Aggregator
Please support the site operations by clicking ads.
CVE-2025-25278 | OpenHarmony up to 5.0.3 tcb race condition
CVE-2025-24298 | OpenHarmony up to 5.0.3 tcb use after free
读卖新闻起诉 Perplexity 侵犯著作权
Ghanaian fraudsters arrested for BEC/Sakawa
In Nigeria, scammers who specialize in Romance Scams and BEC are called "Yahoo Boys." In Ghana, the term for the same activity is "Sakawa." Several Ghanaian headlines are talking about this case with headlines such as "Multimillion dollar Sakawa" or "Sakawa Chairman Busted" or "Sakawa Kingpin Bows to Extradition!"
On 08AUG2025 the US Attorney's office in the Southern District of New York announced the extradition of four Ghanaian scammers who stole more than $100 Million via Romance Scams and Business Email Compromise.
https://www.justice.gov/usao-sdny/pr/ghanaian-nationals-extradited-roles-criminal-organization-stole-more-100-millionThe names likely are not well known in the US, but the first two are creating a stir in some parts of Ghana: Isaac Boateng, Inusah Ahmed, Derrick Van Yeboah, and Patrick Kwame Asare.
Inusah Ahmed, also known as Pascal, and "Agony" is the owner of the PAC Academy Football Club in the Ashanti region of Ghana. Ghana Soccer quotes one source as saying "Pascal was not just the owner; he was the heart and soul of PAC Academy. This is a huge blow!"
https://ghanasoccernet.com/pac-academy-fc-faces-uncertain-future-amid-owner-inusah-ahmed-pascals-arrest-over-alleged-internet-fraudIsaac Kofi Oduro Boateng, better known as "Kofi Boat," claims to be the owner of ICEFOOD, a frozen food company specializing in chicken and fish in Ghana. But he is better known as the "godfather" of singer Shatta Wale.
Kofi BoatShatta, whose real name is Charles Nii Armah, was featured on the Beyonce track "Already" on her 2019 Lion King album. Last week he had his 2019 Lamborghini Urus seized by the government of Ghana, after the FBI informed them it was purchased with stolen funds.
https://www.bbc.com/news/articles/cq687q927r7o Ghana and the City of Lexington BECThe source of those Lambo funds was Nana Kwabena Amuah, another Ghanian, who performed a $3.9 Million Business Email Compromise against the city of Lexington, Kentucky. When Amuah was arrested in 2023, he posted bail and four days later was arrested attempting to flee to Canada on an Amtrak train.
In an unusual court document, 58 victims of Amuah's BEC crimes are listed with complete street address and the amount of money stolen. Victims are identified in Alabama, Arizona, California, Colorado, Florida, Georgia, Iowa, Illinois, Michigan, Minnesota, Missouri, North Carolina, Oklahoma, Pennsylvania, Tennessee, Texas, Vermont, Wisconsin, the United Kingdom and Switzerland. Collectively they were tricked into sending $4,743,443 to Amuah and his co-conspirator, Shimea Maret McDonald. McDonald had opened a shell company, Gretson Company LLC, and had bank accounts at many major banks in that name that were used to receive the funds.
Victim Restitution Worksheet (1-20 of 58)There were others arrested in this ring, including Samuel Kwadwo Osei, who was recruited into "Sakawa" by a Nigerian computer programmer, Sapphire Egemasi, who the Nigerian media calls a "Tech Queen." Nigerian blogger Linda Ikeji (who I've followed for many years) shared this photo of Sapphire:
https://www.lindaikejisblog.com/2025/6/fbi-arrests-nigerian-tech-queen-sapphire-egemasi-over-alleged-fraud-in-us-2.htmlSamuel Kwadwo Osei ("Tuga"), Derick Nii Ashitey, Chinemezu Sapphire Egemasi, and Fred Brobbey Awuah were all charged in the same ring as McDonald and Amuah.
Osei laundered funds through his BofA account in the name "Lasko Company LLC."
Ashitey operated from the United Kingdom. Sapphire operated from Nigeria, while Awuah resided in the Netherlands.
My favorite paragraph in the Pulse story "Accra socialite Dada Joe Remix nabbed in alleged FBI sting" reads: "Since news of the arrest broke, panic has reportedly gripped Accra’s elite social circles. Several prominent figures allegedly involved in cryptocurrency, forex trading, and high-end real estate have gone underground. Phones have reportedly been switched off, luxury homes have fallen silent, flights are rumoured to be hastily booked, and inner circles – including partners, baby mamas, and close associates – are allegedly being coached on what to say should they be questioned."
The post Ghanaian fraudsters arrested for BEC/Sakawa appeared first on Security Boulevard.
CVE-2025-8854 | bulletphysics bullet3 up to 3.25 LoadOFF buffer overflow (ID 4732)
GPT-5 Jailbreaked With Echo Chamber and Storytelling Attacks
Researchers have compromised OpenAI’s latest GPT-5 model using sophisticated echo chamber and storytelling attack vectors, revealing critical vulnerabilities in the company’s most advanced AI system. The breakthrough demonstrates how adversarial prompt engineering can bypass even the most robust safety mechanisms, raising serious concerns about enterprise deployment readiness and the effectiveness of current AI alignment strategies. […]
The post GPT-5 Jailbreaked With Echo Chamber and Storytelling Attacks appeared first on Cyber Security News.
人与自然联结度 220 年来下降逾 60%
【安全圈】美联邦法院电子档案系统遭大规模黑客攻击,或泄露机密证人身份
【安全圈】歌手伍佰紧急公告:官网被黑客入侵
【安全圈】突发!上海全市医保系统瘫痪
CVE-2023-1457 | Ubiquiti EdgeRouter X 2.0.9-hotfix.6 Static Routing Configuration next-hop-interface command injection (EUVD-2023-23706)
CVE-2023-1458 | Ubiquiti EdgeRouter X 2.0.9-hotfix.6 OSPF area command injection (EUVD-2023-23707)
CVE-2023-1390 | Linux Kernel TIPC tipc_link_xmit excessive platform resource consumption within a loop (EUVD-2023-23646)
CVE-2023-1456 | Ubiquiti EdgeRouter X 2.0.9-hotfix.6 NAT Configuration command injection (EUVD-2023-23705)
CVE-2023-1417 | GitLab up to 15.9.3/15.10.0 Child Epics access control (Issue 396720 / EUVD-2023-23671)
CVE-2023-1393 | X.Org Server Overlay Window use after free (FEDORA-2023-eb3c27ff25 / EUVD-2023-23649)
CVE-2023-1380 | Linux Kernel cfg80211.c brcmf_get_assoc_ies out-of-bounds (EUVD-2023-23636)
CVE-2023-24620 | Esoteric YamlBeans up to 1.15 YAML Document memory allocation (EUVD-2023-2362)
From legacy to SaaS: Why complexity is the enemy of enterprise security
In this Help Net Security interview, Robert Buljevic, Technology Consultant at Bridge IT, discusses how the coexistence of legacy systems and SaaS applications is changing the way organizations approach security. He explains why finding the right balance between old and new technology is essential for maintaining protection. As more companies move from traditional on-prem setups to SaaS, how is that changing the way they approach security? Are most organizations handling that shift well, or are … More →
The post From legacy to SaaS: Why complexity is the enemy of enterprise security appeared first on Help Net Security.