Oct 10, 2018

APT report for 2018-10-09

TRANSNATIONAL / UNKNOWN

  1. Magecart Group Targets Shopper Approved in Latest Attack
  2. The Magecart Seal of Approval: Card-Skimming Group Executes Scaled Supply Chain Attack on Shopper Approved
  3. Magecart group compromises customer ratings tool, affecting 'hundreds' of online stores
  4. New Magecart hack detected at Shopper Approved
  5. Formjacking attacks are on the rise, with the recent #Magecart attacks the most notable examples. @Symantec has blocked almost 250,000
  6. Magecart Group Compromises Plugin Used in Thousands of Stores, Makes Rookie Mistake

CHINA

  1. DHS issued an alert on attacks aimed at Managed Service Providers

INDIA

Nil

NORTH KOREA

  1. Remote robbery, an ‘IT incident’ (not a breach?), and face-off on privacy
  2. Comienza en MoscĂș #CyberCrimeCon —el gran encuentro mundial sobre cibercrimen y ciberterrorismo— y de lo primero que hablan es de

PAKISTAN

Nil

VIETNAM

Nil

IRAN

Nil

IRAQ

Nil

LEBANON

Nil

PALESTINE

Nil

SAUDI ARABIA

Nil

SYRIA

Nil

TURKEY

Nil

UNITED ARAB EMIRATES

Nil

YEMEN

Nil

RUSSIA

  1. APT28 group return to covert intelligence gathering ops in Europe and South America.

SERBIA

Nil

UKRAINE

Nil

Platform report for 2018-10-09

WINDOWS

  1. Microsoft patches 0-day Windows flaw under attack
  2. Microsoft Patches Windows Zero-Day Exploited by 'FruityArmor' Group
  3. Microsoft October 2018 Patch Tuesday Fixes 12 Critical Vulnerabilities
  4. Apple fixes iOS 12 passcode bypass vulnerabilities
  5. Phishing Campaign uses Hijacked Emails to Deliver URSNIF by Replying to Ongoing Threads
  6. Microsoft October Patch Tuesday Fixes 12 Critical Vulnerabilities
  7. Microsoft Patch Tuesday — October 18: Vulnerability disclosures and Snort coverage
  8. Phishing attacks use Azure Blob storage to simulate Microsoft
  9. TOP 10 PHP Vulnerability Scanners

LINUX

  1. Microsoft Patch Tuesday — October 18: Vulnerability disclosures and Snort coverage
  2. New IoT botnet “hide and seek” variants target Android devices

UNIX

Nil

ANDROID

  1. The end of Google+: Low usage and an API bug that exposed user data
  2. New IoT botnet “hide and seek” variants target Android devices

IOS

  1. Apple fixes iOS 12 passcode bypass vulnerabilities

MACOS

Nil

Threat report for 2018-10-09

DATA BREACH

  1. URSNIF Phishing Campaign Spreads Malware by Replying to Existing E-mail Threads
  2. Heathrow Fined For USB Stick Data Breach
  3. Google+ Users, Upset Over Data Leak, Sue Google
  4. Google+ will shut down after leaking info of 500k accounts
  5. Amazon acknowledges that the company’s employees leaked user information to the seller
  6. Upgrade Your Threat Intelligence Program Part 5: Take Down Fraud Campaigns & Cyber Scams
  7. Magecart group compromises customer ratings tool, affecting 'hundreds' of online stores
  8. Google: We're giving you more control over what personal data apps can use
  9. Garmin's Navionics exposed data belonging to thousands of customers
  10. Phishing Campaign uses Hijacked Emails to Deliver URSNIF by Replying to Ongoing Threads
  11. Google+ shut down after bug exposed user data
  12. Over 4.5 Billion Records Breached in H1 2018, Finds Report
  13. Google+ Shuts Down Following Undisclosed Data Breach
  14. The end of Google+: Low usage and an API bug that exposed user data
  15. 33,000 Accounting Inbox Credentials Exposed Online: BEC Made Easy. Read the full blog here:
  16. Magecart Group Compromises Plugin Used in Thousands of Stores, Makes Rookie Mistake
  17. Heathrow Airport fined £120,000 over USB data breach debacle
  18. "Application control bypass techniques are a big thing that is happening right now - - 80% to 85% of compromises
  19. For @5ean5ullivan, a security adviser at cyber firm F-Secure, a campaign’s cyber protections boil down to education — making sure
  20. Google has made the decision to shut down much of its #GooglePlus social network following the disclosure of vulnerable data.
  21. ​Gemalto reports 4.6 billion record breaches in the first half of 2018
  22. Hackers Targeting Instagram Accounts of Influential Profiles for Ransom in a Recent Campaign
  23. Sunsets for Google Plus after Reports of Data Breach
  24. Google Announced Google+ Shut down, Following Security Breach That Exposed 500,000 Users Accounts
  25. Oh no, looks like we can't trust our data with Google either "Google hid major Google+ security flaw that exposed
  26. Cryptojacking campaign targets add-ons for popular streaming app Kodi

