<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #FBI</title><description>Cybersecurity articles tagged #FBI on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>CISA Warns: Medusa Ransomware Breaches 500+ Critical Infra Orgs</title><link>https://runtimerebel.com/blog/cisa-warns-medusa-ransomware-breaches-500-critical-infra-orgs</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-warns-medusa-ransomware-breaches-500-critical-infra-orgs</guid><description>CISA, FBI, and HHS alert on Medusa ransomware, which has impacted over 500 critical infrastructure organizations since June 2021, urging immediate network hardening.</description><pubDate>Wed, 19 Aug 2026 08:26:15 GMT</pubDate><category>Medusa Ransomware</category><category>Ransomware as a Service</category><category>CISA</category><category>FBI</category><category>Critical Infrastructure</category></item><item><title>Operation Cronos: FBI&apos;s Strategy to Disrupt LockBit Ransomware-as-a-Service</title><link>https://runtimerebel.com/blog/operation-cronos-fbi-s-strategy-to-disrupt-lockbit-ransomware-as-a-service</link><guid isPermaLink="true">https://runtimerebel.com/blog/operation-cronos-fbi-s-strategy-to-disrupt-lockbit-ransomware-as-a-service</guid><description>Analysis of Operation Cronos&apos;s success in disrupting LockBit, focusing on how law enforcement leveraged affiliate trust to dismantle the ransomware giant.</description><pubDate>Mon, 27 Jul 2026 21:13:16 GMT</pubDate><category>LockBit</category><category>Operation Cronos</category><category>Ransomware</category><category>FBI</category><category>Affiliate Trust</category><category>RaaS</category></item><item><title>Windows Device ID Aids FBI in Tracing Alleged Scattered Spider Hacker</title><link>https://runtimerebel.com/blog/windows-device-id-aids-fbi-in-tracing-alleged-scattered-spider-hacker</link><guid isPermaLink="true">https://runtimerebel.com/blog/windows-device-id-aids-fbi-in-tracing-alleged-scattered-spider-hacker</guid><description>A court filing reveals how a persistent Windows device ID helped the FBI trace an alleged Scattered Spider hacker to a luxury retailer intrusion.</description><pubDate>Tue, 07 Jul 2026 14:38:06 GMT</pubDate><category>Scattered Spider</category><category>FBI</category><category>Attribution</category><category>Windows Device ID</category><category>Peter Stokes</category><category>OPSEC</category><category>Digital Forensics</category></item><item><title>FBI Seizes NetNut Proxy Platform &amp; Popa Botnet Operations</title><link>https://runtimerebel.com/blog/fbi-seizes-netnut-proxy-platform-popa-botnet-operations</link><guid isPermaLink="true">https://runtimerebel.com/blog/fbi-seizes-netnut-proxy-platform-popa-botnet-operations</guid><description>The FBI, in partnership, seized NetNut residential proxy platform and disrupted the Popa botnet, which compromised millions of devices.</description><pubDate>Fri, 03 Jul 2026 07:30:12 GMT</pubDate><category>NetNut</category><category>Popa Botnet</category><category>FBI</category><category>Alarum Technologies</category><category>Residential Proxy</category><category>Cybercrime</category><category>Law Enforcement Action</category></item><item><title>NetNut (Popa) Residential Proxy Disruption: Impact &amp; Defense</title><link>https://runtimerebel.com/blog/netnut-popa-residential-proxy-disruption-impact-defense</link><guid isPermaLink="true">https://runtimerebel.com/blog/netnut-popa-residential-proxy-disruption-impact-defense</guid><description>Google, FBI, and Lumen have disrupted NetNut (Popa), a vast residential proxy network, reducing its pool of compromised home devices by millions.</description><pubDate>Thu, 02 Jul 2026 21:11:17 GMT</pubDate><category>NetNut</category><category>Popa</category><category>Residential Proxy</category><category>Google</category><category>FBI</category><category>Lumen</category><category>Botnet</category><category>Device Compromise</category></item><item><title>Russian Intelligence Steals Messaging Credentials via SMS Lures</title><link>https://runtimerebel.com/blog/russian-intelligence-steals-messaging-credentials-via-sms-lures</link><guid isPermaLink="true">https://runtimerebel.com/blog/russian-intelligence-steals-messaging-credentials-via-sms-lures</guid><description>Ukraine and the FBI expose a long-running Russian intelligence campaign using fake support messages to compromise officials&apos; messaging accounts.