Month: August 2019
-
SystemBC, a new proxy malware is being distributed via Fallout and RIG EK
Researchers at Proofpoint discovered SystemBC, a new strain of proxy malware that is being distributed via Fallout and RIG Exploit Kits Source: SystemBC, a new proxy malware is being distributed via Fallout and RIG EK
-
Alfred, Lord Exploit Kit
Exploit kits come and go, rise and fall, like the ocean currents. In order to be successful they must be up-to-date and utilise the latest and greatest in consumable exploits. Virus Bulletin‘s Adrian Luca recently discovered a brand new exploit kit, which has called the Lord EK. Malwarebytes have be quick on the draw and…
-
Threat Roundup for July 26 to Aug. 2
Talos: Talos is publishing a glimpse into the most prevalent threats we’ve observed between July 26 and Aug. 2. As with previous roundups, this post isn’t meant to be an in-depth analysis. Instead, this post will summarize the threats we’ve observed by highlighting key behavioural characteristics, indicators of compromise, and discussing how our customers are…
-
BlueKeep built into exploitation tool, sparks fear of Wannacry style infection
This BlueKeep exploit is now progressing very quickly now: A working BlueKeep exploit module is available now, at an “expensive” monthly rate: BlueKeep built into exploitation tool, sparks fear of Wannacry style infection
-
Cyber Kill Chain Reimagined: Industry Veteran Proposes “Cognitive Attack Loop”
This is a fascinating read which acknowledges that current attacker methodologies have evolved beyond the old smash-and-grab approach to infiltrate and remain. This also highlights how far defenders actually are behind the curve, because attackers have been using these methods for a few years now and we are only just catching up. “The Cyber Kill…
-
Honda’s Security ‘Soft Spots’ Exposed in Unsecured Database
A researcher said that he found a Honda ElasticSearch database exposing 40GB of internal system and device data. Source: Honda’s Security ‘Soft Spots’ Exposed in Unsecured Database
-
Cisco ‘Knowingly’ Sold Hackable Video Surveillance System to U.S. Government
Willful negligence and deceit by Cisco…. and I thought Huawei were the bad guys. “Cisco Systems has agreed to pay $8.6 million to settle a lawsuit that accused the company of knowingly selling video surveillance system containing severe security vulnerabilities to the U.S. federal and state government agencies.” Source: Cisco ‘Knowingly’ Sold Hackable Video Surveillance…