Nov 1, 2018

APT report for 2018-10-31

TRANSNATIONAL / UNKNOWN

  1. URLZone Distributed Via Cutwail Spam Using Steganography
  2. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros

CHINA

Nil

INDIA

Nil

NORTH KOREA

Nil

PAKISTAN

Nil

VIETNAM

Nil

IRAN

Nil

IRAQ

Nil

LEBANON

Nil

PALESTINE

Nil

SAUDI ARABIA

  1. Promethium/StrongPity Malware

SYRIA

Nil

TURKEY

Nil

UNITED ARAB EMIRATES

Nil

YEMEN

Nil

RUSSIA

  1. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros

SERBIA

Nil

UKRAINE

Nil

Platform report for 2018-10-31

WINDOWS

  1. 2018’s Most Prevalent Ransomware – We Took it for a Ride
  2. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  3. Businesses unprepared for Windows 10 migration, fear vulnerability to cyber threats
  4. DDoS Attacks in Q3 2018
  5. Windows 10 Universal Windows Platform Vulnerability
  6. Webroot Unveils Nastiest Malware of 2018
  7. OIG’s Take On Healthcare.gov Patient Record Breach
  8. Microsoft continues to push the KB4464455 patch for fixing ZIP bug

LINUX

  1. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  2. DDoS Attacks in Q3 2018
  3. Canonical Releases Ubuntu 16.04 LTS Kernel Patch, Fixed 4 Security Vulnerabilities
  4. A DHCPv6 package could compromise a vulnerable Linux system

UNIX

  1. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros

ANDROID

  1. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros

IOS

  1. Apple Fixes Multiple macOS, iOS Bugs Including a Quirky FaceTime Vulnerability
  2. Security Code AutoFill Flaw Exposes iOS, macOS Users to Banking Fraud Attacks
  3. Apple Patches Passcode Bypass, FaceTime Flaws in iOS
  4. Apple Patches Critical Flaws in iOS 12.1, macOS 10.14.1 Updates
  5. Apple Released Security Updates for iOS, watchOS, Safari , tvOS, iTunes & Fixed Several Vulnerabilities

MACOS

  1. Apple Fixes Multiple macOS, iOS Bugs Including a Quirky FaceTime Vulnerability
  2. Security Code AutoFill Flaw Exposes iOS, macOS Users to Banking Fraud Attacks
  3. Apple Patches Passcode Bypass, FaceTime Flaws in iOS
  4. Apple Patches Critical Flaws in iOS 12.1, macOS 10.14.1 Updates
  5. 5 Types of Malware Currently Affecting macOS

Threat report for 2018-10-31

DATA BREACH & DATA LOSS

  1. 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
  2. More Information about July 2018’s Singapore SingHealth Data Breach Revealed
  3. Software bugs could compromise midterm votes in Texas
  4. Eurostar Resets Users' Passwords After Potential Data Breach
  5. Why data security is a priority for political campaigns
  6. The Radisson Hotel Group has suffered a data breach
  7. Social Security Numbers, PII Stolen in NorthBay Healthcare Data Breach
  8. Healthcare.gov website suffers data breach affecting 75,000 enrollees
  9. Tomorrowland festival goers affected by data breach
  10. Chinese Intel Agents Indicted for 5-Year IP Theft Campaign
  11. Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
  12. Nigerian Airline Arik Air May Have Leaked Customer Data
  13. Cyber Attacks Up Prior To Midterms, 81.5 Million Voter Records Threatened
  14. Average data breach fines have doubled as ICO hints at higher fines
  15. Australian companies failing to slow the tide of data breaches: OAIC
  16. Assault and battery: Malvertising campaign checks user device' charge as anti-detection technique
  17. Live Webinar | Identity Proofing in the Era of Data Breaches and Social Networking
  18. Come fermare i data breach con i servizi di Detection&Response #MDR: il caso di un'importante media company finlandese
  19. Fresh SamSam Ransomware Campaign Across the U.S
  20. Nigerian airline Arik Air may have leaked customer data
  21. Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
  22. SamSam Ransomware Campaigns Highly Active in 2018 and Heavily Targets Organizations
  23. A Report on Data Breaches in Australia
  24. A DHCPv6 package could compromise a vulnerable Linux system
  25. OIG’s Take On Healthcare.gov Patient Record Breach
  26. Exploit Chain Modified to Slip Antivirus Detection in a New Malware Campaign

DENIAL-OF-SERVICE

  1. DDoS Attacks in Q3 2018

MALVERTISING

  1. Assault and battery: Malvertising campaign checks user device' charge as anti-detection technique

PHISHING

  1. Re: The Zombie Phish
  2. Ramped-up phishing attacks target universities around the world
  3. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  4. [Infographic] 5 Ways #Cybercriminals Can Access Your Emails Without #Phishing:

