Oct 26, 2018

APT report for 2018-10-25

TRANSNATIONAL / UNKNOWN

  1. Cutwail Spam Campaign Uses Steganography to Distribute URLZone
  2. British Airways has some good news and bad news about its payment breach
  3. 77K Additional Customers Affected by British Airways' MageCart Data Breach
  4. 5 Common Visibility Gaps Your Enterprise Security Plan Can’t Afford
  5. Cathay Pacific data breach affecting 9.4 million passengers

CHINA

Nil

INDIA

Nil

NORTH KOREA

Nil

PAKISTAN

Nil

VIETNAM

Nil

IRAN

Nil

IRAQ

Nil

LEBANON

Nil

PALESTINE

Nil

SAUDI ARABIA

Nil

SYRIA

Nil

TURKEY

Nil

UNITED ARAB EMIRATES

Nil

YEMEN

Nil

RUSSIA

  1. ICS and IIoT Increasingly Vulnerable to Hackers
  2. CNI Campaign TRITON Linked to Russian Institute

SERBIA

Nil

UKRAINE

  1. Cobalt Group tries to slip malicious PDFs past bank employees, researchers say
  2. New Techniques to Uncover and Attribute Cobalt Gang Commodity Builders and Infrastructure Revealed

Platform report for 2018-10-25

WINDOWS

  1. Cutwail Spam Campaign Uses Steganography to Distribute URLZone
  2. Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
  3. WINDOWS ZERO-DAY BY SANDBOXESCAPER
  4. ICS and IIoT Increasingly Vulnerable to Hackers
  5. New Techniques to Uncover and Attribute Cobalt Gang Commodity Builders and Infrastructure Revealed
  6. Experts discovered a severe command injection flaw in Cisco Webex Meetings Desktop
  7. Chalubo Botnet Compromise Your Server or IoT Device & Use it for DDOS Attack
  8. Windows 10 Update Fixed File Deletion Flaw But Not ZIP File Overwrite Bug
  9. Google Chrome 70.0.3538.77 released: Bugs fix
  10. Windows 10 bug overwrites files without confirmation

LINUX

  1. New security flaw impacts most Linux and BSD distros
  2. Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
  3. Chalubo Botnet Compromise Your Server or IoT Device & Use it for DDOS Attack

UNIX

Nil

ANDROID

  1. Another one bites the dust! In 2018 Android malware can bypass defences of billon dollar AV industry and Google Play
  2. 'TimpDoor' Malware Turns Android Devices into Proxies
  3. 5 Common Visibility Gaps Your Enterprise Security Plan Can’t Afford
  4. New Android Malware Turns Your Mobile Devices into Hidden Proxies

IOS

  1. 5 Common Visibility Gaps Your Enterprise Security Plan Can’t Afford
  2. iOS 12 has completely blocked password cracking tool, GrayKey

MACOS

  1. Mac Malware Injects Ads Into Encrypted Traffic

Threat report for 2018-10-25

DATA BREACH & DATA LOSS

  1. Cutwail Spam Campaign Uses Steganography to Distribute URLZone
  2. Cathay Pacific hack: Personal data of up to 9.4 million airline passengers laid bare
  3. Another 185K Customers Potentially Affected by the British Airways Data Breach
  4. British Airways: Cyberattack, data theft bigger than we first thought
  5. Cathay Pacific data breach: 9.4 million passenger information at risk
  6. Data Breach Announced by CMS – Approximately 75,000 Individuals’ Files Affected
  7. Abandoned Web Apps Found as a Core Cause Behind High Profile Data Breaches
  8. Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
  9. Questions Mount Over Delay After Cathay Pacific Admits Huge Data Leak
  10. Multiple Phishing Campaigns Target Universities
  11. 77K Additional Customers Affected by British Airways' MageCart Data Breach
  12. Cathay Pacific data breach exposes PII of 9.4 million customers
  13. Cathay Pacific data breach exposed 9.4m customers’ details
  14. Hackers steal personal data of up to 9.4 million Cathay Pacific passengers
  15. Hackers steal personal data of up to 9.4 million Cathay Pacific passengers
  16. CNI Campaign TRITON Linked to Russian Institute
  17. Chalubo Botnet Compromise Your Server or IoT Device & Use it for DDOS Attack
  18. Cathay Pacific data breach affecting 9.4 million passengers
  19. Data leak at consulting firm handling fundraisers for the Democratic party

