Stripe.com – Phishing

Haythem Elmir

A new entry to the phishing scams list today.  This is asking for credentials for a new Online Payments Processor – Stripe.com. I haven’t previously heard of this company before or seen any phishing attempts against it. However a quick Google search does bring up a very small handful of […]

Almost all WordPress websites could be taken down due to unpatched CVE-2018-6389 DoS flaw

Haythem Elmir

The Israeli security researcher Barak Tawily a vulnerability tracked as CVE-2018-6389 that could be exploited to trigger DoS condition of WordPress websites. The expert explained that the CVE-2018-6389 flaw is an application-level DoS issued that affects the WordPress CMS and that could be exploited by an attacker even without a massive amount of malicious […]

GandCrab, a new ransomware-as-a-service emerges from Russian crime underground

Haythem Elmir

Experts at cyber security firm LMNTRIX have discovered a new ransomware-as-a-service dubbed GandCrab. advertised in Russian hacking community on the dark web. The GandCrab was advertised in Russian hacking community, researchers noticed that authors leverage the RIG and GrandSoft exploit kits to distribute the malware. “Over the last three days LMNTRIX Labs has been tracking an influx of GandCrab ransomware. The […]