Menu

Monthly Archives: August 2016

Alleged NSA data dump contains sophisticated hacking tools
Let’s Encrypt ups rate limits
Individual arrested in connection with high-profile data at Sage

The City of London Police has confirmed the arrest of a 32-year-old employee in connection with a high-profile data breach at Sage. The woman was apprehended at Heathrow Airport, as part of the force’s “ongoing fraud investigation” into the incident at the accounting and payroll software company. This arrest all but confirms that the unauthorized […]

FireEye warns ‘massive’ ransomware campaign hits US, Japan hospitals
If this headline was a security warning, 90% of you would ignore it
PayPal patches 2FA portal bug
Google hopes to sniff out OS X badware
Fortinet follows Cisco in confirming Shadow Broker vuln
Bitcoin ‘targeted by state sponsored attackers’ says Bitcoin.org
NSA website goes down as hackers auction stolen ‘cyber weapons’
Someone Hacked Traffic Sign with Anti-Police Message in Denver
Cisco confirms two of the Shadow Brokers’ ‘NSA’ vulns are real
Cisco Acknowledges ASA Zero Day Exposed by ShadowBrokers
Aussie Police’ Child Porn Investigation Leads to Hacking of 30+ US TOR User

Ubuntu: 3062-1: OpenJDK 7 vulnerabilities Posted by Anthony Pell    Several security issues were fixed in OpenJDK 7. ========================================================================== Ubuntu Security Notice USN-3062-1 August 16, 2016 openjdk-7 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 14.04 LTS Summary: Several security issues were fixed in OpenJDK 7. Software Description: […]

Red Hat: 2016:1617-01: kernel: Important Advisory Posted by Anthony Pell    An update for kernel is now available for Red Hat Enterprise Linux 6.2 Advanced Update Support. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: kernel security update Advisory ID: RHSA-2016:1617-01 Product: […]

VeraCrypt disk encryption team claims “emails intercepted”
Pokémon GO Spam, Ransomware, On the Rise
Browser Address Bar Spoofing Vulnerability Disclosed
“Hunted” schoolgirls’ nude images and personal info published online
Why you STILL can’t trust password strength meters
Google faces legal action over data-mining emails
Profit-hungry Ghouls raid corporate networks worldwide
WikiLeaks Turkish AKP Email Dumps Contain Malware; Researcher
Video of Hillary Clinton meeting ISIS leader? Nah, it’s a malware attack
IT security woman hits back at sexist trolls on LinkedIn
Non-existent video involving Hillary Clinton and ISIS leader used as bait in malicious spam
Malicious attachment contains Adwind cross-platform remote access Trojan. Read More
Facebook’s unblockable-ads push is a “big bluff”
Beware bogus blue verified checkmark scams on Twitter
ShadowBrokers’ Leak Has ‘Strong Connection’ to Equation Group
Nemucod now spreading banking trojans in Brazil

On the morning of Friday August 12th, ESET researchers noticed a huge outbreak of a new Spy.Banker variant, detected as Spy.Banker.ADEA. It happened at around 12pm CET. This new variant is similar to previous ones used by other banking trojans in South America. During execution, the malware checks if the system’s settings are in Portuguese […]

‘Video jacking’ attack allows attacker to see what you see
Trump’s ‘extreme’ anti-terrorism vetting may be H-1B nightmare
Shark bosses sink teeth into booming ransomware market
Operation Ghoul Targeting Middle Eastern Industrial, Engineering Organizations
Cerber ransomware operation exposed… and boy is it lucrative!
He’s a p0wnball Wizard, and he’s twisted one Ubuntu-powered game
Tech support scammers mess with hacker’s mother, so he retaliated with ransomware
Running a DNSSec responder? Make sure it doesn’t help the black hats
#Shadowbrokers hack could be Russia’s DNC counter-threat to NSA
FalseCONNECT sends vendors scrambling to patch proxy MITM bug
PGP admins: Kill short keys now, or Alice will become Chuck
Pakistani Hacker Gets $5000 for Reporting Flaws in Chrome and FireFox

Risk Level: Very Low. Type: Trojan, Virus, Worm.

After Linux, TCP Exploit Expandable to 80% of Android Devices

Today, we’ll look at yet another variant in the massive crop of malware that takes users’ files hostage: Nemucod ransomware. Nemucod is a ransomware which changes file names to *.crypted. While it’s not a brand new variant, a lot has changed in the last few months, and different methods have been used, but one constant has […]

VeraCrypt Audit Under Way; Email Mystery Cleared Up
Did “The Shadow Brokers” hack NSA cyberweapons worth $500M?
US hotels hit by payment card slurping malware
Pokémon Go for Windows? Beware ransomware!
Vawtrak Banking Trojan Adds DGA, SSL Pinning
Hey crims: Stumped on where to invest? Try this global franchise. No experience needed!
$2.5 Million-a-Year Ransomware-as-a-Service Ring Uncovered
People like using passwords way more than biometrics
Cerber ransomware earns $2.3M with 0.3% response rate
Galaxy Note 7 catches the eye and more
New Point-of-Sale Malware Campaign hits 20 Hotels in US
VeraCrypt security audit: Four PGP-encoded emails VANISH
Credit-card stealing malware hits Hyatt, Marriott, Sheraton hotel chains
Why security is a transversal issue for video games development