DENIAL-OF-SERVICE

  1. New DDoS botnet goes after Hadoop enterprise servers
  2. New Botnet Launches DDoS Attacks on SSH Servers
  3. Chalubo Botnet Compromise Your Server or IoT Device & Use it for DDOS Attack
  4. NETSCOUT’s Arbor Cloud Expands DDoS Protection Across Asia

MALVERTISING

Nil

PHISHING

  1. Multiple Phishing Campaigns Target Universities
  2. Cofense Hunts Phishing Threats Round the Clock with Enhanced 24-hour Global Phishing Defense Services
  3. Learn how hackers used TLS certificates to launch @netflix #phishing attacks from expert Michael Cobb of @thehairyITdog
  4. iOS 12 has completely blocked password cracking tool, GrayKey

WEB DEFACEMENT

Nil

BOTNET

  1. New DDoS botnet goes after Hadoop enterprise servers
  2. Hacker creates seven new variants of the Mirai botnet | Avast
  3. New Botnet Launches DDoS Attacks on SSH Servers
  4. Chalubo Botnet Compromise Your Server or IoT Device & Use it for DDOS Attack

RANSOMWARE

  1. Experts released a free Decryption Tool for GandCrab ransomware
  2. New FilesLocker Ransomware Offered as a Ransomware as a Service
  3. GandCrab ransomware declawed with new decryption tool
  4. Files Encrypted by GandCrab Ransomware Can Now Be Decrypted for Free
  5. Bitdefender releases GandCrab ransomware decryption tool
  6. Free GrandCrab Ransomware Decryption Tool Released by Bitdefender
  7. Free Decrypter Available for the Latest GandCrab Ransomware Versions
  8. ESET releases new decryptor for Syrian victims of GandCrab ransomware
  9. Free decryption tool released for multiple GandCrab ransomware versions
  10. West Haven pays $2k USD because of ransomware attack
  11. GandCrab Ransomware decryption tool

CRYPTOMINING & CRYPTOCURRENCIES

  1. Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
  2. North Korea blamed for two cryptocurrency scams, five trading platform hacks
  3. Building shared digital identity using blockchain technology

MALWARE

  1. Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
  2. Malware Distributors Adopt DKIM to Bypass Mail Filters
  3. Cobalt Group tries to slip malicious PDFs past bank employees, researchers say
  4. Another one bites the dust! In 2018 Android malware can bypass defences of billon dollar AV industry and Google Play
  5. 'TimpDoor' Malware Turns Android Devices into Proxies
  6. Bypass an Anti Virus Detection with Encrypted Payloads using VENOM Tool
  7. #DidYouKnow AVG Free Antivirus received the highest rating of Advanced+ in @AV_Comparatives latest Malware Protection Test? Share AVG Free Antivirus with
  8. Malware Distributors Adopt DKIM to Bypass Mail Filters
  9. Mac Malware Injects Ads Into Encrypted Traffic
  10. .@FireEye researchers have attributed the #Triton #malware -- used in an attack on an industrial control system in Saudi Arabia
  11. FireEye ties Russia to Triton malware attack in Saudi Arabia
  12. Our threat intelligence lead Chris Dawson (@mrdatahs) discussing new @proofpoint Threat Insight #Malware research with @threatpost.
  13. FireEye links Triton Malware to Russian Research Institute
  14. .@FireEye security researchers claimed the Russian government was 'most likely' behind the Triton #malware attack on an industrial control system
  15. Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye
  16. What is application security? A process and tools for securing software
  17. [BLOG] When #malware actor realizes that he can make more money by himself and transform his dropper into banking malware,
  18. New Android Malware Turns Your Mobile Devices into Hidden Proxies

