Nov 7, 2018

Sector brief for 2018-11-06

HEALTHCARE

  1. Ransomware Keeps Ringing in Profits for Cybercrime Rings

TRANSPORT

  1. Compromising vital infrastructure: transport and logistics
  2. Zero-Day Vulnerability Explained
  3. Nation states sponsoring increasingly sophisticated cyber attacks

BANKING & FINANCE

  1. HSBC Data Breach Hits Online Banking Customers
  2. HSBC Bank Confirms US Data Breach
  3. HSBC Bank USA Warns Customers of Data Breach
  4. HSBC Bank Data Breach Exposed Account Numbers, Balances, and More
  5. Zero-Day Vulnerability Explained
  6. Supply-chain attack on cryptocurrency exchange
  7. Supply-chain attack on cryptocurrency exchange
  8. HSBC Bank Notifies Customers of Data Breach
  9. Business email compromise made easy for cybercriminals as 12.5 million company email inboxes and 33,000 finance department credentials openly accessible
  10. Spam and phishing in Q3 2018
  11. Worst malware and threat actors of 2018 so far
  12. Nation states sponsoring increasingly sophisticated cyber attacks
  13. #ThreatFabric discovers #NeoBot Android Banking Trojan (#Exobot spawn) in #GooglePlay with 10,000+ installs Please contact us if your interested in

INFORMATION & TELECOMMUNICATION

  1. Compromising vital infrastructure: transport and logistics
  2. Zero-Day Vulnerability Explained
  3. It’s thought that the private message data was obtained via a malicious browser extension that scraped the data from users’
  4. Pocket iNet ISP Exposed 73GB of Corporate Data Online
  5. Why are fake Elon Musk bitcoin scams running rife on Twitter right now?
  6. Intel responds to the Epyc server threat from AMD
  7. Fake Telegram Apps Used to Spy on Iranian Users
  8. Business email compromise made easy for cybercriminals as 12.5 million company email inboxes and 33,000 finance department credentials openly accessible
  9. Security firm Armis has discovered two vulnerabilities in Bluetooth Chips from several networking industry leaders.
  10. Spam and phishing in Q3 2018
  11. Private messages from 81,000 hacked Facebook accounts were for sale online. The information was obtained through malicious browser extensions, such as
  12. Our crucible SoC OTP fusing tool now support graphical mapping of fusemap definition files. This, other than being very pretty, facilitates
  13. Shellbot Botnet Targets IoT devices and Linux servers
  14. Vulnerability in Icecast can collapse online radio stations
  15. #ThreatFabric discovers #NeoBot Android Banking Trojan (#Exobot spawn) in #GooglePlay with 10,000+ installs Please contact us if your interested in
  16. Just half of Fortune 500 companies have installed DMARC, a tool that guards against email phishing scams, according to new

FOOD

Nil

WATER

  1. Spam and phishing in Q3 2018

ENERGY

  1. High risk vulnerability discovered in Sauter CASE Suite building automation software
  2. Multiple Cisco Vulnerabilities Threat Alert
  3. Two zero-day vulnerabilities expose millions of access points

GOVERNMENT & PUBLIC SERVICE

  1. US DoD’s first malware submissions to Google-bought VirusTotal is Russia-linked LoJack
  2. Election Day: Five Security Experts Conclude that Georgia’s Online Voter Database is Easily Hackable
  3. UK Regulator Calls for Tougher Rules on Personal Data Use
  4. Compromising vital infrastructure: transport and logistics
  5. Fake Telegram Apps Used to Spy on Iranian Users
  6. Tech companies offered free products to help secure the election. Now what?
  7. A Blockchain Solution for Data Provenance Using Hyperledger Fabric
  8. Shellbot Botnet Targets IoT devices and Linux servers
  9. U.S. Air Force Announces Third Bug Bounty Program
  10. Nation states sponsoring increasingly sophisticated cyber attacks
  11. Anonymous Hackers Syndicate Defaces Huge Number of Websites of Gabon Government
  12. New attack by Anonymous Italy: personal data from ministries and police have been released online

Daily brief for 2018-11-06

ASIA

  1. Group-IB and CryptoIns introduce the world’s first insurance against cyber threats for cryptocurrency exchanges
  2. Fake Telegram Apps Used to Spy on Iranian Users
  3. Spam and phishing in Q3 2018
  4. Worst malware and threat actors of 2018 so far
  5. Shellbot Botnet Targets IoT devices and Linux servers
  6. Nation states sponsoring increasingly sophisticated cyber attacks
  7. New attack by Anonymous Italy: personal data from ministries and police have been released online
  8. Multiple Cisco Vulnerabilities Threat Alert

