Nov 8, 2018

Threat report for 2018-11-07

DATA BREACH & DATA LOSS

  1. New Jersey AG Announces $200,000 Settlement with Business Associate and Permanent Ban for BA’s Owner due to 2016 Data Breach Affecting Over 1,650 Patients
  2. Half a Million People Potentially Affected by Data Breach at Bankers Life
  3. Data Of Nearly 700,000 Amex India Customers Exposed Via Unsecured MongoDB Server
  4. HSBC Bank Suffers Data Breach
  5. Amex India accounts exposed by misconfigured MongoDB installation
  6. Data of nearly 700,000 Amex India customers exposed via unsecured MongoDB server
  7. Hacker Leaked Unpatched Virtual Box Zero-day Vulnerability and its Exploit Online
  8. HSBC Bank Data Breach Exposed Customer’s Account Details and More
  9. HSBC US Customers Hit by Data Breach
  10. What do you think is the average cost of a data breach?
  11. HSBC now stands for Hapless Security, Became Compromised: Thousands of customer files snatched by crims
  12. ICO poised to fine Leave campaign and Arron Banks’ insurance biz £135,000
  13. HSBC suffers data breach, customer banking info exposed
  14. We recently detected an Android banking malware campaign (Anubis) actively targeting the Dutch market by #abusing the @PostNL brand. After
  15. New dropper campaign with at least 8 droppers in #GooglePlay (30k+ installs total), found with the help of @avast_antivirus @apklabio.
  16. How voting history data benefits political campaigns
  17. HSBC Bank Data Breach Exposed Account Numbers, Balances, Transaction History and Other Details
  18. Personal data of police and ministries employees leaked by Anonymous Italy
  19. Five Guys suffers employees’ data theft
  20. Rushed My Health Record changes still missing the point
  21. What businesses can learn from political campaigns about using big data

DENIAL-OF-SERVICE

Nil

MALVERTISING

Nil

PHISHING

  1. A Phishing Incident is Being Investigated by the Carthage Police
  2. Why you should use a password manager
  3. They stopped a phishing attack in 10 minutes. It used to take days.
  4. Password Grabber Module Added to Trickbot
  5. Why Password Management and Security Strategies Fall Short
  6. Learn About Phishing Incident Response on Nov 15
  7. Learn why @Google chose U2F authentication over OTP to eliminate #PhishingEmails from expert Michael Cobb of @thehairyITdog.
  8. A poor password is a key for the wrong person to get in.

WEB DEFACEMENT

Nil

BOTNET

  1. IoT Botnet Infects 100,000 Routers To Send Spam
  2. Rapidly Growing Router Botnet Takes Advantage of 5-Year-Old Flaw
  3. IoT botnet infects 100,000 routers to send Hotmail, Outlook, and Yahoo spam
  4. A fresh #botnet is rapidly growing by targeting a five-year-old #vulnerability. So far, @360Netlab said hundreds of thousands of bot
  5. Linux servers and IoT devices, main targets of Shellbot botnet

RANSOMWARE

  1. Healthcare Targeted by 37 Percent of All Ransomware Attacks in Q3 2018
  2. Security Alert: New Dharma Ransomware Strains Alarmingly Go Undetected By Antivirus Engines
  3. #SamSam #ransomware targeted 67 organizations in 2018, according to @symantec research. By @MaddieBacon11
  4. How to Remove NOBAD Ransomware
  5. #Kraken #ransomware as a service is getting more popular after being bundled into the Fallout #ExploitKit and getting more update
  6. Managing Third-Party Risk in the Age of Ransomware

CRYPTOMINING & CRYPTOCURRENCIES

  1. Uni cans crypto-mining CPU raid by switching off whole IT network
  2. Salesforce Aims to Curb Spam With Blockchain
  3. Using Blockchain Technology to Solve Global Problems
  4. JavaScript attack aimed to reroute bitcoin transactions
  5. University shuts down network to thwart Bitcoin cryptojacking scheme
  6. Attackers breached Statcounter to steal cryptocurrency from gate.io users
  7. Elon Musk Bitcoin Scammers Hijack Verified Status Accounts
  8. #Kraken #ransomware as a service is getting more popular after being bundled into the Fallout #ExploitKit and getting more update
  9. Hackers seed StatCounter with nasty JavaScript in elaborate Bitcoin theft scheme
  10. Blockchain: The Good, the Bad and the Legal
  11. New cryptocurrencies offer better anonymity, new security challenges, from @CSOonline http://0fox.co/sSmx30i8vm4 ZeroFOX CTO weighs in on the #infosec challenges
  12. Bitcoin Cryptojacking Attack Forces University to Disable Entire Network
  13. Researchers rank cryptocurrency exchanges by how secure they are

