Nov 24, 2018

APT report for 2018-11-23

TRANSNATIONAL / UNKNOWN

  1. Criminal turf war may be brewing after Magecart double whammy
  2. Synthetic identity fraud to drive $48 billion in annual losses by 2023 – Juniper Research
  3. The team discuss continuing activity by the Magecart group, as well as the ways in which #cybercriminals are gearing up

CHINA

  1. US Says China Increased Hacking over Trade Dispute

INDIA

Nil

NORTH KOREA

  1. North Korean Hackers Hit Latin American Banks

PAKISTAN

Nil

VIETNAM

Nil

IRAN

Nil

IRAQ

Nil

LEBANON

Nil

PALESTINE

Nil

SAUDI ARABIA

Nil

SYRIA

Nil

TURKEY

Nil

UNITED ARAB EMIRATES

Nil

YEMEN

Nil

RUSSIA

  1. Week in security with Tony Anscombe
  2. Phishing Used to Launch GreyEnergy's ICS Attacks
  3. Exclusive Cybaze ZLab – Yoroi – Hunting Cozy Bear, new campaign, old habits

SERBIA

Nil

UKRAINE

Nil

Platform report for 2018-11-23

WINDOWS

  1. NUI Galway’s Problem: Misplaced USB Flash Drive Containing Unencrypted Student Records
  2. New Emotet Thanksgiving campaign differs from previous ones

LINUX

  1. New Crypto-Miner Attacks Linux Machines, Kills Other Miners and Anti-Malware
  2. DoS Vulnerabilities Found in Linux Kernel, Unpatched
  3. Malware scum want to build a Linux botnet using Mirai
  4. New Linux crypto-miner steals your root password and disables your antivirus
  5. New Crypto Malware Spreading that Infects Linux Machines & Removes Anti-Virus

UNIX

Nil

ANDROID

  1. Over 500k Play Store users have installed 13 games that contain malware

IOS

Nil

MACOS

  1. VMware fixed Workstation flaw disclosed at the Tianfu Cup PWN competition

Threat report for 2018-11-23

DATA BREACH & DATA LOSS

  1. NUI Galway’s Problem: Misplaced USB Flash Drive Containing Unencrypted Student Records
  2. Data breach in OSIsoft
  3. Brazil's largest professional association suffers massive data leak
  4. Amazon Snafu Exposed Customers' Names and Email Addresses
  5. “Back in Black” – Article 13 has YouTube threatening to pull the plug over upload filter
  6. New Emotet Thanksgiving campaign differs from previous ones
  7. US Postal Service Website Left Data Exposed for Over a Year
  8. .@Amazon unveils new settings to help users avoid S3 data leaks, but UpGuard's Chris Vickery, who uncovered most #AWS exposures,
  9. Exclusive Cybaze ZLab – Yoroi – Hunting Cozy Bear, new campaign, old habits
  10. A #phishing campaign was recently found to be hijacking the traffic of @Trezor user #cryptocurrency wallets. Learn how such an
  11. Software company OSIsoft has suffered a data breach
  12. SAVE 50% FOR BLACK FRIDAY! Get half off FREEDOME VPN and TOTAL with coupon code BLACKFRIDAY.
  13. DNS Shell – Tool to Compromise and Maintain Control Over Victim Machine
  14. @FSecure fait son #BlackFriday ! Profitez de 50% de remise sur une sélection de produits !
  15. 60 million users’ data were exposed by the US Postal Service

DENIAL-OF-SERVICE

  1. Why e-commerce needs DDoS protection for Cyber Monday

MALVERTISING

Nil

PHISHING

  1. 8 tips for avoiding phishing, malware, scams, and hacks while holiday shopping online
  2. New Linux crypto-miner steals your root password and disables your antivirus
  3. Attackers Are Landing Email Inboxes Without the Need to Phish
  4. Do you know the top myths and facts of #mobile #phishing? If not, don't worry, we've compiled a list of
  5. Phishing Used to Launch GreyEnergy's ICS Attacks
  6. Southwest Washington Regional Surgery Center suffered a Phishing attack
  7. A #phishing campaign was recently found to be hijacking the traffic of @Trezor user #cryptocurrency wallets. Learn how such an

WEB DEFACEMENT

Nil

BOTNET

  1. Malware scum want to build a Linux botnet using Mirai
  2. Deep Instinct recently blogged about a new #botnet -- dubbed #Mylobot -- that has shown new, complex tools and techniques.

RANSOMWARE

  1. SMBs suffered the brunt of ransomware attacks in 2018
  2. The number of ransomware attacks on individuals has come down as it has become harder to get them to pay,

CRYPTOMINING & CRYPTOCURRENCIES

  1. Cryptocurrency ‘minting’ flaw could have leached money from exchanges
  2. A #phishing campaign was recently found to be hijacking the traffic of @Trezor user #cryptocurrency wallets. Learn how such an

MALWARE

  1. 8 tips for avoiding phishing, malware, scams, and hacks while holiday shopping online
  2. New Crypto-Miner Attacks Linux Machines, Kills Other Miners and Anti-Malware
  3. Malware scum want to build a Linux botnet using Mirai
  4. Ukrainian police arrest hacker who infected over 2,000 users with DarkComet RAT
  5. Black Friday special by Emotet: Filling inboxes with infected XML macros
  6. Black Friday special by Emotet: Filling inboxes with infected XML macros
  7. Ukrainian police arrest hacker who infected over 2,000 users with DarkComet RAT
  8. VMware patches guest-to-host malware vulnerability
  9. #WebCache poisoning poses a serious threat to #BrowserSecurity. Learn how #hackers can use unkeyed inputs for malicious intent from expert
  10. Best way to Remove Malware on Mac, Including Other Unwanted Apps
  11. New Crypto Malware Spreading that Infects Linux Machines & Removes Anti-Virus
  12. Over 500k Play Store users have installed 13 games that contain malware

EXPLOIT

Nil

VULNERABILITY

  1. DoS Vulnerabilities Found in Linux Kernel, Unpatched
  2. Apache Hadoop spins cracking code injection vulnerability YARN
  3. German e-government SDK patched against ID spoofing vulnerability
  4. US Postal Service Plugs API Flaw - One Year Later
  5. VMware fixed Workstation flaw disclosed at the Tianfu Cup PWN competition
  6. Adobe Flash Player Remote Code Execution Vulnerability Threat Alert
  7. Old Printer Vulnerabilities Die Hard
  8. VMware Patches Workstation Flaw Disclosed at Hacking Contest
  9. Cryptocurrency ‘minting’ flaw could have leached money from exchanges
  10. USPS Bug affects 60 Million Users, Finally Fixed.
  11. German eID vulnerability allows hackers to change identities
  12. VMware patches guest-to-host malware vulnerability
  13. Internet connected devices might be the hot item for Christmas this year, but are they secure?
  14. Hacker says USPS ignored serious security flaw for over a year
  15. CVE-2018-6983: integer overflow vulnerability in VMware Workstation and Fusion

Region brief for 2018-11-23

ASIA

  1. US Says China Increased Hacking over Trade Dispute
  2. North Korean Hackers Hit Latin American Banks
  3. VMware fixed Workstation flaw disclosed at the Tianfu Cup PWN competition
  4. Adobe Flash Player Remote Code Execution Vulnerability Threat Alert
  5. VMware Patches Workstation Flaw Disclosed at Hacking Contest

OCEANIA

Nil

NORTH AMERICA

  1. Data breach in OSIsoft
  2. US Postal Service Plugs API Flaw - One Year Later
  3. US Says China Increased Hacking over Trade Dispute
  4. North Korean Hackers Hit Latin American Banks
  5. VMware fixed Workstation flaw disclosed at the Tianfu Cup PWN competition
  6. New Emotet Thanksgiving campaign differs from previous ones
  7. US Postal Service Website Left Data Exposed for Over a Year
  8. Hacker says USPS ignored serious security flaw for over a year
  9. Synthetic identity fraud to drive $48 billion in annual losses by 2023 – Juniper Research
  10. Exclusive Cybaze ZLab – Yoroi – Hunting Cozy Bear, new campaign, old habits
  11. Southwest Washington Regional Surgery Center suffered a Phishing attack
  12. 60 million users’ data were exposed by the US Postal Service
  13. The team discuss continuing activity by the Magecart group, as well as the ways in which #cybercriminals are gearing up

SOUTH AMERICA

  1. Brazil's largest professional association suffers massive data leak

EUROPE

  1. NUI Galway’s Problem: Misplaced USB Flash Drive Containing Unencrypted Student Records
  2. New Crypto-Miner Attacks Linux Machines, Kills Other Miners and Anti-Malware
  3. German e-government SDK patched against ID spoofing vulnerability
  4. Phishing Used to Launch GreyEnergy's ICS Attacks
  5. Ukrainian police arrest hacker who infected over 2,000 users with DarkComet RAT
  6. Ukrainian police arrest hacker who infected over 2,000 users with DarkComet RAT
  7. German eID vulnerability allows hackers to change identities
  8. Exclusive Cybaze ZLab – Yoroi – Hunting Cozy Bear, new campaign, old habits

AFRICA

Nil

Sector brief for 2018-11-23

HEALTHCARE

  1. US Says China Increased Hacking over Trade Dispute
  2. Southwest Washington Regional Surgery Center suffered a Phishing attack

TRANSPORT

  1. US Says China Increased Hacking over Trade Dispute

BANKING & FINANCE

  1. North Korean Hackers Hit Latin American Banks
  2. New Emotet Thanksgiving campaign differs from previous ones
  3. Synthetic identity fraud to drive $48 billion in annual losses by 2023 – Juniper Research

INFORMATION & TELECOMMUNICATION

  1. New Crypto-Miner Attacks Linux Machines, Kills Other Miners and Anti-Malware
  2. Do you know the top myths and facts of #mobile #phishing? If not, don't worry, we've compiled a list of
  3. “Back in Black” – Article 13 has YouTube threatening to pull the plug over upload filter
  4. Internet connected devices might be the hot item for Christmas this year, but are they secure?
  5. SAVE 50% FOR BLACK FRIDAY! Get half off FREEDOME VPN and TOTAL with coupon code BLACKFRIDAY.
  6. The number of ransomware attacks on individuals has come down as it has become harder to get them to pay,
  7. Over 500k Play Store users have installed 13 games that contain malware

FOOD

Nil

WATER

Nil

ENERGY

  1. US Says China Increased Hacking over Trade Dispute

GOVERNMENT & PUBLIC SERVICE

  1. German e-government SDK patched against ID spoofing vulnerability
  2. US Says China Increased Hacking over Trade Dispute
  3. Ukrainian police arrest hacker who infected over 2,000 users with DarkComet RAT
  4. Ukrainian police arrest hacker who infected over 2,000 users with DarkComet RAT
  5. US Postal Service Website Left Data Exposed for Over a Year
  6. Exclusive Cybaze ZLab – Yoroi – Hunting Cozy Bear, new campaign, old habits
  7. 60 million users’ data were exposed by the US Postal Service

Daily brief for 2018-11-23

ASIA

  1. US Says China Increased Hacking over Trade Dispute
  2. North Korean Hackers Hit Latin American Banks
  3. VMware fixed Workstation flaw disclosed at the Tianfu Cup PWN competition
  4. Adobe Flash Player Remote Code Execution Vulnerability Threat Alert
  5. VMware Patches Workstation Flaw Disclosed at Hacking Contest

WORLD

  1. NUI Galway’s Problem: Misplaced USB Flash Drive Containing Unencrypted Student Records
  2. Data breach in OSIsoft
  3. New Crypto-Miner Attacks Linux Machines, Kills Other Miners and Anti-Malware
  4. Brazil's largest professional association suffers massive data leak
  5. German e-government SDK patched against ID spoofing vulnerability
  6. US Postal Service Plugs API Flaw - One Year Later
  7. US Says China Increased Hacking over Trade Dispute
  8. North Korean Hackers Hit Latin American Banks
  9. VMware fixed Workstation flaw disclosed at the Tianfu Cup PWN competition
  10. Phishing Used to Launch GreyEnergy's ICS Attacks
  11. New Emotet Thanksgiving campaign differs from previous ones
  12. Ukrainian police arrest hacker who infected over 2,000 users with DarkComet RAT
  13. Ukrainian police arrest hacker who infected over 2,000 users with DarkComet RAT
  14. US Postal Service Website Left Data Exposed for Over a Year
  15. German eID vulnerability allows hackers to change identities
  16. Hacker says USPS ignored serious security flaw for over a year
  17. Synthetic identity fraud to drive $48 billion in annual losses by 2023 – Juniper Research
  18. Exclusive Cybaze ZLab – Yoroi – Hunting Cozy Bear, new campaign, old habits
  19. Southwest Washington Regional Surgery Center suffered a Phishing attack
  20. 60 million users’ data were exposed by the US Postal Service
  21. The team discuss continuing activity by the Magecart group, as well as the ways in which #cybercriminals are gearing up

ATTACKS

  1. NUI Galway’s Problem: Misplaced USB Flash Drive Containing Unencrypted Student Records
  2. Data breach in OSIsoft
  3. 8 tips for avoiding phishing, malware, scams, and hacks while holiday shopping online
  4. Brazil's largest professional association suffers massive data leak
  5. Amazon Snafu Exposed Customers' Names and Email Addresses
  6. New Linux crypto-miner steals your root password and disables your antivirus
  7. Attackers Are Landing Email Inboxes Without the Need to Phish
  8. Do you know the top myths and facts of #mobile #phishing? If not, don't worry, we've compiled a list of
  9. “Back in Black” – Article 13 has YouTube threatening to pull the plug over upload filter
  10. Phishing Used to Launch GreyEnergy's ICS Attacks
  11. New Emotet Thanksgiving campaign differs from previous ones
  12. US Postal Service Website Left Data Exposed for Over a Year
  13. .@Amazon unveils new settings to help users avoid S3 data leaks, but UpGuard's Chris Vickery, who uncovered most #AWS exposures,
  14. Exclusive Cybaze ZLab – Yoroi – Hunting Cozy Bear, new campaign, old habits
  15. Southwest Washington Regional Surgery Center suffered a Phishing attack
  16. A #phishing campaign was recently found to be hijacking the traffic of @Trezor user #cryptocurrency wallets. Learn how such an
  17. Software company OSIsoft has suffered a data breach
  18. SAVE 50% FOR BLACK FRIDAY! Get half off FREEDOME VPN and TOTAL with coupon code BLACKFRIDAY.
  19. DNS Shell – Tool to Compromise and Maintain Control Over Victim Machine
  20. @FSecure fait son #BlackFriday ! Profitez de 50% de remise sur une sélection de produits !
  21. 60 million users’ data were exposed by the US Postal Service

THREATS

  1. 8 tips for avoiding phishing, malware, scams, and hacks while holiday shopping online
  2. New Crypto-Miner Attacks Linux Machines, Kills Other Miners and Anti-Malware
  3. DoS Vulnerabilities Found in Linux Kernel, Unpatched
  4. Apache Hadoop spins cracking code injection vulnerability YARN
  5. German e-government SDK patched against ID spoofing vulnerability
  6. Malware scum want to build a Linux botnet using Mirai
  7. US Postal Service Plugs API Flaw - One Year Later
  8. VMware fixed Workstation flaw disclosed at the Tianfu Cup PWN competition
  9. Adobe Flash Player Remote Code Execution Vulnerability Threat Alert
  10. Old Printer Vulnerabilities Die Hard
  11. VMware Patches Workstation Flaw Disclosed at Hacking Contest
  12. Ukrainian police arrest hacker who infected over 2,000 users with DarkComet RAT
  13. Black Friday special by Emotet: Filling inboxes with infected XML macros
  14. Black Friday special by Emotet: Filling inboxes with infected XML macros
  15. Cryptocurrency ‘minting’ flaw could have leached money from exchanges
  16. Ukrainian police arrest hacker who infected over 2,000 users with DarkComet RAT
  17. USPS Bug affects 60 Million Users, Finally Fixed.
  18. German eID vulnerability allows hackers to change identities
  19. VMware patches guest-to-host malware vulnerability
  20. Internet connected devices might be the hot item for Christmas this year, but are they secure?
  21. Hacker says USPS ignored serious security flaw for over a year
  22. #WebCache poisoning poses a serious threat to #BrowserSecurity. Learn how #hackers can use unkeyed inputs for malicious intent from expert
  23. SMBs suffered the brunt of ransomware attacks in 2018
  24. Best way to Remove Malware on Mac, Including Other Unwanted Apps
  25. A #phishing campaign was recently found to be hijacking the traffic of @Trezor user #cryptocurrency wallets. Learn how such an
  26. CVE-2018-6983: integer overflow vulnerability in VMware Workstation and Fusion
  27. The number of ransomware attacks on individuals has come down as it has become harder to get them to pay,
  28. New Crypto Malware Spreading that Infects Linux Machines & Removes Anti-Virus
  29. Over 500k Play Store users have installed 13 games that contain malware

CRIME

  1. Data breach in OSIsoft
  2. US Says China Increased Hacking over Trade Dispute
  3. Synthetic identity fraud to drive $48 billion in annual losses by 2023 – Juniper Research
  4. Software company OSIsoft has suffered a data breach
  5. The team discuss continuing activity by the Magecart group, as well as the ways in which #cybercriminals are gearing up

POLITICS

  1. NUI Galway’s Problem: Misplaced USB Flash Drive Containing Unencrypted Student Records
  2. US Says China Increased Hacking over Trade Dispute
  3. Synthetic identity fraud to drive $48 billion in annual losses by 2023 – Juniper Research
  4. Exclusive Cybaze ZLab – Yoroi – Hunting Cozy Bear, new campaign, old habits

Nov 23, 2018

APT report for 2018-11-22

TRANSNATIONAL / UNKNOWN

  1. #Irisscon: Stop Siloing Vulnerability Management to Deal with Old Bugs
  2. Podcast: Breaking Down the Magecart Threat (Part One)

CHINA

Nil

INDIA

Nil

NORTH KOREA

  1. VB2018 paper: Since the hacking of Sony Pictures

PAKISTAN

Nil

VIETNAM

Nil

IRAN

Nil

IRAQ

Nil

LEBANON

Nil

PALESTINE

Nil

SAUDI ARABIA

Nil

SYRIA

Nil

TURKEY

Nil

UNITED ARAB EMIRATES

Nil

YEMEN

Nil

RUSSIA

Nil

SERBIA

Nil

UKRAINE

Nil

Platform report for 2018-11-22

WINDOWS

  1. Google’s Practical Action Against Malware and Its Authors
  2. [SingCERT] Alert on Adobe Flash Player Vulnerability (CVE-2018-15981)
  3. Update now! Adobe Flash has another critical security vulnerability

LINUX

  1. Mirai DDoS baddies take enterprise Linux servers over consumer routers
  2. [SingCERT] Alert on Adobe Flash Player Vulnerability (CVE-2018-15981)
  3. SSL vulnerability scanner – MassBleed
  4. Update now! Adobe Flash has another critical security vulnerability
  5. Experts found first Mirai bot targeting Linux servers via Hadoop YARN flaw

UNIX

Nil

ANDROID

  1. Google’s Practical Action Against Malware and Its Authors
  2. #DidYouKnow A single subscription of AVG Internet Security covers every PC in your family? It also includes webcam and ransomware protection,
  3. The Rotexy mobile Trojan – banker and ransomware

IOS

  1. Google’s Practical Action Against Malware and Its Authors

MACOS

  1. [SingCERT] Alert on Adobe Flash Player Vulnerability (CVE-2018-15981)
  2. A bypass was found by @okta researchers that allows #macOS #malware to pose as @Apple files despite needing to be
  3. Researchers recently discovered a new #MacOS #malware that targets #cryptocurrency investors through chat platforms. Discover how this is possible and

Threat report for 2018-11-22

DATA BREACH & DATA LOSS

  1. Almost 9,5 Million PII Records Leaked by Data Aggregator Adapt
  2. China Boosted Technology and Intellectual Property Theft Operations Says USTR
  3. USPS reportedly fixes website bug that exposed data of 60M users
  4. Facebook 'walking dangerous line' as it appeals record fine
  5. USPS finally fixes website flaw that exposed 60 million users' data
  6. Furry erotica site 'High Tail Hall' exposed data of nearly 500K users
  7. The July edition of Beazley Breach Insights found that business email compromise attacks have been rising steadily. Is business email
  8. US Postal Service website vulnerability leaked 60 million user data
  9. Amazon technical failure caused to leaks users’ email addresses
  10. US Postal Service Left 60 Million Users Data Exposed For Over a Year
  11. Amazon Suffered Data Breach – Customers Name & Email Addresses Exposed
  12. Data breaches in schools: How should an academic institution report a security incident to comply with the GDPR?
  13. 500K Italian Public Administration Email Accounts Compromised By Targeted Attack
  14. New @awscloud settings will allow users to batch change permissions with the aim of avoiding accidental S3 data leaks, but

DENIAL-OF-SERVICE

  1. Mirai DDoS baddies take enterprise Linux servers over consumer routers
  2. Emoji Kitten Denial Of Service Attack Continues to Haunt Skype

MALVERTISING

Nil

PHISHING

  1. LastPass login problems caused by cascading server failure
  2. Come evitare che le tue #password diventino la chiave di accesso ai tuoi account
  3. PSA: Phishing Levels Rise Ahead of Black Friday and Cyber Monday
  4. Phishing Attack Compromises Health First Patients’ Data

WEB DEFACEMENT

Nil

BOTNET

Nil

RANSOMWARE

  1. #DidYouKnow A single subscription of AVG Internet Security covers every PC in your family? It also includes webcam and ransomware protection,
  2. Aurora / Zorro Ransomware Actively Being Distributed
  3. How does @TalosSecurity's discovery change the way you or your enterprise views #ransomware?
  4. The Rotexy mobile Trojan – banker and ransomware

CRYPTOMINING & CRYPTOCURRENCIES

  1. Silicon Valley Hacker Swipes Millions Worth of Cryptocurrency Using SIM Swapping
  2. SIM swap! Man charged after million dollar cryptocurrency theft
  3. SIM swap! Man charged after million dollar cryptocurrency theft
  4. Researchers recently discovered a new #MacOS #malware that targets #cryptocurrency investors through chat platforms. Discover how this is possible and
  5. North Korea To Host Cryptocurrency and Blockchain Conference

MALWARE

  1. Google’s Practical Action Against Malware and Its Authors
  2. Rotexy Mobile Trojan Launches 70k+ Attacks in Three Months
  3. Found this picture of myself doing an internal briefing on the Nimda worm in 2001. Note the size of the
  4. A bypass was found by @okta researchers that allows #macOS #malware to pose as @Apple files despite needing to be
  5. The Rotexy mobile Trojan – banker and ransomware
  6. Researchers recently discovered a new #MacOS #malware that targets #cryptocurrency investors through chat platforms. Discover how this is possible and
  7. Research reveals that 44% of industrial facilities have USB malware risks
  8. Do you believe that the application #security vetting process would benefit from the addition of an entropy source?
  9. Emotet malware runs on a dual infrastructure to avoid downtime and takedowns
  10. Hacking Syndicate TA505 Back with Focus on Info-Stealing Trojan

EXPLOIT

  1. How Dropbox's red team discovered an Apple zero-day exploit chain by accident
  2. How was a black box attack used to exploit ATM vulnerabilities?

VULNERABILITY

  1. USPS reportedly fixes website bug that exposed data of 60M users
  2. [SingCERT] Alert on Adobe Flash Player Vulnerability (CVE-2018-15981)
  3. #Irisscon: Stop Siloing Vulnerability Management to Deal with Old Bugs
  4. .@radware #cybersecurity researchers found hackers to be targeting bank users via a #router vulnerability. Learn how a fake banking site
  5. Cross-site search attack applied to snoop on Google’s bug tracker
  6. Facebook And Instagram Went Down Due To A Server Bug
  7. SSL vulnerability scanner – MassBleed
  8. Flaw allowing identity spoofing affects authentication based on German eID cards
  9. USPS finally fixes website flaw that exposed 60 million users' data
  10. Update now! Adobe Flash has another critical security vulnerability
  11. How Dropbox's red team discovered an Apple zero-day exploit chain by accident
  12. How was a black box attack used to exploit ATM vulnerabilities?
  13. CyberSecurity Asean security alert on Multiple Vulnerabilities in VMware vSphere Data Protection Could Allow for Remote Code Execution
  14. Experts found first Mirai bot targeting Linux servers via Hadoop YARN flaw
  15. VMware Releases Critical Security Updates for Multiple Vulnerabilities
  16. US Postal Service website vulnerability leaked 60 million user data
  17. Facebook Increases Average Bounty rewards for High Impact Vulnerabilities
  18. Facebook raises rewards for a security vulnerabilities to $40,000

Region brief for 2018-11-22

ASIA

  1. China Boosted Technology and Intellectual Property Theft Operations Says USTR
  2. The Rotexy mobile Trojan – banker and ransomware
  3. North Korea To Host Cryptocurrency and Blockchain Conference

OCEANIA

Nil

NORTH AMERICA

  1. China Boosted Technology and Intellectual Property Theft Operations Says USTR
  2. USPS finally fixes website flaw that exposed 60 million users' data
  3. Research reveals that 44% of industrial facilities have USB malware risks
  4. North Korea To Host Cryptocurrency and Blockchain Conference
  5. US Postal Service website vulnerability leaked 60 million user data
  6. Amazon technical failure caused to leaks users’ email addresses
  7. US Postal Service Left 60 Million Users Data Exposed For Over a Year

SOUTH AMERICA

Nil

EUROPE

  1. Flaw allowing identity spoofing affects authentication based on German eID cards
  2. The Rotexy mobile Trojan – banker and ransomware
  3. North Korea To Host Cryptocurrency and Blockchain Conference
  4. 500K Italian Public Administration Email Accounts Compromised By Targeted Attack

AFRICA

Nil

Sector brief for 2018-11-22

HEALTHCARE

  1. Phishing Attack Compromises Health First Patients’ Data
  2. Data breaches in schools: How should an academic institution report a security incident to comply with the GDPR?

TRANSPORT

Nil

BANKING & FINANCE

  1. Rotexy Mobile Trojan Launches 70k+ Attacks in Three Months
  2. .@radware #cybersecurity researchers found hackers to be targeting bank users via a #router vulnerability. Learn how a fake banking site
  3. VB2018 paper: Since the hacking of Sony Pictures
  4. The Rotexy mobile Trojan – banker and ransomware
  5. How was a black box attack used to exploit ATM vulnerabilities?
  6. Hacking Syndicate TA505 Back with Focus on Info-Stealing Trojan
  7. Facebook raises rewards for a security vulnerabilities to $40,000
  8. Data breaches in schools: How should an academic institution report a security incident to comply with the GDPR?

INFORMATION & TELECOMMUNICATION

  1. Facebook And Instagram Went Down Due To A Server Bug
  2. #DidYouKnow A single subscription of AVG Internet Security covers every PC in your family? It also includes webcam and ransomware protection,
  3. Facebook 'walking dangerous line' as it appeals record fine
  4. Emoji Kitten Denial Of Service Attack Continues to Haunt Skype
  5. Found this picture of myself doing an internal briefing on the Nimda worm in 2001. Note the size of the
  6. North Korea To Host Cryptocurrency and Blockchain Conference
  7. Amazon technical failure caused to leaks users’ email addresses
  8. Facebook Increases Average Bounty rewards for High Impact Vulnerabilities
  9. Facebook raises rewards for a security vulnerabilities to $40,000

FOOD

Nil

WATER

Nil

ENERGY

Nil

GOVERNMENT & PUBLIC SERVICE

  1. Flaw allowing identity spoofing affects authentication based on German eID cards
  2. CyberSecurity Asean security alert on Multiple Vulnerabilities in VMware vSphere Data Protection Could Allow for Remote Code Execution
  3. North Korea To Host Cryptocurrency and Blockchain Conference
  4. US Postal Service Left 60 Million Users Data Exposed For Over a Year

Daily brief for 2018-11-22

ASIA

  1. China Boosted Technology and Intellectual Property Theft Operations Says USTR
  2. The Rotexy mobile Trojan – banker and ransomware
  3. North Korea To Host Cryptocurrency and Blockchain Conference

WORLD

  1. China Boosted Technology and Intellectual Property Theft Operations Says USTR
  2. Flaw allowing identity spoofing affects authentication based on German eID cards
  3. USPS finally fixes website flaw that exposed 60 million users' data
  4. The Rotexy mobile Trojan – banker and ransomware
  5. Research reveals that 44% of industrial facilities have USB malware risks
  6. North Korea To Host Cryptocurrency and Blockchain Conference
  7. US Postal Service website vulnerability leaked 60 million user data
  8. Amazon technical failure caused to leaks users’ email addresses
  9. US Postal Service Left 60 Million Users Data Exposed For Over a Year
  10. 500K Italian Public Administration Email Accounts Compromised By Targeted Attack

ATTACKS

  1. Almost 9,5 Million PII Records Leaked by Data Aggregator Adapt
  2. China Boosted Technology and Intellectual Property Theft Operations Says USTR
  3. USPS reportedly fixes website bug that exposed data of 60M users
  4. Facebook 'walking dangerous line' as it appeals record fine
  5. USPS finally fixes website flaw that exposed 60 million users' data
  6. LastPass login problems caused by cascading server failure
  7. Furry erotica site 'High Tail Hall' exposed data of nearly 500K users
  8. The July edition of Beazley Breach Insights found that business email compromise attacks have been rising steadily. Is business email
  9. Come evitare che le tue #password diventino la chiave di accesso ai tuoi account
  10. PSA: Phishing Levels Rise Ahead of Black Friday and Cyber Monday
  11. Phishing Attack Compromises Health First Patients’ Data
  12. US Postal Service website vulnerability leaked 60 million user data
  13. Amazon technical failure caused to leaks users’ email addresses
  14. US Postal Service Left 60 Million Users Data Exposed For Over a Year
  15. Amazon Suffered Data Breach – Customers Name & Email Addresses Exposed
  16. Data breaches in schools: How should an academic institution report a security incident to comply with the GDPR?
  17. 500K Italian Public Administration Email Accounts Compromised By Targeted Attack
  18. New @awscloud settings will allow users to batch change permissions with the aim of avoiding accidental S3 data leaks, but

THREATS

  1. Silicon Valley Hacker Swipes Millions Worth of Cryptocurrency Using SIM Swapping
  2. Google’s Practical Action Against Malware and Its Authors
  3. USPS reportedly fixes website bug that exposed data of 60M users
  4. [SingCERT] Alert on Adobe Flash Player Vulnerability (CVE-2018-15981)
  5. #Irisscon: Stop Siloing Vulnerability Management to Deal with Old Bugs
  6. Rotexy Mobile Trojan Launches 70k+ Attacks in Three Months
  7. .@radware #cybersecurity researchers found hackers to be targeting bank users via a #router vulnerability. Learn how a fake banking site
  8. Cross-site search attack applied to snoop on Google’s bug tracker
  9. Facebook And Instagram Went Down Due To A Server Bug
  10. SIM swap! Man charged after million dollar cryptocurrency theft
  11. SIM swap! Man charged after million dollar cryptocurrency theft
  12. #DidYouKnow A single subscription of AVG Internet Security covers every PC in your family? It also includes webcam and ransomware protection,
  13. SSL vulnerability scanner – MassBleed
  14. Aurora / Zorro Ransomware Actively Being Distributed
  15. How does @TalosSecurity's discovery change the way you or your enterprise views #ransomware?
  16. Flaw allowing identity spoofing affects authentication based on German eID cards
  17. USPS finally fixes website flaw that exposed 60 million users' data
  18. Update now! Adobe Flash has another critical security vulnerability
  19. How Dropbox's red team discovered an Apple zero-day exploit chain by accident
  20. Found this picture of myself doing an internal briefing on the Nimda worm in 2001. Note the size of the
  21. A bypass was found by @okta researchers that allows #macOS #malware to pose as @Apple files despite needing to be
  22. The Rotexy mobile Trojan – banker and ransomware
  23. Researchers recently discovered a new #MacOS #malware that targets #cryptocurrency investors through chat platforms. Discover how this is possible and
  24. How was a black box attack used to exploit ATM vulnerabilities?
  25. Research reveals that 44% of industrial facilities have USB malware risks
  26. CyberSecurity Asean security alert on Multiple Vulnerabilities in VMware vSphere Data Protection Could Allow for Remote Code Execution
  27. Do you believe that the application #security vetting process would benefit from the addition of an entropy source?
  28. Experts found first Mirai bot targeting Linux servers via Hadoop YARN flaw
  29. VMware Releases Critical Security Updates for Multiple Vulnerabilities
  30. Emotet malware runs on a dual infrastructure to avoid downtime and takedowns
  31. North Korea To Host Cryptocurrency and Blockchain Conference
  32. Hacking Syndicate TA505 Back with Focus on Info-Stealing Trojan
  33. US Postal Service website vulnerability leaked 60 million user data
  34. Facebook Increases Average Bounty rewards for High Impact Vulnerabilities
  35. Facebook raises rewards for a security vulnerabilities to $40,000

CRIME

  1. Silicon Valley Hacker Swipes Millions Worth of Cryptocurrency Using SIM Swapping
  2. China Boosted Technology and Intellectual Property Theft Operations Says USTR
  3. SIM swap! Man charged after million dollar cryptocurrency theft
  4. SIM swap! Man charged after million dollar cryptocurrency theft
  5. The Rotexy mobile Trojan – banker and ransomware
  6. The July edition of Beazley Breach Insights found that business email compromise attacks have been rising steadily. Is business email
  7. Hacking Syndicate TA505 Back with Focus on Info-Stealing Trojan
  8. Data breaches in schools: How should an academic institution report a security incident to comply with the GDPR?

POLITICS

  1. The Rotexy mobile Trojan – banker and ransomware
  2. North Korea To Host Cryptocurrency and Blockchain Conference
  3. Data breaches in schools: How should an academic institution report a security incident to comply with the GDPR?
  4. 500K Italian Public Administration Email Accounts Compromised By Targeted Attack

Nov 22, 2018

APT report for 2018-11-21

TRANSNATIONAL / UNKNOWN

  1. How Retailers Can Protect Against Magecart This Black Friday and Holiday Season
  2. Black Friday & Cyber Monday Deals: Phishing and Site Skimmers
  3. Magecart Black Hats Battle it Out On Infected Site
  4. Exploit Windows Remote PC with EternalBlue & DoublePulsar Exploit through Metasploit
  5. Is Magecart Checking Out Your Secure Online Transactions?
  6. Weekly Threat Briefing: Russian APT Comes Back to Life with New US Spear-phishing Campaign
  7. Infowars Online Store Got Infected with Card Skimming Malware
  8. MageCart Group Sabotages Rival to Ruin Data and Reputation

CHINA

  1. Inspiring the Next Generation of Tech Talent
  2. Weekly Threat Briefing: Russian APT Comes Back to Life with New US Spear-phishing Campaign

INDIA

Nil

NORTH KOREA

  1. Lazarus APT Uses Modular Backdoor to Target Financial Institutions
  2. Millions Stolen by North Korea-Linked Hacking Group from Atms in Africa and Asia

PAKISTAN

Nil

VIETNAM

Nil

IRAN

  1. Analyzing OilRig’s Ops Tempo from Testing to Weaponization to Delivery

IRAQ

Nil

LEBANON

Nil

PALESTINE

Nil

SAUDI ARABIA

Nil

SYRIA

Nil

TURKEY

Nil

UNITED ARAB EMIRATES

Nil

YEMEN

Nil

RUSSIA

  1. Russian Cozy Bear cyberspies awake from hibernation to sling spyware
  2. Sofacy APT unleashes new 'Cannon' trojan
  3. New Pterodo Backdoor Malware Detected By Ukraine
  4. New Campaign by APT Group Sofacy Discovered using new Malware Named Cannon
  5. Fancy Bear hacker crew Putin dirty RATs in Word documents emailed to govt orgs – report
  6. Weekly Threat Briefing: Russian APT Comes Back to Life with New US Spear-phishing Campaign
  7. Latest Hacking News Podcast
  8. Sofacy APT group used a new tool in latest attacks, the Cannon
  9. Russian hackers are conducting more covert attacks on US and European computers
  10. Fancy Bear APT Uses New Cannon Trojan to Target Government Entities
  11. Sofacy APT Takes Aim with Novel ‘Cannon’ Trojan
  12. Russia Linked Group Resurfaces With Large-Scale Phishing Campaign

SERBIA

Nil

UKRAINE

Nil

Platform report for 2018-11-21

WINDOWS

  1. What Is Windows PowerShell (And Could It Be Malicious)?
  2. Take a Look at L0rdix, The Super Malware Toolkit of 2018
  3. New Wine in Old Bottle: New Azorult Variant Found in FindMyName Campaign using Fallout Exploit Kit
  4. New Pterodo Backdoor Malware Detected By Ukraine
  5. Exploit Windows Remote PC with EternalBlue & DoublePulsar Exploit through Metasploit
  6. Weekly Threat Briefing: Russian APT Comes Back to Life with New US Spear-phishing Campaign
  7. Adobe plugs critical RCE Flash Player flaw, update ASAP! Exploitation may be imminent
  8. CVE-2018-15981: Adobe Flash Player Arbitrary Code Execution Vulnerability
  9. How to find, is link malicious/URL or not

LINUX

  1. What Is Windows PowerShell (And Could It Be Malicious)?
  2. Mirai Used as Payload in Hadoop YARN Vulnerability
  3. Hackers target Drupal servers chaining several flaws, including Drupalgeddon2 and DirtyCOW
  4. Adobe plugs critical RCE Flash Player flaw, update ASAP! Exploitation may be imminent
  5. CVE-2018-15981: Adobe Flash Player Arbitrary Code Execution Vulnerability
  6. Uncover virtual hosts of domain with Fierce
  7. How to find, is link malicious/URL or not

UNIX

Nil

ANDROID

  1. Spoofed addresses and anonymous sending: new Gmail bugs make for easy pickings
  2. 500K Android users hit with malware, and what to do if you're infected
  3. 13 Malware-Laden Fake Apps on Google Play
  4. Malicious programs disguised as racing games on Google Play
  5. "Luiz O Pinto" pushed 500,000+ installs of malware via Google Play, in ~1 week.

IOS

  1. Spoofed addresses and anonymous sending: new Gmail bugs make for easy pickings
  2. 13 Malware-Laden Fake Apps on Google Play
  3. New Wine in Old Bottle: New Azorult Variant Found in FindMyName Campaign using Fallout Exploit Kit

MACOS

  1. Pen-test at Dropbox turns up three Apple 0-day bugs
  2. What Is Windows PowerShell (And Could It Be Malicious)?
  3. Adobe plugs critical RCE Flash Player flaw, update ASAP! Exploitation may be imminent
  4. CVE-2018-15981: Adobe Flash Player Arbitrary Code Execution Vulnerability

Threat report for 2018-11-21

DATA BREACH & DATA LOSS

  1. Email Addresses and Phone Numbers of More than 60 Million Users Exposed by USPS
  2. A flaw in US Postal Service website exposed data on 60 Million Users
  3. Emotet Banking Trojan Uses Stolen Templates to Boost Phishing Campaign Numbers
  4. Amazon Customer Email Addresses Leaked Because of 'Technical Error'
  5. Google Taking Over Health Records Raises Patient Privacy Fears
  6. Amazon tech error leaks customers’ email addresses
  7. USPS Site Exposed Data on 60 Million Users
  8. Vision Direct Deals With Customer Data Leak
  9. Amazon suffers data breach days before Black Friday
  10. Emotet’s Thanksgiving Campaign Delivers New Recipes for Compromise
  11. Researchers Reveal Identity of Hacker Behind Massive Data Breaches
  12. Record Retention
  13. A hacker known as #Tessa88 offered several compromise databases obtained from LinkedIn, MySpace and other companies. Now Recorded Future believes
  14. The promised integration with #HaveIBeenPwned is expanding in #FirefoxMonitor with new breach alerts when a user visits a recently compromised
  15. Amazon warns customers it leaked their names and email addresses
  16. Amazon leaks users' email addresses due to 'technical error'
  17. High Tail Hall data breach exposes over 400,000 furry fans
  18. Facebook Ads Urge Its Staff To Leak Secrets
  19. Amazon Suffers Data Breach Days Before Black Friday
  20. New Wine in Old Bottle: New Azorult Variant Found in FindMyName Campaign using Fallout Exploit Kit
  21. Despite early speculation, experts concluded the BGP route leak that sent Google traffic through China and Russia was due to
  22. Amazon UK is notifying a data breach to its customers days before Black Friday
  23. New Campaign by APT Group Sofacy Discovered using new Malware Named Cannon
  24. White House admits Ivanka Trump used private email for government business
  25. .@Amazon unveils new settings to help users avoid S3 data leaks, but UpGuard's Chris Vickery, who uncovered most #AWS exposures,
  26. How have #phishing campaigns threatened your #EnterpriseSecurity system?
  27. Weekly Threat Briefing: Russian APT Comes Back to Life with New US Spear-phishing Campaign
  28. Amazon Data Leak Exposes Email Addresses Right Before Black Friday
  29. Yikes...#Instagram Accidentally Exposed Some Users' #Passwords In Plaintext
  30. APAC consumers want IoT devices, but fear data leaks
  31. OUR BLACK FRIDAY DEALS ARE LIVE! Get 50% off from FREEDOME VPN and TOTAL subscriptions with coupon code BLACKFRIDAY. Buy now:
  32. Russia Linked Group Resurfaces With Large-Scale Phishing Campaign

DENIAL-OF-SERVICE

Nil

MALVERTISING

  1. New OceanLotus watering hole attacks target southeast Asia

PHISHING

  1. Phishing: It's all too easy on mobile devices
  2. Emotet Banking Trojan Uses Stolen Templates to Boost Phishing Campaign Numbers
  3. Black Friday Phishing Dos and Don’ts
  4. Bah HumBUG: 5 Recent Holiday Phishing Samples You Need to Watch Out For
  5. Phishing Emails with .COM Extensions Are Hitting Finance Departments
  6. Black Friday & Cyber Monday Deals: Phishing and Site Skimmers
  7. #CyberMonday Tip 1: Be careful of phishing scams claiming to be from a package-delivery company with links to tracking information. AVG
  8. How have #phishing campaigns threatened your #EnterpriseSecurity system?
  9. Weekly Threat Briefing: Russian APT Comes Back to Life with New US Spear-phishing Campaign
  10. Yikes...#Instagram Accidentally Exposed Some Users' #Passwords In Plaintext
  11. #Gmail Glitch Enables Anonymous Messages in #Phishing Attacks:
  12. Phishing Scams Serious Problem for Canada’s Global Affairs
  13. Microsoft now lets you log into Outlook, Skype, Xbox Live without a password
  14. Russia Linked Group Resurfaces With Large-Scale Phishing Campaign

WEB DEFACEMENT

Nil

BOTNET

  1. Outlaw Group Botnet Enhanced
  2. A new #botnet -- #Mylobot -- has shown new, complex levels of tools and techniques that are subsequently altering botnet
  3. New Hacking Group Outlaw Distributing Botnet to Scan The Network & Perform Cryptocurrency-Mining & Brute-Force Attack

RANSOMWARE

  1. City of Valdez, Alaska admits to paying off ransomware infection
  2. Malaysia’s largest media company becomes victim of a ransomware attack

CRYPTOMINING & CRYPTOCURRENCIES

  1. Malware Moves: Attackers Retool for Cryptocurrency Theft
  2. New Hacking Group Outlaw Distributing Botnet to Scan The Network & Perform Cryptocurrency-Mining & Brute-Force Attack
  3. Signing and Verifying Ethereum Signatures
  4. US Department of Justice is investigating Tether for manipulation of market prices
  5. Worried about cryptojacking? Check out how SentinelOne Detects and Protects from GhostMiner CryptoMiner

MALWARE

  1. Emotet Banking Trojan Uses Stolen Templates to Boost Phishing Campaign Numbers
  2. Lazarus APT Uses Modular Backdoor to Target Financial Institutions
  3. What Is Windows PowerShell (And Could It Be Malicious)?
  4. Take a Look at L0rdix, The Super Malware Toolkit of 2018
  5. Mirai Used as Payload in Hadoop YARN Vulnerability
  6. 500K Android users hit with malware, and what to do if you're infected
  7. Russian Cozy Bear cyberspies awake from hibernation to sling spyware
  8. 13 Malware-Laden Fake Apps on Google Play
  9. Italian Naval Industry Attacked By MartyMcFly Malware
  10. Sofacy APT unleashes new 'Cannon' trojan
  11. New Pterodo Backdoor Malware Detected By Ukraine
  12. New Campaign by APT Group Sofacy Discovered using new Malware Named Cannon
  13. Malicious programs disguised as racing games on Google Play
  14. How is Plead #malware used for #cyberespionage attacks? Learn more with Michael Cobb of @thehairyITdog.
  15. Conficker: A 10-year retrospective on a legendary worm
  16. Malware Moves: Attackers Retool for Cryptocurrency Theft
  17. Infowars Online Store Got Infected with Card Skimming Malware
  18. Awake Security uncovers malicious intent across on-premise, IoT and cloud infrastructure
  19. Centreon releases Remote Server functionality for cross-domain monitoring of multi-site IT operations
  20. Fancy Bear APT Uses New Cannon Trojan to Target Government Entities
  21. "Luiz O Pinto" pushed 500,000+ installs of malware via Google Play, in ~1 week.
  22. Uncover virtual hosts of domain with Fierce
  23. Sofacy APT Takes Aim with Novel ‘Cannon’ Trojan
  24. How to find, is link malicious/URL or not
  25. Worried about cryptojacking? Check out how SentinelOne Detects and Protects from GhostMiner CryptoMiner

EXPLOIT

  1. Attackers Exploit Recently Patched Popular WordPress Plugin
  2. New Wine in Old Bottle: New Azorult Variant Found in FindMyName Campaign using Fallout Exploit Kit
  3. Exploit Windows Remote PC with EternalBlue & DoublePulsar Exploit through Metasploit
  4. Worried about cryptojacking? Check out how SentinelOne Detects and Protects from GhostMiner CryptoMiner

VULNERABILITY

  1. Pen-test at Dropbox turns up three Apple 0-day bugs
  2. A flaw in US Postal Service website exposed data on 60 Million Users
  3. Facebook increases rewards for its bug bounty program and facilitate bug submission
  4. Spoofed addresses and anonymous sending: new Gmail bugs make for easy pickings
  5. Mirai Used as Payload in Hadoop YARN Vulnerability
  6. Facebook entices researchers with $40,000 reward for account takeover vulnerabilities
  7. Major Flaws Found in IT Pentagon Processes After First Ever Financial Audit
  8. How a Security Test for DropBox Revealed 3 Apple Zero Day Vulnerabilities
  9. Adobe issues fix for Flash bug allowing remote code execution
  10. A new vulnerability was discovered to affect #Bluetooth #firmware or operating system software drivers. Learn what this vulnerability is and
  11. German eID Authentication Flaw Lets You Change Identity
  12. Hackers target Drupal servers chaining several flaws, including Drupalgeddon2 and DirtyCOW
  13. New vulnerabilities are coming faster than you can fix them
  14. Red Hawk – Open Source Information Gathering and Vulnerability Scanning Tool
  15. Hackers target critical WordPress plugin flaw to install backdoors and create admin accounts
  16. Hackers target critical WordPress plugin flaw to install backdoors and create admin accounts
  17. Experts found flaws in Dell EMC and VMware Products. Patch them now!
  18. From directory traversal to direct travesty: Crash, hijack, siphon off this TP-Link VPN box via classic exploitable bugs
  19. A @DLink #router vulnerability was used to send banking users to a fake site in order to steal #UserCredentials. Learn
  20. Adobe plugs critical RCE Flash Player flaw, update ASAP! Exploitation may be imminent
  21. Patches Released for Flaws Affecting Dell EMC, VMware Products
  22. Adobe Fixes Critical Flash Vulnerability with
  23. Facebook Increases Rewards for Account Hacking Vulnerabilities
  24. Adobe Flash Player Update Released for Remote Code Execution Vulnerability
  25. Facebook Boosts Bug Bounty Payouts for Account Takeover Flaws
  26. Hacker got Rewarded for Discovering a Critical Steam Bug
  27. CVE-2018-15981: Adobe Flash Player Arbitrary Code Execution Vulnerability
  28. Major Flaws Found in IT Pentagon Processes After First Ever Financial Audit