WORLD

  1. US DoD’s first malware submissions to Google-bought VirusTotal is Russia-linked LoJack
  2. Hack the Air Force 3.0 Bug Bounty Announced by USAF
  3. ThreatList: Despite Fraud Awareness, Password Reuse Persists for Half of U.S. Consumers
  4. Election Day: Five Security Experts Conclude that Georgia’s Online Voter Database is Easily Hackable
  5. Group-IB and CryptoIns introduce the world’s first insurance against cyber threats for cryptocurrency exchanges
  6. HSBC Bank Confirms US Data Breach
  7. UK Regulator Calls for Tougher Rules on Personal Data Use
  8. Compromising vital infrastructure: transport and logistics
  9. HSBC Bank USA Warns Customers of Data Breach
  10. Flaws in several self-encrypting SSDs allows attackers to decrypt data they contain
  11. Side-Channel Vulnerability PortSmash Steals Keys
  12. Pocket iNet ISP Exposed 73GB of Corporate Data Online
  13. Tech companies offered free products to help secure the election. Now what?
  14. Magecart infiltrates UK online retailer Kitronik payment system
  15. Spam and phishing in Q3 2018
  16. Worst malware and threat actors of 2018 so far
  17. Wealthy Moscow residents' data leaked in Akado Telecom incident
  18. We're hosting a lunch and learn event geared towards endpoint #security and #ransomware, with technology partner @SentinelOne. Please join us on
  19. Shellbot Botnet Targets IoT devices and Linux servers
  20. U.S. Air Force Announces Third Bug Bounty Program
  21. Nation states sponsoring increasingly sophisticated cyber attacks
  22. Anonymous Hackers Syndicate Defaces Huge Number of Websites of Gabon Government
  23. New attack by Anonymous Italy: personal data from ministries and police have been released online
  24. Two zero-day vulnerabilities expose millions of access points
  25. #ThreatFabric discovers #NeoBot Android Banking Trojan (#Exobot spawn) in #GooglePlay with 10,000+ installs Please contact us if your interested in

ATTACKS

  1. HSBC Data Breach Hits Online Banking Customers
  2. My Health Record data misuse penalties raised
  3. Holiday Suppliers Already Under Assault by Fileless Malware Campaign
  4. ThreatList: Despite Fraud Awareness, Password Reuse Persists for Half of U.S. Consumers
  5. Election Day: Five Security Experts Conclude that Georgia’s Online Voter Database is Easily Hackable
  6. HSBC Bank Confirms US Data Breach
  7. UK Regulator Calls for Tougher Rules on Personal Data Use
  8. HSBC Bank USA Warns Customers of Data Breach
  9. HSBC Bank Data Breach Exposed Account Numbers, Balances, and More
  10. Samsung, Crucial’s Flawed Storage Drive Encryption Leaves Data Exposed
  11. Why business can't keep the public safe from data breaches
  12. It’s thought that the private message data was obtained via a malicious browser extension that scraped the data from users’
  13. Alert: Emotet is Back with Major Spam Campaign, Email Exfiltration Module
  14. Zombie Phish
  15. Azorult Malware Spread by New Ramnit Campaign
  16. Login VSI announces Release 3 of Login PI for proactive monitoring
  17. Pocket iNet ISP Exposed 73GB of Corporate Data Online
  18. HSBC Bank Notifies Customers of Data Breach
  19. Business email compromise made easy for cybercriminals as 12.5 million company email inboxes and 33,000 finance department credentials openly accessible
  20. Spam and phishing in Q3 2018
  21. Wealthy Moscow residents' data leaked in Akado Telecom incident
  22. GPU side channel attacks can enable spying on web activity, password stealing
  23. Our crucible SoC OTP fusing tool now support graphical mapping of fusemap definition files. This, other than being very pretty, facilitates
  24. Social Media Brand Impersonators Go #Phishing: 3 Emerging Tactics from ZeroFOX Research
  25. Gift Card Phishing Scam Using Email Addresses of Bosses’ is Latest Trend Adopted by Scammers
  26. New attack by Anonymous Italy: personal data from ministries and police have been released online
  27. Samsung & Crucial Storage Device Vulnerability Allow Attackers to Break the Password & Access the Entire Device Data
  28. Just half of Fortune 500 companies have installed DMARC, a tool that guards against email phishing scams, according to new

