Olympic Destroyer Malware raised again through weaponized documents and currently targeting various Financial Organization with upgraded capabilities and evade the detection of flying under the radar. Olympic Destroyer is a self-replicating and self-modifying destructive network worm that spreads to reconnaissance and infiltration into target networks. Few months before Lazarus Hacking Group actively […]
Downloading 3rd Party OpenVPN Configs May Be Dangerous. Here’s Why.
Call me a cynic, but one thing I have learned from the using the Internet is to double-check, if not triple-check, everything you download. So many downloads have malware, adware, and scripts that perform malicious activities on your computer that it has to be a requirement to thoroughly check a download before […]
Drupal Vulnerability (CVE-2018-7602) Exploited to Deliver Monero-Mining Malware
We were able to observe a series of network attacks exploiting CVE-2018-7602, a security flaw in the Drupal content management framework. For now, these attacks aim to turn affected systems into Monero-mining bots. Of note are its ways of hiding behind the Tor network to elude detection and how it […]
Market Drops After $30M Hack on Bithumb
One of Asia’s largest crypto exchanges, Bithumb announced that they have fallen victim to a hack attack, with hackers reportedly stealing more than $30 million worth digital currencies. Wallet change backfires Last Tuesday, June 19, the cryptocurrency exchange made an announcement that they would be temporarily suspending deposits to give […]
New SamSam Variant Requires Special Password Before Infection
New versions of the SamSam ransomware will not execute unless the person running the malware’s payload enters a special password via the command-line. This is a new protection mechanism added by the SamSam crew in a recent SamSam version discovered by Malwarebytes researchers. Previous versions did not feature this mechanism, […]
Google Developer Discovers a Critical Bug in Modern Web Browsers
Google researcher has discovered a severe vulnerability in modern web browsers that could have allowed websites you visit to steal the sensitive content of your online accounts from other websites that you have logged-in the same browser. Discovered by Jake Archibald, developer advocate for Google Chrome, the vulnerability resides in […]
Building a malware distribution network is too easy with Kardon Loader
Researchers at Netscout Arbor have discovered a malware downloader advertised on underground forums as a paid open beta product, its name is Kardon Loader. Researchers from Netscout Arbor have discovered a downloader advertised on underground forums dubbed Kardon Loader, it allows customers to build a malware distribution network or a botshop. Advs for Kardon Loader were first discovered […]
Chronicle launches VirusTotal Monitor to reduce false positives
Alphabet owned cybersecurity firm Chronicle announced the launch of a new VirusTotal service that promises to reduce false positives. VirusTotal Monitor service allows developers to upload their application files to a private cloud store where they are scanned every day using anti-malware solutions from antivirus vendors in VirusTotal. Every time the service […]
Flight tracking service Flightradar24 suffered a data breach
The popular flight tracking service Flightradar24 has discovered a data breach that affected one of its servers. The company notified the incident to its users via email and asked them to change their passwords, affected users’ passwords have been reset. FlightRadar24 promptly reported the incident to the Swedish Data Protection Authority in […]
Espionage Group Hits Satellite, Telecoms, and Defense Companies
Symantec’s artificial intelligence-based Targeted Attack Analytics uncovers new wide-ranging espionage operation. One of the most significant developments in cyber espionage in recent years has been the number of groups adopting “living off the land” tactics. That’s our shorthand for the use of operating system features or legitimate network administration tools […]