Sep 25, 2018

Threat report for 2018-09-24

DATA BREACH

  1. Experts uncovered a new Adwind campaign aimed at Linux, Windows, and macOS systems
  2. New Adwind Campaign Targets Linux, Windows, and macOS
  3. Survey: Nearly one-third of breached companies reported job losses after data breach
  4. 4 Things To Do To Get Your Smartphone Compromised
  5. [SingCERT] Alert on Microsoft JET Database Engine Vulnerabilities CVE-2018-8392 and CVE-2018-8393
  6. Freelance workers targeted in new malware campaign
  7. Bug Exposed Direct Messages of Millions of Twitter Users
  8. A bug in Twitter Account Activity API exposed users messages to wrong developers
  9. Do you know who the biggest threat actors are? Check out this paper that shares our perspective on the key takeaways from the 2018 Verizon Data Breach Investigations Report. Get your copy here:   #DBIR #
  10. Hackers Compromised Thousands of WordPress Sites and Redirects to Tech Support Scams

DENIAL-OF-SERVICE

  1. It’s an active buyer’s market for DDoS-as-a-Service - NETSCOUT
  2. Tricky DoS Attack Crashes Mozilla Firefox
  3. Virobot Ransomware Logs Keystrokes and Adds PC to Spam Botnet
  4. Credential Stuffing Attacks Are Reaching DDoS Proportions
  5. Viborot ransomware comes with a botnet

MALVERTISING

Nothing to report

PHISHING

  1. Microsoft goes password-free for Azure AD sign-in
  2. Cisco: We’ve killed another critical hard-coded root password bug, patch urgently
  3. Yubico's latest authentication keys get the jump on a 'passwordless' future
  4. US ISP RCN stores customer passwords in cleartext
  5. Zoho Suspended by Domain Registrar Over Phishy Emails
  6. [SingCERT] Alert on Cisco Video Surveillance Manager Default Password Vulnerability CVE-2018-15427
  7. Breaking Chrome / Google account auto login (and tracking)
  8. Microsoft Deletes Passwords for Azure Active Directory Applications
  9. Cisco: We've killed another critical hard-coded root password bug, patch urgently
  10. Cisco Removes Default Password From Video Surveillance Manager
  11. Western Digital resolves year-old password bypass bug in My Cloud NAS devices
  12. Pervasive email #security threats have dampened adoption of #cloud-based productivity tools: #survey   #BarracudaNetworks #phishing #Office365 #fraud #AI #

WEB DEFACEMENT

Nothing to report

MALWARE

  1. Hackers Use Cloud Hosting Services To Deliver Malware That Steals Cryptocurrency Wallet Details
  2. Pennsylvania Senate Democrats paid $700,000 to recover from ransomware attack
  3. Adwind RAT Scurries By AV Software With New DDE Variant
  4. Join our LIVE Webcast with @SCMagazine on 9/25: #Cryptomining: The Next #Malware Attack >>> register now   <<<
  5. Scottish Brewery Recovered from Ransomware Attack
  6. Cybercriminals Target Kodi Media Player for Malware Distribution
  7. Scottish Brewery Recovered from Ransomware Attack  …
  8. Zoho Suspended by Domain Registrar Over Phishy Emails
  9. Operator of hackers' favorite malware scanning service gets 14 years in prison
  10. Black Rose Lucy Android malware mimics user's on-screen click
  11. Adwind RAT Scurries By AV Software With New DDE Variant
  12. Hacker Sentenced for Running “Scan4you” Malware Scanning Service
  13. Blocking ransomware for free with honeypots
  14. Unraveling Emotet's Latest Macro Obfuscation
  15. Adwind Trojan circumvents antivirus software to infect your PC
  16. #SecurityNews: Over 90% of US retail domains analyzed recently were found to be non-compliant with #PCI DSS. The sector also performed worst out of the 18 appraised. Read more about this here:   #compliance #cyberattack #
  17. Researchers warn of iTranslator man-in-the-middle malware
  18. Virobot Ransomware Logs Keystrokes and Adds PC to Spam Botnet
  19. Pennsylvania Senate Democrats paid $700,000 to recover from ransomware attack
  20. Ransomware, Fileless Attacks and Cold Boot the Current Trend
  21. Virobot Malware Emerges
  22. Freelance workers targeted in new malware campaign
  23. Viborot ransomware comes with a botnet
  24. Scottish brewery ransomware attack leverages job opening
  25. Arran Brewery Hits Massive Ransomware Attack – Warned Other Companies to Stay Safe
  26. Thousands of WordPress sites are infected with the malicious code

