{"id":5072,"date":"2025-12-21T08:20:30","date_gmt":"2025-12-21T03:20:30","guid":{"rendered":"https:\/\/paknews.centers.pk\/hackers-stole-millions-of-pornhub-users-data-for-extortion\/"},"modified":"2025-12-21T08:20:30","modified_gmt":"2025-12-21T03:20:30","slug":"hackers-stole-millions-of-pornhub-users-data-for-extortion","status":"publish","type":"post","link":"https:\/\/paknews.centers.pk\/ur\/hackers-stole-millions-of-pornhub-users-data-for-extortion\/","title":{"rendered":"Hackers Stole Millions of PornHub Users\u2019 Data for Extortion"},"content":{"rendered":"<p><br \/>\n<\/p>\n<div>\n<p><span class=\"lead-in-text-callout\">Federal contracting records<\/span> reviewed by WIRED this week show that United States Customs and Border Protection is <a href=\"https:\/\/www.wired.com\/story\/border-patrol-bets-on-small-drones-to-expand-us-surveillance-reach\/\" target=\"_blank\" rel=\"noopener\">transitioning from testing small drones to using them as standard surveillance tools<\/a>, a move that will further expand CBP\u2019s already extensive dragnet that in some cases extends far beyond US land borders.<\/p>\n<p class=\"paywall\">Meanwhile, US Immigration and Customs Enforcement is <a href=\"https:\/\/www.wired.com\/story\/ice-seeks-cyber-upgrade-to-better-surveil-and-investigate-its-employees\/\" target=\"_blank\" rel=\"noopener\">planning to incorporate a broad cybersecurity contract that will include expanding employee surveillance and monitoring<\/a>. The move comes as the US government is escalating leak investigations and condemning internal dissent.<\/p>\n<p class=\"paywall\">The Chinese-language artificial intelligence app Haotian can be used to create \u201cnearly perfect\u201d face swaps during live video chats, and it is a favorite tool of Southeast Asian scammers. A <a href=\"https:\/\/www.wired.com\/story\/the-ultra-realistic-ai-face-swapping-platform-driving-romance-scams\/\" target=\"_blank\" rel=\"noopener\">WIRED investigation along with independent research<\/a> indicates that the company has actively marketed its tools to scammers, often via Telegram. Haotian\u2019s main Telegram channel vanished after WIRED contacted Telegram for comment.<\/p>\n<p class=\"paywall\">Fraudsters in China are <a href=\"https:\/\/www.wired.com\/story\/scammers-in-china-are-using-ai-generated-images-to-get-refunds\/\" target=\"_blank\" rel=\"noopener\">using AI-generated images of supposedly defective products and services gone awry<\/a>\u2014from dead crabs to shredded bed sheets\u2014to convince ecommerce sites to give them refunds.<\/p>\n<p class=\"paywall\">And there\u2019s more. Each week, we round up the security and privacy news we didn\u2019t cover in depth ourselves. Click the headlines to read the full stories. And stay safe out there.<\/p>\n<p class=\"paywall\">The hacker collective known as the Com has rampaged across the internet for years, breaching hundreds of companies for nihilistic fun and profit. Now they\u2019ve hit a particularly large and sensitive trove of highly personal data: user records for PornHub, the world\u2019s biggest porn site.<\/p>\n<p class=\"paywall\">ShinyHunters, a subgroup within the Com, appears to have stolen more than 200 million records for PornHub premium users, a total of 94 gigabytes of data detailing users\u2019 histories on the site linked to their account information, including email addresses. According to a public statement from PornHub, the data appears to have been taken from MixPanel, a data analytics firm the porn site used until 2021, suggesting the breached data may be four years old or older. BleepingComputer, the media outlet that broke the news of the breach, reports that PornHub has received extortion emails from the hackers over the last week. No doubt quite a few of the site\u2019s users are hoping PornHub will pay\u2014and that ShinyHunters will keep their personal browsing private.<\/p>\n<p class=\"paywall\">Venezuela&#8217;s state oil company, Petr\u00f3leos de Venezuela (PDVSA), says a cyberattack disrupted its administrative systems shortly after the US military seized a tanker carrying nearly 2 million barrels of Venezuelan crude. In a public statement, PDVSA said operations continued, but it accused the US of orchestrating the intrusion as part of a broader campaign against the country&#8217;s energy sector. Reporting by Reuters suggests the attack may have been more damaging than PDVSA acknowledged, temporarily halting oil cargo deliveries and taking internal systems entirely offline.