WEB DEFACEMENT

Nil

BOTNET

  1. Re: The Zombie Phish
  2. Google aims to stop the tide of bots with reCAPTCHA v3
  3. Pervasive Emotet Botnet Now Steals Emails
  4. NTT Security targets botnet infrastructure
  5. Satori Botnet's Alleged Developer Rearrested
  6. #Mirai author fined $8.6million, gets 6 months house arrest

RANSOMWARE

  1. SamSam Ransomware Goes on a Tear
  2. 2018’s Most Prevalent Ransomware – We Took it for a Ride
  3. Kraken Ransomware Upgrades Distribution with RaaS Model
  4. GandCrab ransomware crew loses $1M after Bitdefender releases free decrypter
  5. Kraken Cryptor ransomware merges with Fallout exploit kit, fees slashed to gain followers
  6. Kraken Ransomware Now Being Distributed by Fallout Exploit Kit
  7. Fresh SamSam Ransomware Campaign Across the U.S
  8. SamSam Ransomware Campaigns Highly Active in 2018 and Heavily Targets Organizations

CRYPTOMINING & CRYPTOCURRENCIES

  1. Kraken Ransomware Upgrades Distribution with RaaS Model
  2. Kraken Cryptor ransomware merges with Fallout exploit kit, fees slashed to gain followers
  3. Kraken Ransomware Now Being Distributed by Fallout Exploit Kit
  4. It's a front? Mac cryptocurrency ticker actually installs backdoors
  5. All You Need to Know About Blockchain Testing

MALWARE

  1. Was the Triton Malware Attack Russian in Origin?
  2. Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
  3. Promethium/StrongPity Malware
  4. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  5. "The presence of the insecure remote access software on systems used for election management raised concerns that malicious #ThreatActors --
  6. Double-Gun Trojan which uses game plug-in to spread, is updated to V4.0 and looking for trouble
  7. Emotet Trojan Begins Stealing Victim's Email Using New Module
  8. Emotet trojan starts stealing full emails from infected machines
  9. Recently found GPlayed trojan spinoff analysed
  10. Federal employee infects gov't network with Russian malware through adult video websites
  11. Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
  12. What do you think the combination of the #TrickBot banking Trojan to #IcedID means for the future of banking #Trojans?
  13. 12 malicious libraries found in Python PyPI
  14. 5 Types of Malware Currently Affecting macOS
  15. Webroot Unveils Nastiest Malware of 2018
  16. Exploit Chain Modified to Slip Antivirus Detection in a New Malware Campaign

EXPLOIT

  1. Kraken Cryptor ransomware merges with Fallout exploit kit, fees slashed to gain followers
  2. Kraken Ransomware Now Being Distributed by Fallout Exploit Kit
  3. Exploit Chain Modified to Slip Antivirus Detection in a New Malware Campaign

VULNERABILITY

  1. Software bugs could compromise midterm votes in Texas
  2. Yi Technology Home Cameras Exploitable Using Multiple Vulnerabilities
  3. Prioritizing the fundamentals of coordinated vulnerability disclosure
  4. Vulnerability Spotlight: Multiple Vulnerabilities in Yi Technology Home Camera
  5. Apple Patches Multiple Major Security Flaws
  6. Actively Exploited High Impact DoS Vulnerability Found in Cisco ASA and FTD
  7. Apple Fixes Multiple macOS, iOS Bugs Including a Quirky FaceTime Vulnerability
  8. Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
  9. Security Code AutoFill Flaw Exposes iOS, macOS Users to Banking Fraud Attacks
  10. Whiteboard Wednesday: Common Vulnerabilities as Personified by Halloween Costumes
  11. Vulnerability Spotlight: Multiple Vulnerabilities in Yi Technology Home Camera
  12. Several vulnerabilities were found in controllers made by @Universal_Robot. Discover what these #robot controllers are used for and how
  13. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  14. Apple Patches Passcode Bypass, FaceTime Flaws in iOS
  15. Businesses unprepared for Windows 10 migration, fear vulnerability to cyber threats
  16. Apple Patches Critical Flaws in iOS 12.1, macOS 10.14.1 Updates
  17. Canonical Releases Ubuntu 16.04 LTS Kernel Patch, Fixed 4 Security Vulnerabilities
  18. CVE-2018-18649: Gitlab Wiki API Remote Code Execution Vulnerability Alert
  19. Apple Released Security Updates for iOS, watchOS, Safari , tvOS, iTunes & Fixed Several Vulnerabilities
  20. Windows 10 Universal Windows Platform Vulnerability
  21. Microsoft continues to push the KB4464455 patch for fixing ZIP bug