EXPLOIT

Nothing to report

VULNERABILITY

  1. macOS Mojave Privacy Bypass Flaw Allows Access to Protected Files
  2. Cisco: We’ve killed another critical hard-coded root password bug, patch urgently
  3. U.S. General Service Administration Launches Bug Bounty Program
  4. Cisco patches 'critical' credential bug in video surveillance software
  5. [SingCERT] Alert on Cisco Video Surveillance Manager Default Password Vulnerability CVE-2018-15427
  6. Apple MacOS Mojave zero-day privacy bypass vulnerability revealed
  7. The MyCloud Auth Vulnerability Fixed by Western Digital with a Hotfix
  8. [SingCERT] Alert on Microsoft JET Database Engine Vulnerabilities CVE-2018-8392 and CVE-2018-8393
  9. Cisco Patches Critical Flaw in Cisco Video Surveillance Manager (VSM) Software
  10. New Bug Crashes Mozilla Firefox on Windows, Linux, and Mac Systems
  11. Cisco Patched Critical Vulnerability With Video Surveillance Manager Appliance
  12. [SingCERT] Alert on Critical Out-Of-Band Adobe Acrobat Vulnerability (CVE-2018-12848)
  13. Critical flaw affects Cisco Video Surveillance Manager
  14. macOS Mojave Privacy Bypass Flaw Allows Access to Protected Files
  15. Cisco: We've killed another critical hard-coded root password bug, patch urgently
  16. Report: Microsoft misses disclosure deadline to patch RCE bug in JET
  17. Western Digital resolves year-old password bypass bug in My Cloud NAS devices
  18. Cisco Patched Critical Vulnerability In Its Video Surveillance Manager Software
  19. Bug Exposed Direct Messages of Millions of Twitter Users
  20. A bug in Twitter Account Activity API exposed users messages to wrong developers

Region brief for 2018-09-24

ASIA

  1. Experts uncovered a new Adwind campaign aimed at Linux, Windows, and macOS systems
  2. Adwind RAT Scurries By AV Software With New DDE Variant

OCEANIA

Nothing to report

NORTH AMERICA

  1. Pennsylvania Senate Democrats paid $700,000 to recover from ransomware attack
  2. macOS Mojave Privacy Bypass Flaw Allows Access to Protected Files
  3. Yubico's latest authentication keys get the jump on a 'passwordless' future
  4. U.S. General Service Administration Launches Bug Bounty Program
  5. US ISP RCN stores customer passwords in cleartext
  6. Operator of hackers' favorite malware scanning service gets 14 years in prison
  7. Hacker Sentenced for Running “Scan4you” Malware Scanning Service
  8. Unraveling Emotet's Latest Macro Obfuscation
  9. #SecurityNews: Over 90% of US retail domains analyzed recently were found to be non-compliant with #PCI DSS. The sector also performed worst out of the 18 appraised. Read more about this here:   #compliance #cyberattack #
  10. Ransomware, Fileless Attacks and Cold Boot the Current Trend

SOUTH AMERICA

Nothing to report

EUROPE

  1. Experts uncovered a new Adwind campaign aimed at Linux, Windows, and macOS systems
  2. Scottish Brewery Recovered from Ransomware Attack
  3. Yubico's latest authentication keys get the jump on a 'passwordless' future
  4. Scottish Brewery Recovered from Ransomware Attack  …
  5. Cybersecurity Has Become a Major Liability for Online Retailers
  6. Operator of hackers' favorite malware scanning service gets 14 years in prison
  7. Black Rose Lucy Android malware mimics user's on-screen click
  8. Adwind RAT Scurries By AV Software With New DDE Variant
  9. Hacker Sentenced for Running “Scan4you” Malware Scanning Service
  10. Virobot Malware Emerges
  11. Scottish brewery ransomware attack leverages job opening
  12. Arran Brewery Hits Massive Ransomware Attack – Warned Other Companies to Stay Safe

AFRICA

Nothing to report

Sector brief for 2018-09-24

HEALTHCARE

  1. Ransomware, Fileless Attacks and Cold Boot the Current Trend

TRANSPORT

Nothing to report

BANKING & FINANCE

  1. Pennsylvania Senate Democrats paid $700,000 to recover from ransomware attack
  2. Cybersecurity Has Become a Major Liability for Online Retailers
  3. Unraveling Emotet's Latest Macro Obfuscation

INFORMATION & TELECOMMUNICATION

  1. US ISP RCN stores customer passwords in cleartext

FOOD

Nothing to report

WATER

Nothing to report

ENERGY

Nothing to report

GOVERNMENT & PUBLIC SERVICE

Nothing to report

Daily brief for 2018-09-24

ASIA

  1. Experts uncovered a new Adwind campaign aimed at Linux, Windows, and macOS systems
  2. Adwind RAT Scurries By AV Software With New DDE Variant

WORLD

  1. Pennsylvania Senate Democrats paid $700,000 to recover from ransomware attack
  2. macOS Mojave Privacy Bypass Flaw Allows Access to Protected Files
  3. Experts uncovered a new Adwind campaign aimed at Linux, Windows, and macOS systems
  4. Scottish Brewery Recovered from Ransomware Attack
  5. Yubico's latest authentication keys get the jump on a 'passwordless' future
  6. Scottish Brewery Recovered from Ransomware Attack  …
  7. U.S. General Service Administration Launches Bug Bounty Program
  8. Cybersecurity Has Become a Major Liability for Online Retailers
  9. US ISP RCN stores customer passwords in cleartext
  10. Operator of hackers' favorite malware scanning service gets 14 years in prison
  11. Black Rose Lucy Android malware mimics user's on-screen click
  12. Adwind RAT Scurries By AV Software With New DDE Variant
  13. Hacker Sentenced for Running “Scan4you” Malware Scanning Service
  14. Unraveling Emotet's Latest Macro Obfuscation
  15. #SecurityNews: Over 90% of US retail domains analyzed recently were found to be non-compliant with #PCI DSS. The sector also performed worst out of the 18 appraised. Read more about this here:   #compliance #cyberattack #
  16. Ransomware, Fileless Attacks and Cold Boot the Current Trend
  17. Virobot Malware Emerges
  18. Scottish brewery ransomware attack leverages job opening
  19. Arran Brewery Hits Massive Ransomware Attack – Warned Other Companies to Stay Safe

