Nov 21, 2018

Daily brief for 2018-11-20

ASIA

  1. ESET: Vietnamese hacking group hijacks Southeast Asian sites in watering hole campaign
  2. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit
  3. Malvertising in Apple Pay Targets iPhone Users
  4. Kaspersky Security Bulletin: Threat Predictions for 2019
  5. Experts analyzed how Iranian OilRIG hackers tested their weaponized documents

WORLD

  1. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit
  2. Infamous Russian Hacking Group Used New Trojan in Recent Attacks
  3. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  4. Voxox leak: Millions of SMS messages exposed
  5. Russia’s Elite Hackers May Have New Phishing Tricks
  6. Web skimmers compete in Umbro Brasil hack
  7. Inspiring Gender Diversity at Women of the Channel Leadership Summit
  8. Government Agencies and Think Tanks attacked, APT29 suspected
  9. An Introduction to Magecart
  10. Hackers Linked to Russia Impersonate US Officials
  11. Two Young Men Jailed for Involvement in TalkTalk Data Breach
  12. Russian hackers are trying out this new malware against US and European targets
  13. TEMP.Periscope Spearphishing
  14. Russian hackers are trying out this new malware against US and European targets
  15. Russian APT activity is resurgent, researchers say
  16. Report: Emotet makes phishing lures more convincing by scraping victims' emails
  17. Sofacy Continues Global Attacks and Wheels Out New ‘Cannon’ Trojan
  18. Lazarus Continues Heists, Mounts Attacks on Financial Organizations in Latin America
  19. Zscaler ThreatLabZ Phishing Roundup
  20. Dutch audit finds Microsoft Office leaks confidential data
  21. Kaspersky Security Bulletin: Threat Predictions for 2019
  22. Cozy Bear tracks: Phishing campaign looks like work of Russian APT group
  23. Experts analyzed how Iranian OilRIG hackers tested their weaponized documents
  24. Confiant spots major malvertising attack
  25. Google, Target Hit by Twitter Bitcoin Scam Account Hacks
  26. Two TalkTalk hackers jailed for 2015 data breach that cost it £77 million

ATTACKS

  1. ESET: Vietnamese hacking group hijacks Southeast Asian sites in watering hole campaign
  2. Gmail Glitch Enables Anonymous Messages in Phishing Attacks
  3. jQuery File Upload Disclosure Due Diligence
  4. Emotet Returns with Thanksgiving Theme and Better Phishing Tricks
  5. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  6. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  7. Emotet Returns with Thanksgiving Theme and Better Phishing Tricks
  8. Voxox leak: Millions of SMS messages exposed
  9. Russia’s Elite Hackers May Have New Phishing Tricks
  10. Second WordPress hacking campaign underway, this one targeting AMP for WP plugin
  11. Vision Direct Reveals Data Breach
  12. Malvertising in Apple Pay Targets iPhone Users
  13. Instagram glitch exposed some user passwords
  14. OSIsoft Warns Employees, Contractors of Data Breach
  15. Two Young Men Jailed for Involvement in TalkTalk Data Breach
  16. TEMP.Periscope Spearphishing
  17. Report: Emotet makes phishing lures more convincing by scraping victims' emails
  18. OceanLotus: New watering hole attack in Southeast Asia
  19. OceanLotus: New watering hole attack in Southeast Asia
  20. tRat: New Modular RAT Appears in Multiple Email Campaigns
  21. Emotet Campaigns Persist, Utilize Updated Tactics and Techniques
  22. Mac users using Exodus cryptocurrency wallet targeted by a small spam campaign
  23. AWS moves to curb S3 data leaks, but Chris Vickery is doubtful
  24. TalkTalk hackers jailed for role in £77m data breach
  25. CarBlues – Bluetooth Vehicle Hack Exploit Affects Millions Of Vehicles Exposing Users PII
  26. Zscaler ThreatLabZ Phishing Roundup
  27. 2018 holiday travel period expected to be the busiest travel season on record
  28. Vision Direct 'fesses up to hack that exposed customer names, payment cards
  29. A little phishing knowledge may be a dangerous thing
  30. Dutch audit finds Microsoft Office leaks confidential data
  31. Cozy Bear tracks: Phishing campaign looks like work of Russian APT group
  32. Instagram Patched A Data Download Tool Bug That Exposed Users Passwords
  33. Confiant spots major malvertising attack
  34. Two TalkTalk hackers jailed for 2015 data breach that cost it £77 million

