Showing posts with label Platform. Show all posts
Showing posts with label Platform. Show all posts

Nov 22, 2018

Platform report for 2018-11-21

WINDOWS

  1. What Is Windows PowerShell (And Could It Be Malicious)?
  2. Take a Look at L0rdix, The Super Malware Toolkit of 2018
  3. New Wine in Old Bottle: New Azorult Variant Found in FindMyName Campaign using Fallout Exploit Kit
  4. New Pterodo Backdoor Malware Detected By Ukraine
  5. Exploit Windows Remote PC with EternalBlue & DoublePulsar Exploit through Metasploit
  6. Weekly Threat Briefing: Russian APT Comes Back to Life with New US Spear-phishing Campaign
  7. Adobe plugs critical RCE Flash Player flaw, update ASAP! Exploitation may be imminent
  8. CVE-2018-15981: Adobe Flash Player Arbitrary Code Execution Vulnerability
  9. How to find, is link malicious/URL or not

LINUX

  1. What Is Windows PowerShell (And Could It Be Malicious)?
  2. Mirai Used as Payload in Hadoop YARN Vulnerability
  3. Hackers target Drupal servers chaining several flaws, including Drupalgeddon2 and DirtyCOW
  4. Adobe plugs critical RCE Flash Player flaw, update ASAP! Exploitation may be imminent
  5. CVE-2018-15981: Adobe Flash Player Arbitrary Code Execution Vulnerability
  6. Uncover virtual hosts of domain with Fierce
  7. How to find, is link malicious/URL or not

UNIX

Nil

ANDROID

  1. Spoofed addresses and anonymous sending: new Gmail bugs make for easy pickings
  2. 500K Android users hit with malware, and what to do if you're infected
  3. 13 Malware-Laden Fake Apps on Google Play
  4. Malicious programs disguised as racing games on Google Play
  5. "Luiz O Pinto" pushed 500,000+ installs of malware via Google Play, in ~1 week.

IOS

  1. Spoofed addresses and anonymous sending: new Gmail bugs make for easy pickings
  2. 13 Malware-Laden Fake Apps on Google Play
  3. New Wine in Old Bottle: New Azorult Variant Found in FindMyName Campaign using Fallout Exploit Kit

MACOS

  1. Pen-test at Dropbox turns up three Apple 0-day bugs
  2. What Is Windows PowerShell (And Could It Be Malicious)?
  3. Adobe plugs critical RCE Flash Player flaw, update ASAP! Exploitation may be imminent
  4. CVE-2018-15981: Adobe Flash Player Arbitrary Code Execution Vulnerability

Nov 21, 2018

Platform report for 2018-11-20

WINDOWS

  1. Critical Adobe Flash Bug Impacts Windows, macOS, Linux and Chrome OS
  2. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit
  3. Flash Player Type Confusion Critical Vulnerability, Another Reason Not to Use It
  4. Down But Not Out, WannaCry Malware Continues to Infect Unpatched Windows PCs
  5. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  6. Malvertising in Apple Pay Targets iPhone Users
  7. Hackers Linked to Russia Impersonate US Officials
  8. Sofacy Continues Global Attacks and Wheels Out New ‘Cannon’ Trojan
  9. Lazarus Continues Heists, Mounts Attacks on Financial Organizations in Latin America
  10. Mac users using Exodus cryptocurrency wallet targeted by a small spam campaign
  11. Kaspersky Security Bulletin: Threat Predictions for 2019
  12. Experts analyzed how Iranian OilRIG hackers tested their weaponized documents
  13. Apache OpenOffice 4.1.6 release: important bug fixes and security fixes

LINUX

  1. Critical Adobe Flash Bug Impacts Windows, macOS, Linux and Chrome OS
  2. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit
  3. Hackers target Drupal servers chaining several flaws, including Drupalgeddon2 and DirtyCOW
  4. Flash Player Type Confusion Critical Vulnerability, Another Reason Not to Use It
  5. Malvertising in Apple Pay Targets iPhone Users
  6. Attackers Target Drupal Web Servers with Chained Vulnerabilities