ATTACKS

  1. Microsoft goes password-free for Azure AD sign-in
  2. Cisco: We’ve killed another critical hard-coded root password bug, patch urgently
  3. Experts uncovered a new Adwind campaign aimed at Linux, Windows, and macOS systems
  4. Yubico's latest authentication keys get the jump on a 'passwordless' future
  5. New Adwind Campaign Targets Linux, Windows, and macOS
  6. US ISP RCN stores customer passwords in cleartext
  7. Zoho Suspended by Domain Registrar Over Phishy Emails
  8. [SingCERT] Alert on Cisco Video Surveillance Manager Default Password Vulnerability CVE-2018-15427
  9. Survey: Nearly one-third of breached companies reported job losses after data breach
  10. Breaking Chrome / Google account auto login (and tracking)
  11. 4 Things To Do To Get Your Smartphone Compromised
  12. Microsoft Deletes Passwords for Azure Active Directory Applications
  13. [SingCERT] Alert on Microsoft JET Database Engine Vulnerabilities CVE-2018-8392 and CVE-2018-8393
  14. It’s an active buyer’s market for DDoS-as-a-Service - NETSCOUT
  15. Tricky DoS Attack Crashes Mozilla Firefox
  16. Virobot Ransomware Logs Keystrokes and Adds PC to Spam Botnet
  17. Cisco: We've killed another critical hard-coded root password bug, patch urgently
  18. Cisco Removes Default Password From Video Surveillance Manager
  19. Credential Stuffing Attacks Are Reaching DDoS Proportions
  20. Freelance workers targeted in new malware campaign
  21. Viborot ransomware comes with a botnet
  22. Western Digital resolves year-old password bypass bug in My Cloud NAS devices
  23. Bug Exposed Direct Messages of Millions of Twitter Users
  24. A bug in Twitter Account Activity API exposed users messages to wrong developers
  25. Do you know who the biggest threat actors are? Check out this paper that shares our perspective on the key takeaways from the 2018 Verizon Data Breach Investigations Report. Get your copy here:   #DBIR #
  26. Pervasive email #security threats have dampened adoption of #cloud-based productivity tools: #survey   #BarracudaNetworks #phishing #Office365 #fraud #AI #
  27. Hackers Compromised Thousands of WordPress Sites and Redirects to Tech Support Scams

THREATS

  1. Hackers Use Cloud Hosting Services To Deliver Malware That Steals Cryptocurrency Wallet Details
  2. Pennsylvania Senate Democrats paid $700,000 to recover from ransomware attack
  3. macOS Mojave Privacy Bypass Flaw Allows Access to Protected Files
  4. Adwind RAT Scurries By AV Software With New DDE Variant
  5. Cisco: We’ve killed another critical hard-coded root password bug, patch urgently
  6. Join our LIVE Webcast with @SCMagazine on 9/25: #Cryptomining: The Next #Malware Attack >>> register now   <<<
  7. Scottish Brewery Recovered from Ransomware Attack
  8. Cybercriminals Target Kodi Media Player for Malware Distribution
  9. Scottish Brewery Recovered from Ransomware Attack  …
  10. U.S. General Service Administration Launches Bug Bounty Program
  11. Zoho Suspended by Domain Registrar Over Phishy Emails
  12. Operator of hackers' favorite malware scanning service gets 14 years in prison
  13. Cisco patches 'critical' credential bug in video surveillance software
  14. Black Rose Lucy Android malware mimics user's on-screen click
  15. Adwind RAT Scurries By AV Software With New DDE Variant
  16. [SingCERT] Alert on Cisco Video Surveillance Manager Default Password Vulnerability CVE-2018-15427
  17. Hacker Sentenced for Running “Scan4you” Malware Scanning Service
  18. Apple MacOS Mojave zero-day privacy bypass vulnerability revealed
  19. The MyCloud Auth Vulnerability Fixed by Western Digital with a Hotfix
  20. Blocking ransomware for free with honeypots
  21. Unraveling Emotet's Latest Macro Obfuscation
  22. [SingCERT] Alert on Microsoft JET Database Engine Vulnerabilities CVE-2018-8392 and CVE-2018-8393
  23. Adwind Trojan circumvents antivirus software to infect your PC
  24. Cisco Patches Critical Flaw in Cisco Video Surveillance Manager (VSM) Software
  25. #SecurityNews: Over 90% of US retail domains analyzed recently were found to be non-compliant with #PCI DSS. The sector also performed worst out of the 18 appraised. Read more about this here:   #compliance #cyberattack #
  26. Researchers warn of iTranslator man-in-the-middle malware
  27. New Bug Crashes Mozilla Firefox on Windows, Linux, and Mac Systems
  28. Virobot Ransomware Logs Keystrokes and Adds PC to Spam Botnet
  29. Cisco Patched Critical Vulnerability With Video Surveillance Manager Appliance
  30. [SingCERT] Alert on Critical Out-Of-Band Adobe Acrobat Vulnerability (CVE-2018-12848)
  31. Critical flaw affects Cisco Video Surveillance Manager
  32. Pennsylvania Senate Democrats paid $700,000 to recover from ransomware attack
  33. Ransomware, Fileless Attacks and Cold Boot the Current Trend
  34. macOS Mojave Privacy Bypass Flaw Allows Access to Protected Files
  35. Cisco: We've killed another critical hard-coded root password bug, patch urgently
  36. Virobot Malware Emerges
  37. Report: Microsoft misses disclosure deadline to patch RCE bug in JET
  38. Freelance workers targeted in new malware campaign
  39. Viborot ransomware comes with a botnet
  40. Scottish brewery ransomware attack leverages job opening
  41. Arran Brewery Hits Massive Ransomware Attack – Warned Other Companies to Stay Safe
  42. Western Digital resolves year-old password bypass bug in My Cloud NAS devices
  43. Cisco Patched Critical Vulnerability In Its Video Surveillance Manager Software
  44. Bug Exposed Direct Messages of Millions of Twitter Users
  45. A bug in Twitter Account Activity API exposed users messages to wrong developers
  46. Thousands of WordPress sites are infected with the malicious code