DENIAL-OF-SERVICE

  1. New Cloud VPS Provider with Built-In DDoS Protection and Anti-Virus | SkySilk Cloud Services
  2. Over nine million cameras and DVRs open to APTs, botnet herders, and voyeurs
  3. New IoT botnet “hide and seek” variants target Android devices
  4. Hacked #Fortnite accounts and rent-a-botnet being pushed on

MALVERTISING

Nil

PHISHING

  1. How to Evade Expensive Phishing Filters with One Simple Trick
  2. URSNIF Phishing Campaign Spreads Malware by Replying to Existing E-mail Threads
  3. With a few keystrokes, Number One used the admin/admin login to siphon all the email addresses, names and titles of
  4. As a way to inch forward in the battle of default passwords, California has passed a law that will make
  5. Phishing Campaign uses Hijacked Emails to Deliver URSNIF by Replying to Ongoing Threads
  6. Phishing attacks use Azure Blob storage to simulate Microsoft
  7. Weak IOT passwords outlawed in California
  8. California’s ban on weak default passwords isn’t going to fix IoT security
  9. Police Warned that Phishing Text Messages are Used to Target the Bank Customers
  10. one more reason to not use Facebook login everywhere, no matter how convenient it is.
  11. Using web phishing, criminals have managed to steal $3.7 million (251 million rubles), which is 6% more than in the

WEB DEFACEMENT

Nil

MALWARE

  1. Cryptomining dethrones ransomware as 2018’s top threat - Webroot
  2. Slideshow: Intel from Virus Bulletin 2018
  3. Block puzzle games laced with malware | Avast
  4. How does #FacexWorm #malware use @Facebook Messenger to spread? Learn more about this new malware with expert @lewisnic.
  5. URSNIF Phishing Campaign Spreads Malware by Replying to Existing E-mail Threads
  6. The @USAgov is rolling out #2FA authentication for officers managing .gov domains, but experts say #GoogleAuthenticator might not be the
  7. Panda Banker Trojan becomes part of Emotet threat distribution platform
  8. New Cloud VPS Provider with Built-In DDoS Protection and Anti-Virus | SkySilk Cloud Services
  9. How does #MassMiner #malware infect systems across the web?
  10. Hackers breach customer rating tool used on over 7,000 websites
  11. The government domain registrar -- DotGov -- began rolling out two-factor #authentication for officials managing .gov domains in order to
  12. Magecart group compromises customer ratings tool, affecting 'hundreds' of online stores
  13. Proofpoint: One month out from deadline, half of agency domains are #DMARC compliant http://ow.ly/3SRI50iYi41 via CyberScoopNews
  14. New Domains: A Wide-Open Playing Field for Cybercrime
  15. #Ransomware Survival Guide: 10 things to know before, during, and after an attack:

EXPLOIT

  1. Microsoft Patches Windows Zero-Day Exploited by 'FruityArmor' Group
  2. Microsoft October 2018 Patch Tuesday fixes zero-day exploited by FruityArmor APT
  3. Sophos recently discovered a #Samsam extortion code that performs whole-company attacks through a variety of vulnerability exploits. Discover how this
  4. Active Workload Protection on Amazon EKS and AWS Fargate