UNIX

Nil

ANDROID

  1. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit
  2. 560,000 Duped Into Installing Android Malware in the Form of Fake Driving Games
  3. Web skimmers compete in Umbro Brasil hack
  4. Malvertising in Apple Pay Targets iPhone Users
  5. Kaspersky Security Bulletin: Threat Predictions for 2019
  6. 13 Malicious Apps in Google Play With More than 560,000+ Installs

IOS

  1. Malvertising in Apple Pay Targets iPhone Users
  2. Kaspersky Security Bulletin: Threat Predictions for 2019

MACOS

  1. Critical Adobe Flash Bug Impacts Windows, macOS, Linux and Chrome OS
  2. Flash Player Type Confusion Critical Vulnerability, Another Reason Not to Use It
  3. Mac users using Exodus cryptocurrency wallet targeted by a small spam campaign

Nov 15, 2018

Platform report for 2018-11-14

WINDOWS

  1. FlawedAmmy, the Only RAT in CheckPoint’s Global Threat Index 2018 List
  2. Microsoft Patches RCE Vulnerabilities in Word, Excel, and Windows Search
  3. Weekly Threat Briefing: Adobe ColdFusion Servers Under Attack from APT Group
  4. Cyber espionage group used CVE-2018-8589 Windows Zero-Day in Middle East Attacks
  5. How Threat Intelligence Prioritizes Risk in Vulnerability Management
  6. November 2018 Patch Tuesday: Microsoft fixes 63 flaws, one actively exploited zero-day
  7. Adobe Patch Tuesday updates for November 2018 fix known Acrobat flaw
  8. Zero-day Windows exploit fix stars in November Patch Tuesday
  9. November Patch Tuesday Fixes Another Zero-Day Win32k Bug, Other Public Vulnerabilities
  10. Microsoft Patches Windows Zero-Day Exploited in Cyber Attacks
  11. APT Group Uses Windows Zero-Day in Middle East Attacks
  12. Facebook flaw could have exposed private info of users and their friends
  13. A new exploit for zero-day vulnerability CVE-2018-8589
  14. Adobe November Security Update: fixes multiple vulnerabilities in its products
  15. Microsoft Released Security Updates & Fixed More than 60 Vulnerabilities Along with Active Windows Zero day
  16. 63 New Flaws (Including 0-Days) Windows Users Need to Patch Now
  17. Big Game Hunting: The Evolution of INDRIK SPIDER From Dridex Wire Fraud to BitPaymer Targeted Ransomware

LINUX

  1. Adobe Patch Tuesday updates for November 2018 fix known Acrobat flaw
  2. Adobe November Security Update: fixes multiple vulnerabilities in its products

UNIX

  1. Weekly Threat Briefing: Adobe ColdFusion Servers Under Attack from APT Group

ANDROID

  1. Weekly Threat Briefing: Adobe ColdFusion Servers Under Attack from APT Group
  2. Don’t fall for fake NEO, Tether and MetaMask cryptocurrency wallets on Google Play
  3. Beers with Talos Ep. #41: Sex, money and malware
  4. Key takeaways from Datto’s State of the Channel Ransomware Report 2018

IOS

  1. Key takeaways from Datto’s State of the Channel Ransomware Report 2018

MACOS

  1. Ad-Injecting Mac Malware Rediscovered
  2. A bypass was found by @okta researchers that allows #macOS #malware to pose as @Apple files despite needing to be
  3. Adobe Patch Tuesday updates for November 2018 fix known Acrobat flaw
  4. Researchers recently discovered a new #MacOS #malware that targets #cryptocurrency investors through chat platforms. Discover how this is possible and
  5. Adobe November Security Update: fixes multiple vulnerabilities in its products
  6. Key takeaways from Datto’s State of the Channel Ransomware Report 2018

