Daily brief for 2018-10-25
ASIA
- Experts released a free Decryption Tool for GandCrab ransomware
- Cutwail Spam Campaign Uses Steganography to Distribute URLZone
- Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
- New FilesLocker Ransomware Offered as a Ransomware as a Service
- Cathay Pacific data breach: 9.4 million passenger information at risk
- Questions Mount Over Delay After Cathay Pacific Admits Huge Data Leak
- North Korea blamed for two cryptocurrency scams, five trading platform hacks
- .@FireEye researchers have attributed the #Triton #malware -- used in an attack on an industrial control system in Saudi Arabia
- FireEye ties Russia to Triton malware attack in Saudi Arabia
- Cathay Pacific data breach exposed 9.4m customers’ details
- CNI Campaign TRITON Linked to Russian Institute
- ESET releases new decryptor for Syrian victims of GandCrab ransomware
- Cathay Pacific data breach affecting 9.4 million passengers
- .@FireEye security researchers claimed the Russian government was 'most likely' behind the Triton #malware attack on an industrial control system
- FreeRTOS Multiple Remote Code Execution Vulnerabilities Threat Alert
- Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye
- NETSCOUT’s Arbor Cloud Expands DDoS Protection Across Asia
WORLD
- Experts released a free Decryption Tool for GandCrab ransomware
- Cutwail Spam Campaign Uses Steganography to Distribute URLZone
- Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
- British Airways has some good news and bad news about its payment breach
- Malware Distributors Adopt DKIM to Bypass Mail Filters
- Another 185K Customers Potentially Affected by the British Airways Data Breach
- British Airways: Cyberattack, data theft bigger than we first thought
- Cobalt Group tries to slip malicious PDFs past bank employees, researchers say
- Data Breach Announced by CMS – Approximately 75,000 Individuals’ Files Affected
- Abandoned Web Apps Found as a Core Cause Behind High Profile Data Breaches
- Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
- Multiple Phishing Campaigns Target Universities
- 77K Additional Customers Affected by British Airways' MageCart Data Breach
- New Techniques to Uncover and Attribute Cobalt Gang Commodity Builders and Infrastructure Revealed
- 5 Common Visibility Gaps Your Enterprise Security Plan Can’t Afford
- Malware Distributors Adopt DKIM to Bypass Mail Filters
- .@FireEye researchers have attributed the #Triton #malware -- used in an attack on an industrial control system in Saudi Arabia
- Bitdefender releases GandCrab ransomware decryption tool
- FireEye ties Russia to Triton malware attack in Saudi Arabia
- FireEye links Triton Malware to Russian Research Institute
- CNI Campaign TRITON Linked to Russian Institute
- Free GrandCrab Ransomware Decryption Tool Released by Bitdefender
- Cathay Pacific data breach affecting 9.4 million passengers
- .@FireEye security researchers claimed the Russian government was 'most likely' behind the Triton #malware attack on an industrial control system
- Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye
- West Haven pays $2k USD because of ransomware attack
- NETSCOUT’s Arbor Cloud Expands DDoS Protection Across Asia
- GandCrab Ransomware decryption tool
ATTACKS
- Cutwail Spam Campaign Uses Steganography to Distribute URLZone
- Cathay Pacific hack: Personal data of up to 9.4 million airline passengers laid bare
- Another 185K Customers Potentially Affected by the British Airways Data Breach
- British Airways: Cyberattack, data theft bigger than we first thought
- Cathay Pacific data breach: 9.4 million passenger information at risk
- Data Breach Announced by CMS – Approximately 75,000 Individuals’ Files Affected
- Abandoned Web Apps Found as a Core Cause Behind High Profile Data Breaches
- Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
- Questions Mount Over Delay After Cathay Pacific Admits Huge Data Leak
- Multiple Phishing Campaigns Target Universities
- 77K Additional Customers Affected by British Airways' MageCart Data Breach
- Cofense Hunts Phishing Threats Round the Clock with Enhanced 24-hour Global Phishing Defense Services
- Cathay Pacific data breach exposes PII of 9.4 million customers
- Cathay Pacific data breach exposed 9.4m customers’ details
- Hackers steal personal data of up to 9.4 million Cathay Pacific passengers
- Hackers steal personal data of up to 9.4 million Cathay Pacific passengers
- CNI Campaign TRITON Linked to Russian Institute
- Chalubo Botnet Compromise Your Server or IoT Device & Use it for DDOS Attack
- Cathay Pacific data breach affecting 9.4 million passengers
- Learn how hackers used TLS certificates to launch @netflix #phishing attacks from expert Michael Cobb of @thehairyITdog
- iOS 12 has completely blocked password cracking tool, GrayKey
