Cybersecurity News


Malicious Domain in SolarWinds Hack Turned into ‘Killswitch’

A key malicious domain name used to control potentially thousands of computer systems compromised via the months-long breach at network monitoring software vendor SolarWinds was commandeered by security experts and used as a "killswitch" designed to turn the sprawling cybercrime operation against itself, KrebsOnSecurity has learned.
16 December 2020

Ryuk, Egregor Ransomware Attacks Leverage SystemBC Backdoor

Ryuk, Egregor Ransomware Attacks Leverage SystemBC Backdoor In the past few months researchers have detected hundreds of attempted SystemBC deployments globally, as part of recent Ryuk and Egregor ransomware attacks.
16 December 2020

Outing of FSB hit squad highlights Russia's data security problem

Outing of FSB hit squad highlights Russia's data security problem

Analysis: trade in stolen data is a boon for investigators and a headache for Kremlin

In early 2019, the journalist Andrei Zakharov managed to buy his own phone and banking records in a groundbreaking investigation into Russia’s thriving markets in stolen personal data, in which law enforcement and telecoms employees can be contracted anonymously to dip into their systems and pull out sensitive details on anyone.

A year and a half later, investigators from Bellingcat and the Insider used some of the same tools and clever analysis to out a secret FSB team that had been tasked with killing Alexei Navalny using a novichok nerve agent.

Related: Russian FSB hit squad poisoned Alexei Navalny, report says

Related: 'We got really lucky': how novichok suspects' identities were revealed

Continue reading...
16 December 2020

The SolarWinds Perfect Storm: Default Password, Access Sales and More

The SolarWinds Perfect Storm: Default Password, Access Sales and More Meanwhile, Microsoft and other vendors are quickly moving to block the Sunburst backdoor used in the attack.
16 December 2020

Patching Still Poses Problems for Industrial Controllers, Networking Devices

More than 90% of devices that run the popular VxWorks embedded operating system remain vulnerable to critical flaws disclosed more than a year ago.
16 December 2020

Sextortionist Campaign Targets iOS, Android Users with New Spyware

Sextortionist Campaign Targets iOS, Android Users with New Spyware Goontact lures users of illicit sites through Telegram and other secure messaging apps and steals their information for future fraudulent use.
16 December 2020

Why Secure Email Gateways Rewrite Links (and Why They Shouldn't)

Why Secure Email Gateways Rewrite Links (and Why They Shouldn't) Redirecting a user to a trusted server buys a secure email gateway company some time while it decides whether a URL is malicious -- but there are avoidable drawbacks to this approach.
16 December 2020

SSO and MFA Are Only Half Your Identity Governance Strategy

We need better ways to manage user identities for accessing applications, especially given the strain it places on overworked IT and security teams.
16 December 2020

FICO launches cryptocurrency trade risk solution for banks

The software will bring crypto risk assessment to KYC processes.
16 December 2020

Cybersecurity Advent calendar: Stay close to one another… Safely!

This year, many of us will be celebrating Christmas with our loved ones virtually, however we shouldn’t underestimate the value of securing our online communication.

The post Cybersecurity Advent calendar: Stay close to one another… Safely! appeared first on WeLiveSecurity

16 December 2020

New Goontact spyware discovered targeting Android and iOS users

Most Goontact-laced apps are targeting Asian users in Chinese speaking countries, Korea, and Japan.
16 December 2020

SolarWinds said no other products were compromised in recent hack

SolarWinds has released today updates that "replaces the compromised component" in its Orion platform.
15 December 2020

Microsoft to quarantine SolarWinds apps linked to recent hack starting tomorrow

After only showing detection alerts, Microsoft moves to block trojanized SolarWinds apps from running, opening the door for some IT issues for some of its customers.
15 December 2020

Concerns Run High as More Details of SolarWinds Hack Emerge

Enterprises running company's Orion network management software should assume compromise and respond accordingly, security experts say.
15 December 2020

Twitter Fined in Irish GDPR Action

The $547K fine results from an issue Twitter reported in 2019.
15 December 2020

Subway Sandwich Loyalty-Card Users Suffer Ham-Handed Phishing Scam

Subway Sandwich Loyalty-Card Users Suffer Ham-Handed Phishing Scam Subway loyalty program members in U.K. and Ireland have been sent scam emails to trick them into downloading malware.
15 December 2020

Easy WP SMTP Security Bug Can Reveal Admin Credentials

Easy WP SMTP Security Bug Can Reveal Admin Credentials A poorly configured file opens users up to site takeover.
15 December 2020

Gitpaste-12 Worm Widens Set of Exploits in New Attacks

Gitpaste-12 Worm Widens Set of Exploits in New Attacks The worm returned in recent attacks against web applications, IP cameras and routers.
15 December 2020

Firefox Patches Critical Mystery Bug, Also Impacting Google Chrome

Firefox Patches Critical Mystery Bug, Also Impacting Google Chrome Mozilla Foundation releases Firefox 84 browser, fixing several flaws and delivering performance gains and Apple processor support.
15 December 2020

Medical Imaging Leaks Highlight Unhealthy Security Practices

More than 45 million unique images, such as X-rays and MRI scans, are accessible to anyone on the Internet, security firm says.
15 December 2020