CRIME

  1. Pennsylvania Senate Democrats paid $700,000 to recover from ransomware attack
  2. Join our LIVE Webcast with @SCMagazine on 9/25: #Cryptomining: The Next #Malware Attack >>> register now   <<<
  3. Cybercriminals Target Kodi Media Player for Malware Distribution
  4. Cybersecurity Has Become a Major Liability for Online Retailers
  5. Operator of hackers' favorite malware scanning service gets 14 years in prison
  6. Hacker Sentenced for Running “Scan4you” Malware Scanning Service
  7. Unraveling Emotet's Latest Macro Obfuscation
  8. Ransomware, Fileless Attacks and Cold Boot the Current Trend
  9. Arran Brewery Hits Massive Ransomware Attack – Warned Other Companies to Stay Safe

POLITICS

  1. macOS Mojave Privacy Bypass Flaw Allows Access to Protected Files

Sep 23, 2018

Threat report for 2018-09-22

DATA BREACH

  1. Adams County clerk resigns over role in data breach
  2. Twitter API Bug Might Have Exposed Your Direct Messages To The Wrong Developers
  3. Pegasus spyware spotted in 45 countries, many with questionable human rights records
  4. Hackers Compromised Japanese Zaif Exchange and Stole Cryptocurrencies worth $60 Million
  5. It’s not enough to cast a wide cybersecurity net and hope you catch the adversaries trying to compromise your data. Learn how using the MITRE ATT&CK Matrix with CIS Controls and Tripwire mapping can secure your business, today!   #security #
  6. Google publicly disclosed the Microsoft Jet database engine zero-day RCE vulnerability
  7. MariaDB announces acquisition of distributed database Clustrix
  8. Twitter: Don't panic, but we may have leaked your DMs to rando devs
  9. Business Email Compromises Fuel Procurement Fraud
  10. Twitter API Flaw Exposed Users Messages to Wrong Developers For Over a Year
  11. Thousands of compromised websites on sale in black market
  12. Data theft in US State Department email system
  13. Thousands of Compromised WordPress Sites Redirect to Tech Support Scams

DENIAL-OF-SERVICE

  1. The makers of the Mirai IoT-hijacking botnet are sentenced   #extortion
  2. Researchers Discovered New Virobot Ransomware with Botnet Capabilities
  3. Learn how Russian #BOTs weaponized Twitter to influence and disinform people in the @SafeGuard_Cyber #whitepaper.
  4. Defending Against Next-Generation DDoS Attacks
  5. Ngrok Mining Botnet
  6. Hackers Spreading New Virobot Ransomware with Powerful Botnet & Keylogging Capabilities

MALVERTISING

Nothing to report

PHISHING

  1. MagBO Black Market Hacking Site, Caught Selling 3,000 Website Login Credentials
  2. The Common Factors in Phishing

WEB DEFACEMENT

Nothing to report

MALWARE

  1. Report: Cryptomining malware detections up more than 459 percent since 2017
  2. Pegasus spyware spotted in 45 countries, many with questionable human rights records
  3. Romanian Citizen Admits Guilt in Police Department Ransomware Attack   #digitalattack
  4. Operator of Scan4You Malware-Scanning sentenced to 14 Years in prison
  5. Researchers Discovered New Virobot Ransomware with Botnet Capabilities
  6. DanaBot banking Trojan evolves and now targets European countries
  7. Scottish brewery recovers from ransomware attack
  8. Scotland's Arran Brewery Slammed by Dharma Bip Ransomware
  9. Hackers Spreading New Virobot Ransomware with Powerful Botnet & Keylogging Capabilities
  10. Operator of VirusTotal Like Malware-Scanning Service Jailed for 14 Years
  11. Romanian Citizen Admits Guilt in Police Department Ransomware Attack   #malware
  12. New Ransomware Virus?

