Oct 1, 2018

Daily brief for 2018-09-30

ASIA

  1. Cryptomining Malware Grows by 86% in Q2: McAfee Report
  2. Facebook monetizes 2FA, Singapore monetizes hacker, and ransomware creeps monetize US Democrats

WORLD

  1. Estonia sues Gemalto for 152M euros over flaws in citizen ID cards issued by the company
  2. Cryptomining Malware Grows by 86% in Q2: McAfee Report
  3. Security Affairs newsletter Round 182 – News of the week
  4. The British Airways #databreach may be the handiwork of hacking group #Magecart, according to researchers. By @MaddieBacon11
  5. Facebook monetizes 2FA, Singapore monetizes hacker, and ransomware creeps monetize US Democrats
  6. Telegram exposes the IP address during a user call by default

ATTACKS

  1. Experts comment on Facebook’s 50 million user credential leak
  2. 40 million more likely affected by massive Facebook data leak - Bitdefender
  3. Project Insecurity (@insecurity) researchers discovered certain #livechatsoftware that were leaking personal details of employee at several high-profile sites. Discover how
  4. Telegram Leaks Public & Private IP Address While Making Calls
  5. The United Nations (@UN) accidentally exposed sensitive information on public @trello boards, in the Jira app, and in #GoogleDocs and
  6. Chegg forces password reset on 40 million users
  7. Hackers are Selling Social Media Logins & Financial Details On Dark Web starting from £2
  8. 3 GOP senators doxed during Kavanaugh hearing
  9. Uber has agreed to pay more than $140 Million for a data breach settlement
  10. USBStealer – Password Hacking Tool For Windows Machine Applications to Perform Windows Penetration Testing

THREATS

  1. Mutagen Astronomy – Linux Vulnerability Hits CentOS, Debian, and Red Hat Distros
  2. GANDCRAB 5.0.1 Ransom Virus – How to Remove It and Restore Data
  3. Facebook Says Three Different Bugs Are Responsible For The Massive Account Hacks
  4. Week in review: First-ever UEFI rootkit, Apple DEP vulnerability, new tactics subvert traditional security measures
  5. Estonia sues Gemalto for 152M euros over flaws in citizen ID cards issued by the company
  6. Facebook Ad Targeting Exploits Users’ 2FA Phone Numbers
  7. Apple DEP Authentication Flaw Leaves Devices Vulnerable To Malicious MDM Enrolling
  8. Telegram Leaks Public & Private IP Address While Making Calls
  9. #Android #Trojan: How is data being stolen from #messagingapps?
  10. Docs reveal how Fruitfly Mac spyware initially spread
  11. Cryptomining Malware Grows by 86% in Q2: McAfee Report
  12. #Cisco patches yet another hardcoded credentials flaw, this time in its video surveillance manager appliance; the latest vulnerability is at
  13. Facebook monetizes 2FA, Singapore monetizes hacker, and ransomware creeps monetize US Democrats
  14. Security roundup: Facebook, ransomware, UEFI rootkit, Berners-Lee’s plan for new internet
  15. Telegram exposes the IP address during a user call by default
  16. #GoScanSSH: How does this #malware work and differ from others?
  17. Xbash Malware Combines Many Malicious Functions in Worm
  18. Discover how the #VPNFilter #malware works and affects users
  19. Mojave Flaws Allow An Attacker To Bypass Full Disk Access Requirement
  20. FBI IC3 warns of cyber attacks exploiting Remote Desktop Protocol (RDP)
  21. Alphabet's Chronicle has given #VirusTotal a makeover. Find out what's in the new VirusTotal Enterprise offering. By @RobWright22
  22. Improving core processes with next-generation mobile productivity solutions can bring power and cost efficiency gains. However, we must not lose
  23. Malware in the Cloud: What You Need to Know
  24. Beware !! USB Devices & Removable Media are Used to Inject Cryptocurrency Mining Malware
  25. Election equipment vendors come under fire for #votingmachine security in the latest #DEFCON report, which details flaws -- one from
  26. Cisco Multiple Security Vulnerabilities Alert
  27. Zero-Day MacOS Mojave Privacy Bypass Bug Exposes Protected Files
  28. A Top Facebook Bug Bounty Hunter Shares Their Insights on the Facebook Breach

CRIME

  1. Estonia sues Gemalto for 152M euros over flaws in citizen ID cards issued by the company
  2. Cryptomining Malware Grows by 86% in Q2: McAfee Report
  3. Security Affairs newsletter Round 182 – News of the week
  4. Xbash Malware Combines Many Malicious Functions in Worm
  5. Beware !! USB Devices & Removable Media are Used to Inject Cryptocurrency Mining Malware

POLITICS

  1. Election equipment vendors come under fire for #votingmachine security in the latest #DEFCON report, which details flaws -- one from