THREATS

  1. US DoD’s first malware submissions to Google-bought VirusTotal is Russia-linked LoJack
  2. Apache Struts Vulnerability Would Allow System Takeover
  3. Hack the Air Force 3.0 Bug Bounty Announced by USAF
  4. Android November update fixes flaws galore
  5. Holiday Suppliers Already Under Assault by Fileless Malware Campaign
  6. Group-IB and CryptoIns introduce the world’s first insurance against cyber threats for cryptocurrency exchanges
  7. Hackers Breach StatCounter To Hijack Bitcoin Transactions
  8. StatCounter Hacked to Inject Malicious Script in gate.io Cryptocurrency Exchange
  9. VMware Unveils New Blockchain Service
  10. Hackers breach StatCounter to hijack Bitcoin transactions on Gate.io exchange
  11. Zero-Day Vulnerability Explained
  12. WordPress Design Flaw + WooCommerce Vulnerability Leads to Site Takeover
  13. Flaws in several self-encrypting SSDs allows attackers to decrypt data they contain
  14. It’s thought that the private message data was obtained via a malicious browser extension that scraped the data from users’
  15. Backdoors Installed via macOS Cryptocurrency App
  16. Malware Execution via Microsoft Word Embedded Video
  17. Azorult Malware Spread by New Ramnit Campaign
  18. Supply-chain attack on cryptocurrency exchange
  19. Supply-chain attack on cryptocurrency exchange
  20. Side-Channel Vulnerability PortSmash Steals Keys
  21. Apache Struts Warns Users of Two-Year-Old Vulnerability
  22. Why are fake Elon Musk bitcoin scams running rife on Twitter right now?
  23. Apache Struts Warns Users of Two-Year-Old Vulnerability
  24. Apache Struts 2.3.x vulnerable to two year old RCE flaw
  25. IBM Watson will be used by NIST to assign CVSS scores to vulnerabilities
  26. Security firm Armis has discovered two vulnerabilities in Bluetooth Chips from several networking industry leaders.
  27. Hidden Costs of IoT Vulnerabilities
  28. Evernote for Windows patch resolves stored XSS vulnerability
  29. Ransomware Keeps Ringing in Profits for Cybercrime Rings
  30. How IAM is Evolving in the Blockchain Era
  31. A Blockchain Solution for Data Provenance Using Hyperledger Fabric
  32. Private messages from 81,000 hacked Facebook accounts were for sale online. The information was obtained through malicious browser extensions, such as
  33. New ransomware spotted using DiskCryptor
  34. Exploit Developer Discovers Zero-Day Microsoft Edge Vulnerability Triggering RCE Attacks
  35. How testing perspectives helps find application security flaws
  36. Worst malware and threat actors of 2018 so far
  37. We're hosting a lunch and learn event geared towards endpoint #security and #ransomware, with technology partner @SentinelOne. Please join us on
  38. PortSmash Side-Channel Vulnerability – Another Threat For Intel CPUs
  39. U.S. Air Force Announces Third Bug Bounty Program
  40. CVE-2018-11759: Apache mod_jk Access Control Bypass Vulnerability
  41. High risk vulnerability discovered in Sauter CASE Suite building automation software
  42. Apache Struts Team Urges Users for Library Update to Plug Years-Old Bugs
  43. Samsung & Crucial Storage Device Vulnerability Allow Attackers to Break the Password & Access the Entire Device Data
  44. Flaws in Popular Self-Encrypting SSDs Let Attackers Decrypt Data
  45. Apple Patches Critical iOS, macOS and watchOS Flaws
  46. Watch Out for the “Programmer Who Cracked Your Email” Bitcoin Scam
  47. Multiple Cisco Vulnerabilities Threat Alert
  48. Vulnerability in Icecast can collapse online radio stations
  49. Two zero-day vulnerabilities expose millions of access points
  50. Gitlab v11.4.5 release: fix bugs
  51. #ThreatFabric discovers #NeoBot Android Banking Trojan (#Exobot spawn) in #GooglePlay with 10,000+ installs Please contact us if your interested in
  52. Symantec acquires Appthority to enhance protection from mobile application vulnerabilities

CRIME

  1. ThreatList: Despite Fraud Awareness, Password Reuse Persists for Half of U.S. Consumers
  2. Hackers Breach StatCounter To Hijack Bitcoin Transactions
  3. Hackers breach StatCounter to hijack Bitcoin transactions on Gate.io exchange
  4. Zero-Day Vulnerability Explained
  5. Tech companies offered free products to help secure the election. Now what?
  6. Business email compromise made easy for cybercriminals as 12.5 million company email inboxes and 33,000 finance department credentials openly accessible
  7. Magecart infiltrates UK online retailer Kitronik payment system
  8. Ransomware Keeps Ringing in Profits for Cybercrime Rings
  9. Spam and phishing in Q3 2018
  10. A Blockchain Solution for Data Provenance Using Hyperledger Fabric
  11. Nation states sponsoring increasingly sophisticated cyber attacks
  12. Gift Card Phishing Scam Using Email Addresses of Bosses’ is Latest Trend Adopted by Scammers
  13. Watch Out for the “Programmer Who Cracked Your Email” Bitcoin Scam

POLITICS

  1. Election Day: Five Security Experts Conclude that Georgia’s Online Voter Database is Easily Hackable
  2. Compromising vital infrastructure: transport and logistics
  3. Flaws in several self-encrypting SSDs allows attackers to decrypt data they contain
  4. Pocket iNet ISP Exposed 73GB of Corporate Data Online
  5. Fake Telegram Apps Used to Spy on Iranian Users
  6. Tech companies offered free products to help secure the election. Now what?
  7. Spam and phishing in Q3 2018
  8. GPU side channel attacks can enable spying on web activity, password stealing
  9. Nation states sponsoring increasingly sophisticated cyber attacks
  10. New attack by Anonymous Italy: personal data from ministries and police have been released online

Nov 6, 2018

APT report for 2018-11-05

TRANSNATIONAL / UNKNOWN

  1. Magecart Infiltrates U.K. Online Retailer Kitronik POS
  2. Magecart Strikes Again, and Kitronik Is Latest Victim

CHINA

Nil

INDIA

Nil

NORTH KOREA

Nil

PAKISTAN

Nil

VIETNAM

Nil

IRAN

  1. Persian Stalker pillages Iranian users of Instagram and Telegram

IRAQ

Nil

LEBANON

Nil

PALESTINE

Nil

SAUDI ARABIA

Nil

SYRIA

Nil

TURKEY

Nil

UNITED ARAB EMIRATES

Nil

YEMEN

Nil

RUSSIA

  1. OPNids Integrates Machine Learning Into Open-Source Suricata IDS

SERBIA

Nil

UKRAINE

  1. Cyber-Attacks: How to Stop a Multibillion-Dollar Problem

Platform report for 2018-11-05

WINDOWS

  1. Inception Group Uses POWERSHOWER Backdoor in Two-Stage Spear Phishing Attacks
  2. Shellbot Botnet Targets Linux, Android Devices
  3. Inception Attackers Target Europe with Year-old Office Vulnerability
  4. Android Rat – TheFatRat to Hack and Gain access to Targeted Android Phone

LINUX

  1. Shellbot Botnet Targets Linux, Android Devices
  2. Android Rat – TheFatRat to Hack and Gain access to Targeted Android Phone