</description><pubDate>Sat, 27 Jun 2026 20:29:25 GMT</pubDate><category>Russian Intelligence</category><category>SSU</category><category>FBI</category><category>Phishing</category><category>Messaging Security</category><category>Ukraine</category></item><item><title>FBI and Google Dismantle Outsider Enterprise Phishing Service</title><link>https://runtimerebel.com/blog/fbi-and-google-dismantle-outsider-enterprise-phishing-service</link><guid isPermaLink="true">https://runtimerebel.com/blog/fbi-and-google-dismantle-outsider-enterprise-phishing-service</guid><description>Law enforcement and Google disrupt Outsider Enterprise, a massive Phishing-as-a-Service platform responsible for $1.9 billion in losses.</description><pubDate>Mon, 15 Jun 2026 10:15:24 GMT</pubDate><category>Outsider Enterprise</category><category>Phishing as a Service</category><category>FBI</category><category>Google</category><category>Financial Crime</category></item><item><title>CISA Warns: Critical Infrastructure ATG Systems Under Attack</title><link>https://runtimerebel.com/blog/cisa-warns-critical-infrastructure-atg-systems-under-attack</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-warns-critical-infrastructure-atg-systems-under-attack</guid><description>CISA, FBI, and NSA warn of active cyberattacks targeting internet-exposed Automatic Tank Gauge (ATG) systems in critical infrastructure. Learn to defend.</description><pubDate>Wed, 03 Jun 2026 21:11:09 GMT</pubDate><category>CISA</category><category>FBI</category><category>NSA</category><category>Automatic Tank Gauge</category><category>ATG</category><category>Critical Infrastructure</category><category>OT Security</category><category>ICS Security</category></item><item><title>FBI Warning: Fake FIFA World Cup Sites Target Fans with Fraud</title><link>https://runtimerebel.com/blog/fbi-warning-fake-fifa-world-cup-sites-target-fans-with-fraud</link><guid isPermaLink="true">https://runtimerebel.com/blog/fbi-warning-fake-fifa-world-cup-sites-target-fans-with-fraud</guid><description>FBI warns of fraudulent websites impersonating FIFA for the 2026 World Cup, engaging in data theft, fake ticket sales, and hospitality scams.</description><pubDate>Thu, 28 May 2026 20:53:07 GMT</pubDate><category>FIFA World Cup 2026</category><category>Phishing</category><category>Fraud</category><category>Scam</category><category>FBI</category><category>Online Security</category><category>Identity Theft</category><category>Fake Tickets</category></item><item><title>FBI’s 2025 Internet Crime Report: Trends and Outlook</title><link>https://runtimerebel.com/blog/fbis-2025-internet-crime-report-trends-and-outlook</link><guid isPermaLink="true">https://runtimerebel.com/blog/fbis-2025-internet-crime-report-trends-and-outlook</guid><description>The FBI&apos;s 2025 Internet Crime Report highlights evolving cybercrime trends, victim impact, and reporting significance for US security professionals.</description><pubDate>Wed, 27 May 2026 17:14:55 GMT</pubDate><category>FBI</category><category>Internet Crime Report</category><category>Cybercrime</category><category>IC3</category><category>Trends</category><category>2025</category></item><item><title>FBI Warns: $388M Lost to Crypto ATM Scams in 2023 – Defense Guide</title><link>https://runtimerebel.com/blog/fbi-warns-388m-lost-to-crypto-atm-scams-in-2023-defense-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/fbi-warns-388m-lost-to-crypto-atm-scams-in-2023-defense-guide</guid><description>The FBI reports Americans lost over $388 million to crypto ATM scams in 2023, driven by social engineering. Learn how to protect against these financial frauds.</description><pubDate>Tue, 19 May 2026 20:41:06 GMT</pubDate><category>Crypto ATM</category><category>Scams</category><category>Social Engineering</category><category>FBI</category><category>Financial Fraud</category><category>Cryptocurrency</category><category>Consumer Protection</category></item><item><title>Security Brief: Data Breaches, ShinyHunters Activity, and App Flaws</title><link>https://runtimerebel.com/blog/security-brief-data-breaches-shinyhunters-activity-and-app-flaws</link><guid isPermaLink="true">https://runtimerebel.com/blog/security-brief-data-breaches-shinyhunters-activity-and-app-flaws</guid><description>Analyzes recent security events: Nvidia cloud gaming data breach, FBI warning on ShinyHunters hacking Canvas, and critical flaws in Audi mobile applications.