Hackers target university HR employees in Payroll Pirate attacks

University HR employees have become targets in a new wave of Payroll Pirate attacks, a sophisticated cybercrime campaign aimed at stealing payroll data and financial information. These attacks involve phishing emails and social engineering tactics to compromise employee credentials and gain unauthorized access to payroll systems. Once inside, attackers manipulate payment details to divert funds to fraudulent accounts. The Payroll Pirate group is known for exploiting vulnerabilities in human resources and payroll departments, emphasizing the need for enhanced cybersecurity awareness and multi-factor authentication in educational institutions. This article explores the methods used by the attackers, the impact on universities, and best practices for prevention and response to such threats. Organizations are urged to implement robust security measures, conduct regular employee training, and monitor payroll systems closely to detect and mitigate these attacks early. The rise of Payroll Pirate attacks highlights the evolving threat landscape targeting critical financial operations within universities and other organizations.

This Cyber News was published on www.bleepingcomputer.com. Publication date: Thu, 09 Oct 2025 19:40:26 +0000


Cyber News related to Hackers target university HR employees in Payroll Pirate attacks

Hackers target university HR employees in Payroll Pirate attacks - University HR employees have become targets in a new wave of Payroll Pirate attacks, a sophisticated cybercrime campaign aimed at stealing payroll data and financial information. These attacks involve phishing emails and social engineering tactics to ...
2 months ago Bleepingcomputer.com Payroll Pirate
Irish university cancels all classes due to major IT security issue - On Monday, Munster Technological University in Ireland declared that its campuses in Cork would be shut down due to a major IT breach and telephone outage. All classes, both full-time and part-time, have been cancelled for Tuesday and Wednesday, ...
2 years ago Therecord.media
Switzerlands Biggest University Confirms Major Cybersecurity Breach - On Friday, the University of Zurich, Switzerland's largest university, reported that it had been the target of a serious cyberattack. This attack is part of a recent surge of hacks targeting German-speaking institutions. The university's website is ...
2 years ago Therecord.media
University of Michigan: Employee, student data stolen in cyberattack - The University of Michigan says in a statement today that hackers breaching its network in August accessed systems with information belonging to students, applicants, alumni, donors, employees, patients, and research study participants. Unauthorized ...
2 years ago Bleepingcomputer.com
The Human Firewall: Strengthening the Weakest Link in Cybersecurity - With new technology and changed business operations comes exposure to new cyber risks, prompting companies to prioritize and invest in stronger cybersecurity measures. A joint study by Stanford University Professor Jeff Hancock and security firm ...
2 years ago Cyberdefensemagazine.com
Kansas State University cyberattack disrupts IT network and services - Kansas State University announced it is managing a cybersecurity incident that has disrupted certain network systems, including VPN, K-State Today emails, and video services on Canvas and Mediasite. Kansas State University is a public land-grant ...
1 year ago Bleepingcomputer.com
Stanford University investigating cyberattack after ransomware claims - Stanford University is investigating a cybersecurity incident within its Department of Public Safety after a ransomware gang claimed it attacked the school on Friday. A spokesperson for the university directed Recorded Future News to a statement ...
2 years ago Therecord.media Akira
9 Best DDoS Protection Service Providers for 2024 - eSecurity Planet content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More. One of the most powerful defenses an organization can employ against distributed ...
2 years ago Esecurityplanet.com
Multiple colleges, K-12 schools facing outages after cyberattacks - Several K-12 schools, colleges and universities are dealing with significant technology outages due to cyberattacks this week. A spokesperson for North Carolina Central University told Recorded Future News that the school was alerted to a cyberattack ...
2 years ago Therecord.media
Tor University Challenge: First Semester Report Card - In August of 2023 EFF announced the Tor University Challenge, a campaign to get more universities around the world to operate Tor relays. The primary goal of this campaign is to strengthen the Tor network by creating more high bandwidth and reliable ...
2 years ago Eff.org
