Nov 1, 2018

Daily brief for 2018-10-31

ASIA

  1. More Information about July 2018’s Singapore SingHealth Data Breach Revealed
  2. Was the Triton Malware Attack Russian in Origin?
  3. Chinese Intel Agents Indicted for 5-Year IP Theft Campaign
  4. Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
  5. Ramped-up phishing attacks target universities around the world
  6. NTT Security targets botnet infrastructure
  7. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  8. Fresh SamSam Ransomware Campaign Across the U.S
  9. DDoS Attacks in Q3 2018
  10. Microsoft continues to push the KB4464455 patch for fixing ZIP bug

WORLD

  1. 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
  2. Eurostar Resets Users' Passwords After Potential Data Breach
  3. Prioritizing the fundamentals of coordinated vulnerability disclosure
  4. 2018’s Most Prevalent Ransomware – We Took it for a Ride
  5. Was the Triton Malware Attack Russian in Origin?
  6. Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
  7. Ramped-up phishing attacks target universities around the world
  8. Nigerian Airline Arik Air May Have Leaked Customer Data
  9. Whiteboard Wednesday: Common Vulnerabilities as Personified by Halloween Costumes
  10. Vulnerability Spotlight: Multiple Vulnerabilities in Yi Technology Home Camera
  11. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  12. Australian companies failing to slow the tide of data breaches: OAIC
  13. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  14. Recently found GPlayed trojan spinoff analysed
  15. Fresh SamSam Ransomware Campaign Across the U.S
  16. Nigerian airline Arik Air may have leaked customer data
  17. Federal employee infects gov't network with Russian malware through adult video websites
  18. Businesses unprepared for Windows 10 migration, fear vulnerability to cyber threats
  19. DDoS Attacks in Q3 2018
  20. A Report on Data Breaches in Australia
  21. 12 malicious libraries found in Python PyPI
  22. OIG’s Take On Healthcare.gov Patient Record Breach

ATTACKS

  1. 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
  2. More Information about July 2018’s Singapore SingHealth Data Breach Revealed
  3. Software bugs could compromise midterm votes in Texas
  4. Eurostar Resets Users' Passwords After Potential Data Breach
  5. Why data security is a priority for political campaigns
  6. The Radisson Hotel Group has suffered a data breach
  7. Social Security Numbers, PII Stolen in NorthBay Healthcare Data Breach
  8. Healthcare.gov website suffers data breach affecting 75,000 enrollees
  9. Tomorrowland festival goers affected by data breach
  10. Chinese Intel Agents Indicted for 5-Year IP Theft Campaign
  11. Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
  12. Re: The Zombie Phish
  13. Ramped-up phishing attacks target universities around the world
  14. Nigerian Airline Arik Air May Have Leaked Customer Data
  15. Cyber Attacks Up Prior To Midterms, 81.5 Million Voter Records Threatened
  16. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  17. Average data breach fines have doubled as ICO hints at higher fines
  18. Australian companies failing to slow the tide of data breaches: OAIC
  19. Assault and battery: Malvertising campaign checks user device' charge as anti-detection technique
  20. Live Webinar | Identity Proofing in the Era of Data Breaches and Social Networking
  21. Come fermare i data breach con i servizi di Detection&Response #MDR: il caso di un'importante media company finlandese
  22. Fresh SamSam Ransomware Campaign Across the U.S
  23. Nigerian airline Arik Air may have leaked customer data
  24. Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
  25. SamSam Ransomware Campaigns Highly Active in 2018 and Heavily Targets Organizations
  26. [Infographic] 5 Ways #Cybercriminals Can Access Your Emails Without #Phishing:
  27. A Report on Data Breaches in Australia
  28. A DHCPv6 package could compromise a vulnerable Linux system
  29. OIG’s Take On Healthcare.gov Patient Record Breach
  30. Exploit Chain Modified to Slip Antivirus Detection in a New Malware Campaign

