Oct 29, 2018

APT report for 2018-10-28

TRANSNATIONAL / UNKNOWN

  1. Security Affairs newsletter Round 186 – News of the week

CHINA

Nil

INDIA

Nil

NORTH KOREA

Nil

PAKISTAN

Nil

VIETNAM

Nil

IRAN

Nil

IRAQ

Nil

LEBANON

Nil

PALESTINE

Nil

SAUDI ARABIA

Nil

SYRIA

Nil

TURKEY

Nil

UNITED ARAB EMIRATES

Nil

YEMEN

Nil

RUSSIA

  1. Russian Research Lab Involved in the Development of TRITON Malware, Says FireEye

SERBIA

Nil

UKRAINE

Nil

Platform report for 2018-10-28

WINDOWS

  1. Security Affairs newsletter Round 186 – News of the week
  2. How to deliver malware using weaponized Microsoft Office docs embedding YouTube video
  3. Critical Code Execution Vulnerability Found in MKVToolNix Tools that Parses MKV Files

LINUX

  1. Security Affairs newsletter Round 186 – News of the week
  2. Critical Code Execution Vulnerability Found in MKVToolNix Tools that Parses MKV Files

UNIX

Nil

ANDROID

  1. Security Affairs newsletter Round 186 – News of the week

IOS

  1. Apple Made Apology Due to Apple ID Phishing Attacks

MACOS

  1. Apple Made Apology Due to Apple ID Phishing Attacks

Threat report for 2018-10-28

DATA BREACH & DATA LOSS

  1. Consulting Firm Leaked Data Of Democratic Party Fundraisers In Unsecured NAS Device
  2. Yahoo To Pay $50M, Other Costs For Massive Data Breach
  3. A recent @HealthCareGov #breach exposed unknown types of data on 75,000 people, but a lack of information in the disclosure
  4. "If an organization created #DMARC records for the first time, it would encounter syntax and content issues -- one of
  5. The #NetSpectre vulnerability could enable a slow leak of data remotely via side channels. Expert Michael Cobb of @thehairyITdog explains

DENIAL-OF-SERVICE

Nil

MALVERTISING

Nil

PHISHING

  1. Apple Made Apology Due to Apple ID Phishing Attacks
  2. On Phishing Attacks and the Companies That are Targeted the Most

WEB DEFACEMENT

Nil

BOTNET

  1. Satori botnet author in jail again after breaking pretrial release conditions
  2. After an attempted comeback by the Russian built #VPNFilter #botnet, home #networkdevices are at risk. Learn how this #malware targets

RANSOMWARE

  1. New ShadowTalk is out! @TheHVanRiper and Rafael Amado join @mazzazone to discuss #ransomware surges in October, Cathay Pacific Breach, and

CRYPTOMINING & CRYPTOCURRENCIES

  1. Is blockchain a solution to IoT security problems?

MALWARE

  1. 12 Malicious Python Libraries Found And Removed From PyPi
  2. Russian Research Lab Involved in the Development of TRITON Malware, Says FireEye
  3. How to deliver malware using weaponized Microsoft Office docs embedding YouTube video
  4. After an attempted comeback by the Russian built #VPNFilter #botnet, home #networkdevices are at risk. Learn how this #malware targets
  5. Bingo. Investigators find the same remote access trojan deployed to several other machines. Now the responders know what to look for.
  6. "My name is Mikko and I've been working with viruses and malware all my freaking life."

EXPLOIT

Nil

VULNERABILITY

  1. Cisco Patched Privilege Escalation Vulnerability In Webex Meetings Desktop App
  2. A flaw in @Cisco Webex -- called WebExec -- can allow #RemoteCodeExecution. And while experts don't agree on how dangerous
  3. .@Siemens central plant clocks were affected by six SICLOCK flaws, three have been rated "critical." Learn what these SICLOCK flaws
  4. The #NetSpectre vulnerability could enable a slow leak of data remotely via side channels. Expert Michael Cobb of @thehairyITdog explains
  5. Critical Code Execution Vulnerability Found in MKVToolNix Tools that Parses MKV Files

Region brief for 2018-10-28

ASIA

  1. Apple Made Apology Due to Apple ID Phishing Attacks
  2. Security Affairs newsletter Round 186 – News of the week
  3. Russian Research Lab Involved in the Development of TRITON Malware, Says FireEye

OCEANIA

Nil

NORTH AMERICA

  1. Consulting Firm Leaked Data Of Democratic Party Fundraisers In Unsecured NAS Device
  2. On Phishing Attacks and the Companies That are Targeted the Most
  3. New ShadowTalk is out! @TheHVanRiper and Rafael Amado join @mazzazone to discuss #ransomware surges in October, Cathay Pacific Breach, and