MALWARE

  1. Cisco removed its seventh backdoor account this year, and that's a good thing
  2. 3,2 Million New Android Malicious Apps Detected Until the End of Q3 2018
  3. Not sure how to tell if your Android phone has a virus? Android malware comes in many forms, ranging from spyware
  4. Weekly Threat Briefing: Scammers Ride on Popular Vote411 Voter Info Site to Push Scareware Alerts
  5. On the #blog today, we talk about how fileless malware is changing the way we as organizations treats #cyberthreats.
  6. We recently detected an Android banking malware campaign (Anubis) actively targeting the Dutch market by #abusing the @PostNL brand. After
  7. New dropper campaign with at least 8 droppers in #GooglePlay (30k+ installs total), found with the help of @avast_antivirus @apklabio.
  8. Coupa Simplifies Fragmented B2B Payments Process
  9. Turning Malware Trends into Proactive Behaviors
  10. DHS on Election Day: No malicious cyber-activity observed
  11. AMD and TSMC outline 7nm process products to be listed next year

EXPLOIT

  1. Hacker Leaked Unpatched Virtual Box Zero-day Vulnerability and its Exploit Online
  2. VirtualBox Guest-to-Host escape 0day and exploit released online
  3. According to @digitalshadows, attackers used a browser exploit to steal the private #Facebook messages of at least 81,000 people. Read
  4. #Virtualbox hat eine #Zeroday Sicherheitslücke. Tipp: Ändern Sie Ihren virtuellen Netzwerkadapter auf etwas anderes als Intel PRO/1000.
  5. VirtualBox Zero-Day Vulnerability Details and Exploit Are Publicly Available

VULNERABILITY

  1. U.S. Air Force announced Hack the Air Force 3.0, the third Bug Bounty Program
  2. Security Flaws Found in Widely Used Data Storage Devices | Avast
  3. A flaw in WooCommerce WordPress Plugin could be exploited to take over e-stores
  4. Flaw in Icecast streaming media server allows to take off online Radio Stations
  5. VirtualBox zero-day dumped on GitHub
  6. Security Researcher Drops VirtualBox Guest-to-Host Escape Zero-Day on GitHub
  7. WordPress Flaw Opens Millions of WooCommerce Shops to Takeover
  8. Rapidly Growing Router Botnet Takes Advantage of 5-Year-Old Flaw
  9. Flaw Leads to RCE in WordPress Plugins, WooCommerce
  10. Hacker education, inclusivity, and shifting perceptions of bug bounties
  11. Apache alerts developers of remote code execution flaw
  12. Evernote Flaw Allows Hackers to Steal Files, Execute Commands
  13. Top 20 application vulnerabilities in the enterprise are dominated by Adobe and Microsoft
  14. Equifax nemesis Apache Struts found vulnerable to 2-year old unpatched flaw; workaround available
  15. Rapid7 Wins Frost & Sullivan 2018 Global Vulnerability Management Market Leadership Award
  16. Hacker Leaked Unpatched Virtual Box Zero-day Vulnerability and its Exploit Online
  17. Zero-day flaw in VirtualBox details go public
  18. Erratic Windows 10 Bug Breaks Changing of Default File Associations
  19. Researcher discloses VirtualBox Zero-Day without reporting it to Oracle
  20. Serious XSS flaw discovered in Evernote for Windows, update now!
  21. Researchers say #Bleedingbit vulnerabilities could allow #RemoteCodeExecution on wireless access points, medical devices and any other products using the affected
  22. Enterprises Sinking Under 100+ Critical Flaws Per Day
  23. WordPress, WooCommerce flaws combine to allow website hijacking
  24. Apache Struts vulnerability would allow system take over
  25. Up to 4 million online merchants who use the popular @WooCommerce #WordPress plugin are vulnerable to a file deletion flaw.
  26. Researcher Drops Oracle VirtualBox Zero-Day
  27. Stop us if you've heard this one: Remote code hijacking flaw in Apache Struts, patch ASAP
  28. Bug bounty: Hack the US Air Force and Get Paid
  29. Microsoft, Google apps feature in the top 20 vulnerabilities in enterprise environments
  30. VirtualBox zero-day published by disgruntled researcher
  31. A fresh #botnet is rapidly growing by targeting a five-year-old #vulnerability. So far, @360Netlab said hundreds of thousands of bot
  32. .@Siemens SICLOCK central plant clocks were recently found to be affected by several vulnerabilities, some of which have been rated
  33. Apache Struts users have to update FileUpload library to fix years-old flaws
  34. Zero-Day #Vulnerability Explained
  35. November Android Security Update Fixes Critical Bugs, Drops Media Library
  36. Researcher publishes new VirtualBox zero-day vulnerability
  37. Vulnerabilities in self encrypted SSD allow attackers to bypass disk encryption
  38. #Virtualbox hat eine #Zeroday Sicherheitslücke. Tipp: Ändern Sie Ihren virtuellen Netzwerkadapter auf etwas anderes als Intel PRO/1000.
  39. Popular WooCommerce WordPress Plugin Patches Critical Vulnerability
  40. Google's automated fuzz bot has found over 9,000 bugs in the past two years
  41. VirtualBox Zero-Day Vulnerability Details and Exploit Are Publicly Available