<\/p>\n<p class=\"paywall\">The episode followed an unusual escalation by Washington in its ongoing standoff with Caracas, which has been marked by dueling claims over sovereignty and security, and by maritime strikes and seizures targeting vessels that US officials have linked to criminal networks operating under the protection of Venezuelan president Nicol\u00e1s Maduro\u2014an allegation for which the Trump administration has presented no public evidence.<\/p>\n<p class=\"paywall\">Network \u201cedge\u201d devices like routers, VPNs, and firewalls have become a prime target for hackers hunting for inroads to breach their targets. So the news of an unpatched, critical security vulnerability in a range of Cisco products represents a feeding frenzy\u2014and one that network intruders have quietly enjoyed for weeks. Cisco\u2019s Talos research team this week revealed a zero-day in Cisco\u2019s Secure Email Gateway and Secure Email and Web Manager products that use its AsyncOS software, noting that it had been exploited since late November by hackers who appear to be a Chinese state-sponsored group. Worse still, Cisco doesn\u2019t appear to have a patch ready to fix the vulnerability even now.<\/p>\n<p class=\"paywall\">A Cisco <a data-offer-url=\"https:\/\/sec.cloudapps.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-sma-attack-N9bf4\" class=\"external-link\" data-event-click=\"{&quot;element&quot;:&quot;ExternalLink&quot;,&quot;outgoingURL&quot;:&quot;https:\/\/sec.cloudapps.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-sma-attack-N9bf4&quot;}\" href=\"https:\/\/sec.cloudapps.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-sma-attack-N9bf4\" rel=\"nofollow noopener\" target=\"_blank\">advisory<\/a> notes, however, that the vulnerability lies in the devices \u201cspam quarantine\u201d feature, which isn\u2019t exposed on the internet by default and can be taken offline as a mitigation measure until a patch is available. \u201cWe strongly urge customers to follow guidance in the advisory to assess any exposure and mitigate risk,\u201d reads a statement from Cisco. \u201cCisco is actively investigating the issue and developing a permanent remediation.\u201d<\/p>\n<p class=\"paywall\">Plenty of cybersecurity professionals must have entertained the thought that it\u2019s more lucrative on the dark side. But two men who worked at the cybersecurity companies Sygnia Consulting and DigitalMint actually decided to try it. After launching their own ransomware campaign that went as far as extracting a million dollars from a Florida medical device company, they\u2019ve now pleaded guilty to hacking charges. Ryan Clifford Goldberg worked for Israeli firm Sygnia as an incident responder, while Kevin Tyler Martin worked for US cybersecurity company DigitalMint as, ironically, a ransomware negotiator, while also allegedly acting as an affiliate of the notorious ALPHV ransomware gang. A third alleged co-conspirator is mentioned in court filings but wasn\u2019t charged in the case.<\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/www.wired.com\/story\/security-news-this-week-hackers-stole-millions-of-pornhub-users-data-for-extortion\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>","protected":false},"excerpt":{"rendered":"<p>Federal contracting records reviewed by WIRED this week show that United States Customs and Border Protection is transitioning from testing small drones to using them as standard surveillance tools, a move that will further expand CBP\u2019s already extensive dragnet that in some cases extends far beyond US land borders. Meanwhile, US Immigration and Customs Enforcement [&hellip;]<\/p>","protected":false},"author":1,"featured_media":5073,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[36],"tags":[],"class_list":["post-5072","post","type-post","status-publish","format-standard","has-post-thumbnail","category-tech"],"_links":{"self":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/posts\/5072","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/comments?post=5072"}],"version-history":[{"count":0,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/posts\/5072\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/media\/5073"}],"wp:attachment":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/media?parent=5072"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/categories?post=5072"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/tags?post=5072"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}