THREATS

  1. Instagram bug exposes user passwords
  2. Critical Adobe Flash Bug Impacts Windows, macOS, Linux and Chrome OS
  3. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit
  4. Hackers target Drupal servers chaining several flaws, including Drupalgeddon2 and DirtyCOW
  5. Flash Player Type Confusion Critical Vulnerability, Another Reason Not to Use It
  6. Down But Not Out, WannaCry Malware Continues to Infect Unpatched Windows PCs
  7. Infamous Russian Hacking Group Used New Trojan in Recent Attacks
  8. 560,000 Duped Into Installing Android Malware in the Form of Fake Driving Games
  9. Flash Player Update Patches Disclosed Code Execution Flaw
  10. Attackers Target Drupal Web Servers with Chained Vulnerabilities
  11. DirtyCOW Is Back In Backdoor Attack Targeting Drupal Web Servers
  12. Inserted Malicious URLs within Office Documents’ Embedded Videos
  13. Russian hackers are trying out this new malware against US and European targets
  14. Russian hackers are trying out this new malware against US and European targets
  15. Sofacy Continues Global Attacks and Wheels Out New ‘Cannon’ Trojan
  16. WordPress GDPR Plug-in Contains Privilege Escalation Flaw
  17. tRat: New Modular RAT Appears in Multiple Email Campaigns
  18. Dharma Ransomware Variant Discovered
  19. Hackers Exploit Vulnerability in WP GDPR Compliance Plugin – Update Now
  20. Mac users using Exodus cryptocurrency wallet targeted by a small spam campaign
  21. For Smbs Ransomware Attacks still the Greatest Online Threat
  22. Almost 50 Percent of 2018 Vulnerabilities Can Be Exploited Remotely
  23. Targeted ransomware attacks on the rise in 2018, NCSC warns
  24. TP-Link fixes 2 Remote Code Execution flaws in TL-R600VPN SOHO Router and other issues
  25. Raft of flaws discovered in MiSafes child-monitoring devices
  26. Scumbags cram Make-A-Wish website with coin-mining malware
  27. Instagram Patched A Data Download Tool Bug That Exposed Users Passwords
  28. Microsoft Releases Azure Blockchain Development Kit
  29. DirtyCOW is back in backdoor attack targeting Drupal Web Servers
  30. Can a D-Link router vulnerability threaten bank customers?
  31. 3 New Code Execution Flaws Discovered in Atlantis Word Processor
  32. Vulnerability Spotlight: Multiple remote code execution vulnerabilities in Atlantis Word Processor
  33. Google Account Hacked for Fake Bitcoin Reward
  34. 2019 Security Predictions – Utilities and Industrial Control Systems Targeted with Ransomware
  35. Google, Target Hit by Twitter Bitcoin Scam Account Hacks
  36. The wiper #malware that briefly disrupted the Winter #Olympics earlier this year appears to be back - now with a
  37. 13 Malicious Apps in Google Play With More than 560,000+ Installs
  38. Apache OpenOffice 4.1.6 release: important bug fixes and security fixes
  39. Almost 50 Percent of 2018 Vulnerabilities Can Be Exploited Remotely
  40. #BluetoothDevices might be at risk after a new #Bluetooth vulnerability was found targeting #firmware or operating system software drivers. Learn

CRIME

  1. Inspiring Gender Diversity at Women of the Channel Leadership Summit
  2. An Introduction to Magecart
  3. Two Young Men Jailed for Involvement in TalkTalk Data Breach
  4. Report: Emotet makes phishing lures more convincing by scraping victims' emails
  5. Zscaler ThreatLabZ Phishing Roundup
  6. Magecart Spies Payment Cards From Retailer Vision Direct
  7. Kaspersky Security Bulletin: Threat Predictions for 2019
  8. Google, Target Hit by Twitter Bitcoin Scam Account Hacks
  9. Two TalkTalk hackers jailed for 2015 data breach that cost it £77 million

POLITICS

  1. Infamous Russian Hacking Group Used New Trojan in Recent Attacks
  2. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  3. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  4. Russia’s Elite Hackers May Have New Phishing Tricks
  5. Web skimmers compete in Umbro Brasil hack
  6. TEMP.Periscope Spearphishing
  7. Mac users using Exodus cryptocurrency wallet targeted by a small spam campaign
  8. Magecart Spies Payment Cards From Retailer Vision Direct
  9. Dutch audit finds Microsoft Office leaks confidential data
  10. Kaspersky Security Bulletin: Threat Predictions for 2019
  11. Experts analyzed how Iranian OilRIG hackers tested their weaponized documents

Sector brief for 2018-11-20

HEALTHCARE

  1. Hackers Linked to Russia Impersonate US Officials
  2. Russian APT activity is resurgent, researchers say
  3. Zscaler ThreatLabZ Phishing Roundup