EXPLOIT

  1. Researchers recently found vulnerabilities in #robot controllers from @Universal_Robot. Learn what these robot controllers do and how #ThreatActors exploit these

VULNERABILITY

  1. New security flaw impacts most Linux and BSD distros
  2. Multiple Vulnerabilities Patched in ASRock Drivers
  3. Unusual Remote Execution Bug in Cisco WebEx Discovered by Researchers
  4. WINDOWS ZERO-DAY BY SANDBOXESCAPER
  5. Sophos Patches RCE and Memory Disclosure Vulnerabilities in
  6. Vulnerability Spotlight: TALOS-2018-0635/0636 – Sophos HitmanPro.Alert memory disclosure and code execution vulnerabilities
  7. Pentagon Expands Bug-Bounty Program to Include Physical Systems
  8. Researchers Find Command Injection Flaw in Cisco WebEx
  9. Researchers recently found vulnerabilities in #robot controllers from @Universal_Robot. Learn what these robot controllers do and how #ThreatActors exploit these
  10. Microsoft Acknowledges Zip File Overwrite Bug - Fix Coming in November
  11. Cisco releases fix for privilege escalation bug in Webex Meetings app
  12. Amazon IoT operating system FreeRTOS has serious vulnerabilities
  13. Experts discovered a severe command injection flaw in Cisco Webex Meetings Desktop
  14. You patch my back(up) and I'll patch yours... Arcserve bugs burrow remotely exploited holes in UDP storage systems
  15. Signal Desktop App Vulnerability Exposes Message Decryption Key To The Users
  16. Vulnerability Spotlight: TALOS-2018-0635/0636 - Sophos HitmanPro.Alert memory disclosure and code execution vulnerabilities
  17. Windows 10 Update Fixed File Deletion Flaw But Not ZIP File Overwrite Bug
  18. Google Chrome 70.0.3538.77 released: Bugs fix
  19. Win10 1803 big bug bash KB 4462933 joins earlier versions, a week late to the party
  20. FreeRTOS Multiple Remote Code Execution Vulnerabilities Threat Alert
  21. Java Usage Tracker Vulnerability
  22. Windows 10 bug overwrites files without confirmation
  23. Unusual Remote Execution Bug in Cisco WebEx Discovered by Researchers

Region brief for 2018-10-25

ASIA

  1. Experts released a free Decryption Tool for GandCrab ransomware
  2. Cutwail Spam Campaign Uses Steganography to Distribute URLZone
  3. Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
  4. New FilesLocker Ransomware Offered as a Ransomware as a Service
  5. Cathay Pacific data breach: 9.4 million passenger information at risk
  6. Questions Mount Over Delay After Cathay Pacific Admits Huge Data Leak
  7. North Korea blamed for two cryptocurrency scams, five trading platform hacks
  8. .@FireEye researchers have attributed the #Triton #malware -- used in an attack on an industrial control system in Saudi Arabia
  9. FireEye ties Russia to Triton malware attack in Saudi Arabia
  10. Cathay Pacific data breach exposed 9.4m customers’ details
  11. CNI Campaign TRITON Linked to Russian Institute
  12. ESET releases new decryptor for Syrian victims of GandCrab ransomware
  13. Cathay Pacific data breach affecting 9.4 million passengers
  14. .@FireEye security researchers claimed the Russian government was 'most likely' behind the Triton #malware attack on an industrial control system
  15. FreeRTOS Multiple Remote Code Execution Vulnerabilities Threat Alert
  16. Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye
  17. NETSCOUT’s Arbor Cloud Expands DDoS Protection Across Asia

