Sep 14, 2018

Daily brief for 2018-09-13

Asia

  1. OilRig APT Continues Its Ongoing Malware Evolution
  2. APT10 Targeting Japanese Corporations Using Updated TTPs

World

  1. Russian man extradited to U.S. for ‘massive’ financial hacking campaign
  2. Bacloud: Russia’s New Misinformation Safe Haven
  3. Kelihos Botnet Operator Pleads Guilty in Federal Court
  4. Scareware scheme operator thrown behind bars for targeting US media
  5. Cobalt crime gang is using again CobInt malware in attacks on former soviet states
  6. Russian Hacker Pleads Guilty to Operating Kelihos Botnet
  7. Kelihos Botnet Author Pleads Guilty in U.S. Court
  8. New PyLocky Ransomware Attack on Various Organization that Encrypt More than 100 File Extensions
  9. Smashing Security : British Airways hack, Mac apps steal browser history, and one person has 285,000 texts leaked

Attacks

  1. Russian man extradited to U.S. for ‘massive’ financial hacking campaign
  2. Sly malware author hides cryptomining botnet behind ever-shifting proxy service
  3. Park by Phone data breach affects 5000 customers
  4. Cobalt Gang phishing campaign targets Eastern Europeans with CobInt backdoor-downloader
  5. Cold-Boot Attack Steals Passwords In Under Two Minutes
  6. Security flaw can leak Intel ME encryption keys
  7. New Necurs Spam Campaign Targets Banks with Malicious .Wiz Files
  8. Veeam leaves MongoDB database wide open, exposes 445m records
  9. Kelihos Botnet Operator Pleads Guilty in Federal Court
  10. Kodi add-ons launch cryptomining campaign
  11. Jaxx wallet phishing campaign aimed to steal user cryptocurrency
  12. Kelihos botnet operator jailed for account theft, ID trading in the Dark Web
  13. Files With 42 Million Emails and Passwords Found On Free Hosting Service
  14. Raise of IoT Botnets Responsible for Massive DDoS Attacks – Q2 2018 Threat Report
  15. Russian Hacker Pleads Guilty to Operating Kelihos Botnet
  16. Kelihos Botnet Author Pleads Guilty in U.S. Court
  17. Mongo Lock: The attack that deletes MongoDB databases
  18. Mongo Lock: The attack that deletes MongoDB databases
  19. Smashing Security : British Airways hack, Mac apps steal browser history, and one person has 285,000 texts leaked

Threats

  1. Domestic Kitten spyware targets ISIS supporters
  2. September Patch Tuesday: Adobe patches seven critical vulnerabilities
  3. Sly malware author hides cryptomining botnet behind ever-shifting proxy service
  4. Apple store apps are not all safe: Malwarebytes, Tripwire
  5. Uptick in malware designed to size up targets before launching full payload
  6. Honolulu-based Fetal Diagnostic Institute of the Pacific hit with ransomware
  7. Cobalt Gang phishing campaign targets Eastern Europeans with CobInt backdoor-downloader
  8. Apple’s Safari and Microsoft’s Edge browsers contain spoofing bug
  9. OilRig APT Continues Its Ongoing Malware Evolution
  10. Apache Struts exploit found in Mirai variant may signify shift in attack strategy
  11. Flaws in firmware expose almost any modern PC to Cold Boot Attacks
  12. ThreatList: Microsoft Macros Remain Top Vector for Malware Delivery
  13. Security flaw can leak Intel ME encryption keys
  14. How to Perform Manual SQL Injection With Integer Based Method
  15. [SingCERT] Alert on Critical Microsoft Vulnerabilities CVE-2018-8440, CVE-2018-8475, CVE-2018-0965, CVE-2018-8439 & CVE-2018-8449
  16. 2 Billion Bluetooth Devices Remain Exposed to Airborne Attack Vulnerabilities
  17. Really old computer viruses are still infecting new machines
  18. New Necurs Spam Campaign Targets Banks with Malicious .Wiz Files
  19. ICS CERT warns of several flaws in Fuji Electric V-Server
  20. Two billion devices still vulnerable to Blueborne flaws a year after discovery
  21. Prison for man who assisted scareware scheme that targeted newspaper website
  22. Microsoft Office Macros: Still Your Leader in Malware Delivery
  23. Windows and Linux Kodi users infected with cryptomining malware
  24. Kodi add-ons launch cryptomining campaign
  25. Ransomware attack shuts down small Canadian town; officials pay ransom
  26. New Firmware Flaws Resurrect Cold Boot Attacks
  27. New Gartner Report Recommends a Vulnerability Management Process Based on Weaponization and Asset Value
  28. Kernel exploit discovered in macOS Webroot SecureAnywhere antivirus software
  29. Malicious Kodi Add-ons Install Windows & Linux Coin Mining Trojans
  30. Scareware scheme operator thrown behind bars for targeting US media
  31. Cobalt crime gang is using again CobInt malware in attacks on former soviet states
  32. New PyLocky Ransomware stands out for anti-machine learning capability
  33. New PyLocky Ransomware Attack on Various Organization that Encrypt More than 100 File Extensions
  34. Smashing Security : British Airways hack, Mac apps steal browser history, and one person has 285,000 texts leaked

Crime

  1. Sly malware author hides cryptomining botnet behind ever-shifting proxy service
  2. Prison for man who assisted scareware scheme that targeted newspaper website
  3. Bacloud: Russia’s New Misinformation Safe Haven
  4. Windows and Linux Kodi users infected with cryptomining malware
  5. Kelihos Botnet Operator Pleads Guilty in Federal Court
  6. Kodi add-ons launch cryptomining campaign
  7. Ransomware attack shuts down small Canadian town; officials pay ransom
  8. New Gartner Report Recommends a Vulnerability Management Process Based on Weaponization and Asset Value
  9. Kelihos botnet operator jailed for account theft, ID trading in the Dark Web
  10. Files With 42 Million Emails and Passwords Found On Free Hosting Service
  11. Scareware scheme operator thrown behind bars for targeting US media
  12. Cobalt crime gang is using again CobInt malware in attacks on former soviet states
  13. Russian Hacker Pleads Guilty to Operating Kelihos Botnet
  14. Kelihos Botnet Author Pleads Guilty in U.S. Court

Politics

  1. APT10 Targeting Japanese Corporations Using Updated TTPs
  2. Bacloud: Russia’s New Misinformation Safe Haven