TRANSPORT

Nil

BANKING & FINANCE

  1. Emotet Returns with Thanksgiving Theme and Better Phishing Tricks
  2. Emotet Returns with Thanksgiving Theme and Better Phishing Tricks
  3. Web skimmers compete in Umbro Brasil hack
  4. Malvertising in Apple Pay Targets iPhone Users
  5. An Introduction to Magecart
  6. Report: Emotet makes phishing lures more convincing by scraping victims' emails
  7. Lazarus Continues Heists, Mounts Attacks on Financial Organizations in Latin America
  8. Emotet Campaigns Persist, Utilize Updated Tactics and Techniques
  9. For Smbs Ransomware Attacks still the Greatest Online Threat
  10. Zscaler ThreatLabZ Phishing Roundup
  11. Vision Direct 'fesses up to hack that exposed customer names, payment cards
  12. Magecart Spies Payment Cards From Retailer Vision Direct
  13. Kaspersky Security Bulletin: Threat Predictions for 2019
  14. Experts analyzed how Iranian OilRIG hackers tested their weaponized documents
  15. Can a D-Link router vulnerability threaten bank customers?
  16. Google Account Hacked for Fake Bitcoin Reward
  17. 2019 Security Predictions – Utilities and Industrial Control Systems Targeted with Ransomware
  18. Two TalkTalk hackers jailed for 2015 data breach that cost it £77 million

INFORMATION & TELECOMMUNICATION

  1. Instagram bug exposes user passwords
  2. Gmail Glitch Enables Anonymous Messages in Phishing Attacks
  3. 560,000 Duped Into Installing Android Malware in the Form of Fake Driving Games
  4. Inspiring Gender Diversity at Women of the Channel Leadership Summit
  5. Instagram glitch exposed some user passwords
  6. Sofacy Continues Global Attacks and Wheels Out New ‘Cannon’ Trojan
  7. Zscaler ThreatLabZ Phishing Roundup
  8. 2018 holiday travel period expected to be the busiest travel season on record
  9. Kaspersky Security Bulletin: Threat Predictions for 2019
  10. Instagram Patched A Data Download Tool Bug That Exposed Users Passwords
  11. Vulnerability Spotlight: Multiple remote code execution vulnerabilities in Atlantis Word Processor
  12. Google Account Hacked for Fake Bitcoin Reward
  13. Google, Target Hit by Twitter Bitcoin Scam Account Hacks

FOOD

Nil

WATER

  1. Tech Docs: Keep Out of the Flood Zone with DoS Protection

ENERGY

  1. Tech Docs: Keep Out of the Flood Zone with DoS Protection
  2. Experts analyzed how Iranian OilRIG hackers tested their weaponized documents
  3. 2019 Security Predictions – Utilities and Industrial Control Systems Targeted with Ransomware

GOVERNMENT & PUBLIC SERVICE

  1. ESET: Vietnamese hacking group hijacks Southeast Asian sites in watering hole campaign
  2. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit
  3. Infamous Russian Hacking Group Used New Trojan in Recent Attacks
  4. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  5. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  6. Russia’s Elite Hackers May Have New Phishing Tricks
  7. Government Agencies and Think Tanks attacked, APT29 suspected
  8. Hackers Linked to Russia Impersonate US Officials
  9. Russian APT activity is resurgent, researchers say
  10. Sofacy Continues Global Attacks and Wheels Out New ‘Cannon’ Trojan
  11. OceanLotus: New watering hole attack in Southeast Asia
  12. OceanLotus: New watering hole attack in Southeast Asia
  13. Kaspersky Security Bulletin: Threat Predictions for 2019
  14. Experts analyzed how Iranian OilRIG hackers tested their weaponized documents
  15. Google, Target Hit by Twitter Bitcoin Scam Account Hacks

Region brief for 2018-11-20

ASIA

  1. ESET: Vietnamese hacking group hijacks Southeast Asian sites in watering hole campaign
  2. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit
  3. Malvertising in Apple Pay Targets iPhone Users
  4. Kaspersky Security Bulletin: Threat Predictions for 2019
  5. Experts analyzed how Iranian OilRIG hackers tested their weaponized documents

OCEANIA

  1. Zscaler ThreatLabZ Phishing Roundup

NORTH AMERICA

  1. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  2. Russia’s Elite Hackers May Have New Phishing Tricks
  3. Web skimmers compete in Umbro Brasil hack
  4. Inspiring Gender Diversity at Women of the Channel Leadership Summit
  5. Hackers Linked to Russia Impersonate US Officials
  6. Russian hackers are trying out this new malware against US and European targets
  7. Russian hackers are trying out this new malware against US and European targets
  8. Russian APT activity is resurgent, researchers say
  9. Report: Emotet makes phishing lures more convincing by scraping victims' emails
  10. Sofacy Continues Global Attacks and Wheels Out New ‘Cannon’ Trojan
  11. Lazarus Continues Heists, Mounts Attacks on Financial Organizations in Latin America
  12. Zscaler ThreatLabZ Phishing Roundup
  13. Kaspersky Security Bulletin: Threat Predictions for 2019
  14. Experts analyzed how Iranian OilRIG hackers tested their weaponized documents
  15. Confiant spots major malvertising attack
  16. Google, Target Hit by Twitter Bitcoin Scam Account Hacks

