LIVE · cybersecurity feed
Live wire
breach

U.S. Bank says breach claims related to fourth-party incident

The bank said there is no evidence that its own systems, networks or data repositories were compromised.

zeroday.news ·

U.S. Bancorp, the seventh-largest bank in the United States, has stated that recent claims of data theft by the LockBit ransomware group are linked to a cyber incident involving a fourth-party vendor, rather than a direct compromise of the bank's own systems or network. The bank confirmed it has investigated the claims and found no evidence that its internal systems, networks, or data repositories were breached.

The LockBit ransomware gang added U.S. Bancorp to its list of victims on Thursday morning, threatening to publish stolen data within two weeks. However, LockBit did not provide any samples of the alleged stolen information to substantiate its claims. U.S. Bancorp initially reported no indication of impact to its systems or unauthorized network access.

A spokesperson for U.S. Bancorp indicated that the incident originated with a contractor for a third-party vendor, making it a "fourth-party event" that occurred outside the bank's direct environment. The company declined to identify the specific third or fourth parties involved in the breach. U.S. Bancorp has provided relevant information to law enforcement and is supporting an ongoing investigation.

This incident marks the second time a bank has appeared on a ransomware leak site this week, following Cameroon’s Crédit Communautaire d Afrique Bank, which was listed by a different group on Friday. Crédit Communautaire d Afrique Bank had reported operational issues two weeks prior.

The LockBit ransomware group, despite facing significant disruption from a coordinated international law enforcement takedown in 2024, continues to attempt to revive its operations. Before the takedown, the group was considered one of the most active and destructive ransomware operations. In December, the U.S. Treasury Department reported that LockBit had extorted $252.4 million in ransoms from 353 successful attacks between 2022 and 2024. The group has experienced operational challenges and other issues due to increased law enforcement pressure, and leaks of its source code have enabled other cybercriminals to utilize LockBit in their own attacks.

breachfinance
ShareXLinkedInWhatsAppFacebook

More News

view all →
breach

Apollo discloses data breach from ongoing wave of attacks hitting financial sector

The private equity firm said attackers broke into some of its cloud platforms during a five-day period in early July, compromising sensitive personal data. The post Apollo discloses data breach from ongoing wave of attacks hitting financial sector appeared first on CyberScoop.

security

Lawmakers call for investigation into impact of CISA staffing cuts

Lawmakers say little is known about how recent cuts have impacted CISA and how the knowledge that was lost has been replaced.

security

Your Shredded Visa Card May Still Work at the Checkout

UMass Amherst researchers showed expired Visa contactless cards can make real purchases by exploiting an unsigned expiry field in Visa’s EMV kernel. Researchers at the University of Massachusetts Amherst demonstrated at USENIX Security 2026 in Baltimore that expired Visa contactless credit cards can complete real purchases, including transactions at live retail and grocery merchants, by […]

phishing

New SynkLoader malware pushed in Microsoft Teams phishing campaign

A previously unknown malware family dubbed SynkLoader is being distributed in Microsoft Teams phishing campaigns to steal credentials via a fake lock screen. [...]

ai

OWASP Flags Top AI Skill Risks in New Security Blueprint

The Open Worldwide Application Security Project has a brand-new top 10 security list tailored for the modern era, and it debuts a Universal Skill Format to add consistency and security to the AI add-ons.

ai

AI Is Learning to Write Genetic Code

This sort of research is both exciting and terrifying: The two models in question were told to generate complete genomes for a viable bacteriophage—a type of virus able to infect and replicate itself inside bacteria, destroying them from the inside. Using an existing bacteriophage as an example—ΦX174 (pronounced “fie-ex-1-7-4”), known for its ability to infect and destroy E. coli bacteria—the mode