</description><pubDate>Fri, 15 May 2026 16:42:44 GMT</pubDate><category>NVIDIA</category><category>ShinyHunters</category><category>Audi</category><category>Data Breach</category><category>Mobile Security</category><category>Cloud Gaming</category><category>FBI</category></item><item><title>US Charges Scattered Spider Member Arrested in Finland</title><link>https://runtimerebel.com/blog/us-charges-scattered-spider-member-arrested-in-finland</link><guid isPermaLink="true">https://runtimerebel.com/blog/us-charges-scattered-spider-member-arrested-in-finland</guid><description>US federal authorities charge a 19-year-old member of the Scattered Spider hacking group, highlighting the group&apos;s social engineering and SIM swapping TTPs.</description><pubDate>Tue, 28 Apr 2026 16:42:10 GMT</pubDate><category>Scattered Spider</category><category>SIM Swapping</category><category>Noah Michael Urban</category><category>FBI</category><category>Ransomware Affiliate</category></item><item><title>US Dismantles Myanmar-Based Investment Fraud and Domain Network</title><link>https://runtimerebel.com/blog/us-dismantles-myanmar-based-investment-fraud-and-domain-network</link><guid isPermaLink="true">https://runtimerebel.com/blog/us-dismantles-myanmar-based-investment-fraud-and-domain-network</guid><description>US authorities charge 29 individuals and seize 500+ domains linked to a massive Myanmar-based financial fraud operation targeting US citizens.</description><pubDate>Sat, 25 Apr 2026 04:54:04 GMT</pubDate><category>Financial Fraud</category><category>Pig Butchering</category><category>Myanmar</category><category>Investment Scams</category><category>FBI</category><category>Ly Yong Phat</category></item><item><title>iPhone Notification Database Forensic Extraction: Signal Privacy Risk</title><link>https://runtimerebel.com/blog/iphone-notification-database-forensic-extraction-signal-privacy-risk</link><guid isPermaLink="true">https://runtimerebel.com/blog/iphone-notification-database-forensic-extraction-signal-privacy-risk</guid><description>FBI forensic extraction recovered deleted Signal messages from the iOS notification database. Analyze the technical risks and learn how to secure your device.</description><pubDate>Thu, 23 Apr 2026 12:31:34 GMT</pubDate><category>Ios Forensics</category><category>Signal App</category><category>Data Privacy</category><category>FBI</category><category>Push Notifications</category></item><item><title>Operation PowerOFF: Global Takedown of 53 DDoS-for-Hire Domains</title><link>https://runtimerebel.com/blog/operation-poweroff-global-takedown-of-53-ddos-for-hire-domains</link><guid isPermaLink="true">https://runtimerebel.com/blog/operation-poweroff-global-takedown-of-53-ddos-for-hire-domains</guid><description>Law enforcement agencies seized 53 booter domains and identified 75,000 users in the latest phase of Operation PowerOFF targeting the DDoS-as-a-Service market.</description><pubDate>Fri, 17 Apr 2026 00:44:19 GMT</pubDate><category>Operation Poweroff</category><category>DDoS for Hire</category><category>Europol</category><category>FBI</category><category>Stresser Sites</category></item><item><title>FBI and Indonesia Dismantle W3LL Phishing Infrastructure</title><link>https://runtimerebel.com/blog/fbi-and-indonesia-dismantle-w3ll-phishing-infrastructure</link><guid isPermaLink="true">https://runtimerebel.com/blog/fbi-and-indonesia-dismantle-w3ll-phishing-infrastructure</guid><description>Law enforcement dismantles the W3LL phishing toolkit infrastructure responsible for $20M in fraud attempts and thousands of credential thefts globally.</description><pubDate>Mon, 13 Apr 2026 16:32:41 GMT</pubDate><category>W3LL</category><category>Phishing</category><category>FBI</category><category>M365</category><category>Credential Theft</category></item><item><title>Global Law Enforcement Disrupts $45M Crypto Theft Network</title><link>https://runtimerebel.com/blog/global-law-enforcement-disrupts-45m-crypto-theft-network</link><guid isPermaLink="true">https://runtimerebel.com/blog/global-law-enforcement-disrupts-45m-crypto-theft-network</guid><description>International authorities in the US, UK, and Canada freeze $12 million and identify $45 million in stolen assets linked to global crypto theft schemes.