SOUTH AMERICA

Nil

EUROPE

  1. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit
  2. Infamous Russian Hacking Group Used New Trojan in Recent Attacks
  3. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  4. Voxox leak: Millions of SMS messages exposed
  5. Russia’s Elite Hackers May Have New Phishing Tricks
  6. Government Agencies and Think Tanks attacked, APT29 suspected
  7. An Introduction to Magecart
  8. Hackers Linked to Russia Impersonate US Officials
  9. Two Young Men Jailed for Involvement in TalkTalk Data Breach
  10. Russian hackers are trying out this new malware against US and European targets
  11. TEMP.Periscope Spearphishing
  12. Russian hackers are trying out this new malware against US and European targets
  13. Russian APT activity is resurgent, researchers say
  14. Sofacy Continues Global Attacks and Wheels Out New ‘Cannon’ Trojan
  15. Dutch audit finds Microsoft Office leaks confidential data
  16. Kaspersky Security Bulletin: Threat Predictions for 2019
  17. Cozy Bear tracks: Phishing campaign looks like work of Russian APT group
  18. Two TalkTalk hackers jailed for 2015 data breach that cost it £77 million

AFRICA

Nil

Threat report for 2018-11-20

DATA BREACH & DATA LOSS

  1. ESET: Vietnamese hacking group hijacks Southeast Asian sites in watering hole campaign
  2. jQuery File Upload Disclosure Due Diligence
  3. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  4. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  5. Voxox leak: Millions of SMS messages exposed
  6. Second WordPress hacking campaign underway, this one targeting AMP for WP plugin
  7. Vision Direct Reveals Data Breach
  8. Instagram glitch exposed some user passwords
  9. OSIsoft Warns Employees, Contractors of Data Breach
  10. Two Young Men Jailed for Involvement in TalkTalk Data Breach
  11. tRat: New Modular RAT Appears in Multiple Email Campaigns
  12. Emotet Campaigns Persist, Utilize Updated Tactics and Techniques
  13. Mac users using Exodus cryptocurrency wallet targeted by a small spam campaign
  14. AWS moves to curb S3 data leaks, but Chris Vickery is doubtful
  15. TalkTalk hackers jailed for role in £77m data breach
  16. CarBlues – Bluetooth Vehicle Hack Exploit Affects Millions Of Vehicles Exposing Users PII
  17. 2018 holiday travel period expected to be the busiest travel season on record
  18. Vision Direct 'fesses up to hack that exposed customer names, payment cards
  19. Dutch audit finds Microsoft Office leaks confidential data
  20. Cozy Bear tracks: Phishing campaign looks like work of Russian APT group
  21. Instagram Patched A Data Download Tool Bug That Exposed Users Passwords
  22. Two TalkTalk hackers jailed for 2015 data breach that cost it £77 million

DENIAL-OF-SERVICE

  1. Tech Docs: Keep Out of the Flood Zone with DoS Protection

MALVERTISING

  1. ESET: Vietnamese hacking group hijacks Southeast Asian sites in watering hole campaign
  2. Malvertising in Apple Pay Targets iPhone Users
  3. OceanLotus: New watering hole attack in Southeast Asia
  4. OceanLotus: New watering hole attack in Southeast Asia
  5. Confiant spots major malvertising attack

PHISHING

  1. Gmail Glitch Enables Anonymous Messages in Phishing Attacks
  2. Emotet Returns with Thanksgiving Theme and Better Phishing Tricks
  3. Emotet Returns with Thanksgiving Theme and Better Phishing Tricks
  4. Russia’s Elite Hackers May Have New Phishing Tricks
  5. TEMP.Periscope Spearphishing
  6. Report: Emotet makes phishing lures more convincing by scraping victims' emails
  7. Zscaler ThreatLabZ Phishing Roundup
  8. A little phishing knowledge may be a dangerous thing
  9. Cozy Bear tracks: Phishing campaign looks like work of Russian APT group

WEB DEFACEMENT

Nil

BOTNET

  1. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit

RANSOMWARE

  1. Dharma Ransomware Variant Discovered
  2. For Smbs Ransomware Attacks still the Greatest Online Threat
  3. Targeted ransomware attacks on the rise in 2018, NCSC warns
  4. 2019 Security Predictions – Utilities and Industrial Control Systems Targeted with Ransomware

CRYPTOMINING & CRYPTOCURRENCIES

  1. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit
  2. Mac users using Exodus cryptocurrency wallet targeted by a small spam campaign
  3. Microsoft Releases Azure Blockchain Development Kit
  4. Google Account Hacked for Fake Bitcoin Reward
  5. Google, Target Hit by Twitter Bitcoin Scam Account Hacks