UNIX

Nil

ANDROID

  1. Shellbot Botnet Targets Linux, Android Devices
  2. Blockhead makes blockchain easy for developers
  3. Persian Stalker pillages Iranian users of Instagram and Telegram
  4. Android Rat – TheFatRat to Hack and Gain access to Targeted Android Phone
  5. Video analysis of Android banking Trojan found on Google Play (Red Alert 2)
  6. Recently there have been a lot of packed Android malware around, so I decided to write a blog-post on how

IOS

  1. Persian Stalker pillages Iranian users of Instagram and Telegram
  2. Apple Patched Multiple XNU Kernel Vulnerabilities In MacOS And iOS

MACOS

  1. Inside SearchPageInstaller | macOS Malware Deploys a MITM Attack
  2. Apple Patched Multiple XNU Kernel Vulnerabilities In MacOS And iOS

Threat report for 2018-11-05

DATA BREACH & DATA LOSS

  1. Week in review: Volume of Australian data breaches continues unabated
  2. Google dorks were the root cause of a catastrophic compromise of CIA’s communications
  3. Your personal data is widely available to hackers
  4. This Tool Shows Exposed Cameras Around Your Neighborhood
  5. New Side-Channel Vulnerability Leaks Sensitive Data From Intel Chips
  6. Akado Telecom Accidentally Leaks Customers' Names, Phone Numbers, And Addresses
  7. Australian shipbuilder Austal hit by data breach
  8. Equifax Set to Share More PII with Experian
  9. #SamSam #ransomware continues to be a thorn in the side of organizations in the U.S. with targeted ransomware campaigns continuing,
  10. National biometric database could be on the way (and in private hands)
  11. Over 80,000 Facebook User Accounts Compromised
  12. "If an organization created #DMARC records for the first time, it would encounter syntax and content issues -- one of
  13. Kemp Cites Voter Database Hacking Attempt, Gives No Evidence
  14. "A lot of people in Congress are concerned that the Facebook influence campaigns are about the midterms, but to me
  15. "Shipbuilder Austal Ltd said on Thursday its Australian business had detected and responded to a data breach"

DENIAL-OF-SERVICE

  1. What were the DDoS numbers for Q2 & Q3 2018?
  2. A cybersecurity lesson: educational sites suffer rise in DDoS attacks in Q3

MALVERTISING

Nil

PHISHING

  1. Almost 300 Percent Increase in eCommerce Phishing Attacks in Q3 2018
  2. Inception Group Uses POWERSHOWER Backdoor in Two-Stage Spear Phishing Attacks
  3. How to use Firefox Master Password.
  4. Why you should be using a password manager
  5. How did @Google eliminate successful #PhishingAttacks? Learn how employees used U2F authentication and physical #SecurityKeys to defend against phishing from
  6. Password Constraints and Their Unintended Security Consequences
  7. Cybercriminals Using SMS Phishing Attack to Rob Cardless ATM
  8. How can U2F authentication end phishing attacks?
  9. Phishing attacks up by 297 percent across eCommerce in Q3 2018

WEB DEFACEMENT

Nil

BOTNET

  1. Shellbot Botnet Targets Linux, Android Devices
  2. Original Mirai botnet creator hit with hefty financial sentence

RANSOMWARE

  1. #SamSam #ransomware continues to be a thorn in the side of organizations in the U.S. with targeted ransomware campaigns continuing,
  2. Researchers found #Kraken #ransomware has become more popular after being packaged in the Fallout #ExploitKit and becoming part of an

CRYPTOMINING & CRYPTOCURRENCIES

  1. No, blockchain isn't the answer to our voting system woes
  2. Fake Elon Musk Twitter Bitcoin Scam Earned 180K in One Day
  3. Another wave of Elon Musk bitcoin scams spread by verified Twitter accounts
  4. Researchers found #Kraken #ransomware has become more popular after being packaged in the Fallout #ExploitKit and becoming part of an
  5. Blockhead makes blockchain easy for developers
  6. The building blocks of blockchain-based digital identity

MALWARE

  1. Inception Group Uses POWERSHOWER Backdoor in Two-Stage Spear Phishing Attacks
  2. Inside SearchPageInstaller | macOS Malware Deploys a MITM Attack
  3. Malware of the 1980s: Looking back at the Brain Virus and the Morris Worm
  4. Why malware attacks should no longer be a problem for businesses
  5. Android Rat – TheFatRat to Hack and Gain access to Targeted Android Phone
  6. Scammers Ride on Popular Vote411 Voter Info Site to Push Scareware Alerts
  7. How to Get Rid of Cortana Runtime Broker CPU Miner Virus
  8. Fake malicious @RSAsecurity #SecurID malware in pre-release state on @GooglePlay: - Currently gathering information (profiling) the mobile device it is installed
  9. Video analysis of Android banking Trojan found on Google Play (Red Alert 2)
  10. Recently there have been a lot of packed Android malware around, so I decided to write a blog-post on how

EXPLOIT

  1. PoC Available for Microsoft Edge Zero-Day RCE, Exploit Under Development
  2. Security researchers exploit Intel hyperthreading flaw to break encryption