Region brief for 2018-10-31

ASIA

  1. More Information about July 2018’s Singapore SingHealth Data Breach Revealed
  2. Was the Triton Malware Attack Russian in Origin?
  3. Chinese Intel Agents Indicted for 5-Year IP Theft Campaign
  4. Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
  5. Ramped-up phishing attacks target universities around the world
  6. NTT Security targets botnet infrastructure
  7. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  8. Fresh SamSam Ransomware Campaign Across the U.S
  9. DDoS Attacks in Q3 2018
  10. Microsoft continues to push the KB4464455 patch for fixing ZIP bug

OCEANIA

  1. Ramped-up phishing attacks target universities around the world
  2. Australian companies failing to slow the tide of data breaches: OAIC
  3. Fresh SamSam Ransomware Campaign Across the U.S
  4. DDoS Attacks in Q3 2018
  5. A Report on Data Breaches in Australia

NORTH AMERICA

  1. 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
  2. Prioritizing the fundamentals of coordinated vulnerability disclosure
  3. 2018’s Most Prevalent Ransomware – We Took it for a Ride
  4. Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
  5. Ramped-up phishing attacks target universities around the world
  6. Whiteboard Wednesday: Common Vulnerabilities as Personified by Halloween Costumes
  7. Vulnerability Spotlight: Multiple Vulnerabilities in Yi Technology Home Camera
  8. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  9. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  10. Fresh SamSam Ransomware Campaign Across the U.S
  11. Federal employee infects gov't network with Russian malware through adult video websites
  12. DDoS Attacks in Q3 2018
  13. OIG’s Take On Healthcare.gov Patient Record Breach

SOUTH AMERICA

  1. Ramped-up phishing attacks target universities around the world
  2. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  3. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros

EUROPE

  1. Eurostar Resets Users' Passwords After Potential Data Breach
  2. 2018’s Most Prevalent Ransomware – We Took it for a Ride
  3. Was the Triton Malware Attack Russian in Origin?
  4. Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
  5. Ramped-up phishing attacks target universities around the world
  6. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  7. Recently found GPlayed trojan spinoff analysed
  8. Fresh SamSam Ransomware Campaign Across the U.S
  9. Federal employee infects gov't network with Russian malware through adult video websites
  10. Businesses unprepared for Windows 10 migration, fear vulnerability to cyber threats
  11. DDoS Attacks in Q3 2018
  12. 12 malicious libraries found in Python PyPI

AFRICA

  1. Ramped-up phishing attacks target universities around the world
  2. Nigerian Airline Arik Air May Have Leaked Customer Data
  3. Nigerian airline Arik Air may have leaked customer data
  4. DDoS Attacks in Q3 2018

Sector brief for 2018-10-31

HEALTHCARE

  1. More Information about July 2018’s Singapore SingHealth Data Breach Revealed
  2. Social Security Numbers, PII Stolen in NorthBay Healthcare Data Breach
  3. Healthcare.gov website suffers data breach affecting 75,000 enrollees
  4. Australian companies failing to slow the tide of data breaches: OAIC
  5. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  6. Fresh SamSam Ransomware Campaign Across the U.S
  7. SamSam Ransomware Campaigns Highly Active in 2018 and Heavily Targets Organizations
  8. OIG’s Take On Healthcare.gov Patient Record Breach

TRANSPORT

  1. Chinese Intel Agents Indicted for 5-Year IP Theft Campaign
  2. Webroot Unveils Nastiest Malware of 2018

BANKING & FINANCE

  1. The Radisson Hotel Group has suffered a data breach
  2. 2018’s Most Prevalent Ransomware – We Took it for a Ride
  3. Tomorrowland festival goers affected by data breach
  4. Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
  5. Kraken Ransomware Upgrades Distribution with RaaS Model
  6. Security Code AutoFill Flaw Exposes iOS, macOS Users to Banking Fraud Attacks
  7. Ramped-up phishing attacks target universities around the world
  8. Emotet Trojan Begins Stealing Victim's Email Using New Module
  9. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  10. Recently found GPlayed trojan spinoff analysed
  11. DDoS Attacks in Q3 2018
  12. What do you think the combination of the #TrickBot banking Trojan to #IcedID means for the future of banking #Trojans?
  13. Webroot Unveils Nastiest Malware of 2018
  14. OIG’s Take On Healthcare.gov Patient Record Breach

INFORMATION & TELECOMMUNICATION

  1. 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
  2. 2018’s Most Prevalent Ransomware – We Took it for a Ride
  3. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  4. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  5. DDoS Attacks in Q3 2018

FOOD

Nil

WATER

Nil

ENERGY

  1. Prioritizing the fundamentals of coordinated vulnerability disclosure
  2. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros

GOVERNMENT & PUBLIC SERVICE

  1. 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
  2. More Information about July 2018’s Singapore SingHealth Data Breach Revealed
  3. Software bugs could compromise midterm votes in Texas
  4. Why data security is a priority for political campaigns
  5. Prioritizing the fundamentals of coordinated vulnerability disclosure
  6. 2018’s Most Prevalent Ransomware – We Took it for a Ride
  7. Tomorrowland festival goers affected by data breach
  8. Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
  9. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  10. "The presence of the insecure remote access software on systems used for election management raised concerns that malicious #ThreatActors --
  11. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  12. Fresh SamSam Ransomware Campaign Across the U.S
  13. All You Need to Know About Blockchain Testing
  14. DDoS Attacks in Q3 2018
  15. SamSam Ransomware Campaigns Highly Active in 2018 and Heavily Targets Organizations

Daily brief for 2018-10-31

ASIA

  1. More Information about July 2018’s Singapore SingHealth Data Breach Revealed
  2. Was the Triton Malware Attack Russian in Origin?
  3. Chinese Intel Agents Indicted for 5-Year IP Theft Campaign
  4. Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
  5. Ramped-up phishing attacks target universities around the world
  6. NTT Security targets botnet infrastructure
  7. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  8. Fresh SamSam Ransomware Campaign Across the U.S
  9. DDoS Attacks in Q3 2018
  10. Microsoft continues to push the KB4464455 patch for fixing ZIP bug

WORLD

  1. 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
  2. Eurostar Resets Users' Passwords After Potential Data Breach
  3. Prioritizing the fundamentals of coordinated vulnerability disclosure
  4. 2018’s Most Prevalent Ransomware – We Took it for a Ride
  5. Was the Triton Malware Attack Russian in Origin?
  6. Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
  7. Ramped-up phishing attacks target universities around the world
  8. Nigerian Airline Arik Air May Have Leaked Customer Data
  9. Whiteboard Wednesday: Common Vulnerabilities as Personified by Halloween Costumes
  10. Vulnerability Spotlight: Multiple Vulnerabilities in Yi Technology Home Camera
  11. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  12. Australian companies failing to slow the tide of data breaches: OAIC
  13. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  14. Recently found GPlayed trojan spinoff analysed
  15. Fresh SamSam Ransomware Campaign Across the U.S
  16. Nigerian airline Arik Air may have leaked customer data
  17. Federal employee infects gov't network with Russian malware through adult video websites
  18. Businesses unprepared for Windows 10 migration, fear vulnerability to cyber threats
  19. DDoS Attacks in Q3 2018
  20. A Report on Data Breaches in Australia
  21. 12 malicious libraries found in Python PyPI
  22. OIG’s Take On Healthcare.gov Patient Record Breach

ATTACKS

  1. 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
  2. More Information about July 2018’s Singapore SingHealth Data Breach Revealed
  3. Software bugs could compromise midterm votes in Texas
  4. Eurostar Resets Users' Passwords After Potential Data Breach
  5. Why data security is a priority for political campaigns
  6. The Radisson Hotel Group has suffered a data breach
  7. Social Security Numbers, PII Stolen in NorthBay Healthcare Data Breach
  8. Healthcare.gov website suffers data breach affecting 75,000 enrollees
  9. Tomorrowland festival goers affected by data breach
  10. Chinese Intel Agents Indicted for 5-Year IP Theft Campaign
  11. Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
  12. Re: The Zombie Phish
  13. Ramped-up phishing attacks target universities around the world
  14. Nigerian Airline Arik Air May Have Leaked Customer Data
  15. Cyber Attacks Up Prior To Midterms, 81.5 Million Voter Records Threatened
  16. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  17. Average data breach fines have doubled as ICO hints at higher fines
  18. Australian companies failing to slow the tide of data breaches: OAIC
  19. Assault and battery: Malvertising campaign checks user device' charge as anti-detection technique
  20. Live Webinar | Identity Proofing in the Era of Data Breaches and Social Networking
  21. Come fermare i data breach con i servizi di Detection&Response #MDR: il caso di un'importante media company finlandese
  22. Fresh SamSam Ransomware Campaign Across the U.S
  23. Nigerian airline Arik Air may have leaked customer data
  24. Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
  25. SamSam Ransomware Campaigns Highly Active in 2018 and Heavily Targets Organizations
  26. [Infographic] 5 Ways #Cybercriminals Can Access Your Emails Without #Phishing:
  27. A Report on Data Breaches in Australia
  28. A DHCPv6 package could compromise a vulnerable Linux system
  29. OIG’s Take On Healthcare.gov Patient Record Breach
  30. Exploit Chain Modified to Slip Antivirus Detection in a New Malware Campaign