Platform report for 2018-11-13

WINDOWS

  1. Microsoft’s Patch Tuesday updates for November 2018 fix actively exploited Windows flaw
  2. Microsoft Patches Zero-Day Bug in Win7, Server 2008 and 2008 R2
  3. Microsoft Patches Actively Exploited Windows Vulnerability
  4. Microsoft patches Windows zero-day used by multiple cyber-espionage groups
  5. XSS Vulnerability in Evernote Allows Local File Execution
  6. Microsoft November 2018 Patch Tuesday Fixes 12 Critical Vulnerabilities
  7. Chinese Threat Actor TEMP.Periscope Targets UK-Based Engineering Company Using Russian APT Techniques
  8. Cryptocurrency Mining Malware uses Various Evasion Techniques.
  9. Microsoft Patch Tuesday — November 2018: Vulnerability disclosures and Snort coverage
  10. The Tactic Cybercriminals Use to Steal Bitcoin
  11. WebCobra Malware Uses Victims’ Computers to Mine Cryptocurrency
  12. WebCobra Malware Uses Victims’ Computers to Mine Cryptocurrency
  13. Leak: Windows 10 October Update will be re-launched tomorrow

LINUX

  1. The Tactic Cybercriminals Use to Steal Bitcoin

UNIX

Nil

ANDROID

  1. Fake Crypto Wallet Apps Discovered in Google Play, Built Using Drag-n-Drop
  2. Unpatched Android OS Flaw Allows Adversaries to Track User Location
  3. Call Recorder App on Google Play with Over 5,000 Installs Contains Hidden Malware Dropper

IOS

Nil

MACOS

  1. The Tactic Cybercriminals Use to Steal Bitcoin

Nov 8, 2018

Platform report for 2018-11-07

WINDOWS

  1. Evernote Flaw Allows Hackers to Steal Files, Execute Commands
  2. Security Alert: New Dharma Ransomware Strains Alarmingly Go Undetected By Antivirus Engines
  3. Erratic Windows 10 Bug Breaks Changing of Default File Associations
  4. Researcher discloses VirtualBox Zero-Day without reporting it to Oracle
  5. Serious XSS flaw discovered in Evernote for Windows, update now!
  6. Weekly Threat Briefing: Scammers Ride on Popular Vote411 Voter Info Site to Push Scareware Alerts
  7. Linux servers and IoT devices, main targets of Shellbot botnet
  8. Vulnerabilities in self encrypted SSD allow attackers to bypass disk encryption

LINUX

  1. Researcher discloses VirtualBox Zero-Day without reporting it to Oracle
  2. Weekly Threat Briefing: Scammers Ride on Popular Vote411 Voter Info Site to Push Scareware Alerts
  3. Linux servers and IoT devices, main targets of Shellbot botnet

UNIX

Nil

ANDROID

  1. 3,2 Million New Android Malicious Apps Detected Until the End of Q3 2018
  2. Security Alert: New Dharma Ransomware Strains Alarmingly Go Undetected By Antivirus Engines
  3. Not sure how to tell if your Android phone has a virus? Android malware comes in many forms, ranging from spyware
  4. Weekly Threat Briefing: Scammers Ride on Popular Vote411 Voter Info Site to Push Scareware Alerts
  5. November Android Security Update Fixes Critical Bugs, Drops Media Library
  6. We recently detected an Android banking malware campaign (Anubis) actively targeting the Dutch market by #abusing the @PostNL brand. After
  7. Linux servers and IoT devices, main targets of Shellbot botnet

IOS

  1. Weekly Threat Briefing: Scammers Ride on Popular Vote411 Voter Info Site to Push Scareware Alerts

MACOS

  1. Weekly Threat Briefing: Scammers Ride on Popular Vote411 Voter Info Site to Push Scareware Alerts