OCEANIA

  1. NETSCOUT’s Arbor Cloud Expands DDoS Protection Across Asia

NORTH AMERICA

  1. Cutwail Spam Campaign Uses Steganography to Distribute URLZone
  2. Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
  3. Malware Distributors Adopt DKIM to Bypass Mail Filters
  4. Data Breach Announced by CMS – Approximately 75,000 Individuals’ Files Affected
  5. Abandoned Web Apps Found as a Core Cause Behind High Profile Data Breaches
  6. Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
  7. Multiple Phishing Campaigns Target Universities
  8. New Techniques to Uncover and Attribute Cobalt Gang Commodity Builders and Infrastructure Revealed
  9. 5 Common Visibility Gaps Your Enterprise Security Plan Can’t Afford
  10. Malware Distributors Adopt DKIM to Bypass Mail Filters
  11. West Haven pays $2k USD because of ransomware attack
  12. GandCrab Ransomware decryption tool

SOUTH AMERICA

Nil

EUROPE

  1. Experts released a free Decryption Tool for GandCrab ransomware
  2. Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
  3. British Airways has some good news and bad news about its payment breach
  4. Another 185K Customers Potentially Affected by the British Airways Data Breach
  5. British Airways: Cyberattack, data theft bigger than we first thought
  6. Cobalt Group tries to slip malicious PDFs past bank employees, researchers say
  7. Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
  8. Multiple Phishing Campaigns Target Universities
  9. 77K Additional Customers Affected by British Airways' MageCart Data Breach
  10. New Techniques to Uncover and Attribute Cobalt Gang Commodity Builders and Infrastructure Revealed
  11. .@FireEye researchers have attributed the #Triton #malware -- used in an attack on an industrial control system in Saudi Arabia
  12. Bitdefender releases GandCrab ransomware decryption tool
  13. FireEye ties Russia to Triton malware attack in Saudi Arabia
  14. FireEye links Triton Malware to Russian Research Institute
  15. CNI Campaign TRITON Linked to Russian Institute
  16. Free GrandCrab Ransomware Decryption Tool Released by Bitdefender
  17. Cathay Pacific data breach affecting 9.4 million passengers
  18. .@FireEye security researchers claimed the Russian government was 'most likely' behind the Triton #malware attack on an industrial control system
  19. Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye

AFRICA

Nil

Sector brief for 2018-10-25

HEALTHCARE

  1. Data Breach Announced by CMS – Approximately 75,000 Individuals’ Files Affected
  2. Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
  3. Amazon IoT operating system FreeRTOS has serious vulnerabilities

TRANSPORT

  1. Cobalt Group tries to slip malicious PDFs past bank employees, researchers say
  2. Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
  3. New Techniques to Uncover and Attribute Cobalt Gang Commodity Builders and Infrastructure Revealed
  4. Amazon IoT operating system FreeRTOS has serious vulnerabilities

BANKING & FINANCE

  1. British Airways has some good news and bad news about its payment breach
  2. Malware Distributors Adopt DKIM to Bypass Mail Filters
  3. Another 185K Customers Potentially Affected by the British Airways Data Breach
  4. British Airways: Cyberattack, data theft bigger than we first thought
  5. Cobalt Group tries to slip malicious PDFs past bank employees, researchers say
  6. Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
  7. Questions Mount Over Delay After Cathay Pacific Admits Huge Data Leak
  8. New Techniques to Uncover and Attribute Cobalt Gang Commodity Builders and Infrastructure Revealed
  9. 5 Common Visibility Gaps Your Enterprise Security Plan Can’t Afford
  10. Cathay Pacific data breach exposes PII of 9.4 million customers
  11. Cathay Pacific data breach affecting 9.4 million passengers
  12. West Haven pays $2k USD because of ransomware attack
  13. [BLOG] When #malware actor realizes that he can make more money by himself and transform his dropper into banking malware,