VULNERABILITY

  1. Microsoft patches 0-day Windows flaw under attack
  2. Microsoft Patches Zero-Day Under Active Attack by APT
  3. VMware Workstation, Fusion, and ESXi Affected by DoS Vulnerability, No Patch Yet
  4. Microsoft Patches Windows Zero-Day Exploited by 'FruityArmor' Group
  5. Microsoft October 2018 Patch Tuesday fixes zero-day exploited by FruityArmor APT
  6. Vulnerability Spotlight: VMWare Workstation DoS Vulnerability
  7. Microsoft Patch Tuesday — October 18: Vulnerability disclosures and Snort coverage
  8. Vulnerability in the Intel Unified Shader compiler for the Intel Graphics Accelerator
  9. Git Gets Patched for Newly Found Flaw
  10. Microsoft October 2018 Patch Tuesday Fixes 12 Critical Vulnerabilities
  11. Sony Bravia Smart TVs affected by a critical vulnerability
  12. Apple fixes iOS 12 passcode bypass vulnerabilities
  13. Vulnerability Spotlight: VMWare Workstation DoS Vulnerability
  14. Microsoft October Patch Tuesday Fixes 12 Critical Vulnerabilities
  15. Microsoft Patch Tuesday — October 18: Vulnerability disclosures and Snort coverage
  16. Sophos recently discovered a #Samsam extortion code that performs whole-company attacks through a variety of vulnerability exploits. Discover how this
  17. Google+ shut down after bug exposed user data
  18. Vulnerability in the Intel Unified Shader compiler for the Intel Graphics Accelerator
  19. Adobe Releases Security Patch Updates for 11 Vulnerabilities
  20. The end of Google+: Low usage and an API bug that exposed user data
  21. TOP 10 PHP Vulnerability Scanners
  22. RIP Google Plus: Shutdown announced after API bug exposes 500,000 users' details
  23. On our new #CyberSauna podcast: Find out how F-Secure's @nxsolle and Pasi Saarinen discovered a flaw that allows attackers to get
  24. Critical vulnerability in Sony Bravia Smart TV
  25. Oh no, looks like we can't trust our data with Google either "Google hid major Google+ security flaw that exposed

Region brief for 2018-10-09

ASIA

  1. Panda Banker Trojan becomes part of Emotet threat distribution platform
  2. DHS issued an alert on attacks aimed at Managed Service Providers
  3. Police Warned that Phishing Text Messages are Used to Target the Bank Customers

OCEANIA

  1. How to Evade Expensive Phishing Filters with One Simple Trick
  2. ​Gemalto reports 4.6 billion record breaches in the first half of 2018

NORTH AMERICA

  1. Panda Banker Trojan becomes part of Emotet threat distribution platform
  2. APT28 group return to covert intelligence gathering ops in Europe and South America.
  3. Sony Bravia Smart TVs affected by a critical vulnerability
  4. DHS issued an alert on attacks aimed at Managed Service Providers
  5. The Magecart Seal of Approval: Card-Skimming Group Executes Scaled Supply Chain Attack on Shopper Approved
  6. Magecart group compromises customer ratings tool, affecting 'hundreds' of online stores
  7. Phishing Campaign uses Hijacked Emails to Deliver URSNIF by Replying to Ongoing Threads
  8. Vulnerability Spotlight: VMWare Workstation DoS Vulnerability
  9. Phishing attacks use Azure Blob storage to simulate Microsoft
  10. Weak IOT passwords outlawed in California
  11. ​Gemalto reports 4.6 billion record breaches in the first half of 2018
  12. Sunsets for Google Plus after Reports of Data Breach
  13. Critical vulnerability in Sony Bravia Smart TV

SOUTH AMERICA

Nil

EUROPE

  1. DHS issued an alert on attacks aimed at Managed Service Providers
  2. The Magecart Seal of Approval: Card-Skimming Group Executes Scaled Supply Chain Attack on Shopper Approved
  3. Hackers breach customer rating tool used on over 7,000 websites
  4. Magecart group compromises customer ratings tool, affecting 'hundreds' of online stores
  5. New Magecart hack detected at Shopper Approved
  6. Phishing Campaign uses Hijacked Emails to Deliver URSNIF by Replying to Ongoing Threads

AFRICA

Nil

Sector brief for 2018-10-09

HEALTHCARE

  1. DHS issued an alert on attacks aimed at Managed Service Providers
  2. Sunsets for Google Plus after Reports of Data Breach

