Most of us have been trained to be wary of clicking on links and attachments that arrive in emails unexpected, but it’s easy to forget scam artists are constantly dreaming up innovations that put a new shine on old-fashioned telephone-based phishing scams. Think you’re too smart to fall for one? […]
Hacking
Vulnerability Spotlight: Multiple Issues in Foxit PDF Reader
Overview Cisco Talos is disclosing eightteen vulnerabilities in Foxit PDF Reader, a popular free program for viewing, creating and editing PDF documents. It is commonly used as an alternative to Adobe Acrobat Reader and has a widely used browser plugin. Details TALOS-2018-0607 TALOS-2018-0607 / CVE-2018-3940 is an exploitable use-after-free vulnerability found […]
Wiretapping -An ATM Skimming Attack to Steal Customer Data by Setting Hidden Camera & Whole the ATM Machine
U.S. Secret Service warned the new form of ATM Skimming Attack called “Wiretapping” targeting the financial institutions. Criminals involved in this attack by creating a small size of the hole in the ATM machine and steal the customer data directly from card reader inside of the ATM Mchine. Magnets and […]
Report Ties North Korean Attacks to New Malware, Linked by Word Macros
Newly discovered malware from the world of cyberespionage connects the dots between the tools and operations of the little-known Reaper group believed to act on behalf of the North Korean government. The latest findings indicate that the remote access Trojans (RAT) in the KONNI and DOGCALL families are the work […]
Scammers Target Google Chrome Extension Developers
A recent phishing campaign targeting Chrome extension developers aims to trick them into giving away usernames and passwords that hackers can use to tamper with legitimate extensions. In an attempt to collect developers’ Google account passwords, hackers have been emailing Chrome extension developers using an alleged Google employee email address. Posing as […]
L’Estonie réclame 152 millions d’euros à Gemalto pour ses cartes d’identité
TALLINN (Reuters) – Les autorités estoniennes réclament 152 millions d’euros à Gemalto dans le cadre d’une plainte déposée jeudi après la découverte de failles de sécurité dans des cartes d’identité fabriquées par le spécialiste franco-néerlandais de la sécurité numérique. Le rappel de ces cartes d’identité l’an dernier a été source […]
Tesco Bank Fined £16 million by FCA for 2016 Cyber Attack
The UK Financial Conduct Authority (FCA) announced today that they have fined Tesco Bank £16.4 million for negligence in protecting their customers in a 2016 cyber attack that caused £2.26 million to be stolen from the bank’s customers. ‘The fine the FCA imposed on Tesco Bank today reflects the fact that the […]
Attackers chained three bugs to breach into the Facebook platform
Facebook has revealed additional details about the cyber attack that exposed personal information of 50 million accounts. Last week, Facebook announced that attackers exploited a vulnerability in the “View As” feature that allowed them to steal Facebook access tokens of 50 Million Users. The “View As” feature allows users to see how others see their […]
Hackers Hijacked More Than 100,000 Routers DNS Settings and Redirecting Users to Malicious WebSites
Hackers hijacked 100,000+ Routers and modified their DNS settings to redirect their DNS requests through malicious DNS servers to steal banking credentials. The DNSChanger campaign named GhostDNS appears to be starting from September 20, 2018, and it grows significantly by adding a bunch of new scanners. The campaign attempts a brute […]
IBM CORRIGE PLUSIEURS VULNÉRABILITÉS DANS NETEZZA HOST MANAGEMENT
IBM a corrigé plusieurs vulnérabilités dans son produit Netezza Host Management. Leur exploitation permettrait à un attaquant d’exécuter du code arbitraire ou encore de contourner le mécanisme d’authentification. Les vulnérabilités sont référencées comme suit : CVE-2018-5740 [CVSS 7.5] : Une faille dans la fonctionnalité « deny-answer-aliases » du programme ISC BIND provoquant un déni […]