KIEV (Reuters) – Hackers took down the website of the Ukrainian energy and coal ministry on Tuesday, posting a message in English demanding a ransom paid in Bitcoin to recover encrypted files. The attack appeared to be an isolated incident with no other government websites or systems affected, cyber police […]
Année : 2018
Ride sharing platform Careem says hit by cyber attack with data of up to 14 million users stolen
The personal data of up to 14 million people in the Middle East, North Africa, Pakistan and Turkey has been stolen by online criminals in a cyber-attack on the systems of Dubai ride sharing platform Careem. On January 14, the company detected the breach in the computer systems which hold the account data […]
Drupal to Release Second Drupalgeddon2 Patch as Attacks Continue
Drupal developers announced on Monday that versions 7.x, 8.4.x and 8.5.x of the content management system (CMS) will receive a new security update later this week. The Drupal core updates, scheduled for April 25 between 16:00 and 18:00 UTC, will deliver a follow-up patch for the highly critical vulnerability tracked […]
Yahoo mega-breach hacker faces nearly 8 years in prison
The US is looking to lock up one of the Yahoo mega-breach spearphishers for 94 months: nearly eight years. On Tuesday, Department of Justice (DOJ) prosecutors asked a San Francisco federal court judge to impose that sentence on Karim Baratov, a Canadian citizen born in Kazakhstan who was indicted in March 2017 […]
Code Execution Flaws Patched in Foxit PDF Reader
Foxit has addressed over a dozen vulnerabilities in their PDF Reader, a free application that provides users with an alternative to Adobe Acrobat Reader. Designed for viewing, creating, and editing PDF documents, Foxit PDF Reader is a popular free program that also has a broadly used browser plugin available. Released […]
P.E.I. government website hit by ransomware attack
The P.E.I. government’s website was held for ransom Monday, but a spokesman for the province says no personal data was breached. Scott Cudmore, director of enterprise architecture services, confirmed the website was the victim of a ransomware attack. Cudmore said after the attack was noticed an investigation was done to […]
Orangeworm cyber espionage group target Healthcare organizations worldwide
Symantec researchers have monitored the activity of a cyber espionage group tracked as Orangeworm that targets organizations in the healthcare sector. Security experts at Symantec have published a report on the activity of a cyber espionage group tracked as Orangeworm that targets healthcare organizations. “Symantec has identified a previously unknown group called Orangeworm […]
Kaspersky’s analysis of servers compromised by Energetic Bear shows the APT operates on behalf of others
Kaspersky analyzed the served compromised by the Energetic Bear APT and assumed with some degree of certainty that the group operates in the interests of or takes orders from customers that are external to it. Security experts at Kaspersky Lab ICS CERT have published a detailed analysis of the server […]
Flaw in LinkedIn AutoFill Plugin Lets Third-Party Sites Steal Your Data
Not just Facebook, a new vulnerability discovered in Linkedin’s popular AutoFill functionality found leaking its users’ sensitive information to third party websites without the user even knowing about it. LinkedIn provides an AutoFill plugin for a long time that other websites can use to let LinkedIn users quickly fill in profile […]
SquirtDanger malware steal passwords & take screenshots of user activity
SquirtDanger Is Capable Of Draining Crypto-Wallets, Killing Process, Stealing Passwords From Web Browser And Taking Screenshots. In a new research report published on April 17, Palo Alto’s Unit 42 researchers revealed that there is a freshly identified strain of malware that takes screenshots, download files, steals passwords as well as drains […]