TRANSPORT

  1. Heathrow Airport fined £120,000 over USB data breach debacle

BANKING & FINANCE

  1. Panda Banker Trojan becomes part of Emotet threat distribution platform
  2. Amazon acknowledges that the company’s employees leaked user information to the seller
  3. The Magecart Seal of Approval: Card-Skimming Group Executes Scaled Supply Chain Attack on Shopper Approved
  4. Magecart group compromises customer ratings tool, affecting 'hundreds' of online stores
  5. Phishing Campaign uses Hijacked Emails to Deliver URSNIF by Replying to Ongoing Threads
  6. New Domains: A Wide-Open Playing Field for Cybercrime
  7. Magecart Group Compromises Plugin Used in Thousands of Stores, Makes Rookie Mistake
  8. Active Workload Protection on Amazon EKS and AWS Fargate
  9. Police Warned that Phishing Text Messages are Used to Target the Bank Customers
  10. Sunsets for Google Plus after Reports of Data Breach

INFORMATION & TELECOMMUNICATION

  1. How does #FacexWorm #malware use @Facebook Messenger to spread? Learn more about this new malware with expert @lewisnic.
  2. The Magecart Seal of Approval: Card-Skimming Group Executes Scaled Supply Chain Attack on Shopper Approved
  3. As a way to inch forward in the battle of default passwords, California has passed a law that will make
  4. Phishing Campaign uses Hijacked Emails to Deliver URSNIF by Replying to Ongoing Threads
  5. Formjacking attacks are on the rise, with the recent #Magecart attacks the most notable examples. @Symantec has blocked almost 250,000
  6. Google+ Shuts Down Following Undisclosed Data Breach
  7. Phishing attacks use Azure Blob storage to simulate Microsoft
  8. The end of Google+: Low usage and an API bug that exposed user data
  9. 33,000 Accounting Inbox Credentials Exposed Online: BEC Made Easy. Read the full blog here:
  10. For @5ean5ullivan, a security adviser at cyber firm F-Secure, a campaign’s cyber protections boil down to education — making sure
  11. Google has made the decision to shut down much of its #GooglePlus social network following the disclosure of vulnerable data.
  12. On our new #CyberSauna podcast: Find out how F-Secure's @nxsolle and Pasi Saarinen discovered a flaw that allows attackers to get
  13. Hacked #Fortnite accounts and rent-a-botnet being pushed on
  14. Hackers Targeting Instagram Accounts of Influential Profiles for Ransom in a Recent Campaign
  15. one more reason to not use Facebook login everywhere, no matter how convenient it is.
  16. Sunsets for Google Plus after Reports of Data Breach
  17. Using web phishing, criminals have managed to steal $3.7 million (251 million rubles), which is 6% more than in the
  18. Comienza en MoscĂș #CyberCrimeCon —el gran encuentro mundial sobre cibercrimen y ciberterrorismo— y de lo primero que hablan es de
  19. Oh no, looks like we can't trust our data with Google either "Google hid major Google+ security flaw that exposed
  20. #Ransomware Survival Guide: 10 things to know before, during, and after an attack:

FOOD

Nil

WATER

Nil

ENERGY

  1. DHS issued an alert on attacks aimed at Managed Service Providers
  2. Phishing Campaign uses Hijacked Emails to Deliver URSNIF by Replying to Ongoing Threads

GOVERNMENT & PUBLIC SERVICE

  1. APT28 group return to covert intelligence gathering ops in Europe and South America.

Daily brief for 2018-10-09

ASIA

  1. Panda Banker Trojan becomes part of Emotet threat distribution platform
  2. DHS issued an alert on attacks aimed at Managed Service Providers
  3. Police Warned that Phishing Text Messages are Used to Target the Bank Customers

WORLD

  1. How to Evade Expensive Phishing Filters with One Simple Trick
  2. Panda Banker Trojan becomes part of Emotet threat distribution platform
  3. APT28 group return to covert intelligence gathering ops in Europe and South America.
  4. Sony Bravia Smart TVs affected by a critical vulnerability
  5. DHS issued an alert on attacks aimed at Managed Service Providers
  6. The Magecart Seal of Approval: Card-Skimming Group Executes Scaled Supply Chain Attack on Shopper Approved
  7. Hackers breach customer rating tool used on over 7,000 websites
  8. Magecart group compromises customer ratings tool, affecting 'hundreds' of online stores
  9. New Magecart hack detected at Shopper Approved
  10. Phishing Campaign uses Hijacked Emails to Deliver URSNIF by Replying to Ongoing Threads
  11. Vulnerability Spotlight: VMWare Workstation DoS Vulnerability
  12. Phishing attacks use Azure Blob storage to simulate Microsoft
  13. Weak IOT passwords outlawed in California
  14. ​Gemalto reports 4.6 billion record breaches in the first half of 2018
  15. Sunsets for Google Plus after Reports of Data Breach
  16. Critical vulnerability in Sony Bravia Smart TV