How many times in the field of software development have we heard that safety must be considered from the outset to the release – and subsequent maintenance – of the app or program in question? Hundreds, right? Fortunately, developers have understood this fundamental concept for programming, especially those who write code for operating systems or […]

The World Series of Hacking-without humans
A New Wireless Hack Can Unlock 100 Million Volkswagens
How 3 fintech startups are shaking up security
6 security advances worth celebrating

In the spirit of the Olympics, it’s time to celebrate our hard-won computer security defense advancements. Given the endless stream of news about embarrassing hacks and data breaches, I can see why you might be skeptical. The fact is tens of millions of computers are currently exploited, nearly every company is owned, and those that […]

“You dirty RAT” – Spy versus Spy in the cybercrime underworld
A simple way to kill off Twitter trolls
China launches quantum satellite to test spooky action at a distance
White hat pops Windows User Account Control with log viewer data
Brisbane council loses $500k to scammers
Researchers crack homomorphic encryption

Discovered: August 16, 2016 Updated: August 16, 2016 3:24:49 PM Type: Trojan Infection Length: Varies Systems Affected: Windows 2000, Windows 7, Windows 8, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows Server 2008, Windows Vista, Windows XP Antivirus Protection Dates Initial Rapid Release version August 16, 2016 revision 007 Latest Rapid […]

Silk Road suspect “Libertas” can be extradited to US, says court
Shadow Broker hacking group auctions off claimed NSA online spy tools
TCP Flaw in Linux Extends to 80 Percent of Android Devices
Hackers Claim Stealing NSA Hacking Tools; Selling Them Online
Latest Windows UAC Bypass Permits Code Execution
Google AdSense abused to distribute Android spyware

Debian: 3648-1: wireshark: Summary Posted by Anthony Pell    Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3648-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff August 12, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : wireshark CVE ID : CVE-2016-6504 CVE-2016-6505 CVE-2016-6506 CVE-2016-6507 CVE-2016-6508 CVE-2016-6509 CVE-2016-6510 CVE-2016-6511 Multiple vulnerabilities were discovered in the dissectors for NDS, PacketBB, WSP, MMSE, RLC, […]

Red Hat: 2016:1613-01: php: Moderate Advisory Posted by Anthony Pell    An update for php is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…] ===================================================================== Red Hat Security Advisory Synopsis: […]

Red Hat: 2016:1610-01: php54-php: Moderate Advisory Posted by Anthony Pell    An update for php54-php is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: […]

Red Hat: 2016:1612-01: rh-php56-php: Moderate Advisory Posted by Anthony Pell    An update for rh-php56-php is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: rh-php56-php security update Advisory ID: RHSA-2016:1612-01 Product: Red Hat Software Collections […]

Red Hat: 2016:1606-01: qemu-kvm: Moderate Advisory Posted by Anthony Pell    An update for qemu-kvm is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…] ===================================================================== Red Hat Security Advisory Synopsis: […]

Red Hat: 2016:1611-01: php55-php: Moderate Advisory Posted by Anthony Pell    An update for php55-php is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: […]

Red Hat: 2016:1609-01: php: Moderate Advisory Posted by Anthony Pell    An update for php is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…] ===================================================================== Red Hat Security Advisory Synopsis: […]

Debian: 3647-1: icedove: Summary Posted by Anthony Pell    Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3647-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff August 11, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : icedove CVE ID : CVE-2016-2818 Multiple security issues have been found in Icedove, Debian’s version of the Mozilla Thunderbird mail client: Multiple memory safety errors […]

Red Hat: 2016:1605-01: Red Hat OpenShift Enterprise: Moderate Advisory Posted by Anthony Pell    An update is now available for Red Hat OpenShift Enterprise 3.1 and Red Hat OpenShift Enterprise 3.2. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: Red Hat OpenShift […]

Red Hat: 2016:1603-01: mariadb55-mariadb: Important Advisory Posted by Anthony Pell    An update for mariadb55-mariadb is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: mariadb55-mariadb security update Advisory ID: RHSA-2016:1603-01 Product: Red Hat Software Collections […]

An update for mariadb is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: mariadb security update Advisory ID: RHSA-2016:1602-01 Product: Red Hat Enterprise Linux […]

Red Hat: 2016:1604-01: rh-mariadb100-mariadb: Important Advisory Posted by Anthony Pell    An update for rh-mariadb100-mariadb is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: rh-mariadb100-mariadb security update Advisory ID: RHSA-2016:1604-01 Product: Red Hat Software Collections […]

Trojan.Ransomcrypt.BG is a Trojan horse that encrypts files on the compromised computer and asks for payment to decrypt the files. Symantec Security Response is currently investigating this threat and will post more information as it becomes available.

Westin, Marriott, Sheraton Hotels Hit By Payment Card Malware
Tech support scammer tricked into installing ransomware
Pokémon Go Exploitation Saga Continues; Beware of New Ransomware
Christians Against Poverty pleads for forgiveness over data breach
Cisco security crew uncovers bug in industrial control kit
Tor users in the States were hacked by Australian authorities
Blogger turns tables on cyber-scammer by infecting them with ransomware
Facebook VP Adam Mosseri’s Twitter Account Hacked by OurMine
Organizations can learn from Apple’s bug bounty approach
Machine learning offers new hope against cyber attacks