VULNERABILITY

  1. Apache warns Struts 2.3 is using a library with a two year old critical flaw
  2. Online Radio Stations at Risk from Icecast Flaw
  3. PoC Available for Microsoft Edge Zero-Day RCE, Exploit Under Development
  4. Flaws In Self-Encrypting SSDs Let Attackers Bypass Encryption
  5. New Side-Channel Vulnerability Leaks Sensitive Data From Intel Chips
  6. Why Are Deserialization Vulnerabilities So Popular?
  7. Flaws in self-encrypting SSDs let attackers bypass disk encryption
  8. [SingCERT] Technical Advisory on Vulnerabilities in Bluetooth Low Energy Chips by Texas Instruments (CVE-2018-16986 and CVE-2018-7080)
  9. Inception Attackers Target Europe with Year-old Office Vulnerability
  10. Kemp Investigates Dems, Not the Reported Vulnerability
  11. Flaws in Popular SSD Drives Bypass Hardware Disk Encryption
  12. Flaw in Icecast streaming media server allows to take off online Radio Stations
  13. Security researchers exploit Intel hyperthreading flaw to break encryption
  14. .@ArmisSecurity researchers discovered two chip-level #Bluetooth vulnerabilities -- dubbed #Bleedingbit -- that could allow pseudo #RemoteCodeExecution on wireless access points.
  15. Vulnerabilities’ CVSS scores soon to be assigned by AI
  16. Cisco Products Affected By A Zero-Day SIP Inspection Vulnerability Exploited In The Wild
  17. High severity XML external entity flaw affects Sauter building automation product
  18. Security firm Armis has discovered two vulnerabilities in Bluetooth Chips from several networking industry leaders.
  19. Critical 'Bleedingbit' flaws found in microcontrollers used by Wi-Fi access points
  20. Mozilla Patched Multiple Security Vulnerabilities in Thunderbird 60.3
  21. Apple Patched Multiple XNU Kernel Vulnerabilities In MacOS And iOS
  22. Companies implementing DevSecOps address vulnerabilities faster than others
  23. The Ultimate Guide to Bug Bounty Platforms
  24. PortSmash – A New Side Channel Vulnerability in SMT/Hyper-Threading That Allows Attackers To Steal Sensitive Data
  25. Security Think Tank: Three ways to safeguard against application layer vulnerabilities
  26. Security Bug in Icecast Puts Online Radio Stations At Risk
  27. Researchers discover new zero-day vulnerability in EDGE browser

Region brief for 2018-11-05

ASIA

  1. Google dorks were the root cause of a catastrophic compromise of CIA’s communications
  2. Cyber-Attacks: How to Stop a Multibillion-Dollar Problem
  3. Persian Stalker pillages Iranian users of Instagram and Telegram
  4. A cybersecurity lesson: educational sites suffer rise in DDoS attacks in Q3

OCEANIA

  1. Week in review: Volume of Australian data breaches continues unabated
  2. Australian shipbuilder Austal hit by data breach
  3. Persian Stalker pillages Iranian users of Instagram and Telegram
  4. A cybersecurity lesson: educational sites suffer rise in DDoS attacks in Q3
  5. "Shipbuilder Austal Ltd said on Thursday its Australian business had detected and responded to a data breach"

NORTH AMERICA

  1. What were the DDoS numbers for Q2 & Q3 2018?
  2. Google dorks were the root cause of a catastrophic compromise of CIA’s communications
  3. Your personal data is widely available to hackers
  4. Inside SearchPageInstaller | macOS Malware Deploys a MITM Attack
  5. Magecart Strikes Again, and Kitronik Is Latest Victim
  6. Cyber-Attacks: How to Stop a Multibillion-Dollar Problem
  7. Equifax Set to Share More PII with Experian
  8. #SamSam #ransomware continues to be a thorn in the side of organizations in the U.S. with targeted ransomware campaigns continuing,
  9. Over 80,000 Facebook User Accounts Compromised
  10. Why malware attacks should no longer be a problem for businesses
  11. Critical 'Bleedingbit' flaws found in microcontrollers used by Wi-Fi access points
  12. Persian Stalker pillages Iranian users of Instagram and Telegram
  13. A cybersecurity lesson: educational sites suffer rise in DDoS attacks in Q3
  14. "A lot of people in Congress are concerned that the Facebook influence campaigns are about the midterms, but to me
  15. "Shipbuilder Austal Ltd said on Thursday its Australian business had detected and responded to a data breach"

SOUTH AMERICA

  1. Over 80,000 Facebook User Accounts Compromised

EUROPE

  1. Inception Group Uses POWERSHOWER Backdoor in Two-Stage Spear Phishing Attacks
  2. Google dorks were the root cause of a catastrophic compromise of CIA’s communications
  3. Magecart Infiltrates U.K. Online Retailer Kitronik POS
  4. Akado Telecom Accidentally Leaks Customers' Names, Phone Numbers, And Addresses
  5. Magecart Strikes Again, and Kitronik Is Latest Victim
  6. Inception Attackers Target Europe with Year-old Office Vulnerability
  7. Kemp Investigates Dems, Not the Reported Vulnerability
  8. Over 80,000 Facebook User Accounts Compromised
  9. Persian Stalker pillages Iranian users of Instagram and Telegram
  10. Kemp Cites Voter Database Hacking Attempt, Gives No Evidence
  11. A cybersecurity lesson: educational sites suffer rise in DDoS attacks in Q3

AFRICA

  1. Cyber-Attacks: How to Stop a Multibillion-Dollar Problem

Sector brief for 2018-11-05

HEALTHCARE

Nil

TRANSPORT

Nil

BANKING & FINANCE

  1. Original Mirai botnet creator hit with hefty financial sentence
  2. Magecart Strikes Again, and Kitronik Is Latest Victim
  3. Cyber-Attacks: How to Stop a Multibillion-Dollar Problem
  4. Over 80,000 Facebook User Accounts Compromised
  5. Why malware attacks should no longer be a problem for businesses
  6. Cybercriminals Using SMS Phishing Attack to Rob Cardless ATM
  7. Persian Stalker pillages Iranian users of Instagram and Telegram
  8. Phishing attacks up by 297 percent across eCommerce in Q3 2018
  9. A cybersecurity lesson: educational sites suffer rise in DDoS attacks in Q3
  10. Video analysis of Android banking Trojan found on Google Play (Red Alert 2)