ATTACKS

  1. How to Evade Expensive Phishing Filters with One Simple Trick
  2. URSNIF Phishing Campaign Spreads Malware by Replying to Existing E-mail Threads
  3. Heathrow Fined For USB Stick Data Breach
  4. Google+ Users, Upset Over Data Leak, Sue Google
  5. New Cloud VPS Provider with Built-In DDoS Protection and Anti-Virus | SkySilk Cloud Services
  6. Over nine million cameras and DVRs open to APTs, botnet herders, and voyeurs
  7. Google+ will shut down after leaking info of 500k accounts
  8. Amazon acknowledges that the company’s employees leaked user information to the seller
  9. Upgrade Your Threat Intelligence Program Part 5: Take Down Fraud Campaigns & Cyber Scams
  10. With a few keystrokes, Number One used the admin/admin login to siphon all the email addresses, names and titles of
  11. Magecart group compromises customer ratings tool, affecting 'hundreds' of online stores
  12. Google: We're giving you more control over what personal data apps can use
  13. As a way to inch forward in the battle of default passwords, California has passed a law that will make
  14. Garmin's Navionics exposed data belonging to thousands of customers
  15. Phishing Campaign uses Hijacked Emails to Deliver URSNIF by Replying to Ongoing Threads
  16. Google+ shut down after bug exposed user data
  17. Over 4.5 Billion Records Breached in H1 2018, Finds Report
  18. Google+ Shuts Down Following Undisclosed Data Breach
  19. Phishing attacks use Azure Blob storage to simulate Microsoft
  20. The end of Google+: Low usage and an API bug that exposed user data
  21. 33,000 Accounting Inbox Credentials Exposed Online: BEC Made Easy. Read the full blog here:
  22. Weak IOT passwords outlawed in California
  23. California’s ban on weak default passwords isn’t going to fix IoT security
  24. Magecart Group Compromises Plugin Used in Thousands of Stores, Makes Rookie Mistake
  25. Heathrow Airport fined £120,000 over USB data breach debacle
  26. "Application control bypass techniques are a big thing that is happening right now - - 80% to 85% of compromises
  27. New IoT botnet “hide and seek” variants target Android devices
  28. For @5ean5ullivan, a security adviser at cyber firm F-Secure, a campaign’s cyber protections boil down to education — making sure
  29. Google has made the decision to shut down much of its #GooglePlus social network following the disclosure of vulnerable data.
  30. Hacked #Fortnite accounts and rent-a-botnet being pushed on
  31. ​Gemalto reports 4.6 billion record breaches in the first half of 2018
  32. Police Warned that Phishing Text Messages are Used to Target the Bank Customers
  33. Hackers Targeting Instagram Accounts of Influential Profiles for Ransom in a Recent Campaign
  34. one more reason to not use Facebook login everywhere, no matter how convenient it is.
  35. Sunsets for Google Plus after Reports of Data Breach
  36. Google Announced Google+ Shut down, Following Security Breach That Exposed 500,000 Users Accounts
  37. Using web phishing, criminals have managed to steal $3.7 million (251 million rubles), which is 6% more than in the
  38. Oh no, looks like we can't trust our data with Google either "Google hid major Google+ security flaw that exposed
  39. Cryptojacking campaign targets add-ons for popular streaming app Kodi