EXPLOIT

  1. Learn how Russian #BOTs weaponized Twitter to influence and disinform people in the @SafeGuard_Cyber #whitepaper.

VULNERABILITY

  1. Twitter API Bug Might Have Exposed Your Direct Messages To The Wrong Developers
  2. Bitcoin Core Bug Could Crash The Entire Bitcoin Network
  3. The makers of the Mirai IoT-hijacking botnet are sentenced   #extortion
  4. Bug in Apple Store Allowed more than 500 iPhones For Just 0.03 USD
  5. Researchers Publicly Disclosed a Unpatched Zero-Day Flaw Affecting All Version of Windows
  6. Is Your Security Dashboard Ready for the Cloud?   #vulnerabilities
  7. Google publicly disclosed the Microsoft Jet database engine zero-day RCE vulnerability
  8. Google’s Vulnerability Scanning for Their Cloud Infrastructure in Beta
  9. EE’s 4G WiFi Modem Privilege Escalation Vulnerability Allows Let Attacker Bypass & Gain Windows Access
  10. Twitter API Flaw Exposed Users Messages to Wrong Developers For Over a Year
  11. Is Your Security Dashboard Ready for the Cloud?   #DevOps

Region brief for 2018-09-22

ASIA

  1. Bug in Apple Store Allowed more than 500 iPhones For Just 0.03 USD
  2. Hackers Compromised Japanese Zaif Exchange and Stole Cryptocurrencies worth $60 Million

OCEANIA

Nothing to report

NORTH AMERICA

  1. Researchers Discovered New Virobot Ransomware with Botnet Capabilities
  2. Hackers Spreading New Virobot Ransomware with Powerful Botnet & Keylogging Capabilities
  3. Data theft in US State Department email system

SOUTH AMERICA

Nothing to report

EUROPE

  1. MagBO Black Market Hacking Site, Caught Selling 3,000 Website Login Credentials
  2. Romanian Citizen Admits Guilt in Police Department Ransomware Attack   #digitalattack
  3. Operator of Scan4You Malware-Scanning sentenced to 14 Years in prison
  4. DanaBot banking Trojan evolves and now targets European countries
  5. Learn how Russian #BOTs weaponized Twitter to influence and disinform people in the @SafeGuard_Cyber #whitepaper.
  6. EE’s 4G WiFi Modem Privilege Escalation Vulnerability Allows Let Attacker Bypass & Gain Windows Access
  7. Operator of VirusTotal Like Malware-Scanning Service Jailed for 14 Years
  8. Thousands of compromised websites on sale in black market
  9. Romanian Citizen Admits Guilt in Police Department Ransomware Attack   #malware

AFRICA

  1. DanaBot banking Trojan evolves and now targets European countries

Sector brief for 2018-09-22

HEALTHCARE

Nothing to report

TRANSPORT

Nothing to report

BANKING & FINANCE

  1. MagBO Black Market Hacking Site, Caught Selling 3,000 Website Login Credentials
  2. Bitcoin Core Bug Could Crash The Entire Bitcoin Network
  3. Bug in Apple Store Allowed more than 500 iPhones For Just 0.03 USD
  4. DanaBot banking Trojan evolves and now targets European countries

INFORMATION & TELECOMMUNICATION

  1. EE’s 4G WiFi Modem Privilege Escalation Vulnerability Allows Let Attacker Bypass & Gain Windows Access

FOOD

Nothing to report

WATER

Nothing to report

ENERGY

Nothing to report

GOVERNMENT & PUBLIC SERVICE

Nothing to report

Daily brief for 2018-09-22

ASIA

  1. Bug in Apple Store Allowed more than 500 iPhones For Just 0.03 USD
  2. Hackers Compromised Japanese Zaif Exchange and Stole Cryptocurrencies worth $60 Million

WORLD

  1. MagBO Black Market Hacking Site, Caught Selling 3,000 Website Login Credentials
  2. Romanian Citizen Admits Guilt in Police Department Ransomware Attack   #digitalattack
  3. Operator of Scan4You Malware-Scanning sentenced to 14 Years in prison
  4. Researchers Discovered New Virobot Ransomware with Botnet Capabilities
  5. DanaBot banking Trojan evolves and now targets European countries
  6. Learn how Russian #BOTs weaponized Twitter to influence and disinform people in the @SafeGuard_Cyber #whitepaper.
  7. Hackers Spreading New Virobot Ransomware with Powerful Botnet & Keylogging Capabilities
  8. EE’s 4G WiFi Modem Privilege Escalation Vulnerability Allows Let Attacker Bypass & Gain Windows Access
  9. Operator of VirusTotal Like Malware-Scanning Service Jailed for 14 Years
  10. Thousands of compromised websites on sale in black market
  11. Data theft in US State Department email system
  12. Romanian Citizen Admits Guilt in Police Department Ransomware Attack   #malware

ATTACKS

  1. Adams County clerk resigns over role in data breach
  2. Twitter API Bug Might Have Exposed Your Direct Messages To The Wrong Developers
  3. Pegasus spyware spotted in 45 countries, many with questionable human rights records
  4. MagBO Black Market Hacking Site, Caught Selling 3,000 Website Login Credentials
  5. The Common Factors in Phishing
  6. The makers of the Mirai IoT-hijacking botnet are sentenced   #extortion
  7. Researchers Discovered New Virobot Ransomware with Botnet Capabilities
  8. Hackers Compromised Japanese Zaif Exchange and Stole Cryptocurrencies worth $60 Million
  9. It’s not enough to cast a wide cybersecurity net and hope you catch the adversaries trying to compromise your data. Learn how using the MITRE ATT&CK Matrix with CIS Controls and Tripwire mapping can secure your business, today!   #security #
  10. Learn how Russian #BOTs weaponized Twitter to influence and disinform people in the @SafeGuard_Cyber #whitepaper.
  11. Google publicly disclosed the Microsoft Jet database engine zero-day RCE vulnerability
  12. MariaDB announces acquisition of distributed database Clustrix
  13. Twitter: Don't panic, but we may have leaked your DMs to rando devs
  14. Business Email Compromises Fuel Procurement Fraud
  15. Defending Against Next-Generation DDoS Attacks
  16. Ngrok Mining Botnet
  17. Hackers Spreading New Virobot Ransomware with Powerful Botnet & Keylogging Capabilities
  18. Twitter API Flaw Exposed Users Messages to Wrong Developers For Over a Year
  19. Thousands of compromised websites on sale in black market
  20. Data theft in US State Department email system
  21. Thousands of Compromised WordPress Sites Redirect to Tech Support Scams

