Nov 21, 2018

Threat report for 2018-11-20

DATA BREACH & DATA LOSS

  1. ESET: Vietnamese hacking group hijacks Southeast Asian sites in watering hole campaign
  2. jQuery File Upload Disclosure Due Diligence
  3. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  4. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  5. Voxox leak: Millions of SMS messages exposed
  6. Second WordPress hacking campaign underway, this one targeting AMP for WP plugin
  7. Vision Direct Reveals Data Breach
  8. Instagram glitch exposed some user passwords
  9. OSIsoft Warns Employees, Contractors of Data Breach
  10. Two Young Men Jailed for Involvement in TalkTalk Data Breach
  11. tRat: New Modular RAT Appears in Multiple Email Campaigns
  12. Emotet Campaigns Persist, Utilize Updated Tactics and Techniques
  13. Mac users using Exodus cryptocurrency wallet targeted by a small spam campaign
  14. AWS moves to curb S3 data leaks, but Chris Vickery is doubtful
  15. TalkTalk hackers jailed for role in £77m data breach
  16. CarBlues – Bluetooth Vehicle Hack Exploit Affects Millions Of Vehicles Exposing Users PII
  17. 2018 holiday travel period expected to be the busiest travel season on record
  18. Vision Direct 'fesses up to hack that exposed customer names, payment cards
  19. Dutch audit finds Microsoft Office leaks confidential data
  20. Cozy Bear tracks: Phishing campaign looks like work of Russian APT group
  21. Instagram Patched A Data Download Tool Bug That Exposed Users Passwords
  22. Two TalkTalk hackers jailed for 2015 data breach that cost it £77 million

DENIAL-OF-SERVICE

  1. Tech Docs: Keep Out of the Flood Zone with DoS Protection

MALVERTISING

  1. ESET: Vietnamese hacking group hijacks Southeast Asian sites in watering hole campaign
  2. Malvertising in Apple Pay Targets iPhone Users
  3. OceanLotus: New watering hole attack in Southeast Asia
  4. OceanLotus: New watering hole attack in Southeast Asia
  5. Confiant spots major malvertising attack

PHISHING

  1. Gmail Glitch Enables Anonymous Messages in Phishing Attacks
  2. Emotet Returns with Thanksgiving Theme and Better Phishing Tricks
  3. Emotet Returns with Thanksgiving Theme and Better Phishing Tricks
  4. Russia’s Elite Hackers May Have New Phishing Tricks
  5. TEMP.Periscope Spearphishing
  6. Report: Emotet makes phishing lures more convincing by scraping victims' emails
  7. Zscaler ThreatLabZ Phishing Roundup
  8. A little phishing knowledge may be a dangerous thing
  9. Cozy Bear tracks: Phishing campaign looks like work of Russian APT group

WEB DEFACEMENT

Nil

BOTNET

  1. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit

RANSOMWARE

  1. Dharma Ransomware Variant Discovered
  2. For Smbs Ransomware Attacks still the Greatest Online Threat
  3. Targeted ransomware attacks on the rise in 2018, NCSC warns
  4. 2019 Security Predictions – Utilities and Industrial Control Systems Targeted with Ransomware

CRYPTOMINING & CRYPTOCURRENCIES

  1. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit
  2. Mac users using Exodus cryptocurrency wallet targeted by a small spam campaign
  3. Microsoft Releases Azure Blockchain Development Kit
  4. Google Account Hacked for Fake Bitcoin Reward
  5. Google, Target Hit by Twitter Bitcoin Scam Account Hacks

MALWARE

  1. Down But Not Out, WannaCry Malware Continues to Infect Unpatched Windows PCs
  2. Infamous Russian Hacking Group Used New Trojan in Recent Attacks
  3. 560,000 Duped Into Installing Android Malware in the Form of Fake Driving Games
  4. DirtyCOW Is Back In Backdoor Attack Targeting Drupal Web Servers
  5. Inserted Malicious URLs within Office Documents’ Embedded Videos
  6. Russian hackers are trying out this new malware against US and European targets
  7. Russian hackers are trying out this new malware against US and European targets
  8. Sofacy Continues Global Attacks and Wheels Out New ‘Cannon’ Trojan
  9. tRat: New Modular RAT Appears in Multiple Email Campaigns
  10. Scumbags cram Make-A-Wish website with coin-mining malware
  11. DirtyCOW is back in backdoor attack targeting Drupal Web Servers
  12. The wiper #malware that briefly disrupted the Winter #Olympics earlier this year appears to be back - now with a
  13. 13 Malicious Apps in Google Play With More than 560,000+ Installs

EXPLOIT

  1. Hackers Exploit Vulnerability in WP GDPR Compliance Plugin – Update Now
  2. CarBlues – Bluetooth Vehicle Hack Exploit Affects Millions Of Vehicles Exposing Users PII

VULNERABILITY

  1. Instagram bug exposes user passwords
  2. Critical Adobe Flash Bug Impacts Windows, macOS, Linux and Chrome OS
  3. Hackers target Drupal servers chaining several flaws, including Drupalgeddon2 and DirtyCOW
  4. Flash Player Type Confusion Critical Vulnerability, Another Reason Not to Use It
  5. Flash Player Update Patches Disclosed Code Execution Flaw
  6. Attackers Target Drupal Web Servers with Chained Vulnerabilities
  7. WordPress GDPR Plug-in Contains Privilege Escalation Flaw
  8. Hackers Exploit Vulnerability in WP GDPR Compliance Plugin – Update Now
  9. Almost 50 Percent of 2018 Vulnerabilities Can Be Exploited Remotely
  10. TP-Link fixes 2 Remote Code Execution flaws in TL-R600VPN SOHO Router and other issues
  11. Raft of flaws discovered in MiSafes child-monitoring devices
  12. Instagram Patched A Data Download Tool Bug That Exposed Users Passwords
  13. Can a D-Link router vulnerability threaten bank customers?
  14. 3 New Code Execution Flaws Discovered in Atlantis Word Processor
  15. Vulnerability Spotlight: Multiple remote code execution vulnerabilities in Atlantis Word Processor
  16. Apache OpenOffice 4.1.6 release: important bug fixes and security fixes
  17. Almost 50 Percent of 2018 Vulnerabilities Can Be Exploited Remotely
  18. #BluetoothDevices might be at risk after a new #Bluetooth vulnerability was found targeting #firmware or operating system software drivers. Learn