THREATS

  1. Cryptomining dethrones ransomware as 2018’s top threat - Webroot
  2. Microsoft patches 0-day Windows flaw under attack
  3. Microsoft Patches Zero-Day Under Active Attack by APT
  4. VMware Workstation, Fusion, and ESXi Affected by DoS Vulnerability, No Patch Yet
  5. Microsoft Patches Windows Zero-Day Exploited by 'FruityArmor' Group
  6. Microsoft October 2018 Patch Tuesday fixes zero-day exploited by FruityArmor APT
  7. Vulnerability Spotlight: VMWare Workstation DoS Vulnerability
  8. Microsoft Patch Tuesday — October 18: Vulnerability disclosures and Snort coverage
  9. Slideshow: Intel from Virus Bulletin 2018
  10. Vulnerability in the Intel Unified Shader compiler for the Intel Graphics Accelerator
  11. Git Gets Patched for Newly Found Flaw
  12. Block puzzle games laced with malware | Avast
  13. How does #FacexWorm #malware use @Facebook Messenger to spread? Learn more about this new malware with expert @lewisnic.
  14. URSNIF Phishing Campaign Spreads Malware by Replying to Existing E-mail Threads
  15. The @USAgov is rolling out #2FA authentication for officers managing .gov domains, but experts say #GoogleAuthenticator might not be the
  16. Panda Banker Trojan becomes part of Emotet threat distribution platform
  17. New Cloud VPS Provider with Built-In DDoS Protection and Anti-Virus | SkySilk Cloud Services
  18. Microsoft October 2018 Patch Tuesday Fixes 12 Critical Vulnerabilities
  19. Sony Bravia Smart TVs affected by a critical vulnerability
  20. How does #MassMiner #malware infect systems across the web?
  21. Hackers breach customer rating tool used on over 7,000 websites
  22. The government domain registrar -- DotGov -- began rolling out two-factor #authentication for officials managing .gov domains in order to
  23. Magecart group compromises customer ratings tool, affecting 'hundreds' of online stores
  24. Apple fixes iOS 12 passcode bypass vulnerabilities
  25. Vulnerability Spotlight: VMWare Workstation DoS Vulnerability
  26. Proofpoint: One month out from deadline, half of agency domains are #DMARC compliant http://ow.ly/3SRI50iYi41 via CyberScoopNews
  27. Microsoft October Patch Tuesday Fixes 12 Critical Vulnerabilities
  28. Microsoft Patch Tuesday — October 18: Vulnerability disclosures and Snort coverage
  29. Sophos recently discovered a #Samsam extortion code that performs whole-company attacks through a variety of vulnerability exploits. Discover how this
  30. Google+ shut down after bug exposed user data
  31. Vulnerability in the Intel Unified Shader compiler for the Intel Graphics Accelerator
  32. Adobe Releases Security Patch Updates for 11 Vulnerabilities
  33. New Domains: A Wide-Open Playing Field for Cybercrime
  34. The end of Google+: Low usage and an API bug that exposed user data
  35. TOP 10 PHP Vulnerability Scanners
  36. RIP Google Plus: Shutdown announced after API bug exposes 500,000 users' details
  37. Active Workload Protection on Amazon EKS and AWS Fargate
  38. On our new #CyberSauna podcast: Find out how F-Secure's @nxsolle and Pasi Saarinen discovered a flaw that allows attackers to get
  39. Critical vulnerability in Sony Bravia Smart TV
  40. Oh no, looks like we can't trust our data with Google either "Google hid major Google+ security flaw that exposed
  41. #Ransomware Survival Guide: 10 things to know before, during, and after an attack:

CRIME

  1. Cryptomining dethrones ransomware as 2018’s top threat - Webroot
  2. How to Evade Expensive Phishing Filters with One Simple Trick
  3. DHS issued an alert on attacks aimed at Managed Service Providers
  4. The Magecart Seal of Approval: Card-Skimming Group Executes Scaled Supply Chain Attack on Shopper Approved
  5. Magecart group compromises customer ratings tool, affecting 'hundreds' of online stores
  6. Phishing Campaign uses Hijacked Emails to Deliver URSNIF by Replying to Ongoing Threads
  7. Sophos recently discovered a #Samsam extortion code that performs whole-company attacks through a variety of vulnerability exploits. Discover how this
  8. New Domains: A Wide-Open Playing Field for Cybercrime
  9. 33,000 Accounting Inbox Credentials Exposed Online: BEC Made Easy. Read the full blog here:
  10. Magecart Group Compromises Plugin Used in Thousands of Stores, Makes Rookie Mistake
  11. Police Warned that Phishing Text Messages are Used to Target the Bank Customers

POLITICS

  1. APT28 group return to covert intelligence gathering ops in Europe and South America.
  2. DHS issued an alert on attacks aimed at Managed Service Providers