THREATS

  1. Software bugs could compromise midterm votes in Texas
  2. Yi Technology Home Cameras Exploitable Using Multiple Vulnerabilities
  3. Prioritizing the fundamentals of coordinated vulnerability disclosure
  4. Vulnerability Spotlight: Multiple Vulnerabilities in Yi Technology Home Camera
  5. SamSam Ransomware Goes on a Tear
  6. Apple Patches Multiple Major Security Flaws
  7. 2018’s Most Prevalent Ransomware – We Took it for a Ride
  8. Actively Exploited High Impact DoS Vulnerability Found in Cisco ASA and FTD
  9. Was the Triton Malware Attack Russian in Origin?
  10. Apple Fixes Multiple macOS, iOS Bugs Including a Quirky FaceTime Vulnerability
  11. Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
  12. Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
  13. Kraken Ransomware Upgrades Distribution with RaaS Model
  14. Security Code AutoFill Flaw Exposes iOS, macOS Users to Banking Fraud Attacks
  15. GandCrab ransomware crew loses $1M after Bitdefender releases free decrypter
  16. Whiteboard Wednesday: Common Vulnerabilities as Personified by Halloween Costumes
  17. Vulnerability Spotlight: Multiple Vulnerabilities in Yi Technology Home Camera
  18. Promethium/StrongPity Malware
  19. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  20. "The presence of the insecure remote access software on systems used for election management raised concerns that malicious #ThreatActors --
  21. Double-Gun Trojan which uses game plug-in to spread, is updated to V4.0 and looking for trouble
  22. Kraken Cryptor ransomware merges with Fallout exploit kit, fees slashed to gain followers
  23. Emotet Trojan Begins Stealing Victim's Email Using New Module
  24. Kraken Ransomware Now Being Distributed by Fallout Exploit Kit
  25. Several vulnerabilities were found in controllers made by @Universal_Robot. Discover what these #robot controllers are used for and how
  26. It's a front? Mac cryptocurrency ticker actually installs backdoors
  27. Weekly Threat Briefing: New Security Flaw Impacts Most Linux And BSD Distros
  28. Emotet trojan starts stealing full emails from infected machines
  29. Recently found GPlayed trojan spinoff analysed
  30. Fresh SamSam Ransomware Campaign Across the U.S
  31. Apple Patches Passcode Bypass, FaceTime Flaws in iOS
  32. Federal employee infects gov't network with Russian malware through adult video websites
  33. All You Need to Know About Blockchain Testing
  34. Businesses unprepared for Windows 10 migration, fear vulnerability to cyber threats
  35. Apple Patches Critical Flaws in iOS 12.1, macOS 10.14.1 Updates
  36. Canonical Releases Ubuntu 16.04 LTS Kernel Patch, Fixed 4 Security Vulnerabilities
  37. Emotet malware gang is mass-harvesting millions of emails in mysterious campaign
  38. CVE-2018-18649: Gitlab Wiki API Remote Code Execution Vulnerability Alert
  39. SamSam Ransomware Campaigns Highly Active in 2018 and Heavily Targets Organizations
  40. What do you think the combination of the #TrickBot banking Trojan to #IcedID means for the future of banking #Trojans?
  41. Apple Released Security Updates for iOS, watchOS, Safari , tvOS, iTunes & Fixed Several Vulnerabilities
  42. Windows 10 Universal Windows Platform Vulnerability
  43. 12 malicious libraries found in Python PyPI
  44. 5 Types of Malware Currently Affecting macOS
  45. Webroot Unveils Nastiest Malware of 2018
  46. Microsoft continues to push the KB4464455 patch for fixing ZIP bug
  47. Exploit Chain Modified to Slip Antivirus Detection in a New Malware Campaign

CRIME

  1. 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
  2. The Radisson Hotel Group has suffered a data breach
  3. Social Security Numbers, PII Stolen in NorthBay Healthcare Data Breach
  4. Tomorrowland festival goers affected by data breach
  5. Chinese Intel Agents Indicted for 5-Year IP Theft Campaign
  6. Re: The Zombie Phish
  7. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  8. NTT Security targets botnet infrastructure
  9. Fresh SamSam Ransomware Campaign Across the U.S
  10. All You Need to Know About Blockchain Testing
  11. DDoS Attacks in Q3 2018

POLITICS

  1. 85 Millions of voter records available for sale ahead of the 2018 US Midterm Elections
  2. More Information about July 2018’s Singapore SingHealth Data Breach Revealed
  3. Many States Reject DHS Offer to Check Election Systems for Flaws, Saying They’re Safe from Hackers
  4. “Brazilian Election” Themed Phish Target Users with South American-Targeted Malware, Astaroth Trojan
  5. "The presence of the insecure remote access software on systems used for election management raised concerns that malicious #ThreatActors --