THREATS

  1. Report: Cryptomining malware detections up more than 459 percent since 2017
  2. Twitter API Bug Might Have Exposed Your Direct Messages To The Wrong Developers
  3. Pegasus spyware spotted in 45 countries, many with questionable human rights records
  4. Bitcoin Core Bug Could Crash The Entire Bitcoin Network
  5. Romanian Citizen Admits Guilt in Police Department Ransomware Attack   #digitalattack
  6. Operator of Scan4You Malware-Scanning sentenced to 14 Years in prison
  7. The makers of the Mirai IoT-hijacking botnet are sentenced   #extortion
  8. Researchers Discovered New Virobot Ransomware with Botnet Capabilities
  9. Bug in Apple Store Allowed more than 500 iPhones For Just 0.03 USD
  10. Researchers Publicly Disclosed a Unpatched Zero-Day Flaw Affecting All Version of Windows
  11. DanaBot banking Trojan evolves and now targets European countries
  12. Learn how Russian #BOTs weaponized Twitter to influence and disinform people in the @SafeGuard_Cyber #whitepaper.
  13. Is Your Security Dashboard Ready for the Cloud?   #vulnerabilities
  14. Google publicly disclosed the Microsoft Jet database engine zero-day RCE vulnerability
  15. Scottish brewery recovers from ransomware attack
  16. Scotland's Arran Brewery Slammed by Dharma Bip Ransomware
  17. Google’s Vulnerability Scanning for Their Cloud Infrastructure in Beta
  18. Hackers Spreading New Virobot Ransomware with Powerful Botnet & Keylogging Capabilities
  19. EE’s 4G WiFi Modem Privilege Escalation Vulnerability Allows Let Attacker Bypass & Gain Windows Access
  20. Operator of VirusTotal Like Malware-Scanning Service Jailed for 14 Years
  21. Twitter API Flaw Exposed Users Messages to Wrong Developers For Over a Year
  22. Romanian Citizen Admits Guilt in Police Department Ransomware Attack   #malware
  23. New Ransomware Virus?
  24. Is Your Security Dashboard Ready for the Cloud?   #DevOps

CRIME

  1. Report: Cryptomining malware detections up more than 459 percent since 2017
  2. MagBO Black Market Hacking Site, Caught Selling 3,000 Website Login Credentials
  3. Bitcoin Core Bug Could Crash The Entire Bitcoin Network
  4. Operator of Scan4You Malware-Scanning sentenced to 14 Years in prison
  5. The makers of the Mirai IoT-hijacking botnet are sentenced   #extortion
  6. Bug in Apple Store Allowed more than 500 iPhones For Just 0.03 USD
  7. DanaBot banking Trojan evolves and now targets European countries
  8. Hackers Compromised Japanese Zaif Exchange and Stole Cryptocurrencies worth $60 Million
  9. Scotland's Arran Brewery Slammed by Dharma Bip Ransomware
  10. Operator of VirusTotal Like Malware-Scanning Service Jailed for 14 Years
  11. Data theft in US State Department email system

POLITICS

Nothing to report

Sep 22, 2018

Threat report for 2018-09-21

DATA BREACH

  1. What Are Honeywords? Password Protection for Database Breaches
  2. Snap! Microsoft database flaw, internet to split? Plus, asteroid probed
  3. Twitter Flaw Exposed Direct Messages To External Developers
  4. Twitter Flaw Exposed Direct Messages To External Developers
  5. Twitter API bug leaked private data to other accounts
  6. The @aberdeengroup analyzed the likelihood and business impact of #phishing attacks based on lost productivity of 1,000 users with a confirmed #databreach of between 100k - 1m records, for 10 different industries. Download the @cyreninc #whitepaper here
  7. Independence Blue Cross Breach Exposed 17K Records
  8. Independence Blue Cross Breach Exposed 17K Records  …
  9. Newegg leaked credit card information for more than a month
  10. ZDI Shares Details of Microsoft JET Database Zero-Day
  11. Fully 61 percent of ASX100 exposed as email fraud gets personal
  12. Pegasus spyware spotted in 45 countries, many with questionable human rights records
  13. ICO to Fine Equifax £500,000 for 2017 Data Breach   via @DMBisson #GDPR #databreach
  14. Adams County clerk resigns over role in data breach
  15. SC Media September Product Reviews: Threat Intelligence Recorded Future l
  16. 0Day Windows JET Database Vulnerability disclosed by Zero Day Initiative
  17. Who ate all the PII? Not the blockchain, thankfully
  18. Tick-tock, tick-tock. Oh, that's just the sound of compromised logins waiting to ruin your day
  19. Equifax IT staff had to rerun hackers' database queries to work out what was nicked – audit
  20. Veeam holds its hands up, admits database leak was plain 'complacency'
  21. Back up a minute: Veeam database config snafu exposed millions of customer records
  22. Law firm seeking leak victims to launch £500m suit at British Airways
  23. #SecurityNews: The Information Commissioner’s Office (ICO) has fined #Equifax £500K after the 2017 #databreach. For the 2nd time the #ICO has issued a max fine after the credit agency exposed data on 15 million UK customers. Read more here:   #
  24. SingHealth data breach reveals several 'inadequate' security measures
  25. Cisco releases fixes for remote code execution flaws in Webex Network Recording Player
  26. ICO Slaps Equifax with Maximum Fine for the 2017 Data Breach
  27. Cisco fixes Remote Code Execution flaws in Webex Network Recording Player
  28. MageCart Hacked Customers’ In NewEgg Credit Card Data Breach
  29. ZDI Exposed Unpatched Microsoft RCE Zero-day Flaw in Public After it Crossed the 120 Days Deadline
  30. ICO to Fine Equifax £500,000 for 2017 Data Breach   via @DMBisson #databreach #GDPR
  31. Magecart’s Next Attack Resulted In ABS-CBN Data Breach
  32. £500k fine for Equifax 2017 data breach