MALWARE

  1. Down But Not Out, WannaCry Malware Continues to Infect Unpatched Windows PCs
  2. Infamous Russian Hacking Group Used New Trojan in Recent Attacks
  3. 560,000 Duped Into Installing Android Malware in the Form of Fake Driving Games
  4. DirtyCOW Is Back In Backdoor Attack Targeting Drupal Web Servers
  5. Inserted Malicious URLs within Office Documents’ Embedded Videos
  6. Russian hackers are trying out this new malware against US and European targets
  7. Russian hackers are trying out this new malware against US and European targets
  8. Sofacy Continues Global Attacks and Wheels Out New ‘Cannon’ Trojan
  9. tRat: New Modular RAT Appears in Multiple Email Campaigns
  10. Scumbags cram Make-A-Wish website with coin-mining malware
  11. DirtyCOW is back in backdoor attack targeting Drupal Web Servers
  12. The wiper #malware that briefly disrupted the Winter #Olympics earlier this year appears to be back - now with a
  13. 13 Malicious Apps in Google Play With More than 560,000+ Installs

EXPLOIT

  1. Hackers Exploit Vulnerability in WP GDPR Compliance Plugin – Update Now
  2. CarBlues – Bluetooth Vehicle Hack Exploit Affects Millions Of Vehicles Exposing Users PII

VULNERABILITY

  1. Instagram bug exposes user passwords
  2. Critical Adobe Flash Bug Impacts Windows, macOS, Linux and Chrome OS
  3. Hackers target Drupal servers chaining several flaws, including Drupalgeddon2 and DirtyCOW
  4. Flash Player Type Confusion Critical Vulnerability, Another Reason Not to Use It
  5. Flash Player Update Patches Disclosed Code Execution Flaw
  6. Attackers Target Drupal Web Servers with Chained Vulnerabilities
  7. WordPress GDPR Plug-in Contains Privilege Escalation Flaw
  8. Hackers Exploit Vulnerability in WP GDPR Compliance Plugin – Update Now
  9. Almost 50 Percent of 2018 Vulnerabilities Can Be Exploited Remotely
  10. TP-Link fixes 2 Remote Code Execution flaws in TL-R600VPN SOHO Router and other issues
  11. Raft of flaws discovered in MiSafes child-monitoring devices
  12. Instagram Patched A Data Download Tool Bug That Exposed Users Passwords
  13. Can a D-Link router vulnerability threaten bank customers?
  14. 3 New Code Execution Flaws Discovered in Atlantis Word Processor
  15. Vulnerability Spotlight: Multiple remote code execution vulnerabilities in Atlantis Word Processor
  16. Apache OpenOffice 4.1.6 release: important bug fixes and security fixes
  17. Almost 50 Percent of 2018 Vulnerabilities Can Be Exploited Remotely
  18. #BluetoothDevices might be at risk after a new #Bluetooth vulnerability was found targeting #firmware or operating system software drivers. Learn

Platform report for 2018-11-20

WINDOWS

  1. Critical Adobe Flash Bug Impacts Windows, macOS, Linux and Chrome OS
  2. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit
  3. Flash Player Type Confusion Critical Vulnerability, Another Reason Not to Use It
  4. Down But Not Out, WannaCry Malware Continues to Infect Unpatched Windows PCs
  5. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  6. Malvertising in Apple Pay Targets iPhone Users
  7. Hackers Linked to Russia Impersonate US Officials
  8. Sofacy Continues Global Attacks and Wheels Out New ‘Cannon’ Trojan
  9. Lazarus Continues Heists, Mounts Attacks on Financial Organizations in Latin America
  10. Mac users using Exodus cryptocurrency wallet targeted by a small spam campaign
  11. Kaspersky Security Bulletin: Threat Predictions for 2019
  12. Experts analyzed how Iranian OilRIG hackers tested their weaponized documents
  13. Apache OpenOffice 4.1.6 release: important bug fixes and security fixes

LINUX

  1. Critical Adobe Flash Bug Impacts Windows, macOS, Linux and Chrome OS
  2. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit
  3. Hackers target Drupal servers chaining several flaws, including Drupalgeddon2 and DirtyCOW
  4. Flash Player Type Confusion Critical Vulnerability, Another Reason Not to Use It
  5. Malvertising in Apple Pay Targets iPhone Users
  6. Attackers Target Drupal Web Servers with Chained Vulnerabilities

UNIX

Nil

ANDROID

  1. 200K Outlaw Botnet Uses SSH Brute Forcing to Propagate, Monero Mining for Profit
  2. 560,000 Duped Into Installing Android Malware in the Form of Fake Driving Games
  3. Web skimmers compete in Umbro Brasil hack
  4. Malvertising in Apple Pay Targets iPhone Users
  5. Kaspersky Security Bulletin: Threat Predictions for 2019
  6. 13 Malicious Apps in Google Play With More than 560,000+ Installs

IOS

  1. Malvertising in Apple Pay Targets iPhone Users
  2. Kaspersky Security Bulletin: Threat Predictions for 2019

MACOS

  1. Critical Adobe Flash Bug Impacts Windows, macOS, Linux and Chrome OS
  2. Flash Player Type Confusion Critical Vulnerability, Another Reason Not to Use It
  3. Mac users using Exodus cryptocurrency wallet targeted by a small spam campaign

