Nov 30, 2018

Daily brief for 2018-11-29

ASIA

  1. Banking Trojan Made in Brazil? A Brief Look
  2. Looking Ahead: RiskIQ’s 2019 Cybersecurity Predictions
  3. Indian Police Break Up International Computer Virus Scam
  4. Iranian duo charged with SamSam ransomware-slinging campaign
  5. U.S. DoJ charges Iranian duo over SamSam Ransomware activity
  6. US charges Iranian hackers for SamSam ransomware attacks
  7. US charges Iranian hackers for SamSam ransomware attacks
  8. The Fractured Block Campaign: CARROTBAT Used to Deliver Malware Targeting Southeast Asia
  9. US Indicts Two Iranians for SamSam Campaign Blitz
  10. Analysis Report of the XorDDoS Malware Family
  11. Lazarus Targeting Latin America
  12. Pervasive Brazilian financial malware targets bank customers in Latin America and Europe

WORLD

  1. GCHQ: this is how we decide to report a security bug or keep it a secret
  2. Atrium Health’s Databreach: 2.65 Million Patient Records Publicly Revealed
  3. Rotexy malware morphs into dangerous banking Trojan
  4. Banking Trojan Made in Brazil? A Brief Look
  5. First Annual Cyberwarcon
  6. Brazilian Financial Malware Spreads Beyond National Boundaries
  7. USPS API Security Vulnerabilities Caused by Functional Errors
  8. Accenture: Russian hackers using Brexit talks to disguise phishing lures
  9. Looking Ahead: RiskIQ’s 2019 Cybersecurity Predictions
  10. SamSam ransomware actors charged, sanctioned by US government
  11. U.S. DoJ charges Iranian duo over SamSam Ransomware activity
  12. US charges Iranian hackers for SamSam ransomware attacks
  13. Pterodo Found On State Authorities' Computers In Ukraine
  14. US charges Iranian hackers for SamSam ransomware attacks
  15. The Fractured Block Campaign: CARROTBAT Used to Deliver Malware Targeting Southeast Asia
  16. US indicts two over SamSam ransomware attacks
  17. US Charges Hackers in Multimillion Dollar Ransomware Campaign
  18. XSS Shell- Cross Site Scripting
  19. Smashing Security #106: Google Maps, Fed phishing, and Grinch bots
  20. GCHQ: We don't tell tech companies about every software flaw
  21. Uber fined $1.1 million by UK and Dutch regulators over 2016 data breach
  22. US Indicts Two Iranians for SamSam Campaign Blitz
  23. Symantec comes out in swinging in bitter legal battle over security bug audit conspiracy claims
  24. Brazilian-made bank trojan
  25. READ: The threat actor SNAKEMACKEREL (#FancyBear) leveraged current geopolitical events and #Brexit themed lure documents to deliver first-stage malware
  26. London-based Urban Massage app leaks data on 300K customers, including sexual misconduct claims
  27. Records of 114 Million US Citizen and Companies Exposed Online
  28. NEW: Russian hackers using Brexit talks to disguise its phishing lures
  29. McAfee Labs 2019 Threats Predictions Report
  30. Lazarus Targeting Latin America
  31. AccuDoc Data Breach impacted 2.6 Million Atrium Health patients
  32. Pervasive Brazilian financial malware targets bank customers in Latin America and Europe
  33. UK and Dutch Regulators Fined Uber for $1.1 Million over 2016 Data Breach
  34. Dell Hacked – Data Breach Exposed Names, Email addresses & Hashed Passwords

ATTACKS

  1. Atrium Health’s Databreach: 2.65 Million Patient Records Publicly Revealed
  2. Users Failing Phishing Simulations? That’s ok
  3. Dell Forces Password Reset for Online Customers Following Data Breach
  4. Dell remains quiet on attempted data breach
  5. Accenture: Russian hackers using Brexit talks to disguise phishing lures
  6. 2.6 Million Atrium Health Patient Records Compromised by Vendor AccuDoc
  7. Iranian duo charged with SamSam ransomware-slinging campaign
  8. Office workers beware: Holiday gift card spear phishing attacks on the rise
  9. The Fractured Block Campaign: CARROTBAT Used to Deliver Malware Targeting Southeast Asia
  10. Blazy – Open Source Modern Login Brute-forcer
  11. SKY Brasil Exposes 32 Million Customer Records
  12. US Charges Hackers in Multimillion Dollar Ransomware Campaign
  13. Dunkin' Donuts Serves Up Data Breach Alert
  14. Smashing Security #106: Google Maps, Fed phishing, and Grinch bots
  15. Uber fined $1.1 million by UK and Dutch regulators over 2016 data breach
  16. US Indicts Two Iranians for SamSam Campaign Blitz
  17. London-based Urban Massage app leaks data on 300K customers, including sexual misconduct claims
  18. Database breach affects 2.6 million Atrium Health patients
  19. Dell data breach – Dell forces password reset after the incident
  20. Records of 114 Million US Citizen and Companies Exposed Online
  21. NEW: Russian hackers using Brexit talks to disguise its phishing lures
  22. Threat Spotlight: New spear phishing attack gift card scam
  23. How have #phishing campaigns threatened your #EnterpriseSecurity system?
  24. AccuDoc Data Breach impacted 2.6 Million Atrium Health patients
  25. Dell Resets User Passwords Following Data Breach
  26. Atrium Health Data Breach Affected More than 2 Million Patients
  27. UK and Dutch Regulators Fined Uber for $1.1 Million over 2016 Data Breach
  28. Dell Hacked – Data Breach Exposed Names, Email addresses & Hashed Passwords
  29. A targeted attack attempting to steal #cryptocurrency took advantage of open source software with a compromised #NPM package and experts

