Nov 15, 2018

Daily brief for 2018-11-14

ASIA

  1. 1,000 Bitcoins Ransom Asked from Media Prima After Successful Ransomware Attack
  2. Weekly Threat Briefing: Adobe ColdFusion Servers Under Attack from APT Group
  3. Google services collapsed due to BGP leak
  4. Google services collapsed due to BGP leak
  5. Chinese APT Group Exploit Fixed Critical Adobe ColdFusion Vulnerability On Unpatched Servers
  6. CVE-2018-15961: Adobe ColdFusion Flaw exploited in attacks in the wild
  7. How Threat Intelligence Prioritizes Risk in Vulnerability Management
  8. Cathay Apologizes Over Data Breach but Denies Cover-up
  9. Operation FastCash
  10. Magecart- The Card-Skimming Group and Its Many Faces
  11. AVEVA InduSoft Web Studio and InTouch Edge HMI Critical Vulnerabilities Threat Alert
  12. Facebook flaw could have exposed private info of users and their friends
  13. BDO Unibank Warned its Customers to Remain Beware from New Phishing Scheme

WORLD

  1. Did you by chance hack OPM back in 2015? Good news, your password probably still works!
  2. Weekly Threat Briefing: Adobe ColdFusion Servers Under Attack from APT Group
  3. French Data Protection Authority Issues Guidance on Interaction of Blockchain Technology with GDPR
  4. Google services collapsed due to BGP leak
  5. Google services collapsed due to BGP leak
  6. How Threat Intelligence Prioritizes Risk in Vulnerability Management
  7. Monitoring file output for malicious code 'could have stopped BA attack more quickly'
  8. Magecart- The Card-Skimming Group and Its Many Faces
  9. Infowars Store Affected by Magecart Credit Card Stealing Hack
  10. Australian Senate extends My Health Record opt-out period
  11. Alex Jones’ Infowars store was infected with credit card skimming software
  12. Beers with Talos Ep. #41: Sex, money and malware
  13. AVEVA InduSoft Web Studio and InTouch Edge HMI Critical Vulnerabilities Threat Alert
  14. Facebook flaw could have exposed private info of users and their friends
  15. A 100k routers around the world are on the botnet to conduct emails spam
  16. Big Game Hunting: The Evolution of INDRIK SPIDER From Dridex Wire Fraud to BitPaymer Targeted Ransomware

ATTACKS

  1. 21K Donors Had Their Personal Info Leaked Following Kars4Kids Data Breach
  2. Did you by chance hack OPM back in 2015? Good news, your password probably still works!
  3. Google services collapsed due to BGP leak
  4. Google services collapsed due to BGP leak
  5. Facebook vulnerability could have leaked your private information – again
  6. Cathay Apologizes Over Data Breach but Denies Cover-up
  7. Business Email Compromise - When You Don’t Need to Phish:
  8. Is it time to change your password? Check out this list of the 25 worst passwords for 2018 and make
  9. Australian Senate extends My Health Record opt-out period
  10. Support wouldn’t change his password, so he mailed them a bomb
  11. The July edition of Beazley Breach Insights found that business email compromise attacks have been rising steadily. Is business email
  12. Microsoft covertly collects personal data from enterprise Office ProPlus users
  13. Facebook flaw could have exposed private info of users and their friends
  14. Hunt finally submits to My Health Record arm-twists as opt-out window extended
  15. This year’s success adds to @MWRLabs’ #Pwn2Own existing track record, which includes demo attacks against Chrome.
  16. The @mwrlabs research team used zero-day vulnerabilities to compromise smart phones from Xiaomi and Samsung.
  17. Public get Warning from Scotts Bluff County Sheriff’s Office about a Phishing Email Scam
  18. BDO Unibank Warned its Customers to Remain Beware from New Phishing Scheme
  19. Healthcare.gov Health Data Breach Exposes Personal Data
  20. Facebook Patches Another Vulnerability That Exposed User’s Private Information
  21. Senate votes to extend My Health Record opt-out to January 31