</description><pubDate>Mon, 13 Apr 2026 12:32:39 GMT</pubDate><category>Cryptocurrency Theft</category><category>Operation Spincaster</category><category>Pig Butchering</category><category>FBI</category><category>Financial Crime</category></item><item><title>FBI Reports $21 Billion Cybercrime Loss in US: Key Attack Vectors</title><link>https://runtimerebel.com/blog/fbi-reports-21-billion-cybercrime-loss-in-us-key-attack-vectors</link><guid isPermaLink="true">https://runtimerebel.com/blog/fbi-reports-21-billion-cybercrime-loss-in-us-key-attack-vectors</guid><description>The FBI&apos;s IC3 report reveals Americans lost a record $21 billion to cybercrime, primarily due to investment scams, BEC, tech support fraud, and data breaches.</description><pubDate>Wed, 08 Apr 2026 00:41:11 GMT</pubDate><category>Cybercrime</category><category>FBI</category><category>IC3</category><category>Financial Fraud</category><category>Investment Scams</category><category>BEC</category><category>Tech Support Fraud</category><category>Data Breaches</category><category>Phishing</category></item><item><title>Iranian Hackers Target Kash Patel: US Offers $10M Bounty</title><link>https://runtimerebel.com/blog/iranian-hackers-target-kash-patel-us-offers-10m-bounty</link><guid isPermaLink="true">https://runtimerebel.com/blog/iranian-hackers-target-kash-patel-us-offers-10m-bounty</guid><description>The FBI confirms Iranian state-sponsored hackers compromised Kash Patel’s personal email, leading the U.S. to offer a $10M reward for information.</description><pubDate>Mon, 30 Mar 2026 08:42:33 GMT</pubDate><category>Iran</category><category>FBI</category><category>Kash Patel</category><category>Election Interference</category><category>State Sponsored</category><category>APT</category></item><item><title>Iranian-Linked Handala Group Breaches Kash Patel&apos;s Personal Email</title><link>https://runtimerebel.com/blog/iranian-linked-handala-group-breaches-kash-patel-s-personal-email</link><guid isPermaLink="true">https://runtimerebel.com/blog/iranian-linked-handala-group-breaches-kash-patel-s-personal-email</guid><description>FBI confirms Iranian-linked Handala hackers breached Director nominee Kash Patel&apos;s personal email, leaking documents and highlighting spear-phishing risks.</description><pubDate>Mon, 30 Mar 2026 00:41:00 GMT</pubDate><category>Handala</category><category>Iran</category><category>Kash Patel</category><category>FBI</category><category>Spear Phishing</category><category>Espionage</category></item><item><title>Pro-Iranian Group Claims Hack of FBI Director&apos;s Personal Account</title><link>https://runtimerebel.com/blog/pro-iranian-group-claims-hack-of-fbi-director-s-personal-account</link><guid isPermaLink="true">https://runtimerebel.com/blog/pro-iranian-group-claims-hack-of-fbi-director-s-personal-account</guid><description>A pro-Iranian hacking group claims to have compromised the personal account of FBI Director Kash Patel, exfiltrating emails and documents.</description><pubDate>Fri, 27 Mar 2026 20:15:51 GMT</pubDate><category>Pro Iranian Hacking Group</category><category>Kash Patel</category><category>FBI</category><category>Account Compromise</category><category>Cyber Espionage</category><category>Geopolitical</category></item><item><title>Proton Mail Metadata Disclosure: Understanding Legal Data Requests</title><link>https://runtimerebel.com/blog/proton-mail-metadata-disclosure-understanding-legal-data-requests</link><guid isPermaLink="true">https://runtimerebel.com/blog/proton-mail-metadata-disclosure-understanding-legal-data-requests</guid><description>Analysis of Proton Mail&apos;s metadata disclosure to Swiss authorities and the FBI, highlighting the risks of de-anonymization via payment information.