THREATS

  1. GCHQ: this is how we decide to report a security bug or keep it a secret
  2. A free decryption tool is available for Thanatos ransomware victims
  3. Rotexy malware morphs into dangerous banking Trojan
  4. Banking Trojan Made in Brazil? A Brief Look
  5. Critical Zoom Flaw Lets Hackers Hijack Conference Meetings
  6. Overall Volume of Thanksgiving Weekend Malware Attacks Lower This Year
  7. Brazilian Financial Malware Spreads Beyond National Boundaries
  8. USPS API Security Vulnerabilities Caused by Functional Errors
  9. Colorado Agency Targeted in Nationwide Ransomware Scheme
  10. Cisco Patches SQL Injection Flaw in Prime License Manager
  11. SamSam ransomware actors charged, sanctioned by US government
  12. Cisco Patches Critical Bug in License Management Tool
  13. Indian Police Break Up International Computer Virus Scam
  14. Hackers can exploit this bug in surveillance cameras to tamper with footage
  15. Iranian duo charged with SamSam ransomware-slinging campaign
  16. U.S. DoJ charges Iranian duo over SamSam Ransomware activity
  17. A security hole in a mail preview program may have made the data of 60 million customers vulnerable.
  18. US charges Iranian hackers for SamSam ransomware attacks
  19. Inside the Google Docs Malicious Network
  20. US charges Iranian hackers for SamSam ransomware attacks
  21. The Fractured Block Campaign: CARROTBAT Used to Deliver Malware Targeting Southeast Asia
  22. A security researcher notified the @USPS of an #API vulnerability one year ago. But the #USPS website flaw was only
  23. US indicts two over SamSam ransomware attacks
  24. US Charges Hackers in Multimillion Dollar Ransomware Campaign
  25. AriseBank CEO faces 120 years behind bars over alleged cryptocurrency scam
  26. Beware the Malware-Laden Brexit News
  27. KingMiner malware hijacks the full power of Windows Server CPUs
  28. GCHQ: We don't tell tech companies about every software flaw
  29. Malicious developer creates wormable, fileless variant of njRAT
  30. Symantec comes out in swinging in bitter legal battle over security bug audit conspiracy claims
  31. Brazilian-made bank trojan
  32. READ: The threat actor SNAKEMACKEREL (#FancyBear) leveraged current geopolitical events and #Brexit themed lure documents to deliver first-stage malware
  33. Proofpoint: Hackers testing new reconnaissance #malware on financial institutions.
  34. Beware the Malware-Laden Brexit News https://ubm.io/2Ql2DyP by @ErickaChick
  35. Analysis Report of the XorDDoS Malware Family
  36. Hacker takes over JavaScript library, injects malware to steal Bitcoin
  37. Widely Used Web Conference Service Zoom Patches Critical Flaw
  38. A new vulnerability was discovered to affect #Bluetooth #firmware or operating system software drivers. Learn what this vulnerability is and
  39. Several Malicious Apps on Google Play Posing as Voice Messenger Steal User Personal Information
  40. Mobile Malware Attacks Increase as Holiday Season Nears
  41. Facebook Increases Bug Bounty Payouts to Improve User Security
  42. Pervasive Brazilian financial malware targets bank customers in Latin America and Europe
  43. A targeted attack attempting to steal #cryptocurrency took advantage of open source software with a compromised #NPM package and experts

CRIME

  1. Atrium Health’s Databreach: 2.65 Million Patient Records Publicly Revealed
  2. Colorado Agency Targeted in Nationwide Ransomware Scheme
  3. Looking Ahead: RiskIQ’s 2019 Cybersecurity Predictions
  4. Indian Police Break Up International Computer Virus Scam
  5. U.S. DoJ charges Iranian duo over SamSam Ransomware activity
  6. US indicts two over SamSam ransomware attacks
  7. SKY Brasil Exposes 32 Million Customer Records
  8. US Charges Hackers in Multimillion Dollar Ransomware Campaign
  9. AriseBank CEO faces 120 years behind bars over alleged cryptocurrency scam
  10. Uber fined $1.1 million by UK and Dutch regulators over 2016 data breach
  11. US Indicts Two Iranians for SamSam Campaign Blitz
  12. Symantec comes out in swinging in bitter legal battle over security bug audit conspiracy claims
  13. McAfee Labs 2019 Threats Predictions Report
  14. Threat Spotlight: New spear phishing attack gift card scam
  15. AccuDoc Data Breach impacted 2.6 Million Atrium Health patients
  16. Pervasive Brazilian financial malware targets bank customers in Latin America and Europe
  17. UK and Dutch Regulators Fined Uber for $1.1 Million over 2016 Data Breach
  18. The Justice Department, FBI and several tech and cybersecurity companies have dismantled the #3ve #botnet, and eight individuals have been

POLITICS

  1. GCHQ: this is how we decide to report a security bug or keep it a secret
  2. First Annual Cyberwarcon
  3. Looking Ahead: RiskIQ’s 2019 Cybersecurity Predictions
  4. Pterodo Found On State Authorities' Computers In Ukraine
  5. XSS Shell- Cross Site Scripting
  6. Uber fined $1.1 million by UK and Dutch regulators over 2016 data breach
  7. McAfee Labs 2019 Threats Predictions Report
  8. Threat Spotlight: New spear phishing attack gift card scam
  9. Pervasive Brazilian financial malware targets bank customers in Latin America and Europe
  10. UK and Dutch Regulators Fined Uber for $1.1 Million over 2016 Data Breach