Oct 7, 2018

APT report for 2018-10-06

TRANSNATIONAL / UNKNOWN

  1. Burgerville discloses year-long data breach, courtesy of FIN7 cybergang

CHINA

Nothing to report

INDIA

Nothing to report

NORTH KOREA

  1. News of the Week: October 6, 2018

PAKISTAN

Nothing to report

VIETNAM

Nothing to report

IRAN

Nothing to report

LEBANON

Nothing to report

PALESTINE

Nothing to report

SAUDI ARABIA

Nothing to report

UNITED ARAB EMIRATES

Nothing to report

RUSSIA

  1. APT28 turns away from election hacking and back to cyberespionage
  2. Dutch and British Governments Slam Russia for Cyberattacks
  3. Feds Indict 7 Russians for Hacking and Disinformation

UKRAINE

Nothing to report

Platform report for 2018-10-06

WINDOWS

Nothing to report

LINUX

  1. GitHub fixes a remote code security vulnerability that affects Linux system

UNIX

Nothing to report

ANDROID

  1. Android SMS Worm, plus setting up a Mac for kids
  2. .@ThreatFabric researchers uncovered a #malware that uses overlay techniques to avoid detection. Learn from @lewisnic how this new #Androidmalware --
  3. Researchers at @Trustlook Labs found an #Android #Trojan that copies and steals data from mobile #messagingapps. Discover how this is

IOS

Nothing to report

MACOS

Nothing to report

Threat report for 2018-10-06

DATA BREACH

  1. SQL Injection Exposed Data From Canadian ISP – Altima Telecom
  2. China’s Alleged Hidden Chip for Espionage Exposed
  3. Washington D.C. Man Faces Up to 20 Years in Jail for US Senators Doxing Charges
  4. $12 Billion Lost Because of E-mail Account Compromise Incidents in Five Years
  5. Democratic congressional intern arrested for doxing GOP senators during Kavanaugh hearing
  6. Project Insecurity (@insecurity) researchers recently found #livechatsoftware leaking personal employee data. Learn what #data was leaked and how attackers can
  7. Burgerville discloses year-long data breach, courtesy of FIN7 cybergang
  8. Hackers Offering Less than $150 to Hack Corporate Email Accounts – 12.5 Million Email Archive Files are Exposed

DENIAL-OF-SERVICE

  1. California bill bans bots during elections

MALVERTISING

Nothing to report

PHISHING

  1. California prohibits use of weak default passwords

WEB DEFACEMENT

Nothing to report

MALWARE

  1. Android SMS Worm, plus setting up a Mac for kids
  2. .@ThreatFabric researchers uncovered a #malware that uses overlay techniques to avoid detection. Learn from @lewisnic how this new #Androidmalware --
  3. At the 2018 @RSAConference, researchers discussed the rise of stegware -- #malware that uses #steganography techniques to avoid detection. Learn
  4. Betabot trojan packed with anti-malware evasion tools
  5. Malicious remote admin tool seemingly linked to KONNI malware, North Korea
  6. How a remote access #Trojan checks for
  7. Report: Chinese Spy Chip Backdoored US Defense, Tech Firms
  8. More Than 50 Malicious Apps With Over 350,000 Installs Found On Google Play
  9. Researchers at @Trustlook Labs found an #Android #Trojan that copies and steals data from mobile #messagingapps. Discover how this is
  10. How to protect public SSH servers from
  11. Researchers at @TrendMicro found a new strain of #malware -- dubbed #FacexWorm -- that targets users through a malicious #ChromeExtension.

EXPLOIT

  1. SQL Injection Exposed Data From Canadian ISP – Altima Telecom
  2. Hackers exploit vulnerability in Bitcoin code

VULNERABILITY

  1. Sony Bravia Smart TVs affected by a critical vulnerability
  2. Sony Smart TV Bug Allows Remote Access, Root Privileges
  3. How #Shodan helps identify #ICSsecurity vulnerabilities
  4. Git Project Patches Remote Code Execution Vulnerability in Git
  5. The weekend starts here... right after you've installed these critical Cisco bug patches
  6. GitHub fixes a remote code security vulnerability that affects Linux system
  7. Cisco updates address 36 vulnerabilities, three critical
  8. Hackers exploit vulnerability in Bitcoin code
  9. Vulnerability Scanning vs. Penetration Testing: What's the Difference?
  10. TP-Link router vulnerable to remote takeover flaw

Region brief for 2018-10-06

ASIA

  1. China’s Alleged Hidden Chip for Espionage Exposed
  2. Report: Chinese Spy Chip Backdoored US Defense, Tech Firms

OCEANIA

Nothing to report

NORTH AMERICA

  1. SQL Injection Exposed Data From Canadian ISP – Altima Telecom
  2. China’s Alleged Hidden Chip for Espionage Exposed
  3. Washington D.C. Man Faces Up to 20 Years in Jail for US Senators Doxing Charges
  4. Sony Bravia Smart TVs affected by a critical vulnerability
  5. News of the Week: October 6, 2018
  6. Feds Indict 7 Russians for Hacking and Disinformation
  7. Report: Chinese Spy Chip Backdoored US Defense, Tech Firms

SOUTH AMERICA

Nothing to report

EUROPE

  1. News of the Week: October 6, 2018
  2. Dutch and British Governments Slam Russia for Cyberattacks
  3. Feds Indict 7 Russians for Hacking and Disinformation