Oct 31, 2018

APT report for 2018-10-30

TRANSNATIONAL / UNKNOWN

  1. Treat or Trick? Six Dangerous Digital Threats Dressed up As Irresistible Treats

CHINA

  1. MadoMiner Part 2 - Mask

INDIA

Nil

NORTH KOREA

Nil

PAKISTAN

Nil

VIETNAM

Nil

IRAN

Nil

IRAQ

Nil

LEBANON

Nil

PALESTINE

Nil

SAUDI ARABIA

Nil

SYRIA

Nil

TURKEY

Nil

UNITED ARAB EMIRATES

Nil

YEMEN

Nil

RUSSIA

Nil

SERBIA

Nil

UKRAINE

Nil

Platform report for 2018-10-30

WINDOWS

  1. Fallout Exploit Kit Releases the Kraken Ransomware on Its Victims
  2. Kraken Cryptor Ransomware Gains Popularity Among Cybercriminals
  3. Apple Fixes Creepy FaceTime Vulnerability, Crash Bug in macOS, and More
  4. Zero-day Windows Deletebug: How to squash this ‘low-quality' pest
  5. Ransomware Threat Continues: How Infections Take Place
  6. Windows Zero-Day Vulnerability Disclosed
  7. Treat or Trick? Six Dangerous Digital Threats Dressed up As Irresistible Treats
  8. The analysis of the attack which uses Excel 4.0 macro to avoid antivirus software detection
  9. MadoMiner Part 2 - Mask
  10. Windows 10 Bug Let UWP Apps Access All Files Without Users' Consent
  11. Feature to attach video to Word files could be used to send malicious code

LINUX

  1. CVE-2018-15688: systemd remote code execution vulnerability affects Linux machines
  2. An Update on the jQuery-File-Upload Vulnerability
  3. Libssh Vulnerability Leaves Servers Open to Unauthorized Access
  4. Demonbot targets cloud servers for DDoS attacks
  5. New Botnet That Targets Cloud Servers for DDoS Attacks
  6. Multiple Linux distributions affected by new vulnerability

UNIX

  1. Multiple Linux distributions affected by new vulnerability

ANDROID

  1. Malicious Apps Removed From Google Play Store
  2. Treat or Trick? Six Dangerous Digital Threats Dressed up As Irresistible Treats
  3. Cell Phone Security and Heads of State
  4. Prominent #malspam #Nymaim campaign with #BankBot #Anubis for Android UA. APK's dropped from hxxp://pobierz48[.]tk/ SHA256: e0d17f4ff0196c6527f8aa47b3ef220d0f4e712805f99d38a0804f3ea9506ece @ThreatFabric @virqdroid @LukasStefanko @
  5. Another #BianLian Android banking #Trojan in #GooglePlay showing his other face by dropping #RedAlert v2.1 CC @Bank_Security @

IOS

  1. Apple Fixes Creepy FaceTime Vulnerability, Crash Bug in macOS, and More
  2. Cell Phone Security and Heads of State

MACOS

  1. Apple Fixes Creepy FaceTime Vulnerability, Crash Bug in macOS, and More
  2. macOS Cryptomining Malware on the Rise

Threat report for 2018-10-30

DATA BREACH & DATA LOSS

  1. How database hacks could impact elections and voters' fears
  2. Girl Scouts data breach exposed personal information of 2,800 members
  3. How database hacks could impact elections and voters' fears
  4. Parties Seek to Settle Yahoo Data Breach Class Action for $50M
  5. Center for Internet Security looks to expand threat sharing program to political campaigns
  6. Internet-Exposed HMIs Put Energy, Water Facilities at Risk: Report
  7. New SamSam ransomware campaign aims at targets across the US
  8. An Update on the jQuery-File-Upload Vulnerability
  9. Millions of Voter Records Up for Sale Ahead of the US Midterm Elections
  10. Prominent #malspam #Nymaim campaign with #BankBot #Anubis for Android UA. APK's dropped from hxxp://pobierz48[.]tk/ SHA256: e0d17f4ff0196c6527f8aa47b3ef220d0f4e712805f99d38a0804f3ea9506ece @ThreatFabric @virqdroid @LukasStefanko @
  11. Disrupting the Flow: Exposed and Vulnerable Water and Energy Infrastructures
  12. Thousands of critical energy and water systems exposed online for anyone to exploit
  13. If it's only able to leak data at 15 bits per hour, is #NetSpectre a serious threat? Learn more about
  14. An email hack affecting the Girl Scouts of Orange County, Calif. may have compromised the personal data of 2,800 members
  15. La tua azienda è davvero preparata in caso di data breach?
  16. By me @Forbes: 81.5M Voter Records For Sale On Dark Web Ahead Of Midterm Elections
  17. Compression File Formats of the past Come Haunting in Spam Campaigns
  18. Biggest data breach penalties for 2018
  19. New McAfee Report Reveals Data in the Cloud More Exposed Than Organizations Think

DENIAL-OF-SERVICE

  1. Judge Ordered Man to Pay $8 Million for Launching a DDoS Attack Against Rutgers
  2. Demonbot targets cloud servers for DDoS attacks
  3. New Botnet That Targets Cloud Servers for DDoS Attacks
  4. Anonymous knocks out Gabon government sites with DoS attack
  5. Prominent #malspam #Nymaim campaign with #BankBot #Anubis for Android UA. APK's dropped from hxxp://pobierz48[.]tk/ SHA256: e0d17f4ff0196c6527f8aa47b3ef220d0f4e712805f99d38a0804f3ea9506ece @ThreatFabric @virqdroid @LukasStefanko @

