Nov 4, 2018

Threat report for 2018-11-03

DATA BREACH & DATA LOSS

  1. Weekly Threat Briefing: HealthCare.gov Suffered Data Breach As Hackers Stole 75,000 Records
  2. Business Email Compromise: Must-Have Defenses
  3. Radisson Suffers Global Loyalty Program Data Breach
  4. Android Devices Remain Unsecured, While Two Botnets Fight For Dominance
  5. Discover how #NetSpectre attacks leak data remotely via side-channels with Michael Cobb of @thehairyITdog.

DENIAL-OF-SERVICE

Nil

MALVERTISING

Nil

PHISHING

  1. New Trickbot Malware Steal Password & Other Sensitive Data From Microsoft Outlook,Chrome,Firefox, IE, Edge

WEB DEFACEMENT

Nil

BOTNET

  1. "The resurgence of #VPNFilter #botnet appears to be limited to the Ukraine, but given the ease of infecting targeted systems,

RANSOMWARE

  1. SamSam ransomware continues to make damages. Call it targeted Ransomware
  2. #SamSam #ransomware targeted 67 organizations in 2018, according to @symantec research. By @MaddieBacon11
  3. #Kraken #ransomware as a service is getting more popular after being bundled into the Fallout #ExploitKit and getting more update
  4. The Week in Ransomware - November 2nd 2018 - RaaS, DiskCryptor, & More

CRYPTOMINING & CRYPTOCURRENCIES

  1. Blockchain as a Tool for Cybersecurity
  2. #Kraken #ransomware as a service is getting more popular after being bundled into the Fallout #ExploitKit and getting more update

MALWARE

  1. Web domain owners paid EasyDNS to cloak their contact info from sight. It was blabbed via public Whois anyway
  2. BBC micro:bit vendor Kitronik says customers' deets nicked, fingers Magecart malware
  3. Gotta love how Robert Tappan Morris describes his Morris worm background in his bio: ”In 1988 his discovery of buffer
  4. New Trickbot Malware Steal Password & Other Sensitive Data From Microsoft Outlook,Chrome,Firefox, IE, Edge

EXPLOIT

  1. Intel CPUs Fall To New Hyperthreading Exploit That Pilfers Keys

VULNERABILITY

  1. The Responsible Disclosure of Software Vulnerabilities in the Nutshell
  2. .@Siemens central plant clocks were affected by six SICLOCK flaws, three have been rated "critical." Learn what these SICLOCK flaws
  3. Six flaws were recently found in @Siemens SICLOCK central plant clocks. Learn what these clocks do, which clocks were infected
  4. Researchers say #Bleedingbit vulnerabilities could allow #RemoteCodeExecution on wireless access points, medical devices and any other products using the affected