SOUTH AMERICA

Nil

EUROPE

  1. Security Affairs newsletter Round 186 – News of the week
  2. Russian Research Lab Involved in the Development of TRITON Malware, Says FireEye
  3. New ShadowTalk is out! @TheHVanRiper and Rafael Amado join @mazzazone to discuss #ransomware surges in October, Cathay Pacific Breach, and
  4. After an attempted comeback by the Russian built #VPNFilter #botnet, home #networkdevices are at risk. Learn how this #malware targets

AFRICA

Nil

Sector brief for 2018-10-28

HEALTHCARE

  1. Security Affairs newsletter Round 186 – News of the week

TRANSPORT

Nil

BANKING & FINANCE

  1. Apple Made Apology Due to Apple ID Phishing Attacks
  2. On Phishing Attacks and the Companies That are Targeted the Most

INFORMATION & TELECOMMUNICATION

  1. Apple Made Apology Due to Apple ID Phishing Attacks
  2. On Phishing Attacks and the Companies That are Targeted the Most
  3. Security Affairs newsletter Round 186 – News of the week
  4. How to deliver malware using weaponized Microsoft Office docs embedding YouTube video
  5. "My name is Mikko and I've been working with viruses and malware all my freaking life."

FOOD

Nil

WATER

Nil

ENERGY

Nil

GOVERNMENT & PUBLIC SERVICE

  1. Consulting Firm Leaked Data Of Democratic Party Fundraisers In Unsecured NAS Device
  2. Security Affairs newsletter Round 186 – News of the week
  3. Russian Research Lab Involved in the Development of TRITON Malware, Says FireEye

Daily brief for 2018-10-28

ASIA

  1. Apple Made Apology Due to Apple ID Phishing Attacks
  2. Security Affairs newsletter Round 186 – News of the week
  3. Russian Research Lab Involved in the Development of TRITON Malware, Says FireEye

WORLD

  1. Consulting Firm Leaked Data Of Democratic Party Fundraisers In Unsecured NAS Device
  2. On Phishing Attacks and the Companies That are Targeted the Most
  3. Security Affairs newsletter Round 186 – News of the week
  4. Russian Research Lab Involved in the Development of TRITON Malware, Says FireEye
  5. New ShadowTalk is out! @TheHVanRiper and Rafael Amado join @mazzazone to discuss #ransomware surges in October, Cathay Pacific Breach, and
  6. After an attempted comeback by the Russian built #VPNFilter #botnet, home #networkdevices are at risk. Learn how this #malware targets

ATTACKS

  1. Consulting Firm Leaked Data Of Democratic Party Fundraisers In Unsecured NAS Device
  2. Apple Made Apology Due to Apple ID Phishing Attacks
  3. On Phishing Attacks and the Companies That are Targeted the Most
  4. Yahoo To Pay $50M, Other Costs For Massive Data Breach
  5. A recent @HealthCareGov #breach exposed unknown types of data on 75,000 people, but a lack of information in the disclosure
  6. "If an organization created #DMARC records for the first time, it would encounter syntax and content issues -- one of
  7. The #NetSpectre vulnerability could enable a slow leak of data remotely via side channels. Expert Michael Cobb of @thehairyITdog explains

THREATS

  1. Is blockchain a solution to IoT security problems?
  2. Cisco Patched Privilege Escalation Vulnerability In Webex Meetings Desktop App
  3. A flaw in @Cisco Webex -- called WebExec -- can allow #RemoteCodeExecution. And while experts don't agree on how dangerous
  4. 12 Malicious Python Libraries Found And Removed From PyPi
  5. Russian Research Lab Involved in the Development of TRITON Malware, Says FireEye
  6. .@Siemens central plant clocks were affected by six SICLOCK flaws, three have been rated "critical." Learn what these SICLOCK flaws
  7. How to deliver malware using weaponized Microsoft Office docs embedding YouTube video
  8. New ShadowTalk is out! @TheHVanRiper and Rafael Amado join @mazzazone to discuss #ransomware surges in October, Cathay Pacific Breach, and
  9. The #NetSpectre vulnerability could enable a slow leak of data remotely via side channels. Expert Michael Cobb of @thehairyITdog explains
  10. Critical Code Execution Vulnerability Found in MKVToolNix Tools that Parses MKV Files
  11. After an attempted comeback by the Russian built #VPNFilter #botnet, home #networkdevices are at risk. Learn how this #malware targets
  12. Bingo. Investigators find the same remote access trojan deployed to several other machines. Now the responders know what to look for.
  13. "My name is Mikko and I've been working with viruses and malware all my freaking life."

CRIME

  1. Apple Made Apology Due to Apple ID Phishing Attacks
  2. On Phishing Attacks and the Companies That are Targeted the Most
  3. Security Affairs newsletter Round 186 – News of the week

POLITICS

  1. Security Affairs newsletter Round 186 – News of the week