APT report for 2018-11-20

TRANSNATIONAL / UNKNOWN

  1. Magecart group hilariously sabotages competitor
  2. Web skimmers compete in Umbro Brasil hack
  3. An Introduction to Magecart
  4. Magecart Spies Payment Cards From Retailer Vision Direct

CHINA

  1. Inspiring Gender Diversity at Women of the Channel Leadership Summit
  2. TEMP.Periscope Spearphishing

INDIA

Nil

NORTH KOREA

  1. Lazarus Continues Heists, Mounts Attacks on Financial Organizations in Latin America

PAKISTAN

Nil

VIETNAM

  1. ESET: Vietnamese hacking group hijacks Southeast Asian sites in watering hole campaign

IRAN

  1. Experts analyzed how Iranian OilRIG hackers tested their weaponized documents

IRAQ

Nil

LEBANON

Nil

PALESTINE

Nil

SAUDI ARABIA

Nil

SYRIA

Nil

TURKEY

Nil

UNITED ARAB EMIRATES

Nil

YEMEN

Nil

RUSSIA

  1. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  2. APT29 Re-Emerges After 2 Years with Widespread Espionage Campaign
  3. Russia’s Elite Hackers May Have New Phishing Tricks
  4. Sednit: What’s going on with Zebrocy?
  5. Sednit: What’s going on with Zebrocy?
  6. Government Agencies and Think Tanks attacked, APT29 suspected
  7. Hackers Linked to Russia Impersonate US Officials
  8. Russian APT activity is resurgent, researchers say
  9. Sofacy Continues Global Attacks and Wheels Out New ‘Cannon’ Trojan
  10. Kaspersky Security Bulletin: Threat Predictions for 2019
  11. Cozy Bear tracks: Phishing campaign looks like work of Russian APT group

SERBIA

Nil

UKRAINE

Nil

Nov 20, 2018

APT report for 2018-11-19

TRANSNATIONAL / UNKNOWN

  1. VisionDirect Blindsided by Magecart in Data Breach
  2. A week in security (November 12 – 18)
  3. Collective Intelligence Podcast, Vitali Kremez on Magecart

CHINA

Nil

INDIA

Nil

NORTH KOREA

  1. New ShadowTalk update looks at: New nation-state threat actor uses advanced TTPs to target Pakistan Lazarus Group’s FASTCash malware

PAKISTAN

Nil

VIETNAM

Nil

IRAN

  1. Iran-Linked Hackers Use Just-in-Time Creation of Weaponized Attack Docs

IRAQ

Nil

LEBANON

Nil

PALESTINE

Nil

SAUDI ARABIA

Nil

SYRIA

Nil

TURKEY

Nil

UNITED ARAB EMIRATES

Nil

YEMEN

Nil

RUSSIA

  1. Not So Cozy: An Uncomfortable Examination of a Suspected APT29 Phishing Campaign
  2. Cybaze ZLab – Yoroi team analyzed malware used in recent attacks on US entities attributed to APT29
  3. Russian Cozy Bear APT 29 hackers may be impersonating State Department

SERBIA

Nil

UKRAINE

  1. Not So Cozy: An Uncomfortable Examination of a Suspected APT29 Phishing Campaign

Platform report for 2018-11-19

WINDOWS

  1. Not So Cozy: An Uncomfortable Examination of a Suspected APT29 Phishing Campaign
  2. DarkGate Malware Avoids Endpoint AV Detection
  3. Cybaze ZLab – Yoroi team analyzed malware used in recent attacks on US entities attributed to APT29
  4. Outlaw Group Distributes Botnet for Cryptocurrency-Mining, Scanning, and Brute-Force

LINUX

  1. Finds vulnerabilities in wordpress websites using WPSCAN
  2. Outlaw Group Distributes Botnet for Cryptocurrency-Mining, Scanning, and Brute-Force

