Des pirates informatiques exigent une rançon de 1 million de dollars pour ne pas divulguer les renseignements volés de 90 000 clients des banques BMO et Simplii. Lundi, la Banque de Montréal et la banque en ligne Simplii Financial – propriété de la CIBC – ont révélé que les renseignements personnels permettant […]
Année : 2018
Oracle Plans to Drop Java Serialization Support, the Source of Most Security Bugs
Oracle plans to drop support for data serialization/deserialization from the main body of the Java language, according to Mark Reinhold, chief architect of the Java platform group at Oracle. Serialization is the process of taking a data object and converting it into a stream of bytes (binary format), so it […]
BackSwap malware finds innovative ways to empty bank accounts
Banking malware (also referred to as banker) has been decreasing in popularity among cybercrooks for a few years now, one of the reasons being that both anti-malware companies and web browser developers are continuously widening the scope of their protection mechanisms against banking Trojan attacks. This results in conventional banking […]
Tech giants are all working on new Spectre and Meltdown attacks, so-called variant 3 and variant 4
Yesterday AMD, ARM, IBM, Intel, Microsoft and other major tech firms released updates, mitigations and published security advisories for two new variants of Meltdown and Spectre attacks. Spectre and Meltdown made the headlines again, a few days after the disclosure of a new attack technique that allowed a group of researchers to recover data […]
Adobe to Acquire Magento E-Commerce Platform for $1.68 Billion
Adobe announced yesterday plans to buy the Magento e-commerce platform for $1.68 billion. While the Magento brand is mostly known for the open source online store CMS of the same name, Adobe was mostly interested in Magento Commerce, an online-store-as-a-service platform. Adobe plans to embed the Magento Commerce platform into […]
New US Bill Wants to Create National Guard Cyber Units
US lawmakers have proposed a bill that would create specialized units in the National Guard for defending and responding to cyber-attacks. According to the bill’s text, these cyber-units —referred to as National Guard Cyber Civil Support Teams— will be at the disposal of state governors and will have a series […]
Spam Botnet Tracked Down to Malicious PHP Script Found on 5,000 Hacked Sites
A malicious PHP script found on over 5,000 compromised websites has been fingered as the source of a large-scale spam campaign that has been silently redirecting users to web pages hosting diet and intelligence boosting pills. The purpose of this script is to keep hacked sites under the control of […]
North Korea-linked Sun Team APT group targets deflectors with Android Malware
A North Korea-linked APT group tracked as Sun Team has targeted North Korean deflectors with a malicious app that was published in the official Google Play store. A North Korea-linked APT group tracked as Sun Team has targeted North Korean deflectors with a malicious app that was published in the official Google Play store. The campaign, […]
The ZipperDown Vulnerability could affect roughly 10% of iOS Apps
Experts from Chinese jailbreakers Pangu Lab, have recently discovered the ZipperDown flaw that could affect roughly 10% of iOS Apps. ZipperDown, is a recently discovered vulnerability that could affect thousands of iOS apps and maybe also Android users. The ZipperDown flaw was first reported by experts from Chinese jailbreakers Pangu Lab, that described it as described as a […]
Experts propose a new variation of the Spectre attack to recover data from System Management Mode
Researchers from Eclypsium proposed a new variation of the Spectre attack that can allow attackers to recover data stored inside CPU System Management Mode. Security experts from Eclypsium have devised a new variation of the Spectre attack that can allow attackers to recover data stored inside CPU System Management Mode (SMM) (aka […]