has done business with the city to change personal passwords and take measures to protect personal data.