UNIX

Nil

ANDROID

  1. Outlaw Group Distributes Botnet for Cryptocurrency-Mining, Scanning, and Brute-Force

IOS

  1. Tianfu Cup PWN hacking contest – White hat hackers earn $1 Million for Zero-Day exploits

MACOS

  1. Tianfu Cup PWN hacking contest – White hat hackers earn $1 Million for Zero-Day exploits

Threat report for 2018-11-19

DATA BREACH & DATA LOSS

  1. Not So Cozy: An Uncomfortable Examination of a Suspected APT29 Phishing Campaign
  2. Data Leak Incident Reported by Fortune 500 Metropolitan Life Insurance Company
  3. VisionDirect Blindsided by Magecart in Data Breach
  4. OSIsoft Breached, All Domain Accounts, Emails, and Passwords Assumed Compromised
  5. “Simplicity without Compromise” with Catalyst 9200 – Intent Based Networking Everywhere!
  6. EOS.IO Smart Contract Database Walkthrough
  7. Ford Eyes Use of Customers’ Personal Data to Boost Profits
  8. Vision Direct Admits To Breach With CVVs Compromised
  9. Instagram Bug, Now Fixed, Exposed User Passwords
  10. Business email compromise scam costs Pathé $21.5 million
  11. Database Misconfiguration Leaks 26 Million SMS Messages
  12. The Most Damaging Election Disinformation Campaign Came From Donald Trump, Not Russia
  13. SUNY Upstate Hospital announced a former employee inappropriately accessed more than 1,200 patient records.
  14. Subject: Invoice. The cause of 6 out of 10 of the most effective phishing campaigns in 2018
  15. Vision Direct reveals customer credit card leak, fake Google script may be to blame
  16. Most Important Consideration of Confidentiality,Integrity, Availability (CIA Triad) to Avoid Organization Data Breach
  17. New security feature to prevent Amazon S3 bucket misconfiguration and data leaks
  18. Instagram Privacy Tool Exposed Passwords
  19. Vision Direct Notifies Customers of Data Compromise
  20. Proofpoint #ThreatInsight research: #sLoad and #Ramnit pairing in sustained personalized campaigns against UK and Italy:
  21. Instagram Accidentally Exposed Some User Passwords
  22. Email campaign spreading new tRAT malware
  23. The promised integration with #HaveIBeenPwned is expanding in #FirefoxMonitor with new breach alerts when a user visits a recently compromised
  24. Instagram Critical Bug Leaked User’s Password Via its Data Download Tool
  25. After early speculation of #malicious intent, experts said an accidental misconfiguration caused the BGP route leak that sent traffic destined
  26. Firefox automatically alerts users when you access sites that have data breaches
  27. Instagram Accidentally Exposed Some Users' Passwords In Plaintext

DENIAL-OF-SERVICE

Nil

MALVERTISING

Nil

PHISHING

  1. Not So Cozy: An Uncomfortable Examination of a Suspected APT29 Phishing Campaign
  2. Top 5 ways to pick a secure password
  3. Top 5 ways to pick a secure password
  4. 2FA Login Failure in Office 365 and Azure
  5. Subject: Invoice. The cause of 6 out of 10 of the most effective phishing campaigns in 2018
  6. A little phishing knowledge may be a dangerous thing
  7. The more you say you know about phishing, the more vulnerable you are … Until you’re hoodwinked
  8. More than 50% forgot their password once at least one in the last month
  9. An espionage group used stolen #DigitalCertificates to sign Plead #malware and used a password stealer component that was used in
  10. How #privacy intersects with #CyberSecurity. “Criminals can craft better phishing emails to scam you when they know what you’re interested in.”
  11. Review: Specops Password Policy
  12. Instagram Critical Bug Leaked User’s Password Via its Data Download Tool
  13. Sai quali sono i modelli più utilizzati dagli utenti per creare le proprie #password? Qui ti suggeriamo alcune 'best practice'

WEB DEFACEMENT

Nil

BOTNET

  1. Outlaw Group Distributes Botnet for Cryptocurrency-Mining, Scanning, and Brute-Force
  2. How do you think the #Mylobot #botnet attack will affect the future of botnets?

RANSOMWARE

  1. Texas hospital becomes victim of Dharma ransomware
  2. A History of Ransomware Attacks: The Biggest and Worst Ransomware Attacks of All Time
  3. Wannacry Continues to be Dominant Ransomware

CRYPTOMINING & CRYPTOCURRENCIES

  1. EOS.IO Smart Contract Database Walkthrough
  2. Bitcoin Falls Below $5,000
  3. Cryptojacking Attack Targets Make-A-Wish Foundation Website
  4. WebCobra Installs Cryptominer On Victim's System
  5. Outlaw Group Distributes Botnet for Cryptocurrency-Mining, Scanning, and Brute-Force
  6. How can a @Trezor #cryptocurrency wallet fall victim to attack? Learn more with expert @lewisnic
  7. Turkish Police Arrested Cryptocurrency Hackers

MALWARE

  1. New Modular tRat Remote Access Trojan Surfaced During September
  2. OSIsoft Breached, All Domain Accounts, Emails, and Passwords Assumed Compromised
  3. Traps: Fighting Threats With Cloud-Based Malware Analysis
  4. U.S. warns countries not to 'manipulate the extradition process' for cybercriminals
  5. DarkGate Malware Avoids Endpoint AV Detection
  6. New ShadowTalk update looks at: New nation-state threat actor uses advanced TTPs to target Pakistan Lazarus Group’s FASTCash malware
  7. Cybaze ZLab – Yoroi team analyzed malware used in recent attacks on US entities attributed to APT29
  8. An espionage group used stolen #DigitalCertificates to sign Plead #malware and used a password stealer component that was used in
  9. Email campaign spreading new tRAT malware
  10. After early speculation of #malicious intent, experts said an accidental misconfiguration caused the BGP route leak that sent traffic destined
  11. Fun fact: The Morris Worm of 1988 did never spread to Finland, as the outbreak happened two weeks before we
  12. October 2018’s Most Wanted Malware: For The First Time, Remote Access Trojan Reaches Global Threat Index’s Top 10