DENIAL-OF-SERVICE

  1. New Virobot Ransomware and Botnet Emerges
  2. New Virobot ransomware will also log keystrokes, add PC to a spam botnet
  3. Apache Struts and SonicWall Targeted by Mirai and Gafgyt Botnets
  4. Virobot Ransomware with Botnet Capability Breaks Through
  5. No, the Mirai botnet masters aren't going to jail. Why? 'Cos they help Feds nab cyber-crims
  6. ZombieBoy
  7. The makers of the Mirai IoT-hijacking botnet are sentenced   via @gcluley #DDoS #FBI
  8. Mirai Botnet Creators To Help Law Enforcement Agencies On Cybercrime Investigations
  9. The makers of the Mirai IoT-hijacking botnet are sentenced   via @gcluley #botnets #Mirai

MALVERTISING

  1. This blog post explores how #malvertising works and identifies key defense strategies for #businesses  … #malware #cyberattacks

DATA LEAK

Nothing to report

PHISHING

  1. What Are Honeywords? Password Protection for Database Breaches
  2. Spam or Phish? How to Tell the Difference Between a Marketing Email and a Malicious Spam Email
  3. Phishing finance apps make way back into Google Play
  4. The @aberdeengroup analyzed the likelihood and business impact of #phishing attacks based on lost productivity of 1,000 users with a confirmed #databreach of between 100k - 1m records, for 10 different industries. Download the @cyreninc #whitepaper here
  5. Securing industrial IoT passwords: For Pete's sake, engineers, don't all jump in at once
  6. Tick-tock, tick-tock. Oh, that's just the sound of compromised logins waiting to ruin your day
  7. Solid password practice on Capital One's site? Don't bank on it
  8. When is a patch not a patch? When it's for this McAfee password bug
  9. Warning issued as Netflix subscribers hit by phishing attack
  10. Security data reveals worldwide malicious login attempts are on the rise
  11. AD FS 2016 Password Change from non workplace joined devices
  12. The most used email subjects used in phishing attacks
  13. AdGuard resets all user passwords after credential stuffing attack

WEB DEFACEMENT

Nothing to report

MALWARE

  1. Brewery breach: Not even beer is safe from ransomware
  2. The Week in Ransomware – September 21st 2018 – Beer, Airports, & Dharma
  3. PMP®️ Domain Information & Overview
  4. Gamma, Bkp, & Monro Dharma Ransomware Variants Released in One Week
  5. Spam or Phish? How to Tell the Difference Between a Marketing Email and a Malicious Spam Email
  6. Romanian Citizen Admits Guilt in Police Department Ransomware Attack   via @DMBisson #police #ransomware
  7. Malware Disguised as Job Offers Distributed on Freelance Sites
  8. Romanian Hacker Pleads Guilty for Role in Inauguration Surveillance Ransomware
  9. Proofpoint: One month out from deadline, half of agency domains are #DMARC compliant   via CyberScoopNews #FinSec
  10. Delphi Packer Looks for Human Behavior Before Deploying Payload
  11. Delphi Packer Looks for Human Behavior Before Deploying Payload
  12. The Week in Ransomware - September 21st 2018 - Beer, Airports, & Dharma
  13. Operator of 'VirusTotal for criminals' gets 14-year prison sentence
  14. Gamma, Bkp, & Monro Dharma Ransomware Variants Released in One Week
  15. New Virobot Ransomware and Botnet Emerges
  16. Staying King Krab: GandCrab Malware Keeps a Step Ahead of Network Defenses
  17. Malware Disguised as Job Offers Distributed on Freelance Sites
  18. New Virobot ransomware will also log keystrokes, add PC to a spam botnet
  19. Security news: All-in-one malware out, GovPayNow drops the ball on security, and Newegg suffers a crack | Avast
  20. Romanian Hacker Pleads Guilty for Role in Inauguration Surveillance Ransomware
  21. Pegasus spyware spotted in 45 countries, many with questionable human rights records
  22. Discover how Tripwire Malware Detection... - Protects against zero-day exploits and other known threats. - Offers an enterprise view of suspicious malware objects across all monitored systems. - Protects from repeat #malware attacks. Learn more here:
  23. Legitimate RATs Pose Serious Risk to Industrial Systems
  24. Crooks turn to Delphi packers to evade malware detection
  25. This blog post explores how #malvertising works and identifies key defense strategies for #businesses  … #malware #cyberattacks
  26. Malware Businesses Blending the Legitimate and the Illegitimate
  27. Avoidable mistakes lead to iOS cryptomining attacks
  28. Romanian Citizen Admits Guilt in Police Department Ransomware Attack   via @DMBisson #ransomware #police
  29. Thousands of WordPress sites backdoored with malicious code
  30. Virobot Ransomware with Botnet Capability Breaks Through
  31. DMARC Fully Implemented on Two Thirds of U.S. Government Domains
  32. Guilty: The Romanian ransomware mastermind who infected Trump inauguration CCTV cams
  33. FDIC: Supervisory Approach to Payment Processing Relationships with Merchant Customers
  34. MassMiner Malware Targeting Web Servers
  35. Malware Analysis using Osquery Part 2
  36. Off-the-shelf RATs Targeting Pakistan
  37. Malware Analysis using Osquery Part 1
  38. Malicious Documents from Lazarus Group Targeting South Korea
  39. GZipDe: An Encrypted Downloader Serving Metasploit
  40. Satan Ransomware Spawns New Methods to Spread
  41. Woman Pleads Guilty to DC CCTV Ransomware Blitz
  42. Woman Pleads Guilty to DC CCTV Ransomware Blitz  …
  43. Report: Cryptomining malware detections up more than 459 percent since 2017
  44. The most dangerous mobile spyware, Pegasus that has infected 45 countries
  45. Security data reveals worldwide malicious login attempts are on the rise
  46. Why voice fraud rates continue to rise with no signs of slowing down