THREATS

  1. 'Mylobot' botnet now downloading second-stage malware meant to siphon data
  2. FlawedAmmy, the Only RAT in CheckPoint’s Global Threat Index 2018 List
  3. Bitcoin Giveaway Scam Balloons, with Google the Latest Victim
  4. Microsoft Patches RCE Vulnerabilities in Word, Excel, and Windows Search
  5. 1,000 Bitcoins Ransom Asked from Media Prima After Successful Ransomware Attack
  6. Ad-Injecting Mac Malware Rediscovered
  7. French Data Protection Authority Issues Guidance on Interaction of Blockchain Technology with GDPR
  8. Siemens Patches Firewall Flaw That Put Operations at Risk
  9. Chinese APT Group Exploit Fixed Critical Adobe ColdFusion Vulnerability On Unpatched Servers
  10. Facebook vulnerability could have leaked your private information – again
  11. Cyber espionage group used CVE-2018-8589 Windows Zero-Day in Middle East Attacks
  12. CVE-2018-15961: Adobe ColdFusion Flaw exploited in attacks in the wild
  13. How Threat Intelligence Prioritizes Risk in Vulnerability Management
  14. Monitoring file output for malicious code 'could have stopped BA attack more quickly'
  15. Hackers Taking Over Websites Due to WordPress GDPR Plugin Flaw
  16. November 2018 Patch Tuesday: Microsoft fixes 63 flaws, one actively exploited zero-day
  17. It's Amateur Hour In The World Of Spyware And Victims Will Pay The Price
  18. Cryptojacking, Mobile Malware Growing Threats to the Enterprise
  19. A bypass was found by @okta researchers that allows #macOS #malware to pose as @Apple files despite needing to be
  20. Siemens Releases 7 Advisories for SIMATIC, SCALANCE Vulnerabilities
  21. Targeted ransomware attacks – SophosLabs 2019 Threat Report
  22. Why cryptojacking malware is a bigger threat to your PC than you realise
  23. Adobe Patch Tuesday updates for November 2018 fix known Acrobat flaw
  24. Don’t fall for fake NEO, Tether and MetaMask cryptocurrency wallets on Google Play
  25. Researchers recently discovered a new #MacOS #malware that targets #cryptocurrency investors through chat platforms. Discover how this is possible and
  26. Zero-day Windows exploit fix stars in November Patch Tuesday
  27. Holiday Shopping Tip 1: Inoculate Your Computer You need to protect against malware with regular updates to your anti-virus program and
  28. Researchers demo how machine learning can be used to track Gh0st RAT variants
  29. This remote access trojan just popped up on malware's most wanted list
  30. Microsoft's Patch Tuesday addresses Zero Day vulnerabilities
  31. Do you believe that the application #security vetting process would benefit from the addition of an entropy source?
  32. Facebook reportedly fixes search bug that could have threatened user privacy
  33. How does signed software help mitigate malware?
  34. CyberSecurity Asean security alert on A Vulnerability in Cisco Unity Express Could Allow for Arbitrary Code Execution
  35. November Patch Tuesday Fixes Another Zero-Day Win32k Bug, Other Public Vulnerabilities
  36. Beers with Talos Ep. #41: Sex, money and malware
  37. AVEVA InduSoft Web Studio and InTouch Edge HMI Critical Vulnerabilities Threat Alert
  38. A #bug allowing websites to capture private data from Facebook users through Chrome has been discovered:
  39. Microsoft Patches Windows Zero-Day Exploited in Cyber Attacks
  40. Cyber security is a process: Prevent, Detect, Respond, Predict. @5ean5ullivan @FSecure @ohjelmisto_ry
  41. Are you safe on social? "Countering the Social Hack" a 5-step process from ZF CEO @FirstNameFoster in @BRINKNewsNow
  42. 7 New Meltdown and Spectre-type CPU Flaws Affect Intel, AMD, ARM CPUs
  43. APT Group Uses Windows Zero-Day in Middle East Attacks
  44. Facebook flaw could have exposed private info of users and their friends
  45. A new exploit for zero-day vulnerability CVE-2018-8589
  46. Bitcoin fraud on the official Twitter account of Google GSuite
  47. Adobe November Security Update: fixes multiple vulnerabilities in its products
  48. Microsoft Released Security Updates & Fixed More than 60 Vulnerabilities Along with Active Windows Zero day
  49. Ransomware is the leading cyber threat experienced by SMBs
  50. FlawedAmmy: Dangerous RAT enteres most wanted malware list
  51. The @mwrlabs research team used zero-day vulnerabilities to compromise smart phones from Xiaomi and Samsung.
  52. Exploits confirmed! Congrats to F-Secure’s @MWRLabs team for another great #Pwn2Own performance. @thezdi
  53. New Press Release: Team from @FSecure's @MWRLabs demos exploits for previously undisclosed vulnerabilities at Mobile #Pwn2Own competition -
  54. Facebook Patches Another Vulnerability That Exposed User’s Private Information
  55. Key takeaways from Datto’s State of the Channel Ransomware Report 2018
  56. 63 New Flaws (Including 0-Days) Windows Users Need to Patch Now
  57. Card skimming malware removed from Infowars online store
  58. Big Game Hunting: The Evolution of INDRIK SPIDER From Dridex Wire Fraud to BitPaymer Targeted Ransomware
  59. Confirmed! The @mwrlabs team used a download bug along with a silent app installation to load their custom app and

CRIME

  1. Bitcoin Giveaway Scam Balloons, with Google the Latest Victim
  2. Weekly Threat Briefing: Adobe ColdFusion Servers Under Attack from APT Group
  3. Magecart Cybercrime Groups Harvest Payment Card Data
  4. French Data Protection Authority Issues Guidance on Interaction of Blockchain Technology with GDPR
  5. Operation FastCash
  6. Business Email Compromise - When You Don’t Need to Phish:
  7. Magecart- The Card-Skimming Group and Its Many Faces
  8. A Large Retailer Responds to #DDoS Extortion: To Pay or Not to Pay?
  9. Australian Senate extends My Health Record opt-out period
  10. The July edition of Beazley Breach Insights found that business email compromise attacks have been rising steadily. Is business email
  11. Beers with Talos Ep. #41: Sex, money and malware
  12. Bitcoin fraud on the official Twitter account of Google GSuite
  13. Adobe November Security Update: fixes multiple vulnerabilities in its products
  14. Public get Warning from Scotts Bluff County Sheriff’s Office about a Phishing Email Scam
  15. BDO Unibank Warned its Customers to Remain Beware from New Phishing Scheme
  16. Healthcare.gov Health Data Breach Exposes Personal Data
  17. Big Game Hunting: The Evolution of INDRIK SPIDER From Dridex Wire Fraud to BitPaymer Targeted Ransomware

POLITICS

  1. FlawedAmmy, the Only RAT in CheckPoint’s Global Threat Index 2018 List
  2. Weekly Threat Briefing: Adobe ColdFusion Servers Under Attack from APT Group
  3. Cyber espionage group used CVE-2018-8589 Windows Zero-Day in Middle East Attacks
  4. CVE-2018-15961: Adobe ColdFusion Flaw exploited in attacks in the wild
  5. Alex Jones’ Infowars store was infected with credit card skimming software