AFRICA

Nothing to report

Sector brief for 2018-10-06

HEALTHCARE

Nothing to report

TRANSPORT

Nothing to report

BANKING & FINANCE

  1. China’s Alleged Hidden Chip for Espionage Exposed
  2. Washington D.C. Man Faces Up to 20 Years in Jail for US Senators Doxing Charges
  3. $12 Billion Lost Because of E-mail Account Compromise Incidents in Five Years
  4. GitHub fixes a remote code security vulnerability that affects Linux system
  5. Hackers Offering Less than $150 to Hack Corporate Email Accounts – 12.5 Million Email Archive Files are Exposed
  6. Hackers exploit vulnerability in Bitcoin code

INFORMATION & TELECOMMUNICATION

  1. SQL Injection Exposed Data From Canadian ISP – Altima Telecom
  2. China’s Alleged Hidden Chip for Espionage Exposed
  3. .@ThreatFabric researchers uncovered a #malware that uses overlay techniques to avoid detection. Learn from @lewisnic how this new #Androidmalware --
  4. Git Project Patches Remote Code Execution Vulnerability in Git
  5. GitHub fixes a remote code security vulnerability that affects Linux system
  6. More Than 50 Malicious Apps With Over 350,000 Installs Found On Google Play
  7. California prohibits use of weak default passwords

FOOD

Nothing to report

WATER

Nothing to report

ENERGY

Nothing to report

GOVERNMENT & PUBLIC SERVICE

  1. APT28 turns away from election hacking and back to cyberespionage

Daily brief for 2018-10-06

ASIA

  1. China’s Alleged Hidden Chip for Espionage Exposed
  2. Report: Chinese Spy Chip Backdoored US Defense, Tech Firms

WORLD

  1. SQL Injection Exposed Data From Canadian ISP – Altima Telecom
  2. China’s Alleged Hidden Chip for Espionage Exposed
  3. Washington D.C. Man Faces Up to 20 Years in Jail for US Senators Doxing Charges
  4. Sony Bravia Smart TVs affected by a critical vulnerability
  5. News of the Week: October 6, 2018
  6. Dutch and British Governments Slam Russia for Cyberattacks
  7. Feds Indict 7 Russians for Hacking and Disinformation
  8. Report: Chinese Spy Chip Backdoored US Defense, Tech Firms

ATTACKS

  1. SQL Injection Exposed Data From Canadian ISP – Altima Telecom
  2. China’s Alleged Hidden Chip for Espionage Exposed
  3. Washington D.C. Man Faces Up to 20 Years in Jail for US Senators Doxing Charges
  4. $12 Billion Lost Because of E-mail Account Compromise Incidents in Five Years
  5. Democratic congressional intern arrested for doxing GOP senators during Kavanaugh hearing
  6. California bill bans bots during elections
  7. Project Insecurity (@insecurity) researchers recently found #livechatsoftware leaking personal employee data. Learn what #data was leaked and how attackers can
  8. Burgerville discloses year-long data breach, courtesy of FIN7 cybergang
  9. Hackers Offering Less than $150 to Hack Corporate Email Accounts – 12.5 Million Email Archive Files are Exposed
  10. California prohibits use of weak default passwords

THREATS

  1. SQL Injection Exposed Data From Canadian ISP – Altima Telecom
  2. Sony Bravia Smart TVs affected by a critical vulnerability
  3. Android SMS Worm, plus setting up a Mac for kids
  4. .@ThreatFabric researchers uncovered a #malware that uses overlay techniques to avoid detection. Learn from @lewisnic how this new #Androidmalware --
  5. At the 2018 @RSAConference, researchers discussed the rise of stegware -- #malware that uses #steganography techniques to avoid detection. Learn
  6. Sony Smart TV Bug Allows Remote Access, Root Privileges
  7. How #Shodan helps identify #ICSsecurity vulnerabilities
  8. Git Project Patches Remote Code Execution Vulnerability in Git
  9. Betabot trojan packed with anti-malware evasion tools
  10. Malicious remote admin tool seemingly linked to KONNI malware, North Korea
  11. How a remote access #Trojan checks for
  12. The weekend starts here... right after you've installed these critical Cisco bug patches
  13. Report: Chinese Spy Chip Backdoored US Defense, Tech Firms
  14. GitHub fixes a remote code security vulnerability that affects Linux system
  15. More Than 50 Malicious Apps With Over 350,000 Installs Found On Google Play
  16. Researchers at @Trustlook Labs found an #Android #Trojan that copies and steals data from mobile #messagingapps. Discover how this is
  17. How to protect public SSH servers from
  18. Cisco updates address 36 vulnerabilities, three critical
  19. Hackers exploit vulnerability in Bitcoin code
  20. Vulnerability Scanning vs. Penetration Testing: What's the Difference?
  21. TP-Link router vulnerable to remote takeover flaw
  22. Researchers at @TrendMicro found a new strain of #malware -- dubbed #FacexWorm -- that targets users through a malicious #ChromeExtension.

CRIME

  1. China’s Alleged Hidden Chip for Espionage Exposed
  2. Washington D.C. Man Faces Up to 20 Years in Jail for US Senators Doxing Charges
  3. $12 Billion Lost Because of E-mail Account Compromise Incidents in Five Years
  4. Feds Indict 7 Russians for Hacking and Disinformation
  5. Hackers Offering Less than $150 to Hack Corporate Email Accounts – 12.5 Million Email Archive Files are Exposed
  6. Hackers exploit vulnerability in Bitcoin code

POLITICS

  1. China’s Alleged Hidden Chip for Espionage Exposed
  2. APT28 turns away from election hacking and back to cyberespionage
  3. Feds Indict 7 Russians for Hacking and Disinformation
  4. Report: Chinese Spy Chip Backdoored US Defense, Tech Firms