EXPLOIT

  1. Discover how Tripwire Malware Detection... - Protects against zero-day exploits and other known threats. - Offers an enterprise view of suspicious malware objects across all monitored systems. - Protects from repeat #malware attacks. Learn more here:
  2. Docker fave Alpine Linux suffers bug miscreants can exploit to poison containers
  3. New Hacker Exploits and How to Fight Them

VULNERABILITY

  1. Western Digital Releases Hotfix for My Cloud Auth Bypass Vulnerability
  2. Critical Vulnerability Found in Cisco Video Surveillance Manager
  3. Critical Vulnerability Found in Cisco Video Surveillance Manager
  4. Expert disclosed an unpatched zero-day flaw in all supported versions of Microsoft Windows
  5. Snap! Microsoft database flaw, internet to split? Plus, asteroid probed
  6. Bug allowing unlimited spiceups in "Answer Question" section
  7. Optional Cumulative Update KB4457139 for Windows 7 Released With Bug Fixes
  8. Twitter Flaw Exposed Direct Messages To External Developers
  9. Twitter Flaw Exposed Direct Messages To External Developers
  10. Twitter API bug leaked private data to other accounts
  11. Western Digital Releases Hotfix for My Cloud Auth Bypass Vulnerability
  12. Twitter notifies users about API bug that shared DMs with wrong devs
  13. Optional Cumulative Update KB4457139 for Windows 7 Released With Bug Fixes
  14. ZDI Shares Details of Microsoft JET Database Zero-Day
  15. Flaw in Western Digital My Cloud exposes the content to hackers
  16. Twitter Bug May Have Sent your Direct Messages to Twitter Developers As Well
  17. Unpatched Microsoft Zero-Day in JET Allows Remote Code-Execution
  18. Discover how Tripwire Malware Detection... - Protects against zero-day exploits and other known threats. - Offers an enterprise view of suspicious malware objects across all monitored systems. - Protects from repeat #malware attacks. Learn more here:
  19. Bitcoin flaw could have allowed dreaded 51% takeover
  20. 0Day Windows JET Database Vulnerability disclosed by Zero Day Initiative
  21. Microsoft's Jet crash: Zero-day flaw drops after deadline passes
  22. Patch for EE's 4G Wi-Fi mini modem nails local privilege escalation flaw
  23. 'I am admin' bug turns WD's My Cloud boxes into Everyone's Cloud
  24. Docker fave Alpine Linux suffers bug miscreants can exploit to poison containers
  25. When is a patch not a patch? When it's for this McAfee password bug
  26. More Details on an ActiveX Vulnerability Recently Used to Target Users in South Korea
  27. Researcher Discloses New Zero-Day Affecting All Versions of Windows
  28. Rockwell Automation Patches Severe Flaws in Communications Software
  29. Cisco releases fixes for remote code execution flaws in Webex Network Recording Player
  30. Google Cloud Service launches automatic scanning of container vulnerabilities to enhance cloud environment security
  31. CVE-2018-14829: Rockwell Automation Stack Overflow High Risk Vulnerability
  32. Adobe Addresses a Number of Critical Remote Execution Vulnerabilities
  33. Trend Micro Zero Day team discloses unpatched Microsoft Jet RCE vulnerability
  34. Singapore to offer bug bounty, set up Asean cybersecurity centre
  35. Cisco fixes Remote Code Execution flaws in Webex Network Recording Player
  36. ZDI Exposed Unpatched Microsoft RCE Zero-day Flaw in Public After it Crossed the 120 Days Deadline
  37. iOS Webkit flaw found that forces iPhone restart
  38. Flaw in 4GEE WiFi Modem Could Leave Your Computer Vulnerable
  39. Authentication Bypass Vulnerability Disclosed in Western Digital My Cloud NAS Devices