Sep 25, 2018

Threat report for 2018-09-24

DATA BREACH

  1. Experts uncovered a new Adwind campaign aimed at Linux, Windows, and macOS systems
  2. New Adwind Campaign Targets Linux, Windows, and macOS
  3. Survey: Nearly one-third of breached companies reported job losses after data breach
  4. 4 Things To Do To Get Your Smartphone Compromised
  5. [SingCERT] Alert on Microsoft JET Database Engine Vulnerabilities CVE-2018-8392 and CVE-2018-8393
  6. Freelance workers targeted in new malware campaign
  7. Bug Exposed Direct Messages of Millions of Twitter Users
  8. A bug in Twitter Account Activity API exposed users messages to wrong developers
  9. Do you know who the biggest threat actors are? Check out this paper that shares our perspective on the key takeaways from the 2018 Verizon Data Breach Investigations Report. Get your copy here:   #DBIR #
  10. Hackers Compromised Thousands of WordPress Sites and Redirects to Tech Support Scams

DENIAL-OF-SERVICE

  1. It’s an active buyer’s market for DDoS-as-a-Service - NETSCOUT
  2. Tricky DoS Attack Crashes Mozilla Firefox
  3. Virobot Ransomware Logs Keystrokes and Adds PC to Spam Botnet
  4. Credential Stuffing Attacks Are Reaching DDoS Proportions
  5. Viborot ransomware comes with a botnet

MALVERTISING

Nothing to report

PHISHING

  1. Microsoft goes password-free for Azure AD sign-in
  2. Cisco: We’ve killed another critical hard-coded root password bug, patch urgently
  3. Yubico's latest authentication keys get the jump on a 'passwordless' future
  4. US ISP RCN stores customer passwords in cleartext
  5. Zoho Suspended by Domain Registrar Over Phishy Emails
  6. [SingCERT] Alert on Cisco Video Surveillance Manager Default Password Vulnerability CVE-2018-15427
  7. Breaking Chrome / Google account auto login (and tracking)
  8. Microsoft Deletes Passwords for Azure Active Directory Applications
  9. Cisco: We've killed another critical hard-coded root password bug, patch urgently
  10. Cisco Removes Default Password From Video Surveillance Manager
  11. Western Digital resolves year-old password bypass bug in My Cloud NAS devices
  12. Pervasive email #security threats have dampened adoption of #cloud-based productivity tools: #survey   #BarracudaNetworks #phishing #Office365 #fraud #AI #

WEB DEFACEMENT

Nothing to report

MALWARE

  1. Hackers Use Cloud Hosting Services To Deliver Malware That Steals Cryptocurrency Wallet Details
  2. Pennsylvania Senate Democrats paid $700,000 to recover from ransomware attack
  3. Adwind RAT Scurries By AV Software With New DDE Variant
  4. Join our LIVE Webcast with @SCMagazine on 9/25: #Cryptomining: The Next #Malware Attack >>> register now   <<<
  5. Scottish Brewery Recovered from Ransomware Attack
  6. Cybercriminals Target Kodi Media Player for Malware Distribution
  7. Scottish Brewery Recovered from Ransomware Attack  …
  8. Zoho Suspended by Domain Registrar Over Phishy Emails
  9. Operator of hackers' favorite malware scanning service gets 14 years in prison
  10. Black Rose Lucy Android malware mimics user's on-screen click
  11. Adwind RAT Scurries By AV Software With New DDE Variant
  12. Hacker Sentenced for Running “Scan4you” Malware Scanning Service
  13. Blocking ransomware for free with honeypots
  14. Unraveling Emotet's Latest Macro Obfuscation
  15. Adwind Trojan circumvents antivirus software to infect your PC
  16. #SecurityNews: Over 90% of US retail domains analyzed recently were found to be non-compliant with #PCI DSS. The sector also performed worst out of the 18 appraised. Read more about this here:   #compliance #cyberattack #
  17. Researchers warn of iTranslator man-in-the-middle malware
  18. Virobot Ransomware Logs Keystrokes and Adds PC to Spam Botnet
  19. Pennsylvania Senate Democrats paid $700,000 to recover from ransomware attack
  20. Ransomware, Fileless Attacks and Cold Boot the Current Trend
  21. Virobot Malware Emerges
  22. Freelance workers targeted in new malware campaign
  23. Viborot ransomware comes with a botnet
  24. Scottish brewery ransomware attack leverages job opening
  25. Arran Brewery Hits Massive Ransomware Attack – Warned Other Companies to Stay Safe
  26. Thousands of WordPress sites are infected with the malicious code

EXPLOIT

Nothing to report

VULNERABILITY

  1. macOS Mojave Privacy Bypass Flaw Allows Access to Protected Files
  2. Cisco: We’ve killed another critical hard-coded root password bug, patch urgently
  3. U.S. General Service Administration Launches Bug Bounty Program
  4. Cisco patches 'critical' credential bug in video surveillance software
  5. [SingCERT] Alert on Cisco Video Surveillance Manager Default Password Vulnerability CVE-2018-15427
  6. Apple MacOS Mojave zero-day privacy bypass vulnerability revealed
  7. The MyCloud Auth Vulnerability Fixed by Western Digital with a Hotfix
  8. [SingCERT] Alert on Microsoft JET Database Engine Vulnerabilities CVE-2018-8392 and CVE-2018-8393
  9. Cisco Patches Critical Flaw in Cisco Video Surveillance Manager (VSM) Software
  10. New Bug Crashes Mozilla Firefox on Windows, Linux, and Mac Systems
  11. Cisco Patched Critical Vulnerability With Video Surveillance Manager Appliance
  12. [SingCERT] Alert on Critical Out-Of-Band Adobe Acrobat Vulnerability (CVE-2018-12848)
  13. Critical flaw affects Cisco Video Surveillance Manager
  14. macOS Mojave Privacy Bypass Flaw Allows Access to Protected Files
  15. Cisco: We've killed another critical hard-coded root password bug, patch urgently
  16. Report: Microsoft misses disclosure deadline to patch RCE bug in JET
  17. Western Digital resolves year-old password bypass bug in My Cloud NAS devices
  18. Cisco Patched Critical Vulnerability In Its Video Surveillance Manager Software
  19. Bug Exposed Direct Messages of Millions of Twitter Users
  20. A bug in Twitter Account Activity API exposed users messages to wrong developers