INFORMATION & TELECOMMUNICATION

  1. Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
  2. Cobalt Group tries to slip malicious PDFs past bank employees, researchers say
  3. Another one bites the dust! In 2018 Android malware can bypass defences of billon dollar AV industry and Google Play
  4. #DidYouKnow AVG Free Antivirus received the highest rating of Advanced+ in @AV_Comparatives latest Malware Protection Test? Share AVG Free Antivirus with
  5. Hacker creates seven new variants of the Mirai botnet | Avast
  6. iOS 12 has completely blocked password cracking tool, GrayKey

FOOD

Nil

WATER

Nil

ENERGY

Nil

GOVERNMENT & PUBLIC SERVICE

  1. Experts released a free Decryption Tool for GandCrab ransomware
  2. Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
  3. 5 Common Visibility Gaps Your Enterprise Security Plan Can’t Afford
  4. .@FireEye researchers have attributed the #Triton #malware -- used in an attack on an industrial control system in Saudi Arabia
  5. Bitdefender releases GandCrab ransomware decryption tool
  6. FireEye links Triton Malware to Russian Research Institute
  7. CNI Campaign TRITON Linked to Russian Institute
  8. Free GrandCrab Ransomware Decryption Tool Released by Bitdefender
  9. .@FireEye security researchers claimed the Russian government was 'most likely' behind the Triton #malware attack on an industrial control system
  10. Building shared digital identity using blockchain technology
  11. Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye
  12. West Haven pays $2k USD because of ransomware attack

Daily brief for 2018-10-25

ASIA

  1. Experts released a free Decryption Tool for GandCrab ransomware
  2. Cutwail Spam Campaign Uses Steganography to Distribute URLZone
  3. Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
  4. New FilesLocker Ransomware Offered as a Ransomware as a Service
  5. Cathay Pacific data breach: 9.4 million passenger information at risk
  6. Questions Mount Over Delay After Cathay Pacific Admits Huge Data Leak
  7. North Korea blamed for two cryptocurrency scams, five trading platform hacks
  8. .@FireEye researchers have attributed the #Triton #malware -- used in an attack on an industrial control system in Saudi Arabia
  9. FireEye ties Russia to Triton malware attack in Saudi Arabia
  10. Cathay Pacific data breach exposed 9.4m customers’ details
  11. CNI Campaign TRITON Linked to Russian Institute
  12. ESET releases new decryptor for Syrian victims of GandCrab ransomware
  13. Cathay Pacific data breach affecting 9.4 million passengers
  14. .@FireEye security researchers claimed the Russian government was 'most likely' behind the Triton #malware attack on an industrial control system
  15. FreeRTOS Multiple Remote Code Execution Vulnerabilities Threat Alert
  16. Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye
  17. NETSCOUT’s Arbor Cloud Expands DDoS Protection Across Asia

WORLD

  1. Experts released a free Decryption Tool for GandCrab ransomware
  2. Cutwail Spam Campaign Uses Steganography to Distribute URLZone
  3. Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
  4. British Airways has some good news and bad news about its payment breach
  5. Malware Distributors Adopt DKIM to Bypass Mail Filters
  6. Another 185K Customers Potentially Affected by the British Airways Data Breach
  7. British Airways: Cyberattack, data theft bigger than we first thought
  8. Cobalt Group tries to slip malicious PDFs past bank employees, researchers say
  9. Data Breach Announced by CMS – Approximately 75,000 Individuals’ Files Affected
  10. Abandoned Web Apps Found as a Core Cause Behind High Profile Data Breaches
  11. Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
  12. Multiple Phishing Campaigns Target Universities
  13. 77K Additional Customers Affected by British Airways' MageCart Data Breach
  14. New Techniques to Uncover and Attribute Cobalt Gang Commodity Builders and Infrastructure Revealed
  15. 5 Common Visibility Gaps Your Enterprise Security Plan Can’t Afford
  16. Malware Distributors Adopt DKIM to Bypass Mail Filters
  17. .@FireEye researchers have attributed the #Triton #malware -- used in an attack on an industrial control system in Saudi Arabia
  18. Bitdefender releases GandCrab ransomware decryption tool
  19. FireEye ties Russia to Triton malware attack in Saudi Arabia
  20. FireEye links Triton Malware to Russian Research Institute
  21. CNI Campaign TRITON Linked to Russian Institute
  22. Free GrandCrab Ransomware Decryption Tool Released by Bitdefender
  23. Cathay Pacific data breach affecting 9.4 million passengers
  24. .@FireEye security researchers claimed the Russian government was 'most likely' behind the Triton #malware attack on an industrial control system
  25. Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye
  26. West Haven pays $2k USD because of ransomware attack
  27. NETSCOUT’s Arbor Cloud Expands DDoS Protection Across Asia
  28. GandCrab Ransomware decryption tool

