Oct 26, 2018

Daily brief for 2018-10-25

ASIA

  1. Experts released a free Decryption Tool for GandCrab ransomware
  2. Cutwail Spam Campaign Uses Steganography to Distribute URLZone
  3. Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
  4. New FilesLocker Ransomware Offered as a Ransomware as a Service
  5. Cathay Pacific data breach: 9.4 million passenger information at risk
  6. Questions Mount Over Delay After Cathay Pacific Admits Huge Data Leak
  7. North Korea blamed for two cryptocurrency scams, five trading platform hacks
  8. .@FireEye researchers have attributed the #Triton #malware -- used in an attack on an industrial control system in Saudi Arabia
  9. FireEye ties Russia to Triton malware attack in Saudi Arabia
  10. Cathay Pacific data breach exposed 9.4m customers’ details
  11. CNI Campaign TRITON Linked to Russian Institute
  12. ESET releases new decryptor for Syrian victims of GandCrab ransomware
  13. Cathay Pacific data breach affecting 9.4 million passengers
  14. .@FireEye security researchers claimed the Russian government was 'most likely' behind the Triton #malware attack on an industrial control system
  15. FreeRTOS Multiple Remote Code Execution Vulnerabilities Threat Alert
  16. Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye
  17. NETSCOUT’s Arbor Cloud Expands DDoS Protection Across Asia

WORLD

  1. Experts released a free Decryption Tool for GandCrab ransomware
  2. Cutwail Spam Campaign Uses Steganography to Distribute URLZone
  3. Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
  4. British Airways has some good news and bad news about its payment breach
  5. Malware Distributors Adopt DKIM to Bypass Mail Filters
  6. Another 185K Customers Potentially Affected by the British Airways Data Breach
  7. British Airways: Cyberattack, data theft bigger than we first thought
  8. Cobalt Group tries to slip malicious PDFs past bank employees, researchers say
  9. Data Breach Announced by CMS – Approximately 75,000 Individuals’ Files Affected
  10. Abandoned Web Apps Found as a Core Cause Behind High Profile Data Breaches
  11. Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
  12. Multiple Phishing Campaigns Target Universities
  13. 77K Additional Customers Affected by British Airways' MageCart Data Breach
  14. New Techniques to Uncover and Attribute Cobalt Gang Commodity Builders and Infrastructure Revealed
  15. 5 Common Visibility Gaps Your Enterprise Security Plan Can’t Afford
  16. Malware Distributors Adopt DKIM to Bypass Mail Filters
  17. .@FireEye researchers have attributed the #Triton #malware -- used in an attack on an industrial control system in Saudi Arabia
  18. Bitdefender releases GandCrab ransomware decryption tool
  19. FireEye ties Russia to Triton malware attack in Saudi Arabia
  20. FireEye links Triton Malware to Russian Research Institute
  21. CNI Campaign TRITON Linked to Russian Institute
  22. Free GrandCrab Ransomware Decryption Tool Released by Bitdefender
  23. Cathay Pacific data breach affecting 9.4 million passengers
  24. .@FireEye security researchers claimed the Russian government was 'most likely' behind the Triton #malware attack on an industrial control system
  25. Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye
  26. West Haven pays $2k USD because of ransomware attack
  27. NETSCOUT’s Arbor Cloud Expands DDoS Protection Across Asia
  28. GandCrab Ransomware decryption tool

ATTACKS

  1. Cutwail Spam Campaign Uses Steganography to Distribute URLZone
  2. Cathay Pacific hack: Personal data of up to 9.4 million airline passengers laid bare
  3. Another 185K Customers Potentially Affected by the British Airways Data Breach
  4. British Airways: Cyberattack, data theft bigger than we first thought
  5. Cathay Pacific data breach: 9.4 million passenger information at risk
  6. Data Breach Announced by CMS – Approximately 75,000 Individuals’ Files Affected
  7. Abandoned Web Apps Found as a Core Cause Behind High Profile Data Breaches
  8. Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
  9. Questions Mount Over Delay After Cathay Pacific Admits Huge Data Leak
  10. Multiple Phishing Campaigns Target Universities
  11. 77K Additional Customers Affected by British Airways' MageCart Data Breach
  12. Cofense Hunts Phishing Threats Round the Clock with Enhanced 24-hour Global Phishing Defense Services
  13. Cathay Pacific data breach exposes PII of 9.4 million customers
  14. Cathay Pacific data breach exposed 9.4m customers’ details
  15. Hackers steal personal data of up to 9.4 million Cathay Pacific passengers
  16. Hackers steal personal data of up to 9.4 million Cathay Pacific passengers
  17. CNI Campaign TRITON Linked to Russian Institute
  18. Chalubo Botnet Compromise Your Server or IoT Device & Use it for DDOS Attack
  19. Cathay Pacific data breach affecting 9.4 million passengers
  20. Learn how hackers used TLS certificates to launch @netflix #phishing attacks from expert Michael Cobb of @thehairyITdog
  21. iOS 12 has completely blocked password cracking tool, GrayKey
  22. Data leak at consulting firm handling fundraisers for the Democratic party