INFORMATION & TELECOMMUNICATION

  1. PoC Available for Microsoft Edge Zero-Day RCE, Exploit Under Development
  2. Original Mirai botnet creator hit with hefty financial sentence
  3. Inside SearchPageInstaller | macOS Malware Deploys a MITM Attack
  4. Fake Elon Musk Twitter Bitcoin Scam Earned 180K in One Day
  5. Another wave of Elon Musk bitcoin scams spread by verified Twitter accounts
  6. Inception Attackers Target Europe with Year-old Office Vulnerability
  7. Flaw in Icecast streaming media server allows to take off online Radio Stations
  8. Security firm Armis has discovered two vulnerabilities in Bluetooth Chips from several networking industry leaders.
  9. Over 80,000 Facebook User Accounts Compromised
  10. Persian Stalker pillages Iranian users of Instagram and Telegram
  11. Phishing attacks up by 297 percent across eCommerce in Q3 2018
  12. The Ultimate Guide to Bug Bounty Platforms
  13. Researchers discover new zero-day vulnerability in EDGE browser
  14. Fake malicious @RSAsecurity #SecurID malware in pre-release state on @GooglePlay: - Currently gathering information (profiling) the mobile device it is installed
  15. "A lot of people in Congress are concerned that the Facebook influence campaigns are about the midterms, but to me

FOOD

Nil

WATER

Nil

ENERGY

  1. [SingCERT] Technical Advisory on Vulnerabilities in Bluetooth Low Energy Chips by Texas Instruments (CVE-2018-16986 and CVE-2018-7080)
  2. Critical 'Bleedingbit' flaws found in microcontrollers used by Wi-Fi access points

GOVERNMENT & PUBLIC SERVICE

  1. No, blockchain isn't the answer to our voting system woes
  2. Google dorks were the root cause of a catastrophic compromise of CIA’s communications
  3. Akado Telecom Accidentally Leaks Customers' Names, Phone Numbers, And Addresses
  4. Inception Attackers Target Europe with Year-old Office Vulnerability
  5. Kemp Investigates Dems, Not the Reported Vulnerability
  6. Persian Stalker pillages Iranian users of Instagram and Telegram
  7. Phishing attacks up by 297 percent across eCommerce in Q3 2018
  8. Kemp Cites Voter Database Hacking Attempt, Gives No Evidence
  9. "A lot of people in Congress are concerned that the Facebook influence campaigns are about the midterms, but to me

Daily brief for 2018-11-05

ASIA

  1. Google dorks were the root cause of a catastrophic compromise of CIA’s communications
  2. Cyber-Attacks: How to Stop a Multibillion-Dollar Problem
  3. Persian Stalker pillages Iranian users of Instagram and Telegram
  4. A cybersecurity lesson: educational sites suffer rise in DDoS attacks in Q3

WORLD

  1. Week in review: Volume of Australian data breaches continues unabated
  2. Inception Group Uses POWERSHOWER Backdoor in Two-Stage Spear Phishing Attacks
  3. What were the DDoS numbers for Q2 & Q3 2018?
  4. Google dorks were the root cause of a catastrophic compromise of CIA’s communications
  5. Your personal data is widely available to hackers
  6. Magecart Infiltrates U.K. Online Retailer Kitronik POS
  7. Inside SearchPageInstaller | macOS Malware Deploys a MITM Attack
  8. Akado Telecom Accidentally Leaks Customers' Names, Phone Numbers, And Addresses
  9. Magecart Strikes Again, and Kitronik Is Latest Victim
  10. Inception Attackers Target Europe with Year-old Office Vulnerability
  11. Kemp Investigates Dems, Not the Reported Vulnerability
  12. Australian shipbuilder Austal hit by data breach
  13. Cyber-Attacks: How to Stop a Multibillion-Dollar Problem
  14. Equifax Set to Share More PII with Experian
  15. #SamSam #ransomware continues to be a thorn in the side of organizations in the U.S. with targeted ransomware campaigns continuing,
  16. Over 80,000 Facebook User Accounts Compromised
  17. Why malware attacks should no longer be a problem for businesses
  18. Critical 'Bleedingbit' flaws found in microcontrollers used by Wi-Fi access points
  19. Persian Stalker pillages Iranian users of Instagram and Telegram
  20. Kemp Cites Voter Database Hacking Attempt, Gives No Evidence
  21. A cybersecurity lesson: educational sites suffer rise in DDoS attacks in Q3
  22. "A lot of people in Congress are concerned that the Facebook influence campaigns are about the midterms, but to me
  23. "Shipbuilder Austal Ltd said on Thursday its Australian business had detected and responded to a data breach"