ATTACKS

  1. Cutwail Spam Campaign Uses Steganography to Distribute URLZone
  2. Cathay Pacific hack: Personal data of up to 9.4 million airline passengers laid bare
  3. Another 185K Customers Potentially Affected by the British Airways Data Breach
  4. British Airways: Cyberattack, data theft bigger than we first thought
  5. Cathay Pacific data breach: 9.4 million passenger information at risk
  6. Data Breach Announced by CMS – Approximately 75,000 Individuals’ Files Affected
  7. Abandoned Web Apps Found as a Core Cause Behind High Profile Data Breaches
  8. Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
  9. Questions Mount Over Delay After Cathay Pacific Admits Huge Data Leak
  10. Multiple Phishing Campaigns Target Universities
  11. 77K Additional Customers Affected by British Airways' MageCart Data Breach
  12. Cofense Hunts Phishing Threats Round the Clock with Enhanced 24-hour Global Phishing Defense Services
  13. Cathay Pacific data breach exposes PII of 9.4 million customers
  14. Cathay Pacific data breach exposed 9.4m customers’ details
  15. Hackers steal personal data of up to 9.4 million Cathay Pacific passengers
  16. Hackers steal personal data of up to 9.4 million Cathay Pacific passengers
  17. CNI Campaign TRITON Linked to Russian Institute
  18. Chalubo Botnet Compromise Your Server or IoT Device & Use it for DDOS Attack
  19. Cathay Pacific data breach affecting 9.4 million passengers
  20. Learn how hackers used TLS certificates to launch @netflix #phishing attacks from expert Michael Cobb of @thehairyITdog
  21. iOS 12 has completely blocked password cracking tool, GrayKey
  22. Data leak at consulting firm handling fundraisers for the Democratic party