THREATS

  1. Software bugs could compromise midterm votes in Texas
  2. Yi Technology Home Cameras Exploitable Using Multiple Vulnerabilities
  3. Prioritizing the fundamentals of coordinated vulnerability disclosure
  4. Vulnerability Spotlight: Multiple Vulnerabilities in Yi Technology Home Camera
  5. SamSam Ransomware Goes on a Tear
  6. Apple Patches Multiple Major Security Flaws
  7. 2018’s Most Prevalent Ransomware – We Took it for a Ride
  8. Actively Exploited High Impact DoS Vulnerability Found in Cisco ASA and FTD
  9. Was the Triton Malware Attack Russian in Origin?
  10. Apple Fixes Multiple macOS, iOS Bugs Including a Quirky FaceTime Vulnerability
  11. Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
  12. Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
  13. Kraken Ransomware Upgrades Distribution with RaaS Model
  14. Security Code AutoFill Flaw Exposes iOS, macOS Users to Banking Fraud Attacks
  15. GandCrab ransomware crew loses $1M after Bitdefender releases free decrypter
  16. Whiteboard Wednesday: Common Vulnerabilities as Personified by Halloween Costumes
  17. Vulnerability Spotlight: Multiple Vulnerabilities in Yi Technology Home Camera
  18. Promethium/StrongPity Malware
  19. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  20. "The presence of the insecure remote access software on systems used for election management raised concerns that malicious #ThreatActors --
  21. Double-Gun Trojan which uses game plug-in to spread, is updated to V4.0 and looking for trouble
  22. Kraken Cryptor ransomware merges with Fallout exploit kit, fees slashed to gain followers
  23. Emotet Trojan Begins Stealing Victim's Email Using New Module
  24. Kraken Ransomware Now Being Distributed by Fallout Exploit Kit
  25. Several vulnerabilities were found in controllers made by @Universal_Robot. Discover what these #robot controllers are used for and how
  26. It's a front? Mac cryptocurrency ticker actually installs backdoors
  27. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  28. Emotet trojan starts stealing full emails from infected machines
  29. Recently found GPlayed trojan spinoff analysed
  30. Fresh SamSam Ransomware Campaign Across the U.S
  31. Apple Patches Passcode Bypass, FaceTime Flaws in iOS
  32. Federal employee infects gov't network with Russian malware through adult video websites
  33. All You Need to Know About Blockchain Testing
  34. Businesses unprepared for Windows 10 migration, fear vulnerability to cyber threats
  35. Apple Patches Critical Flaws in iOS 12.1, macOS 10.14.1 Updates
  36. Canonical Releases Ubuntu 16.04 LTS Kernel Patch, Fixed 4 Security Vulnerabilities
  37. Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
  38. CVE-2018-18649: Gitlab Wiki API Remote Code Execution Vulnerability Alert
  39. SamSam Ransomware Campaigns Highly Active in 2018 and Heavily Targets Organizations
  40. What do you think the combination of the #TrickBot banking Trojan to #IcedID means for the future of banking #Trojans?
  41. Apple Released Security Updates for iOS, watchOS, Safari , tvOS, iTunes & Fixed Several Vulnerabilities
  42. Windows 10 Universal Windows Platform Vulnerability
  43. 12 malicious libraries found in Python PyPI
  44. 5 Types of Malware Currently Affecting macOS
  45. Webroot Unveils Nastiest Malware of 2018
  46. Microsoft continues to push the KB4464455 patch for fixing ZIP bug
  47. Exploit Chain Modified to Slip Antivirus Detection in a New Malware Campaign

CRIME

  1. 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
  2. The Radisson Hotel Group has suffered a data breach
  3. Social Security Numbers, PII Stolen in NorthBay Healthcare Data Breach
  4. Tomorrowland festival goers affected by data breach
  5. Chinese Intel Agents Indicted for 5-Year IP Theft Campaign
  6. Re: The Zombie Phish
  7. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  8. NTT Security targets botnet infrastructure
  9. Fresh SamSam Ransomware Campaign Across the U.S
  10. All You Need to Know About Blockchain Testing
  11. DDoS Attacks in Q3 2018

POLITICS

  1. 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
  2. More Information about July 2018’s Singapore SingHealth Data Breach Revealed
  3. Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
  4. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  5. "The presence of the insecure remote access software on systems used for election management raised concerns that malicious #ThreatActors --