ATTACKS

  1. Week in review: Volume of Australian data breaches continues unabated
  2. Almost 300 Percent Increase in eCommerce Phishing Attacks in Q3 2018
  3. Inception Group Uses POWERSHOWER Backdoor in Two-Stage Spear Phishing Attacks
  4. Google dorks were the root cause of a catastrophic compromise of CIA’s communications
  5. Your personal data is widely available to hackers
  6. This Tool Shows Exposed Cameras Around Your Neighborhood
  7. New Side-Channel Vulnerability Leaks Sensitive Data From Intel Chips
  8. How to use Firefox Master Password.
  9. Why you should be using a password manager
  10. Akado Telecom Accidentally Leaks Customers' Names, Phone Numbers, And Addresses
  11. Australian shipbuilder Austal hit by data breach
  12. How did @Google eliminate successful #PhishingAttacks? Learn how employees used U2F authentication and physical #SecurityKeys to defend against phishing from
  13. Password Constraints and Their Unintended Security Consequences
  14. Equifax Set to Share More PII with Experian
  15. #SamSam #ransomware continues to be a thorn in the side of organizations in the U.S. with targeted ransomware campaigns continuing,
  16. National biometric database could be on the way (and in private hands)
  17. Over 80,000 Facebook User Accounts Compromised
  18. Cybercriminals Using SMS Phishing Attack to Rob Cardless ATM
  19. How can U2F authentication end phishing attacks?
  20. Phishing attacks up by 297 percent across eCommerce in Q3 2018
  21. "If an organization created #DMARC records for the first time, it would encounter syntax and content issues -- one of
  22. Kemp Cites Voter Database Hacking Attempt, Gives No Evidence
  23. "A lot of people in Congress are concerned that the Facebook influence campaigns are about the midterms, but to me
  24. "Shipbuilder Austal Ltd said on Thursday its Australian business had detected and responded to a data breach"

THREATS

  1. Apache warns Struts 2.3 is using a library with a two year old critical flaw
  2. Inception Group Uses POWERSHOWER Backdoor in Two-Stage Spear Phishing Attacks
  3. Online Radio Stations at Risk from Icecast Flaw
  4. No, blockchain isn't the answer to our voting system woes
  5. PoC Available for Microsoft Edge Zero-Day RCE, Exploit Under Development
  6. Flaws In Self-Encrypting SSDs Let Attackers Bypass Encryption
  7. New Side-Channel Vulnerability Leaks Sensitive Data From Intel Chips
  8. Inside SearchPageInstaller | macOS Malware Deploys a MITM Attack
  9. Why Are Deserialization Vulnerabilities So Popular?
  10. Fake Elon Musk Twitter Bitcoin Scam Earned 180K in One Day
  11. Another wave of Elon Musk bitcoin scams spread by verified Twitter accounts
  12. Flaws in self-encrypting SSDs let attackers bypass disk encryption
  13. [SingCERT] Technical Advisory on Vulnerabilities in Bluetooth Low Energy Chips by Texas Instruments (CVE-2018-16986 and CVE-2018-7080)
  14. Inception Attackers Target Europe with Year-old Office Vulnerability
  15. Malware of the 1980s: Looking back at the Brain Virus and the Morris Worm
  16. Kemp Investigates Dems, Not the Reported Vulnerability
  17. Flaws in Popular SSD Drives Bypass Hardware Disk Encryption
  18. Flaw in Icecast streaming media server allows to take off online Radio Stations
  19. Security researchers exploit Intel hyperthreading flaw to break encryption
  20. .@ArmisSecurity researchers discovered two chip-level #Bluetooth vulnerabilities -- dubbed #Bleedingbit -- that could allow pseudo #RemoteCodeExecution on wireless access points.
  21. Vulnerabilities’ CVSS scores soon to be assigned by AI
  22. Cisco Products Affected By A Zero-Day SIP Inspection Vulnerability Exploited In The Wild
  23. #SamSam #ransomware continues to be a thorn in the side of organizations in the U.S. with targeted ransomware campaigns continuing,
  24. Researchers found #Kraken #ransomware has become more popular after being packaged in the Fallout #ExploitKit and becoming part of an
  25. High severity XML external entity flaw affects Sauter building automation product
  26. Security firm Armis has discovered two vulnerabilities in Bluetooth Chips from several networking industry leaders.
  27. Blockhead makes blockchain easy for developers
  28. Why malware attacks should no longer be a problem for businesses
  29. Critical 'Bleedingbit' flaws found in microcontrollers used by Wi-Fi access points
  30. Mozilla Patched Multiple Security Vulnerabilities in Thunderbird 60.3
  31. Android Rat – TheFatRat to Hack and Gain access to Targeted Android Phone
  32. Apple Patched Multiple XNU Kernel Vulnerabilities In MacOS And iOS
  33. Scammers Ride on Popular Vote411 Voter Info Site to Push Scareware Alerts
  34. The building blocks of blockchain-based digital identity
  35. Companies implementing DevSecOps address vulnerabilities faster than others
  36. How to Get Rid of Cortana Runtime Broker CPU Miner Virus
  37. The Ultimate Guide to Bug Bounty Platforms
  38. PortSmash – A New Side Channel Vulnerability in SMT/Hyper-Threading That Allows Attackers To Steal Sensitive Data
  39. Security Think Tank: Three ways to safeguard against application layer vulnerabilities
  40. Security Bug in Icecast Puts Online Radio Stations At Risk
  41. Researchers discover new zero-day vulnerability in EDGE browser
  42. Fake malicious @RSAsecurity #SecurID malware in pre-release state on @GooglePlay: - Currently gathering information (profiling) the mobile device it is installed
  43. Video analysis of Android banking Trojan found on Google Play (Red Alert 2)
  44. Recently there have been a lot of packed Android malware around, so I decided to write a blog-post on how

