Yazılar

Iran-Linked Hackers Restore Website After US Domain Seizure

A website linked to an Iranian government-associated hacking group has resurfaced just one day after U.S. authorities seized several of its domains, highlighting ongoing challenges in disrupting cyber threat actors.

The U.S. Department of Justice said it had seized four domains connected to the “Handala Hack Team,” which it linked to Iran’s Ministry of Intelligence and Security. The group had previously claimed responsibility for a cyberattack on a U.S. medical device company earlier in March.

Despite the takedown, the group quickly restored its online presence, stating that the action was an attempt by U.S. authorities to silence it. Analysts say such rapid recovery is common, as state-linked cyber units frequently re-establish operations using new domains or platforms.

The incident underscores the resilience of cyber threat actors and the limitations of domain seizures as a long-term deterrent. Experts note that these groups often maintain multiple backup channels, allowing them to resume activities with minimal disruption.

The case also highlights growing tensions in cyber operations, where government-linked hacking groups continue to play a role in both digital espionage and psychological operations.

Rhode Island Faces Data Breach as Hackers Demand Ransom

Rhode Island has been struck by a significant data breach, potentially compromising the personal and financial information of hundreds of thousands of residents. The breach, attributed to an international cybercriminal group, involves stolen sensitive data, including Social Security numbers, and has led to extortion demands. The hackers have threatened to release the information unless a ransom is paid, state officials reported on Saturday.

Governor Dan McKee confirmed that the breach affects individuals enrolled in the state’s government assistance programs, such as the Supplemental Nutrition Assistance Program (SNAP), Temporary Assistance for Needy Families (TANF), and healthcare services provided through HealthSource RI. The attack targeted the state’s RIBridges portal, an online platform for accessing social services, which was breached earlier this month.

Although the breach was initially detected, it was only confirmed on Friday after the state’s vendor, Deloitte, validated the hacking incident. The governor’s office stated that Deloitte had confirmed a high probability that a cybercriminal had accessed files containing personally identifiable information.

The breach may affect anyone who has applied for or received assistance through these programs since 2016. In response to the threat, RIBridges has been temporarily shut down, and those applying for new benefits will be required to use paper applications until the system is secured and restored.

Households believed to be affected by the breach will receive official notification from the state, along with guidance on how to protect their personal and financial data.

 

Hackers Steal 340,000 Social Security Numbers from Government Consulting Firm

U.S. consulting firm Greylock McKinnon Associates (GMA) has reported a data breach in which hackers accessed up to 341,650 Social Security numbers. The breach was disclosed on Friday through a notification on Maine’s government website, where data breach notifications are posted. Devamını Oku