Daily brief for 2018-09-12
Asia
- WTB: Apple Removes Top Security Tool for Secretly Stealing Data
World
- Multi-Stage Malware Heavily Used in Recent Cobalt Attacks
- Latvian hacker sentenced to 33 months in prison for scareware scheme
- Russian hacker pleads guilty for role in massive botnet schemes
- Modular Malware Brings Stealthy Attacks to Former Soviet States
- Data breach — 380,000 British Airways transactions compromised | Avast
- Researchers implicate online card-skimming group in British Airways hack
- British Airways reveals details about data breach
Attacks
- OilRig Uses Updated BONDUPDATER to Target Middle Eastern Government
- Russian hacker pleads guilty for role in massive botnet schemes
- Jaxx Cryptocurrency wallet phishing campaign shut down
- Modular Malware Brings Stealthy Attacks to Former Soviet States
- Data breach — 380,000 British Airways transactions compromised | Avast
- Veeam Leaks 200 GB Customer Database, Goldmine for Phishers
- Park by Phone data breach affects 5000 customers
- Feeling the Pulse of Cyber Security in Healthcare
- Phishing warning: One in every one hundred emails is now a hacking attempt
- Cybercriminals Go Phishing For Jaxx Wallet Users
- Dramatic Increase of DDoS Attack Sizes Attributed to IoT Devices
- Data management firm Veeam mismanages own data, leaks 445m records
- Crooks Combine Phishing and Impersonation For Higher Success Rate
- Beware! Unpatched Safari Browser Hack Lets Attackers Spoof URLs
- British Airways reveals details about data breach
Threats
- Multi-Stage Malware Heavily Used in Recent Cobalt Attacks
- OilRig Uses Updated BONDUPDATER to Target Middle Eastern Government
- Latvian hacker sentenced to 33 months in prison for scareware scheme
- Canadian town bows to ransomware attack, will pay attackers
- Russian hacker pleads guilty for role in massive botnet schemes
- PowerShell Obfuscation Ups the Ante on Antivirus
- New Python-based Ransomware Poses as Locky
- Modular Malware Brings Stealthy Attacks to Former Soviet States
- Uproar after Adobe winds down Magento rewards-based bug bounty program
- Malware Campaign Targeting Jaxx Wallet Holders Shut Down
- Osiris Banking Trojan Displays Modern Malware Innovation
- September Patch Tuesday: Adobe patches seven critical vulnerabilities
- Office VBA + AMSI: Parting the veil on malicious macros
- A question of security: What is obfuscation and how does it work?
- Feedify becomes latest victim of the Magecart malware campaign
- Flaws Found in Fuji Electric Tool That Links Corporate PCs to ICS
- Researchers implicate online card-skimming group in British Airways hack
- Veeam Leaks 200 GB Customer Database, Goldmine for Phishers
- September 2018 Security Notes address a total of 14 flaws in SAP products
- Domestic Kitten spyware targets ISIS supporters
- Six Critical Vulnerabilities in Adobe ColdFusion Get Patches
- Microsoft purges 3,000 tech support scams hiding on TechNet
- Faster Prod at the Expense of Security? 2018 ‘Under the Hoodie’ Reveals Gaps in Applications
- Feedify Hacked with Magecart Information Stealing Script
- Cybercriminals Go Phishing For Jaxx Wallet Users
- Adobe patch update tackles six critical vulnerabilities in ColdFusion
- Crooks Combine Phishing and Impersonation For Higher Success Rate
- Microsoft Patch Tuesday updates for September 2018 also address recently disclosed Windows zero-day
- September Patch Tuesday: Windows Fixes ALPC Elevation of Privilege, Remote Code Execution Vulnerabilities
- Address Bar Spoofing Flaw Found in Edge, Safari
- Beware! Unpatched Safari Browser Hack Lets Attackers Spoof URLs
- Microsoft Released Security Updates with the Patch for Recent Windows Zero-day Flow
Crime
- Russian hacker pleads guilty for role in massive botnet schemes
- Osiris Banking Trojan Displays Modern Malware Innovation
- Data breach — 380,000 British Airways transactions compromised | Avast
- Researchers implicate online card-skimming group in British Airways hack
- Veeam Leaks 200 GB Customer Database, Goldmine for Phishers
- Feedify Hacked with Magecart Information Stealing Script
- WTB: Apple Removes Top Security Tool for Secretly Stealing Data
- British Airways reveals details about data breach
Politics
- Nothing to report