Mirai botnet:New sophisticated Scanner New variant of “Mirai” targeting Internet of Things(IoT) devices such as video camera, routers are spreading. The new new ELF Trojan is capable of scanning the network devices or Internet of Things and try to compromise these systems especially those protected with defaults credentials. Samples were served from […]
Année : 2018
Une attaque de Type Web Defacement cible le site du Centre National des Technologies en Education
Le 30 Aout 2018 ,le site web du Centre National des Technologies en Education a été attaqué par le groupe de pirate anonjoker. I S’AGIT-IL ? L’attaque est de type Web defacement de site internet qui est une forme d’attaque qui vise à remplacer la page principale ou toutes les […]
Russian Hacking Group “Silence” Made Over $800,000 From Attacking Bank ATMs
The world has seen its fair share of cybercriminal gangs. The cyber criminal group “Silence” is rising among the ranks it would seem. Group-IB, a cybersecurity company was able to identify and expose the crimes committed by Silence. The gang’s main targets are banks, especially those in Russia, although attacks […]
Banks and crypto wallets: unveiling a global malware campaign using Zeus/Panda
For the past weeks our Threat Intelligence team has been following an enxtesive campaign, possibly operated by the same group, targeting a large amount of financial institutions, cyptocurrency wallets and the occasional Google and Apple accounts. The attackers target their victims both with Phishing emails, typo-squatted domains and malicious attachments […]
Silence Group Quietly Emerges as New Threat to Banks
Though only two members strong, hackers pose a credible threat to banks in Russia and multiple countries. A pair of Russian-speaking hackers, likely working in legitimate information security roles, has quietly emerged as a major threat to banks in Russia and numerous other former Soviet republics in recent months. The […]
Cisco Releases 16 Security Alerts Rated Critical and High
Cisco published on Wednesday 30 security advisories on vulnerabilities identified in its products. Half of them are for high and critical severity bugs. Only three alerts refer to security problems with critical impact; among them is the recently disclosed remote code execution vulnerability in Apache Struts, for which several proof-of-concept exploits exist. Cisco notes that not […]
PowerPool malware exploits ALPC LPE zero-day vulnerability
Malware from newly uncovered group PowerPool exploits zero-day vulnerability in the wild, only two days after its disclosure On August 27, 2018, a so-called zero-day vulnerability affecting Microsoft Windows was published on GitHub and publicized via a rather acerbic tweet. Source: Twitter It seems obvious that this was not part of a […]
FIN6 returns to attack retailer point of sale systems in US, Europe
A new malware campaign has been detected which is targeting point-of-sale (PoS) systems across the United States and Europe. On Wednesday, researchers from IBM X-Force IRIS said the attacks have been attributed to the FIN6 cybercriminal group. This is only the second time that a campaign has been documented which appears to […]
New OilRig APT campaign leverages a new variant of the OopsIE Trojan
The Iran-linked APT group OilRig was recently observed using a new variant of the OopsIE Trojan that implements news evasion capabilities. Experts at Palo Alto observed a new campaign carried out by the Iran-linked APT group OilRig that was leveraging on a new variant of the OopsIE Trojan. The OilRig hacker group is an Iran-linked APT that has […]
DES MILLIERS DE ROUTEURS MIKROTIK PIRATÉS DANS LE TRAFIC RÉSEAU
Le mois dernier, nous avons signalé une vaste campagne de cryptage de logiciels malveillants qui avait détourné plus de 200 000 routeurs MikroTik. En utilisant une vulnérabilité révélée précédemment dans les fuites de CIA Vault 7 . Les chercheurs en sécurité de Qihoo 360 Netlab ont découvert que sur 370 000 routeurs MikroTik potentiellement vulnérables, […]