</description><pubDate>Fri, 20 Mar 2026 12:19:32 GMT</pubDate><category>Proton Mail</category><category>Metadata</category><category>Privacy</category><category>FBI</category><category>Swiss Law</category><category>Anonymity</category></item><item><title>FBI Seeks Victims of Malicious Steam Games Stealing Credentials</title><link>https://runtimerebel.com/blog/fbi-seeks-victims-of-malicious-steam-games-stealing-credentials</link><guid isPermaLink="true">https://runtimerebel.com/blog/fbi-seeks-victims-of-malicious-steam-games-stealing-credentials</guid><description>The FBI is investigating eight malicious games on Steam that stole user credentials from tens of thousands of players.</description><pubDate>Sat, 14 Mar 2026 00:33:25 GMT</pubDate><category>Steam</category><category>Malware</category><category>Credential Theft</category><category>FBI</category><category>Gaming Security</category></item><item><title>Phishing Alert: Impersonation of US City/County Officials Targets Permit Applicants</title><link>https://runtimerebel.com/blog/phishing-alert-impersonation-of-us-city-county-officials-targets-permit-applicants</link><guid isPermaLink="true">https://runtimerebel.com/blog/phishing-alert-impersonation-of-us-city-county-officials-targets-permit-applicants</guid><description>The FBI warns of active phishing campaigns impersonating US city and county officials to target businesses and individuals seeking permits, aiming for fraud and data…</description><pubDate>Mon, 09 Mar 2026 16:32:27 GMT</pubDate><category>Phishing</category><category>FBI</category><category>Credential Theft</category><category>Business Email Compromise</category><category>Government Impersonation</category><category>Fraud</category></item><item><title>FBI Probes Suspicious Activity on Sensitive Surveillance Systems</title><link>https://runtimerebel.com/blog/fbi-probes-suspicious-activity-on-sensitive-surveillance-systems</link><guid isPermaLink="true">https://runtimerebel.com/blog/fbi-probes-suspicious-activity-on-sensitive-surveillance-systems</guid><description>The FBI is investigating a potential breach of a system containing sensitive surveillance data, highlighting risks to national security and FISA data.</description><pubDate>Sat, 07 Mar 2026 04:34:09 GMT</pubDate><category>FBI</category><category>Fisa Section 702</category><category>Surveillance Data</category><category>Government Cybersecurity</category><category>Insider Threat</category></item><item><title>Salt Typhoon Breach of CALEA Wiretap Systems: Technical Analysis</title><link>https://runtimerebel.com/blog/salt-typhoon-breach-of-calea-wiretap-systems-technical-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/salt-typhoon-breach-of-calea-wiretap-systems-technical-analysis</guid><description>FBI and CISA investigate a significant breach of U.S. wiretap systems by Salt Typhoon, targeting major telecommunications providers and CALEA compliance data.</description><pubDate>Fri, 06 Mar 2026 12:18:12 GMT</pubDate><category>Salt Typhoon</category><category>FBI</category><category>CALEA</category><category>Telecommunications</category><category>National Security</category></item><item><title>FBI Arrests Suspect in $46M US Marshals Crypto Theft</title><link>https://runtimerebel.com/blog/fbi-arrests-suspect-in-46m-us-marshals-crypto-theft</link><guid isPermaLink="true">https://runtimerebel.com/blog/fbi-arrests-suspect-in-46m-us-marshals-crypto-theft</guid><description>A suspect linked to the theft of $46 million in cryptocurrency from the U.S. Marshals Service has been arrested.</description><pubDate>Thu, 05 Mar 2026 20:16:44 GMT</pubDate><category>Cryptocurrency</category><category>Theft</category><category>US Marshals Service</category><category>Government</category><category>Cybercrime</category><category>FBI</category></item><item><title>FBI and Europol Dismantle LeakBase Cybercrime Forum — Operation Update</title><link>https://runtimerebel.com/blog/fbi-and-europol-dismantle-leakbase-cybercrime-forum-operation-update</link><guid isPermaLink="true">https://runtimerebel.com/blog/fbi-and-europol-dismantle-leakbase-cybercrime-forum-operation-update</guid><description>International law enforcement agencies seize LeakBase forum, a major marketplace for stolen credentials and cybercrime tools with 142,000 members.</description><pubDate>Thu, 05 Mar 2026 08:16:44 GMT</pubDate><category>LeakBase</category><category>FBI</category><category>Europol</category><category>Stolen Credentials</category><category>Law Enforcement Seizure</category></item></channel></rss>