Daily brief for 2018-10-31
ASIA
- More Information about July 2018’s Singapore SingHealth Data Breach Revealed
- Was the Triton Malware Attack Russian in Origin?
- Chinese Intel Agents Indicted for 5-Year IP Theft Campaign
- Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
- Ramped-up phishing attacks target universities around the world
- NTT Security targets botnet infrastructure
- Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
- Fresh SamSam Ransomware Campaign Across the U.S
- DDoS Attacks in Q3 2018
- Microsoft continues to push the KB4464455 patch for fixing ZIP bug
WORLD
- 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
- Eurostar Resets Users' Passwords After Potential Data Breach
- Prioritizing the fundamentals of coordinated vulnerability disclosure
- 2018’s Most Prevalent Ransomware – We Took it for a Ride
- Was the Triton Malware Attack Russian in Origin?
- Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
- Ramped-up phishing attacks target universities around the world
- Nigerian Airline Arik Air May Have Leaked Customer Data
- Whiteboard Wednesday: Common Vulnerabilities as Personified by Halloween Costumes
- Vulnerability Spotlight: Multiple Vulnerabilities in Yi Technology Home Camera
- “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
- Australian companies failing to slow the tide of data breaches: OAIC
- Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
- Recently found GPlayed trojan spinoff analysed
- Fresh SamSam Ransomware Campaign Across the U.S
- Nigerian airline Arik Air may have leaked customer data
- Federal employee infects gov't network with Russian malware through adult video websites
- Businesses unprepared for Windows 10 migration, fear vulnerability to cyber threats
- DDoS Attacks in Q3 2018
- A Report on Data Breaches in Australia
- 12 malicious libraries found in Python PyPI
- OIG’s Take On Healthcare.gov Patient Record Breach
ATTACKS
- 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
- More Information about July 2018’s Singapore SingHealth Data Breach Revealed
- Software bugs could compromise midterm votes in Texas
- Eurostar Resets Users' Passwords After Potential Data Breach
- Why data security is a priority for political campaigns
- The Radisson Hotel Group has suffered a data breach
- Social Security Numbers, PII Stolen in NorthBay Healthcare Data Breach
- Healthcare.gov website suffers data breach affecting 75,000 enrollees
- Tomorrowland festival goers affected by data breach
- Chinese Intel Agents Indicted for 5-Year IP Theft Campaign
- Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
- Re: The Zombie Phish
- Ramped-up phishing attacks target universities around the world
- Nigerian Airline Arik Air May Have Leaked Customer Data
- Cyber Attacks Up Prior To Midterms, 81.5 Million Voter Records Threatened
- “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
- Average data breach fines have doubled as ICO hints at higher fines
- Australian companies failing to slow the tide of data breaches: OAIC
- Assault and battery: Malvertising campaign checks user device' charge as anti-detection technique
- Live Webinar | Identity Proofing in the Era of Data Breaches and Social Networking
- Come fermare i data breach con i servizi di Detection&Response #MDR: il caso di un'importante media company finlandese
- Fresh SamSam Ransomware Campaign Across the U.S
- Nigerian airline Arik Air may have leaked customer data
- Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
- SamSam Ransomware Campaigns Highly Active in 2018 and Heavily Targets Organizations
- [Infographic] 5 Ways #Cybercriminals Can Access Your Emails Without #Phishing:
- A Report on Data Breaches in Australia
- A DHCPv6 package could compromise a vulnerable Linux system
- OIG’s Take On Healthcare.gov Patient Record Breach
- Exploit Chain Modified to Slip Antivirus Detection in a New Malware Campaign
THREATS
- Software bugs could compromise midterm votes in Texas
- Yi Technology Home Cameras Exploitable Using Multiple Vulnerabilities
- Prioritizing the fundamentals of coordinated vulnerability disclosure
- Vulnerability Spotlight: Multiple Vulnerabilities in Yi Technology Home Camera
- SamSam Ransomware Goes on a Tear
- Apple Patches Multiple Major Security Flaws
- 2018’s Most Prevalent Ransomware – We Took it for a Ride
- Actively Exploited High Impact DoS Vulnerability Found in Cisco ASA and FTD
- Was the Triton Malware Attack Russian in Origin?
- Apple Fixes Multiple macOS, iOS Bugs Including a Quirky FaceTime Vulnerability
- Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
- Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
- Kraken Ransomware Upgrades Distribution with RaaS Model
- Security Code AutoFill Flaw Exposes iOS, macOS Users to Banking Fraud Attacks
- GandCrab ransomware crew loses $1M after Bitdefender releases free decrypter
- Whiteboard Wednesday: Common Vulnerabilities as Personified by Halloween Costumes
- Vulnerability Spotlight: Multiple Vulnerabilities in Yi Technology Home Camera
- Promethium/StrongPity Malware
- “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
- "The presence of the insecure remote access software on systems used for election management raised concerns that malicious #ThreatActors --
- Double-Gun Trojan which uses game plug-in to spread, is updated to V4.0 and looking for trouble
- Kraken Cryptor ransomware merges with Fallout exploit kit, fees slashed to gain followers
- Emotet Trojan Begins Stealing Victim's Email Using New Module
- Kraken Ransomware Now Being Distributed by Fallout Exploit Kit
- Several vulnerabilities were found in controllers made by @Universal_Robot. Discover what these #robot controllers are used for and how
- It's a front? Mac cryptocurrency ticker actually installs backdoors
- Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
- Emotet trojan starts stealing full emails from infected machines
- Recently found GPlayed trojan spinoff analysed
- Fresh SamSam Ransomware Campaign Across the U.S
- Apple Patches Passcode Bypass, FaceTime Flaws in iOS
- Federal employee infects gov't network with Russian malware through adult video websites
- All You Need to Know About Blockchain Testing
- Businesses unprepared for Windows 10 migration, fear vulnerability to cyber threats
- Apple Patches Critical Flaws in iOS 12.1, macOS 10.14.1 Updates
- Canonical Releases Ubuntu 16.04 LTS Kernel Patch, Fixed 4 Security Vulnerabilities
- Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
- CVE-2018-18649: Gitlab Wiki API Remote Code Execution Vulnerability Alert
- SamSam Ransomware Campaigns Highly Active in 2018 and Heavily Targets Organizations
- What do you think the combination of the #TrickBot banking Trojan to #IcedID means for the future of banking #Trojans?
- Apple Released Security Updates for iOS, watchOS, Safari , tvOS, iTunes & Fixed Several Vulnerabilities
- Windows 10 Universal Windows Platform Vulnerability
- 12 malicious libraries found in Python PyPI
- 5 Types of Malware Currently Affecting macOS
- Webroot Unveils Nastiest Malware of 2018
- Microsoft continues to push the KB4464455 patch for fixing ZIP bug
- Exploit Chain Modified to Slip Antivirus Detection in a New Malware Campaign
CRIME
- 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
- The Radisson Hotel Group has suffered a data breach
- Social Security Numbers, PII Stolen in NorthBay Healthcare Data Breach
- Tomorrowland festival goers affected by data breach
- Chinese Intel Agents Indicted for 5-Year IP Theft Campaign
- Re: The Zombie Phish
- “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
- NTT Security targets botnet infrastructure
- Fresh SamSam Ransomware Campaign Across the U.S
- All You Need to Know About Blockchain Testing
- DDoS Attacks in Q3 2018
POLITICS
- 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
- More Information about July 2018’s Singapore SingHealth Data Breach Revealed
- Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
- “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
- "The presence of the insecure remote access software on systems used for election management raised concerns that malicious #ThreatActors --