A security researcher has disclosed details of an important vulnerability in Microsoft Outlook for which the company released an incomplete patch this month—almost 18 months after receiving the responsible disclosure report. The Microsoft Outlook vulnerability (CVE-2018-0950) could allow attackers to steal sensitive information, including users’ Windows login credentials, just by convincing […]
Haythem Elmir
Malware Distribution Campaign Has Been Raging for More Than Four Months
An organized and highly dynamic malware distribution campaign has been leveraging thousands of hacked websites to redirect users to web pages peddling fake software updates in an attempt to infect them with malware. According to Jerome Segura, the Malwarebytes researcher who analyzed multiple infection chains to piece together the grander […]
Microsoft Removes Antivirus Registry Key Check for All Windows Versions
Microsoft has decided to remove a mandatory « registry key requirement » it introduced in the aftermath of the Meltdown and Spectre vulnerability disclosure. Microsoft used this registry key to prevent Windows updates from being installed on computers running antivirus software incompatible with the Meltdown and Spectre patches. Antivirus vendors were supposed […]
QUANT LOADER TROJAN SPREADS VIA MICROSOFT URL SHORTCUT FILES
Researchers are warning of a new email phishing campaign that downloads and launches the Quant Loader trojan, capable of distributing ransomware and stealing passwords. Barracuda on Tuesday said it has been tracking emails containing zipped Microsoft internet shortcut files with a “.url” file extension sent to millions of inboxes via […]
Phishing par SMS sur WhatsApp : attention aux billets gratuits sur Atlantic Virgin !
Selon un message WhatsApp, Virgin Atlantic offrait deux billets gratuits par famille. Cela semblait trop beau pour être vrai et il est fort probable que cela soit effectivement une arnaque ! Vendredi dernier, nous avons reçu un message WhatsApp qui a piqué notre curiosité : 2 billets gratuits sur Virgin Atlantic ! Billets gratuits […]
Hack Zone Tunisia 2018
ÉVÉNEMENT ANNUEL Le HackZone est un événement annuel de sécurité informatique, d’une durée de 24 heures. Organisé à l’ENSI depuis 2013 par la Communauté de Sécurité Informatique de l’Ecole Nationale des Sciences Informatiques: CSI ENSI . Après le succès des éditions précédentes , HackZone revient cette année dans une 6ème édition, comme […]
HACKFEST. NATIONAL CYBER SECURITY COMPETITION
Hackfest is an annual event of cyber security, initially hosted by the Higher School of Communication. Each year, since 2015, it gathers under the same roof specialists of cyber security, entrepreneurs and students. After its massive success in the previous editions, Hackfest is back this year in its 4th edition […]
AMD and Microsoft release microcode and operating system updates against Spectre flaw
AMD released patches for Spectre Variant 2 attack that includes both microcode and operating system updates. AMD and Microsoft worked together to issue the updates on Tuesday. AMD and Microsoft released the microcode and security updates for Spectre vulnerabilities. The Meltdown and Spectre attacks could be exploited by attackers to bypass memory isolation […]
Researchers discovered several flaws that expose electrical substations to hack
The ICS-CERT and Siemens published are warning organizations of security flaws in Siemens devices (SIPROTEC 4, SIPROTEC Compact, and Reyrolle devices) that could be exploited by hackers to target electrical substations. “Successful exploitation of these vulnerabilities could allow an attacker to upload a modified device configuration that could overwrite access […]
PUBG : un nouveau ransomware bloque vos fichiers tant que vous n’y jouez pas !
Un ransomware bloque l’accès à vos données sauf si vous jouez à PUBG – PlayerUnknown’s Battlegrounds. Ce malware un brin original ne vous demande pas de mettre la main à la poche, mais de tout simplement participer au célèbre jeu. Les pirates ayant développé ce malware n’ont qu’un seul souhait, faire […]