CRIME

  1. Week in review: Volume of Australian data breaches continues unabated
  2. Original Mirai botnet creator hit with hefty financial sentence
  3. Fake Elon Musk Twitter Bitcoin Scam Earned 180K in One Day
  4. Australian shipbuilder Austal hit by data breach
  5. Cyber-Attacks: How to Stop a Multibillion-Dollar Problem
  6. Equifax Set to Share More PII with Experian
  7. Over 80,000 Facebook User Accounts Compromised
  8. Cybercriminals Using SMS Phishing Attack to Rob Cardless ATM
  9. Persian Stalker pillages Iranian users of Instagram and Telegram
  10. Phishing attacks up by 297 percent across eCommerce in Q3 2018
  11. The Ultimate Guide to Bug Bounty Platforms

POLITICS

  1. Google dorks were the root cause of a catastrophic compromise of CIA’s communications
  2. Kemp Investigates Dems, Not the Reported Vulnerability
  3. Cyber-Attacks: How to Stop a Multibillion-Dollar Problem
  4. "A lot of people in Congress are concerned that the Facebook influence campaigns are about the midterms, but to me

Nov 5, 2018

APT report for 2018-11-04

TRANSNATIONAL / UNKNOWN

  1. Who’s In Your Online Shopping Cart?
  2. Security Affairs newsletter Round 187 – News of the week

CHINA

Nil

INDIA

Nil

NORTH KOREA

  1. WireGuard has not been merged into the Linux kernel mainline

PAKISTAN

Nil

VIETNAM

Nil

IRAN

Nil

IRAQ

Nil

LEBANON

Nil

PALESTINE

Nil

SAUDI ARABIA

Nil

SYRIA

Nil

TURKEY

Nil

UNITED ARAB EMIRATES

Nil

YEMEN

Nil

RUSSIA

Nil

SERBIA

Nil

UKRAINE

Nil

Platform report for 2018-11-04

WINDOWS

  1. Security Affairs newsletter Round 187 – News of the week

LINUX

  1. Security Affairs newsletter Round 187 – News of the week
  2. WireGuard has not been merged into the Linux kernel mainline

UNIX

Nil

ANDROID

Nil

IOS

  1. Security Affairs newsletter Round 187 – News of the week

MACOS

Nil

Threat report for 2018-11-04

DATA BREACH & DATA LOSS

  1. PortSmash flaw in Hyper-Threading CPU could allow sensitive data theft

DENIAL-OF-SERVICE

Nil

MALVERTISING

Nil

PHISHING

  1. Beware!! Cyber Criminals Stealing Cash From Cardless ATM Using SMS Phishing Attack

WEB DEFACEMENT

Nil

BOTNET

Nil

RANSOMWARE

  1. Kraken ransomware 2.0 is available through the RaaS model
  2. Targeted SamSam Ransomware Attacks Continues to Breaking & Lock 67 Different Organizations Network

CRYPTOMINING & CRYPTOCURRENCIES

  1. Kraken ransomware 2.0 is available through the RaaS model

MALWARE

  1. Week in review: Bleedingbit, nastiest malware of 2018, Cisco security appliances under attack
  2. Google logins make JavaScript mandatory, Huawei China spy shock, Mac malware, Iran gets new Stuxnet, and more
  3. What should you do when you realize you've click on a malicious link?

EXPLOIT

  1. New Microsoft Edge Browser Zero-Day RCE Exploit in the Works

VULNERABILITY

  1. Vulnerability Scanners 101
  2. PortSmash flaw in Hyper-Threading CPU could allow sensitive data theft
  3. New Microsoft Edge Browser Zero-Day RCE Exploit in the Works
  4. Researchers recently found vulnerabilities within the robot controllers from @Universal_Robot. Learn what these #robot controllers are used for and how
  5. Why Vulnerability Management Does Not Work
  6. Bluetooth chip has serious security vulnerabilities that widely affect smart electronic products
  7. Intel processors are vulnerable to new PortSmash side-channel vulnerability
  8. New Intel CPU Flaw Exploits Hyper-Threading to Steal Encrypted Data

Region brief for 2018-11-04

ASIA

  1. Security Affairs newsletter Round 187 – News of the week
  2. Kraken ransomware 2.0 is available through the RaaS model
  3. Google logins make JavaScript mandatory, Huawei China spy shock, Mac malware, Iran gets new Stuxnet, and more
  4. Bluetooth chip has serious security vulnerabilities that widely affect smart electronic products

OCEANIA

  1. Security Affairs newsletter Round 187 – News of the week

NORTH AMERICA

  1. Who’s In Your Online Shopping Cart?
  2. PortSmash flaw in Hyper-Threading CPU could allow sensitive data theft
  3. Security Affairs newsletter Round 187 – News of the week
  4. Targeted SamSam Ransomware Attacks Continues to Breaking & Lock 67 Different Organizations Network
  5. Intel processors are vulnerable to new PortSmash side-channel vulnerability
  6. WireGuard has not been merged into the Linux kernel mainline

SOUTH AMERICA

  1. Kraken ransomware 2.0 is available through the RaaS model

EUROPE

  1. Who’s In Your Online Shopping Cart?
  2. PortSmash flaw in Hyper-Threading CPU could allow sensitive data theft
  3. Security Affairs newsletter Round 187 – News of the week
  4. Kraken ransomware 2.0 is available through the RaaS model
  5. Bluetooth chip has serious security vulnerabilities that widely affect smart electronic products
  6. Intel processors are vulnerable to new PortSmash side-channel vulnerability

AFRICA

  1. Who’s In Your Online Shopping Cart?