MALVERTISING

Nil

PHISHING

  1. 4 tips to keep safe when phishing for treats this Halloween
  2. AI-Facilitated Product Aims to Stop Spear-Phishing Attacks
  3. INKY emerges from stealth with email spoofing, phishing protection service
  4. Is it a Phish? Halloween Edition
  5. There are plenty of different types of phishing attacks, but they all rely on the same basic mechanism: exploiting human
  6. Report on Phishing Attack Shows Microsoft, Paypal as well as Netflix as the Top Targets
  7. Cofense Triggers its Increased Phishing Defense Services

WEB DEFACEMENT

Nil

BOTNET

  1. Bushido Botnet Offered as MaaS
  2. New Botnet That Targets Cloud Servers for DDoS Attacks
  3. The author of the Mirai botnet gets six months of house arrest
  4. The Russian built #VPNFilter #botnet was previously taken down after 500,000 routers were infected. However, recently it attempted a comeback.
  5. Recently discovered DemonBot Botnet targets Hadoop servers

RANSOMWARE

  1. Fallout Exploit Kit Releases the Kraken Ransomware on Its Victims
  2. Kraken Cryptor Ransomware Gains Popularity Among Cybercriminals
  3. SamSam ransomware group has hit 67 organizations in 2018, researchers say
  4. Ransomware Threat Continues: How Infections Take Place
  5. New SamSam ransomware campaign aims at targets across the US
  6. GandCrab: The Most Popular Multi-Million Dollar Ransomware of the Year
  7. SamSam: Targeted Ransomware Attacks Continue
  8. Threat Report: Jaff Ransomware Causes Havoc
  9. CommonRansom Ransomware Demands RDP Access to Decrypt Files

CRYPTOMINING & CRYPTOCURRENCIES

  1. Fallout Exploit Kit Releases the Kraken Ransomware on Its Victims
  2. Kraken Cryptor Ransomware Gains Popularity Among Cybercriminals
  3. Bitcoin Dealer Who Operated Unlicensed Bitcoin Exchange Faces Five Years in Jail
  4. Kraken Resurfaces From the Deep Web
  5. macOS Cryptomining Malware on the Rise
  6. 3 Reasons Enterprises Are Moving to Decentralized Blockchain Applications
  7. Widely Used Cryptocurrency App Launching 2 Different Powerful Backdoor on Mac Users

MALWARE

  1. Malware Targeting Smartphones via Three DSP Providers
  2. GPlayed Trojan's Baby Brother Is After Your Bank Account
  3. macOS Cryptomining Malware on the Rise
  4. Malware Infection at USGS Traced to Employee’s Habit of Viewing Adult Content
  5. Malicious Apps Removed From Google Play Store
  6. .@FireEye security researchers claimed the Russian government was 'most likely' behind the #Triton #Malware attack on an industrial control system
  7. Employee Watched Porn at Work via 9000 Web pages Drops Malware on U.S Government Network
  8. A fed visited 9,000 porn sites, infecting government networks with Russian malware
  9. GPlayed Trojan's baby brother is after your bank account
  10. Nastiest malware of 2018: Top attack payloads wreaking havoc
  11. Snakes in the grass! Malicious code slithers into Python PyPI repository
  12. The analysis of the attack which uses Excel 4.0 macro to avoid antivirus software detection
  13. Prominent #malspam #Nymaim campaign with #BankBot #Anubis for Android UA. APK's dropped from hxxp://pobierz48[.]tk/ SHA256: e0d17f4ff0196c6527f8aa47b3ef220d0f4e712805f99d38a0804f3ea9506ece @ThreatFabric @virqdroid @LukasStefanko @
  14. How to Be Protected from Malicious Message Crashing PS4 Console
  15. Another #BianLian Android banking #Trojan in #GooglePlay showing his other face by dropping #RedAlert v2.1 CC @Bank_Security @
  16. Widely Used Cryptocurrency App Launching 2 Different Powerful Backdoor on Mac Users
  17. Attackers getting better at quickly generating countless versions of existing #malware #antivirus @MariaKorolov -
  18. Malicious hackers and their interest in bypassing CAPTCHA
  19. Feature to attach video to Word files could be used to send malicious code
  20. Most Important Security Tools and Resources For Security Researcher and Malware Analyst
  21. A good insight for Europeans on the process of the US mid-term elections and whether or it they are hackable

EXPLOIT

  1. Fallout Exploit Kit Releases the Kraken Ransomware on Its Victims
  2. Thousands of critical energy and water systems exposed online for anyone to exploit

