On September 14, 2023, the BlackCat ransomware group, also known as APLHV, claimed responsibility for a cyberattack that affected MGM Resorts' operations. The group announced that they had breached MGM's infrastructure on September 8, 2023, encrypted over 100 ESXi hypervisors, exfiltrated data from the network, retained access to portions of MGM's infrastructure, and threatened to conduct future assaults unless a ransom deal was made. Cybersecurity researcher vx-underground was the first to announce that threat actors related to the ALPHV ransomware campaign had infiltrated MGM using a social engineering attack. The threat actor behind the breach has been tracked by various cybersecurity companies under various names, including Scattered Spider (Crowdstrike), 0ktapus (Group-IB), UNC3944 (Mandiant), and Scatter Swine (Okta), and the same group is believed to be responsible for breaching Caesars Entertainment's network as well, with reports indicating a ransom demand of thirty million dollars and receiving a ransom payment of fifteen million dollars. In their statement, BlackCat noted that MGM Resorts had not responded on the provided communication channel, indicating a reluctance to negotiate a ransom payment. Despite MGM's attempt to disconnect Okta Sync servers, the hackers maintained access to the network, with super administrator privileges on MGM's Okta environment and global administrator permissions for the company's Azure tenant. Furious with MGM's lack of involvement, BlackCat launched the ransomware attack, threatening to reveal stolen data unless an agreement was made and pledging to utilize their present access for subsequent attacks to put pressure on the firm.
A critical security vulnerability has been discovered in Fortinet’s FortiClient Endpoint Management Server (EMS), tracked as CVE-2026-21643. The flaw allows unauthenticated attac...
In spear-phishing campaign known as Operation Covert Access, Argentina’s judicial ecosystem was targeted. By leveraging highly convincing court-themed documents, adversaries expl...
CVE-2026-32746, which has a CVSS score of 9.8, indicates that Cybersecurity researchers have discovered a major weakness in the GNU InetUtils Telnet daemon (telnetd). The weakness ...