LinkedIn Tests Generative AI to Field Cybersecurity Questions From Employees and Suppliers - LinkedIn is testing how generative artificial intelligence could help employees and external suppliers get answers about cybersecurity policies within seconds, potentially cutting wait times for business deals or decisions to implement new tools. ...
2 years ago Wsj.com
Holiday Hackers: How to Safeguard Your Service Desk - Hackers really don't take holidays, but they will take advantage of them. Many of these cyberattacks will zero in on the service or help desk to gain entry into network systems. Recovering accounts because of forgotten passwords is one of the ...
2 years ago Bleepingcomputer.com
Hackers launch ‘serious’ attacks against Georgia school district, New Mexico university | The Record from Recorded Future News - Albion College reported a data breach last week after the Medusa ransomware gang claimed an attack in December and Southern Arkansas University Tech confirmed a breach after the RansomHub gang said it attacked the school in February. Alvin ...
7 months ago Therecord.media Medusa Ransomhub
Universities targeted by phishing payroll pirates - Universities across the United States have recently become prime targets for sophisticated phishing attacks aimed at hijacking payroll systems. Cybercriminals are exploiting vulnerabilities in university payroll processes to redirect employee ...
2 months ago Therecord.media
Definition from TechTarget - BYOD is a policy that enables employees in an organization to use their personally owned devices for work-related activities. Smartphones are the most common mobile device an employee might take to work, but they also take their own tablets, laptops ...
1 year ago Techtarget.com
15% of office workers use unsanctioned GenAI tools - Help Net Security - Rigid security protocols — such as complex authentication processes and highly restrictive access controls — can frustrate employees, slow productivity and lead to unsafe workarounds, according to Ivanti. When employees have unfettered access to ...
1 year ago Helpnetsecurity.com
Memorial University recovers from cyberattack, delays semester start - The Memorial University of Newfoundland continues to deal with the effects of a cyberattack that occurred in late December and postponed the start of classes in one campus. MUN is the largest public university in Atlantic Canada, with an academic and ...
1 year ago Bleepingcomputer.com Dragonforce
Ex-student charged over hacking university for cheap parking, data breaches - "Since 2021, Western Sydney University experienced a series of cyber hacks involving unauthorized access, data exfiltration, system compromise, and misuse of university infrastructure – including threatening the sale of student information on ...
5 months ago Bleepingcomputer.com
I Paid Twice: Phishing Campaign Targets Payroll Systems - A recent phishing campaign has been uncovered targeting payroll systems, leading to victims paying twice for the same payroll transactions. The attackers use sophisticated social engineering tactics to deceive employees into authorizing fraudulent ...
1 month ago Infosecurity-magazine.com
How Hackers Interrupted GTA 5 Online Gameplay on PC - Recently, a cyber-attack on Grand Theft Auto 5 Online on PC caused an interruption to thousands of players’ gameplays. The game was completely taken offline and players couldn’t even access the main gameplay menu. The attack caused an uproar ...
2 years ago Hackread.com
Hack The Box Launches 5th Annual University CTF Competition - PRESS RELEASE. Hack The Box, the leading gamified cybersecurity upskilling, certification, and talent assessment platform, is announcing its fifth annual global University Capture The Flag competition that will take place from December 8 to 10, 2023. ...
2 years ago Darkreading.com
CVE-2020-14778 - Vulnerability in the PeopleSoft Enterprise HCM Global Payroll Core product of Oracle PeopleSoft (component: Security). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access ...
5 years ago
CVE-2024-21283 - Vulnerability in the PeopleSoft Enterprise HCM Global Payroll Core product of Oracle PeopleSoft (component: Global Payroll for Core). Supported versions that are affected are 9.2.48-9.2.50. Easily exploitable vulnerability allows low privileged ...
1 year ago
CVE-2025-50062 - Vulnerability in the PeopleSoft Enterprise HCM Global Payroll Core product of Oracle PeopleSoft (component: Global Payroll for Core). Supported versions that are affected are 9.2.51 and 9.2.52. Easily exploitable vulnerability allows low privileged ...
5 months ago
Anonymous Sudan launches DDOS Cyber Attack on University of Cambridge - Reports from both the University of Cambridge and the University of Manchester have revealed that they've fallen victim to a highly sophisticated cyber attack, with the assailants aiming to cripple their IT infrastructure. While the extent of the ...
1 year ago Cybersecurity-insiders.com