Hackers are exploiting vulnerabilities in Microsoft Office software to spread a sophisticated form of malware that’s capable of stealing credentials, dropping additional malware, cryptocurrency mining, and conducting distributed denial-of-service (DDoS) attacks. The malware has been active since 2016 and, despite its powerful capabilities, it’s available to purchase on underground forums […]
Researchers Uncover Government-Sponsored Mobile Hacking Group Operating Since 2012
A global mobile espionage campaign collecting a trove of sensitive personal information from victims since at least 2012 has accidentally revealed itself—thanks to an exposed server on the open internet. It’s one of the first known examples of a successful large-scale hacking operation of mobile phones rather than computers. The […]
Fake SagePay Subscription emails via MailChimp mailing list systems delivering Gootkit Banking trojan
I have been seeing a steady trickle of these Fake SagePay subscription emails over the last few days. Until today all copies I saw didn’t lead anywhere with the links already dead by the time I had received the email. Today, either I was much quicker or the downloads and […]
Facebook Password Stealing Apps Found on Android Play Store
Even after many efforts made by Google last year, malicious apps always somehow manage to make their ways into Google app store. Security researchers have now discovered a new piece of malware, dubbed GhostTeam, in at least 56 applications on Google Play Store that is designed to steal Facebook login […]
Meltdown-Spectre: Intel says newer chips also hit by unwanted reboots after patch
Intel says the unexpected reboots triggered by patching older chips affected by Meltdown and Spectre are happening to its newer chips, too. Intel confirmed in an update late Wednesday that not only are its older Broadwell and Haswell chips tripping up on the firmware patches, but newer CPUs through to […]
Multiples vulnérabilités dans SCADA les produits Siemens
Une gestion de version détaillée se trouve à la fin de ce document. RISQUE(S) Exécution de code arbitraire à distance Déni de service à distance SYSTÈMES AFFECTÉS SIMATIC WinCC Add-On Historian CONNECT ALARM versions V5.x et antérieures SIMATIC WinCC Add-On PI CONNECT ALARM versions V2.x et antérieures SIMATIC WinCC Add-On PI […]
chaiOS « Text Bomb » Crashes iMessage App on macOS and iOS
Reminiscent of the old « Effective Power » bug that has long caused iMessage apps to crash on iOS devices, a new bug nicknamed chaiOS has surfaced this week with similar repercussions. Discovered by Abraham Masri, the chaiOS bug is another « text bomb » that when sent to other users will crash that […]
S’agit-il vraiment d’une attaque contre la banque centrale et quatre établissements financiers?
Mercredi le 17 Janvier 2018, la presse alchourouk vient de sortir un article concernant une attaque notée la plus grave pour la banque centrale ainsi que quatre établissements financiers. Sous le Titre la plus grave intrusion visant la banque Centrale et quatre établissements financiers: de cette manière le piratage des […]
4 Malicious Chrome Extensions Put 500k Users at Risk of Click Fraud
Presence of spyware and malware in Chrome browser extensions we use to surf the web is nothing new as every other day we hear about a new strain of malware identified in an extension. Sometimes even the extension turns out to be fake and a piece of malware. According to a […]
New macOS malware hijacks DNS settings and takes screenshots
The general perception about Apple devices is that they are protected from malware and other hacking attacks. But since hackers are getting smarter and more sophisticated in their attacks things are changing for bad. Now, a Malwarebytes forum user has discovered a dangerous malware targeting macOS – Its in-depth analysis has been […]