THREATS

  1. New security flaw impacts most Linux and BSD distros
  2. Experts released a free Decryption Tool for GandCrab ransomware
  3. Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
  4. Malware Distributors Adopt DKIM to Bypass Mail Filters
  5. Multiple Vulnerabilities Patched in ASRock Drivers
  6. Unusual Remote Execution Bug in Cisco WebEx Discovered by Researchers
  7. Cobalt Group tries to slip malicious PDFs past bank employees, researchers say
  8. WINDOWS ZERO-DAY BY SANDBOXESCAPER
  9. New FilesLocker Ransomware Offered as a Ransomware as a Service
  10. Another one bites the dust! In 2018 Android malware can bypass defences of billon dollar AV industry and Google Play
  11. Sophos Patches RCE and Memory Disclosure Vulnerabilities in
  12. Vulnerability Spotlight: TALOS-2018-0635/0636 – Sophos HitmanPro.Alert memory disclosure and code execution vulnerabilities
  13. Pentagon Expands Bug-Bounty Program to Include Physical Systems
  14. GandCrab ransomware declawed with new decryption tool
  15. Researchers Find Command Injection Flaw in Cisco WebEx
  16. Files Encrypted by GandCrab Ransomware Can Now Be Decrypted for Free
  17. 'TimpDoor' Malware Turns Android Devices into Proxies
  18. North Korea blamed for two cryptocurrency scams, five trading platform hacks
  19. Bypass an Anti Virus Detection with Encrypted Payloads using VENOM Tool
  20. #DidYouKnow AVG Free Antivirus received the highest rating of Advanced+ in @AV_Comparatives latest Malware Protection Test? Share AVG Free Antivirus with
  21. Researchers recently found vulnerabilities in #robot controllers from @Universal_Robot. Learn what these robot controllers do and how #ThreatActors exploit these
  22. Microsoft Acknowledges Zip File Overwrite Bug - Fix Coming in November
  23. Malware Distributors Adopt DKIM to Bypass Mail Filters
  24. Mac Malware Injects Ads Into Encrypted Traffic
  25. Cisco releases fix for privilege escalation bug in Webex Meetings app
  26. .@FireEye researchers have attributed the #Triton #malware -- used in an attack on an industrial control system in Saudi Arabia
  27. Bitdefender releases GandCrab ransomware decryption tool
  28. Amazon IoT operating system FreeRTOS has serious vulnerabilities
  29. FireEye ties Russia to Triton malware attack in Saudi Arabia
  30. Our threat intelligence lead Chris Dawson (@mrdatahs) discussing new @proofpoint Threat Insight #Malware research with @threatpost.
  31. FireEye links Triton Malware to Russian Research Institute
  32. Experts discovered a severe command injection flaw in Cisco Webex Meetings Desktop
  33. You patch my back(up) and I'll patch yours... Arcserve bugs burrow remotely exploited holes in UDP storage systems
  34. Free GrandCrab Ransomware Decryption Tool Released by Bitdefender
  35. Free Decrypter Available for the Latest GandCrab Ransomware Versions
  36. Signal Desktop App Vulnerability Exposes Message Decryption Key To The Users
  37. ESET releases new decryptor for Syrian victims of GandCrab ransomware
  38. Vulnerability Spotlight: TALOS-2018-0635/0636 - Sophos HitmanPro.Alert memory disclosure and code execution vulnerabilities
  39. Free decryption tool released for multiple GandCrab ransomware versions
  40. .@FireEye security researchers claimed the Russian government was 'most likely' behind the Triton #malware attack on an industrial control system
  41. Windows 10 Update Fixed File Deletion Flaw But Not ZIP File Overwrite Bug
  42. Google Chrome 70.0.3538.77 released: Bugs fix
  43. Win10 1803 big bug bash KB 4462933 joins earlier versions, a week late to the party
  44. Building shared digital identity using blockchain technology
  45. FreeRTOS Multiple Remote Code Execution Vulnerabilities Threat Alert
  46. Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye
  47. Java Usage Tracker Vulnerability
  48. Windows 10 bug overwrites files without confirmation
  49. West Haven pays $2k USD because of ransomware attack
  50. Unusual Remote Execution Bug in Cisco WebEx Discovered by Researchers
  51. What is application security? A process and tools for securing software
  52. [BLOG] When #malware actor realizes that he can make more money by himself and transform his dropper into banking malware,
  53. New Android Malware Turns Your Mobile Devices into Hidden Proxies
  54. GandCrab Ransomware decryption tool

CRIME

  1. Another 185K Customers Potentially Affected by the British Airways Data Breach
  2. British Airways: Cyberattack, data theft bigger than we first thought
  3. Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
  4. Multiple Phishing Campaigns Target Universities
  5. 5 Common Visibility Gaps Your Enterprise Security Plan Can’t Afford
  6. Cofense Hunts Phishing Threats Round the Clock with Enhanced 24-hour Global Phishing Defense Services
  7. Hackers steal personal data of up to 9.4 million Cathay Pacific passengers
  8. Cathay Pacific data breach affecting 9.4 million passengers

POLITICS

  1. Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye