Une gestion de version détaillée se trouve à la fin de ce document. RISQUE(S) Exécution de code arbitraire à distance Déni de service à distance SYSTÈMES AFFECTÉS SIMATIC WinCC Add-On Historian CONNECT ALARM versions V5.x et antérieures SIMATIC WinCC Add-On PI CONNECT ALARM versions V2.x et antérieures SIMATIC WinCC Add-On PI […]
Année : 2018
chaiOS « Text Bomb » Crashes iMessage App on macOS and iOS
Reminiscent of the old « Effective Power » bug that has long caused iMessage apps to crash on iOS devices, a new bug nicknamed chaiOS has surfaced this week with similar repercussions. Discovered by Abraham Masri, the chaiOS bug is another « text bomb » that when sent to other users will crash that […]
S’agit-il vraiment d’une attaque contre la banque centrale et quatre établissements financiers?
Mercredi le 17 Janvier 2018, la presse alchourouk vient de sortir un article concernant une attaque notée la plus grave pour la banque centrale ainsi que quatre établissements financiers. Sous le Titre la plus grave intrusion visant la banque Centrale et quatre établissements financiers: de cette manière le piratage des […]
4 Malicious Chrome Extensions Put 500k Users at Risk of Click Fraud
Presence of spyware and malware in Chrome browser extensions we use to surf the web is nothing new as every other day we hear about a new strain of malware identified in an extension. Sometimes even the extension turns out to be fake and a piece of malware. According to a […]
New macOS malware hijacks DNS settings and takes screenshots
The general perception about Apple devices is that they are protected from malware and other hacking attacks. But since hackers are getting smarter and more sophisticated in their attacks things are changing for bad. Now, a Malwarebytes forum user has discovered a dangerous malware targeting macOS – Its in-depth analysis has been […]
World’s Largest Spam Botnet Is Pumping and Dumping an Obscure Cryptocurrency
Necurs, the world’s largest spam botnet, is currently sending millions of spam emails that push an obscure cryptocurrency named Swisscoin. Such spam emails are known as pump-and-dump, and the technique relies on sending large quantities of spam to drive interest up towards a particular penny stock. Spammers usually buy stock […]
US hospital paid $55,000 ransom to hackers despite having backups
A US hospital has decided to pay a ransom of 4 bitcoin to regain access to some 1,400 files locked by attackers. Hancock Health, a regional hospital based in Greenfield, Indiana, said they’d noticed the attack the evening of Thursday, January 11, when employees got locked out of systems and […]
Satori.Coin.Robber (botnet) is now hacking Ethereum mining rigs by replacing wallet address
A new variant of the Satori botnet has raised again with a new target, and this one is hacking into Claymore mining rigs (which mine the cryptocurrency Ethereum (ETH)) and replacing the machine owner’s mining wallet address with the attacker’s wallet. Satori is a botnet which uses a Huawei vulnerability […]
Oracle addresses 237 vulnerabilities across multiple products
The January 2018 Oracle Critical Patch Update (CPU) fixes 237 new security vulnerabilities across hundreds of Oracle products, including the company’s widely used Oracle Database Server and Java SE. The CPU includes: Fixes for the Java Virtual Machine and four other vulnerable components within the Oracle Database Server, the most […]
KillDisk Fake Ransomware Hits Financial Firms in Latin America
A new version of the KillDisk disk-wiping malware has hit companies in the financial sector in Latin America, Trend Micro reported yesterday. Just like previous versions, KillDisk purposely deleted files but included a ransom note in an attempt to fool victims that they’ve been infected with ransomware and not a […]