Claimed – Earlybirds Invest https://earlybirdsinvest.com Latest Crypto News Sat, 16 Aug 2025 10:05:06 +0000 en-US hourly 1 https://wordpress.org/?v=6.9.7 https://i0.wp.com/earlybirdsinvest.com/wp-content/uploads/2024/12/cropped-New-Project-2024-12-17T235703.455.png?fit=32%2C32&ssl=1 Claimed – Earlybirds Invest https://earlybirdsinvest.com 32 32 240146708 Colt Telecom attack claimed by WarLock ransomware, data up for sale https://earlybirdsinvest.com/colt-telecom-attack-claimed-by-warlock-ransomware-data-up-for-sale/ https://earlybirdsinvest.com/colt-telecom-attack-claimed-by-warlock-ransomware-data-up-for-sale/#respond Sat, 16 Aug 2025 10:05:05 +0000 https://earlybirdsinvest.com/colt-telecom-attack-claimed-by-warlock-ransomware-data-up-for-sale/

Colt Telecom attack claimed by WarLock ransomware, data up for sale

UK-based telecommunications company Colt Technology Services is dealing with a cyberattack that has caused a multi-day outage of some of the company’s operations, including hosting and porting services, Colt Online, and Voice API platforms.

The British telecommunications and network services provider disclosed that the attack started on August 12 and the disruption continues as its IT staff works around the clock to mitigate its effects.

Founded in 1992 as City of London Telecommunications (COLT) and acquired by Fidelity Investments in 2015, Colt is a major telecommunications service provider operating in 30 countries across Europe, Asia, and North America. The company employs 75,000 km of fiber networks linking 900 data centers.

Services still offline

Initially, the company announced a “technical issue” without confirming a cyber incident. However, the nature of the event was communicated in subsequent status updates.

The attack forced the firm to take specific systems offline as a protective measure, which affected the operations of support services, including Colt Online and the Voice API platform.

Customer communication through online portals is currently unavailable, and clients are advised to contact Colt by email or phone and expect slower-than-usual responses.

The company underlined that the impacted systems are support services, not the core customer network infrastructure.

As of today, there is no estimation for restoring affected systems and operations.

Colt says it has notified the authorities about the incident without providing any details about the perpetrators or the type of attack.

WarLock claims the attack

A threat actor using the alias ‘cnkjasdfgd’ and claiming to be a member of the WarLock ransomware gang claimed the attack and offered to sell for $200,000 a batch of one million documents allegedly stolen from Colt.

Several data samples have also been published to prove the validity of the files. According to the threat actor, the stolen files include financial, employee, customer, and executive data, internal emails, and software development information.

Threat actor's post on a hacker forum
Threat actor’s post on a hacker forum
Source: KELA

Although the telecommunications company did not disclose the cause of the breach, security researcher Kevin Beaumont says that the hacker likely managed to gain initial access by exploiting a remote code execution vulnerability in Microsoft SharePoint tracked as CVE-2025-53770.

The security issue has been exploited as a zero-day since at least July 18 and is considered critical in severity. Microsoft addressed it in a security update on July 21.

According to Beaumont, the hackers stole a few hundred gigabytes of files with customer data and documentation.

BleepingComputer has contacted Colt to ask for verification of these allegations, and a spokesperson sent us the below comment:

“We’re aware of claims regarding the cyber incident. We are currently investigating these claims.”

“Our technical team is focused on restoring the internal systems impacted by the cyber incident and is working closely with third-party cyber experts. We are grateful for our customers’ understanding as we work towards a resolution to fix the impacted internal systems.” – Colt spokesperson

Update 8/15 – Added comment from Colt

Picus Blue Report 2025

46% of environments had passwords cracked, nearly doubling from 25% last year.

Get the Picus Blue Report 2025 now for a comprehensive look at more findings on prevention, detection, and data exfiltration trends.

]]>
https://earlybirdsinvest.com/colt-telecom-attack-claimed-by-warlock-ransomware-data-up-for-sale/feed/ 0 53475
Libra Token’s Co-Creator Claimed He Paid Argentinian President Milei’s Sister https://earlybirdsinvest.com/libra-tokens-co-creator-claimed-he-paid-argentinian-president-mileis-sister/ https://earlybirdsinvest.com/libra-tokens-co-creator-claimed-he-paid-argentinian-president-mileis-sister/#respond Wed, 19 Feb 2025 01:28:22 +0000 https://earlybirdsinvest.com/libra-tokens-co-creator-claimed-he-paid-argentinian-president-mileis-sister/

A key player behind the Libra token bragged about buying access to Argentine President Javier Milei’s inner circle months before the memecoin’s scandalous launch and crash.

In text messages reviewed by CoinDesk, Hayden Davis, CEO of Kelsier Ventures, claimed he could “control” Milei because of payments he had been making to Karina Milei, a powerful figure in Milei’s government, not to mention the president’s sister.

“I control that n****,” Davis claimed in text messages from mid-December, adding, “I send $$ to his sister and he signs whatever I say and does what I want.”

Following the publication of this article, Michael Padovano, a spokesperson for Davis, told CoinDesk that Davis does not recall sending such a message, and has no record on his phone of sending it.

The statement continued as follows: “Recent media reports claiming I paid President Javier Milei or his sister, Karina Milei, to launch the Libra memecoin are completely false. I never made any payments to them, nor did they request any. Their only concern was ensuring proceeds from Libra would benefit Argentina’s people and economy.”

The statement added: “This is nothing more than a politically motivated attack on President Milei.”

Karina Milei’s office did not respond to a request for comment.

It was unclear if any money was exchanged between Davis and Milei’s inner circle in advance of Libra’s launch.

Davis’ December claims add a new dimension to an anti-corruption probe that Argentina’s presidential office has opened into Javier Milei, who, on Feb. 15, brought attention to the doomed Libra crypto as a novel way to fund small businesses in that country.

But the biggest winner from the Solana-based memecoin’s launch was Davis and Kelsier Ventures. Wallets controlled by the entities netted over $100 million in Libra’s early hours, when it soared to $5 and then crashed over 95%, wiping out millions of dollars of speculative investments.

Opposition leaders in Argentina have threatened to call for an impeachment trial over the incident, which the local press has coined, “criptogate.” The scandal is weighing on Argentina’s stock market and pushed Milei into “damage control,” said one observer of the country’s crypto space.

In the December text messages, Davis claimed he could get Milei to promote ventures on social media. Milei’s tweet about Libra two months later fueled its rise. When he deleted the tweet after just five hours – and after on-chain sleuths had discovered evidence of shady dealings – Libra’s price had already crashed.

UPDATE (Feb. 18, 2025, 23:55 UTC): This article has been updated with comment from Hayden Davis. He denies making payments to President Milei or his sister.

]]>
https://earlybirdsinvest.com/libra-tokens-co-creator-claimed-he-paid-argentinian-president-mileis-sister/feed/ 0 20401