Meta employees, contractors compromised customer accounts. Nemesis Kitten found in US Government network. Unpatched Magento instances hit with "TrojanOrders." Emotet has returned after three quiet months. DDoS attacks in game servers by RapperBot. Carole Theriault looks at long term lessons learned from the 2019 Capital One breach. FBI Cyber Division AD Bryan Vorndran updates us on cyber threats. And an alleged "Zeus" cybercrime boss has been arrested in Switzerland.\n\nFor links to all of today's stories check out our CyberWire daily news briefing:\nhttps://thecyberwire.com/newsletters/daily-briefing/11/221\n\nSelected reading.\nMeta Employees, Security Guards Fired for Hijacking User Accounts (Wall Street Journal)\nCISA Alert AA22-320A \u2013 Iranian government-sponsored APT actors compromise federal network, deploy crypto miner, credential harvester. (CyberWire)\nIranian Government-Sponsored APT Actors Compromise Federal Network, Deploy Crypto Miner, Credential Harvester (CISA)\nIranian government-linked hackers got into Merit Systems Protection Board\u2019s network (Washington Post)\nIranian hackers compromise US government network in cryptocurrency generating scheme, officials say (CNN)\nMagento stores targeted in massive surge of TrojanOrders attacks (BleepingComputer)\xa0\nA Comprehensive Look at Emotet\u2019s Fall 2022 Return (Proofpoint)\xa0\nNotorious Emotet botnet returns after a few months off (Register)\xa0\nUpdated RapperBot malware targets game servers in DDoS attacks (BleepingComputer)\xa0\nRussia\u2019s cyber forces \u2018underperformed expectations\u2019 in Ukraine: senior US official (The Hill)\nSuspected Zeus cybercrime ring leader \u2018Tank\u2019 arrested by Swiss police (BleepingComputer)\nLearn more about your ad choices. Visit megaphone.fm/adchoices