VULNERABILITY

  1. Apple Fixes Creepy FaceTime Vulnerability, Crash Bug in macOS, and More
  2. Talos Vulnerability Discovery Year in Review – 2018
  3. CVE-2018-15688: systemd remote code execution vulnerability affects Linux machines
  4. A #RemoteCodeExecution flaw in @Cisco Webex -- called WebExec -- could be an easy vector for insider attacks, and the
  5. Zero-day Windows Deletebug: How to squash this ‘low-quality' pest
  6. Microsoft Office Vulnerability Found, Check Point Research To The Rescue
  7. An Update on the jQuery-File-Upload Vulnerability
  8. Libssh Vulnerability Leaves Servers Open to Unauthorized Access
  9. Windows Zero-Day Vulnerability Disclosed
  10. .@Siemens SICLOCK central plant clocks were recently found to be affected by several vulnerabilities, some of which have been rated
  11. Talos Vulnerability Discovery Year in Review - 2018
  12. 92% of External Web Apps Have Exploitable Security Flaws or Weaknesses: Report
  13. Windows 10 Bug Let UWP Apps Access All Files Without Users' Consent
  14. Unpatched MS Word Flaw Could Allow Hackers to Infect Your Computer
  15. Multiple Linux distributions affected by new vulnerability
  16. Spring Framework 5.1.2 releases: bugs fix

Region brief for 2018-10-30

ASIA

  1. Fallout Exploit Kit Releases the Kraken Ransomware on Its Victims
  2. Kraken Cryptor Ransomware Gains Popularity Among Cybercriminals
  3. Parties Seek to Settle Yahoo Data Breach Class Action for $50M
  4. macOS Cryptomining Malware on the Rise
  5. Ransomware Threat Continues: How Infections Take Place
  6. .@FireEye security researchers claimed the Russian government was 'most likely' behind the #Triton #Malware attack on an industrial control system
  7. Cell Phone Security and Heads of State
  8. Disrupting the Flow: Exposed and Vulnerable Water and Energy Infrastructures

OCEANIA

Nil

NORTH AMERICA

  1. Kraken Cryptor Ransomware Gains Popularity Among Cybercriminals
  2. Girl Scouts data breach exposed personal information of 2,800 members
  3. SamSam ransomware group has hit 67 organizations in 2018, researchers say
  4. Parties Seek to Settle Yahoo Data Breach Class Action for $50M
  5. Bitcoin Dealer Who Operated Unlicensed Bitcoin Exchange Faces Five Years in Jail
  6. Malware Targeting Smartphones via Three DSP Providers
  7. macOS Cryptomining Malware on the Rise
  8. Malware Infection at USGS Traced to Employee’s Habit of Viewing Adult Content
  9. Ransomware Threat Continues: How Infections Take Place
  10. New SamSam ransomware campaign aims at targets across the US
  11. Employee Watched Porn at Work via 9000 Web pages Drops Malware on U.S Government Network
  12. Treat or Trick? Six Dangerous Digital Threats Dressed up As Irresistible Treats
  13. SamSam: Targeted Ransomware Attacks Continue
  14. Is it a Phish? Halloween Edition
  15. Threat Report: Jaff Ransomware Causes Havoc
  16. Cell Phone Security and Heads of State
  17. Millions of Voter Records Up for Sale Ahead of the US Midterm Elections
  18. There are plenty of different types of phishing attacks, but they all rely on the same basic mechanism: exploiting human
  19. 92% of External Web Apps Have Exploitable Security Flaws or Weaknesses: Report
  20. Disrupting the Flow: Exposed and Vulnerable Water and Energy Infrastructures
  21. The author of the Mirai botnet gets six months of house arrest
  22. A good insight for Europeans on the process of the US mid-term elections and whether or it they are hackable

SOUTH AMERICA

  1. Fallout Exploit Kit Releases the Kraken Ransomware on Its Victims
  2. Kraken Cryptor Ransomware Gains Popularity Among Cybercriminals
  3. Ransomware Threat Continues: How Infections Take Place

EUROPE

  1. Fallout Exploit Kit Releases the Kraken Ransomware on Its Victims
  2. Kraken Cryptor Ransomware Gains Popularity Among Cybercriminals
  3. .@FireEye security researchers claimed the Russian government was 'most likely' behind the #Triton #Malware attack on an industrial control system
  4. Treat or Trick? Six Dangerous Digital Threats Dressed up As Irresistible Treats
  5. A fed visited 9,000 porn sites, infecting government networks with Russian malware
  6. Threat Report: Jaff Ransomware Causes Havoc
  7. Cell Phone Security and Heads of State
  8. Disrupting the Flow: Exposed and Vulnerable Water and Energy Infrastructures
  9. The author of the Mirai botnet gets six months of house arrest
  10. The Russian built #VPNFilter #botnet was previously taken down after 500,000 routers were infected. However, recently it attempted a comeback.

AFRICA

  1. Cell Phone Security and Heads of State
  2. Anonymous knocks out Gabon government sites with DoS attack