
Lawrence Abrams
@LawrenceAbrams
Followers
18K
Following
2K
Media
314
Statuses
2K
Ransomware, Online Security, and Malware. Owner, Editor in Chief of @bleepincomputer. DM on Signal: LawrenceA.11 * https://t.co/LXVRoICs8Z
New York
Joined July 2008
RT @3xp0rtblog: The XSS forum community is actively discussing the situation. However, it appears that moderators are removing all content….
0
39
0
RT @BleepinComputer: Microsoft releases emergency patches for SharePoint RCE flaws exploited in attacks - @LawrenceAbrams..
bleepingcomputer.com
Microsoft has released emergency SharePoint security updates for two zero-day vulnerabilities tracked as CVE-2025-53770 and CVE-2025-53771 that have compromised services worldwide in "ToolShell"...
0
75
0
🚨 Don’t miss our upcoming BleepingComputer webinar with @specopssoftware and @SCMagazine!. We'll discuss how stolen credentials and identity-based attacks have become a favorite way to break into networks. 🗓️July 9th at 2 PM ET. ➡️Register here:
1
0
7
Original leak of stolen 2021 AT&T data had three files, a MASTER file containing encrypted SSNs and date of births, and two other files mapping the encrypted data to the plain text SSNs and DOBs. The new repackaged leak adds the unencrypted SSNs and DOBs to each customer record.
0
0
3
FYI, the repackaged AT&T data breach leak on XSS is from the 2021 breach, not the April 2024 Snowflake data theft attacks. Data matches the 2021 data leaked in March 2024.
bleepingcomputer.com
A threat actor has re-released data from a 2021 AT&T breach affecting 70 million customers, this time combining previously separate files to directly link Social Security numbers and birth dates to...
1
2
7
ShinyHunters is the threat cluster to track this year. They, or threat actors claiming to be, are behind a lot of the attacks we are seeing.
bleepingcomputer.com
Google has observed hackers claiming to be the ShinyHunters extortion group conducting social engineering attacks against multi-national companies to steal data from organizations' Salesforce...
0
7
20
Looks like RansomEXX ransomware op is still around. 👋.
bleepingcomputer.com
Microsoft says the RansomEXX ransomware gang has been exploiting a high-severity zero-day flaw in the Windows Common Log File System to gain SYSTEM privileges on victims' systems.
0
2
9
RT @Cyber_0leg: 🚨 How was Black Basta structured? What were its members’ roles? How did its infrastructure operate?. Leaked chats reveal a….
0
70
0
RT @troyhunt: I’ve had a few people flag this with me as a “data breach”. It’s not, it’s authorised access. Not liking that authorisation d….
0
88
0
RT @Blaklis_: is a good example to what platforms should fight against (but they do not!) : low quality hunters. Th….
hackerone.com
## Summary: An open redirect vulnerability was discovered on the website https://www.xnxx.com/todays-selection/1. This issue allows attackers to modify URLs to redirect users to arbitrary external...
0
22
0
RT @SwiftOnSecurity: Wow: USAID paid Microsoft to shut down Windows Phone because it was too secure for the CIA to spy on it.
0
860
0
RT @haveibeenpwned: New unverified breach: Data allegedly taken from Brazilian lead gen platform Speedio was posted for sale last week. It….
darkwebinformer.com
A Threat Actor is Allegedly Selling the Data of Speedio
0
13
0
RT @BleepinComputer: Domains known to have been seized today by the FBI are:. 🔴Cracked[.]io.🔴Nulled[.]to.🔴Starkrdp[.]io.🔴SellIX[.]io.🔴MySel….
0
20
0
My scoop from yesterday: Hacker behind PowerSchool breach claimed to steal the data of 62.4 million students and 9.5 million teachers.
bleepingcomputer.com
The hacker who breached education tech giant PowerSchool claimed in an extortion demand that they stole the personal data of 62.4 million students and 9.5 million teachers.
3
6
12
PowerSchool customer support portal breach allowed a threat actor to steal the student, teacher data for numerous K-12 school districts.
Education software giant PowerSchool has confirmed it suffered a cybersecurity incident that allowed a threat actor to steal the personal information of students and teachers in numerous K-12 school districts.
0
0
9
RT @BleepinComputer: US Treasury Department breached through remote support platform - @LawrenceAbrams. https://t.c….
bleepingcomputer.com
Chinese state-sponsored threat actors hacked the U.S. Treasury Department after breaching a remote support platform used by the federal agency.
0
143
0
My Sunday scoop. Clop ransomware claims the Cleo data theft attacks. Another MOVEit?.
Clop ransomware claims responsibility for Cleo data theft attacks - @LawrenceAbrams.
0
7
24
RT @bofheaded: Hi Guys, Im seeking job for Threat Intelligence/Hunting. I have past experience in deep/dark web monitoring, telemetry parsi….
0
21
0
RT @Jon__DiMaggio: RANSOMWARE DIARIES Volume 6: “Lie to me. A Bassterlord ransomware story” is out!!!!. #ransomwar….
analyst1.com
Jon DiMaggio will explore his relationship with Bassterlord the person, not Bassterlord the criminal. Or is he just a criminal?
0
39
0