- Data leak at consulting firm handling fundraisers for the Democratic party
THREATS
- New security flaw impacts most Linux and BSD distros
- Experts released a free Decryption Tool for GandCrab ransomware
- Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
- Malware Distributors Adopt DKIM to Bypass Mail Filters
- Multiple Vulnerabilities Patched in ASRock Drivers
- Unusual Remote Execution Bug in Cisco WebEx Discovered by Researchers
- Cobalt Group tries to slip malicious PDFs past bank employees, researchers say
- WINDOWS ZERO-DAY BY SANDBOXESCAPER
- New FilesLocker Ransomware Offered as a Ransomware as a Service
- Another one bites the dust! In 2018 Android malware can bypass defences of billon dollar AV industry and Google Play
- Sophos Patches RCE and Memory Disclosure Vulnerabilities in
- Vulnerability Spotlight: TALOS-2018-0635/0636 – Sophos HitmanPro.Alert memory disclosure and code execution vulnerabilities
- Pentagon Expands Bug-Bounty Program to Include Physical Systems
- GandCrab ransomware declawed with new decryption tool
- Researchers Find Command Injection Flaw in Cisco WebEx
- Files Encrypted by GandCrab Ransomware Can Now Be Decrypted for Free
- 'TimpDoor' Malware Turns Android Devices into Proxies
- North Korea blamed for two cryptocurrency scams, five trading platform hacks
- Bypass an Anti Virus Detection with Encrypted Payloads using VENOM Tool
- #DidYouKnow AVG Free Antivirus received the highest rating of Advanced+ in @AV_Comparatives latest Malware Protection Test?
Share AVG Free Antivirus with
- Researchers recently found vulnerabilities in #robot controllers from @Universal_Robot. Learn what these robot controllers do and how #ThreatActors exploit these
- Microsoft Acknowledges Zip File Overwrite Bug - Fix Coming in November
- Malware Distributors Adopt DKIM to Bypass Mail Filters
- Mac Malware Injects Ads Into Encrypted Traffic
- Cisco releases fix for privilege escalation bug in Webex Meetings app
- .@FireEye researchers have attributed the #Triton #malware -- used in an attack on an industrial control system in Saudi Arabia
- Bitdefender releases GandCrab ransomware decryption tool
- Amazon IoT operating system FreeRTOS has serious vulnerabilities
- FireEye ties Russia to Triton malware attack in Saudi Arabia
- Our threat intelligence lead Chris Dawson (@mrdatahs) discussing new @proofpoint Threat Insight #Malware research with @threatpost.
- FireEye links Triton Malware to Russian Research Institute
- Experts discovered a severe command injection flaw in Cisco Webex Meetings Desktop
- You patch my back(up) and I'll patch yours... Arcserve bugs burrow remotely exploited holes in UDP storage systems
- Free GrandCrab Ransomware Decryption Tool Released by Bitdefender
- Free Decrypter Available for the Latest GandCrab Ransomware Versions
- Signal Desktop App Vulnerability Exposes Message Decryption Key To The Users
- ESET releases new decryptor for Syrian victims of GandCrab ransomware
- Vulnerability Spotlight: TALOS-2018-0635/0636 - Sophos HitmanPro.Alert memory disclosure and code execution vulnerabilities
- Free decryption tool released for multiple GandCrab ransomware versions
- .@FireEye security researchers claimed the Russian government was 'most likely' behind the Triton #malware attack on an industrial control system
- Windows 10 Update Fixed File Deletion Flaw But Not ZIP File Overwrite Bug
- Google Chrome 70.0.3538.77 released: Bugs fix
- Win10 1803 big bug bash KB 4462933 joins earlier versions, a week late to the party
- Building shared digital identity using blockchain technology
- FreeRTOS Multiple Remote Code Execution Vulnerabilities Threat Alert
- Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye
- Java Usage Tracker Vulnerability
- Windows 10 bug overwrites files without confirmation
- West Haven pays $2k USD because of ransomware attack
- Unusual Remote Execution Bug in Cisco WebEx Discovered by Researchers
- What is application security? A process and tools for securing software
- [BLOG] When #malware actor realizes that he can make more money by himself and transform his dropper into banking malware,
- New Android Malware Turns Your Mobile Devices into Hidden Proxies
- GandCrab Ransomware decryption tool
CRIME
- Another 185K Customers Potentially Affected by the British Airways Data Breach
- British Airways: Cyberattack, data theft bigger than we first thought
- Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
- Multiple Phishing Campaigns Target Universities
- 5 Common Visibility Gaps Your Enterprise Security Plan Can’t Afford
- Cofense Hunts Phishing Threats Round the Clock with Enhanced 24-hour Global Phishing Defense Services
- Hackers steal personal data of up to 9.4 million Cathay Pacific passengers
- Cathay Pacific data breach affecting 9.4 million passengers
POLITICS
- Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye