Threat report for 2018-11-01
DATA BREACH & DATA LOSS
- Australian defence contractor Austal hit by data breach
- Radisson discloses data breach impacting rewards customers
- 22,000 Records Exposed by JoomlArt in Jira Ticket
- ‘Aaron Smith’ Sextortion scam campaigns hit tens of thousands of individuals
- New Bluetooth Vulnerabilities Exposed in Aruba, Cisco, Meraki Access Points
- Customer Information Stolen in Radisson Hotel Group Data Breach
- British Airways data breach bigger than originally thought
- Where Is the Consumer Outrage about Data Breaches?
- Eurostar Resets Passwords of Customers After Data Breach
- Radisson Hotel Group suffers data breach, customer info leaked
- Radisson Rewards Program Targeted in Data Breach
- "If the schemas prove not to be compatible, a backup of the previous version of a database must be used
- Emotet Malware – Mass-Harvesting millions of Emails in secret Campaign
- Last year the @USAgov required agencies to implement #DMARC records and policies by October 2018. Learn just how hard DMARC
- New Ramnit Campaign Spreads Azorult Malware
- #NetSpectre leaks data remotely via side-channel attacks. Learn from expert Michael Cobb of @thehairyITdog why data from #microprocessors is not
- Phishing Attacks Breach 20,000 Patient Records of Catawba Valley Medical Center
- Radisson Hotel Group Data Breach Exposed Customer’s Personal Data
- Beware !! Square & PayPal Mobile Point of Sales (POS) Devices Are Extremely Vulnerable to Credit/Debit Card Data Theft
DENIAL-OF-SERVICE
- Cisco ups the ante for 400G Ethernet with big-bandwidth data-center switches
MALVERTISING
- Bad ads: Publishers look to stop malvertising for good
PHISHING
- How phishing is evolving to outpace awareness
- Going with what works: The state of phishing
- October may be over – but phishing attacks never stop. Here’s how to make security awareness successful all year round.
- Trickbot Shows Off New Trick: Password Grabber Module
- Expert Insights Names Barracuda’s AI powered Sentinel Top Phishing protection product
- Phishing Attacks Breach 20,000 Patient Records of Catawba Valley Medical Center
WEB DEFACEMENT
Nil
BOTNET
- Experts presented BOTCHAIN, the first fully functional Botnet built upon the Bitcoin Protocol
- Defending your pumpkin from tracker zombies
- Necurs Botnet Distributing Sextortion Email Scams
- The Russian built #VPNFilter #botnet was taken down by the @FBI after over 500,000 routers were infected. However, VPNFilter is
RANSOMWARE
- Ransomware and Back-Up Plans
- Healthcare Industry Continues To Be the Favourite for Ransomware
- SamSam Attackers Have Hit 67 Ransomware Targets
- Nice work if you can get it: GandCrab ransomware nets millions even though it has been broken
- Crypto-Locking Kraken Ransomware Looms Larger
CRYPTOMINING & CRYPTOCURRENCIES
- Experts presented BOTCHAIN, the first fully functional Botnet built upon the Bitcoin Protocol
- UK considers banning cryptocurrencies for their lack of “intrinsic value”
- Crypto-Locking Kraken Ransomware Looms Larger
- Crypto Micropayments: an Exciting Future for Blockchain Transactions
MALWARE
- 2018’s worst malware revealed in report
- Trickbot Malware Now Also Steals Passwords From Apps, Web Browsers
- Emotet Malware, the Most Probable Malware of the Year
- USB Drives Deliver Dangerous Malware to Industrial Facilities: Honeywell
- More Typo-Squatting Malware Found on PyPI
- Employee used US government network for adult websites, infected infrastructure with Russian malware
- Government employee who used to watch porn at work alleged guilty of infecting with malware a network
- Malware Analysis for Blue Teams
- Emotet Malware – Mass-Harvesting millions of Emails in secret Campaign
- Hackers Drops New Emotet Malware to Perform Mass Email Exfiltration From Victims Email Client
- New Ramnit Campaign Spreads Azorult Malware
- Perl-Based Shellbot Looks to Target Organizations via C&C
- IKARUS Security Software partners with PolySwarm to advance early malware detection
- Pdgmail – Forensic Tool to Analysis Process Memory Dump
EXPLOIT
- PoC Exploit Compromises Microsoft Live Accounts via Subdomain Hijacking
- 0x20k of Ghost Squad Hackers Releases ODay Exploit Targeting Apache Hadoop
- Hackers Exploit Cisco Zero Day Vulnerability in Wild Resulting in DoS Condition
VULNERABILITY
- Yi IoT Home Camera Riddled with Code-Execution Vulnerabilities
- BLEEDINGBIT Bluetooth flaws in TI chips expose enterprises to remote attacks
- New Bluetooth Vulnerabilities Exposed in Aruba, Cisco, Meraki Access Points
- Windows Defender Bug Needs a Restart, Not Shutdown, To Enable Sandbox
- Bluetooth Chip Flaws Expose Enterprises to Remote Attacks
- Two Zero-Day Bugs Open Millions of Wireless Access Points to Attack
- Cisco says a flaw in its Adaptive Security Appliance allows remote attacks
- Talos Vulnerability Deep Dive – TALOS-2018-0636 / CVE-2018-3971 Sophos HitmanPro.Alert vulnerability
- Security researchers find flaws in chips used in hospitals, factories and stores
- Bleedingbit: Critical vulnerabilities in BLE chips expose millions of access points to attack
- Bleedingbit zero-day chip flaws may expose majority of enterprises to remote code execution attacks
- Cisco Zero-Day Exploited In The Wild To Crash And Reload Devices
- Zero-Day RCE Vulnerabilities Expose Millions of BLE-Enabled Devices to Attacks
- Hackers Exploit Cisco Zero Day Vulnerability in Wild Resulting in DoS Condition
- New BLEEDINGBIT Vulnerabilities Affect Widely-Used Bluetooth Chips
- Two New Bluetooth Chip Flaws Expose Millions of Devices to Remote Attacks
- .@Siemens disclosed six SICLOCK flaws that were found within its central plant clocks. Discover why three flaws have been rated
- Our fabulous @5ean5ullivan explains to @CyberSauna listeners how the multiple vulnerabilities in the US electoral system may be^H^H^H^H^H^Hare being exploited.
- Bleedingbit Bluetooth Vulnerabilities Expose WiFi APs to Risk
- Talos Vulnerability Deep Dive - TALOS-2018-0636 / CVE-2018-3971 Sophos HitmanPro.Alert vulnerability
- Cisco Warns of Zero-Day Vulnerability in Security Appliances
- Cisco zero-day exploited in the wild to crash and reload devices