Oct 7, 2018

Threat report for 2018-10-06

DATA BREACH

  1. SQL Injection Exposed Data From Canadian ISP – Altima Telecom
  2. China’s Alleged Hidden Chip for Espionage Exposed
  3. Washington D.C. Man Faces Up to 20 Years in Jail for US Senators Doxing Charges
  4. $12 Billion Lost Because of E-mail Account Compromise Incidents in Five Years
  5. Democratic congressional intern arrested for doxing GOP senators during Kavanaugh hearing
  6. Project Insecurity (@insecurity) researchers recently found #livechatsoftware leaking personal employee data. Learn what #data was leaked and how attackers can
  7. Burgerville discloses year-long data breach, courtesy of FIN7 cybergang
  8. Hackers Offering Less than $150 to Hack Corporate Email Accounts – 12.5 Million Email Archive Files are Exposed

DENIAL-OF-SERVICE

  1. California bill bans bots during elections

MALVERTISING

Nothing to report

PHISHING

  1. California prohibits use of weak default passwords

WEB DEFACEMENT

Nothing to report

MALWARE

  1. Android SMS Worm, plus setting up a Mac for kids
  2. .@ThreatFabric researchers uncovered a #malware that uses overlay techniques to avoid detection. Learn from @lewisnic how this new #Androidmalware --
  3. At the 2018 @RSAConference, researchers discussed the rise of stegware -- #malware that uses #steganography techniques to avoid detection. Learn
  4. Betabot trojan packed with anti-malware evasion tools
  5. Malicious remote admin tool seemingly linked to KONNI malware, North Korea
  6. How a remote access #Trojan checks for
  7. Report: Chinese Spy Chip Backdoored US Defense, Tech Firms
  8. More Than 50 Malicious Apps With Over 350,000 Installs Found On Google Play
  9. Researchers at @Trustlook Labs found an #Android #Trojan that copies and steals data from mobile #messagingapps. Discover how this is
  10. How to protect public SSH servers from
  11. Researchers at @TrendMicro found a new strain of #malware -- dubbed #FacexWorm -- that targets users through a malicious #ChromeExtension.

EXPLOIT

  1. SQL Injection Exposed Data From Canadian ISP – Altima Telecom
  2. Hackers exploit vulnerability in Bitcoin code

VULNERABILITY

  1. Sony Bravia Smart TVs affected by a critical vulnerability
  2. Sony Smart TV Bug Allows Remote Access, Root Privileges
  3. How #Shodan helps identify #ICSsecurity vulnerabilities
  4. Git Project Patches Remote Code Execution Vulnerability in Git
  5. The weekend starts here... right after you've installed these critical Cisco bug patches
  6. GitHub fixes a remote code security vulnerability that affects Linux system
  7. Cisco updates address 36 vulnerabilities, three critical
  8. Hackers exploit vulnerability in Bitcoin code
  9. Vulnerability Scanning vs. Penetration Testing: What's the Difference?
  10. TP-Link router vulnerable to remote takeover flaw