Reminiscent of the old « Effective Power » bug that has long caused iMessage apps to crash on iOS devices, a new bug nicknamed chaiOS has surfaced this week with similar repercussions. Discovered by Abraham Masri, the chaiOS bug is another « text bomb » that when sent to other users will crash that […]
Hacking
4 Malicious Chrome Extensions Put 500k Users at Risk of Click Fraud
Presence of spyware and malware in Chrome browser extensions we use to surf the web is nothing new as every other day we hear about a new strain of malware identified in an extension. Sometimes even the extension turns out to be fake and a piece of malware. According to a […]
New macOS malware hijacks DNS settings and takes screenshots
The general perception about Apple devices is that they are protected from malware and other hacking attacks. But since hackers are getting smarter and more sophisticated in their attacks things are changing for bad. Now, a Malwarebytes forum user has discovered a dangerous malware targeting macOS – Its in-depth analysis has been […]
World’s Largest Spam Botnet Is Pumping and Dumping an Obscure Cryptocurrency
Necurs, the world’s largest spam botnet, is currently sending millions of spam emails that push an obscure cryptocurrency named Swisscoin. Such spam emails are known as pump-and-dump, and the technique relies on sending large quantities of spam to drive interest up towards a particular penny stock. Spammers usually buy stock […]
US hospital paid $55,000 ransom to hackers despite having backups
A US hospital has decided to pay a ransom of 4 bitcoin to regain access to some 1,400 files locked by attackers. Hancock Health, a regional hospital based in Greenfield, Indiana, said they’d noticed the attack the evening of Thursday, January 11, when employees got locked out of systems and […]
Satori.Coin.Robber (botnet) is now hacking Ethereum mining rigs by replacing wallet address
A new variant of the Satori botnet has raised again with a new target, and this one is hacking into Claymore mining rigs (which mine the cryptocurrency Ethereum (ETH)) and replacing the machine owner’s mining wallet address with the attacker’s wallet. Satori is a botnet which uses a Huawei vulnerability […]
Oracle addresses 237 vulnerabilities across multiple products
The January 2018 Oracle Critical Patch Update (CPU) fixes 237 new security vulnerabilities across hundreds of Oracle products, including the company’s widely used Oracle Database Server and Java SE. The CPU includes: Fixes for the Java Virtual Machine and four other vulnerable components within the Oracle Database Server, the most […]
KillDisk Fake Ransomware Hits Financial Firms in Latin America
A new version of the KillDisk disk-wiping malware has hit companies in the financial sector in Latin America, Trend Micro reported yesterday. Just like previous versions, KillDisk purposely deleted files but included a ransom note in an attempt to fool victims that they’ve been infected with ransomware and not a […]
Bank of America Alert – Phishing
I am seeing quite an aggressive phishing campaign against Bank of America arriving overnight UK time. They all pretend to come from Bank of America < BankofAmerica@customerloyalty.accounts.com > but are actually coming from various servers. I have posted details of 2 that I received. The emails are identical apart for […]
New BitTorrent Flaw Puts Linux & Windows devices at risk of hacking
Tavis Ormandy, an IT security researcher at Google’s Project Zero has identified a critical flaw in Transmission BitTorrent app that if exploited lets attackers take full control of a targeted computer on Linux or Windows operating system. Ormandy warned that the flaw (CVE-2018-5702) is present in Transmission Function that allows attackers to control […]