THREATS

  1. New security flaw impacts most Linux and BSD distros
  2. Experts released a free Decryption Tool for GandCrab ransomware
  3. Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware
  4. Malware Distributors Adopt DKIM to Bypass Mail Filters
  5. Multiple Vulnerabilities Patched in ASRock Drivers
  6. Unusual Remote Execution Bug in Cisco WebEx Discovered by Researchers
  7. Cobalt Group tries to slip malicious PDFs past bank employees, researchers say
  8. WINDOWS ZERO-DAY BY SANDBOXESCAPER
  9. New FilesLocker Ransomware Offered as a Ransomware as a Service
  10. Another one bites the dust! In 2018 Android malware can bypass defences of billon dollar AV industry and Google Play
  11. Sophos Patches RCE and Memory Disclosure Vulnerabilities in
  12. Vulnerability Spotlight: TALOS-2018-0635/0636 – Sophos HitmanPro.Alert memory disclosure and code execution vulnerabilities
  13. Pentagon Expands Bug-Bounty Program to Include Physical Systems
  14. GandCrab ransomware declawed with new decryption tool
  15. Researchers Find Command Injection Flaw in Cisco WebEx
  16. Files Encrypted by GandCrab Ransomware Can Now Be Decrypted for Free
  17. 'TimpDoor' Malware Turns Android Devices into Proxies
  18. North Korea blamed for two cryptocurrency scams, five trading platform hacks
  19. Bypass an Anti Virus Detection with Encrypted Payloads using VENOM Tool
  20. #DidYouKnow AVG Free Antivirus received the highest rating of Advanced+ in @AV_Comparatives latest Malware Protection Test? Share AVG Free Antivirus with
  21. Researchers recently found vulnerabilities in #robot controllers from @Universal_Robot. Learn what these robot controllers do and how #ThreatActors exploit these
  22. Microsoft Acknowledges Zip File Overwrite Bug - Fix Coming in November
  23. Malware Distributors Adopt DKIM to Bypass Mail Filters
  24. Mac Malware Injects Ads Into Encrypted Traffic
  25. Cisco releases fix for privilege escalation bug in Webex Meetings app
  26. .@FireEye researchers have attributed the #Triton #malware -- used in an attack on an industrial control system in Saudi Arabia
  27. Bitdefender releases GandCrab ransomware decryption tool
  28. Amazon IoT operating system FreeRTOS has serious vulnerabilities
  29. FireEye ties Russia to Triton malware attack in Saudi Arabia
  30. Our threat intelligence lead Chris Dawson (@mrdatahs) discussing new @proofpoint Threat Insight #Malware research with @threatpost.
  31. FireEye links Triton Malware to Russian Research Institute
  32. Experts discovered a severe command injection flaw in Cisco Webex Meetings Desktop
  33. You patch my back(up) and I'll patch yours... Arcserve bugs burrow remotely exploited holes in UDP storage systems
  34. Free GrandCrab Ransomware Decryption Tool Released by Bitdefender
  35. Free Decrypter Available for the Latest GandCrab Ransomware Versions
  36. Signal Desktop App Vulnerability Exposes Message Decryption Key To The Users
  37. ESET releases new decryptor for Syrian victims of GandCrab ransomware
  38. Vulnerability Spotlight: TALOS-2018-0635/0636 - Sophos HitmanPro.Alert memory disclosure and code execution vulnerabilities
  39. Free decryption tool released for multiple GandCrab ransomware versions
  40. .@FireEye security researchers claimed the Russian government was 'most likely' behind the Triton #malware attack on an industrial control system
  41. Windows 10 Update Fixed File Deletion Flaw But Not ZIP File Overwrite Bug
  42. Google Chrome 70.0.3538.77 released: Bugs fix
  43. Win10 1803 big bug bash KB 4462933 joins earlier versions, a week late to the party
  44. Building shared digital identity using blockchain technology
  45. FreeRTOS Multiple Remote Code Execution Vulnerabilities Threat Alert
  46. Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye
  47. Java Usage Tracker Vulnerability
  48. Windows 10 bug overwrites files without confirmation
  49. West Haven pays $2k USD because of ransomware attack
  50. Unusual Remote Execution Bug in Cisco WebEx Discovered by Researchers
  51. What is application security? A process and tools for securing software
  52. [BLOG] When #malware actor realizes that he can make more money by himself and transform his dropper into banking malware,
  53. New Android Malware Turns Your Mobile Devices into Hidden Proxies
  54. GandCrab Ransomware decryption tool

CRIME

  1. Another 185K Customers Potentially Affected by the British Airways Data Breach
  2. British Airways: Cyberattack, data theft bigger than we first thought
  3. Aftermath of the Data Breach: Cathay Pacific Customers Losing Confidence
  4. Multiple Phishing Campaigns Target Universities
  5. 5 Common Visibility Gaps Your Enterprise Security Plan Can’t Afford
  6. Cofense Hunts Phishing Threats Round the Clock with Enhanced 24-hour Global Phishing Defense Services
  7. Hackers steal personal data of up to 9.4 million Cathay Pacific passengers
  8. Cathay Pacific data breach affecting 9.4 million passengers

POLITICS

  1. Russian-Made Malware Used to Attack Saudi Petrol Plant, Claims FireEye