EXPLOIT

Nil

VULNERABILITY

  1. Finds vulnerabilities in wordpress websites using WPSCAN
  2. TP-Link Patches Remote Code Execution Flaws in SOHO Router
  3. Tianfu Cup PWN hacking contest – White hat hackers earn $1 Million for Zero-Day exploits
  4. Instagram Flaw Exposes User Passwords
  5. Multiple Remote TP-Link TL-R600VPN Router Vulnerabilities Patched
  6. A bug in EA Origin client exposes gamers' data
  7. Vulnerabilities Dip 7%, but Researchers Are Cautious
  8. Instagram Bug, Now Fixed, Exposed User Passwords
  9. Vulnerability Spotlight: Multiple remote vulnerabilities in TP-Link TL-R600VPN
  10. SUNY Upstate Hospital announced a former employee inappropriately accessed more than 1,200 patient records.
  11. Instagram flaw exposes user passwords
  12. Hackers Earn $1 Million for Zero-Day Exploits at Chinese Competition
  13. Privilege escalation bug patched in Accelerated Mobile Pages WordPress plug-in
  14. How does a Bluetooth vulnerability enable validation attacks?
  15. How does site isolation defend against #Spectre vulnerabilities? Expert Michael Cobb of @thehairyITdog explains
  16. Helping researchers with IoT firmware vulnerability discovery
  17. Vulnerability Spotlight: Multiple remote vulnerabilities in TP-Link TL-R600VPN
  18. Instagram Critical Bug Leaked User’s Password Via its Data Download Tool

Region brief for 2018-11-19

ASIA

  1. U.S. warns countries not to 'manipulate the extradition process' for cybercriminals
  2. Tianfu Cup PWN hacking contest – White hat hackers earn $1 Million for Zero-Day exploits
  3. Business email compromise scam costs Pathé $21.5 million
  4. The Most Damaging Election Disinformation Campaign Came From Donald Trump, Not Russia
  5. Iran-Linked Hackers Use Just-in-Time Creation of Weaponized Attack Docs
  6. New ShadowTalk update looks at: New nation-state threat actor uses advanced TTPs to target Pakistan Lazarus Group’s FASTCash malware
  7. Hackers Earn $1 Million for Zero-Day Exploits at Chinese Competition
  8. Turkish Police Arrested Cryptocurrency Hackers
  9. After early speculation of #malicious intent, experts said an accidental misconfiguration caused the BGP route leak that sent traffic destined

OCEANIA

  1. 2FA Login Failure in Office 365 and Azure

NORTH AMERICA

  1. Not So Cozy: An Uncomfortable Examination of a Suspected APT29 Phishing Campaign
  2. Finds vulnerabilities in wordpress websites using WPSCAN
  3. Traps: Fighting Threats With Cloud-Based Malware Analysis
  4. U.S. warns countries not to 'manipulate the extradition process' for cybercriminals
  5. A week in security (November 12 – 18)
  6. Business email compromise scam costs Pathé $21.5 million
  7. The Most Damaging Election Disinformation Campaign Came From Donald Trump, Not Russia
  8. 2FA Login Failure in Office 365 and Azure
  9. Subject: Invoice. The cause of 6 out of 10 of the most effective phishing campaigns in 2018
  10. New ShadowTalk update looks at: New nation-state threat actor uses advanced TTPs to target Pakistan Lazarus Group’s FASTCash malware
  11. Cybaze ZLab – Yoroi team analyzed malware used in recent attacks on US entities attributed to APT29
  12. Outlaw Group Distributes Botnet for Cryptocurrency-Mining, Scanning, and Brute-Force
  13. Russian Cozy Bear APT 29 hackers may be impersonating State Department

SOUTH AMERICA

Nil

EUROPE

  1. Not So Cozy: An Uncomfortable Examination of a Suspected APT29 Phishing Campaign
  2. U.S. warns countries not to 'manipulate the extradition process' for cybercriminals
  3. Business email compromise scam costs Pathé $21.5 million
  4. The Most Damaging Election Disinformation Campaign Came From Donald Trump, Not Russia
  5. 2FA Login Failure in Office 365 and Azure
  6. DarkGate Malware Avoids Endpoint AV Detection
  7. WebCobra Installs Cryptominer On Victim's System
  8. Cybaze ZLab – Yoroi team analyzed malware used in recent attacks on US entities attributed to APT29
  9. Proofpoint #ThreatInsight research: #sLoad and #Ramnit pairing in sustained personalized campaigns against UK and Italy:
  10. Russian Cozy Bear APT 29 hackers may be impersonating State Department
  11. Email campaign spreading new tRAT malware
  12. After early speculation of #malicious intent, experts said an accidental misconfiguration caused the BGP route leak that sent traffic destined
  13. Fun fact: The Morris Worm of 1988 did never spread to Finland, as the outbreak happened two weeks before we

AFRICA

  1. The Most Damaging Election Disinformation Campaign Came From Donald Trump, Not Russia