Tag: Feedly

  • Hackers Use Basic Tools After Breaching Your Network

    Hackers Use Basic Tools After Breaching Your Network http://ift.tt/294LgLa Standard Tools Leveraged in 99% of Post-Intrusion Activities: Report As it turns out, attackers use standard networking, administration and other tools in most post-intrusion activities, and not malware, a recent report from behavioral attack detection provider LightCyber reveals. Meant to uncover the top tools attackers use…

  • [local] – Cuckoo Sandbox Guest 2.0.1 – XMLRPC Privileged Remote Code Execution

    [local] – Cuckoo Sandbox Guest 2.0.1 – XMLRPC Privileged Remote Code Execution http://ift.tt/299ZOMo # -*- coding: utf8 -*- “”” # Exploit Title: Cuckoo Sandbox Guest XMLRPC Privileged RCE PoC # Date: June 28th 2016 # Exploit Author: Rémi ROCHER # Vendor Homepage: http://ift.tt/295EOHt; # Software Link: http://ift.tt/29fL4JI; # Version: <= 2.0.1 # Tested on: MS…

  • Pandora tells some users to reset their passwords – Graham Cluley Security News

    Pandora tells some users to reset their passwords – Graham Cluley Security News http://ift.tt/29qHgnS Graham Cluley Security News Pandora tells some users to reset their passwordsGraham Cluley Security NewsSome users of the Pandora Radio have been advised to change their passwords – not because the music streaming service has suffered a data breach, but because…

  • Don’t pay the Ransom! AVG releases six free decryption tools to retrieve your files

    Don’t pay the Ransom! AVG releases six free decryption tools to retrieve your files http://ift.tt/294C3U6 Ransomware has proven very lucrative for criminals. Many have extended their “business” models by adding ransomware to their malicious catalog. To help prevent personal data and files being held hostage by cybercriminals, we have previously, advised on how to avoid…

  • Mobile ransomware use jumps, blocking access to phones

    Mobile ransomware use jumps, blocking access to phones http://ift.tt/29ggrUn The number of users infected with mobile ransomware is skyrocketing, as hackers try to expand the number of potential victims they can target. Compared with a year ago, almost four times as many users are being attacked by mobile ransomware, security firm Kaspersky Lab said on…

  • Overwhelming Majority of Android Devices Don’t Have Latest Security Patches

    Overwhelming Majority of Android Devices Don’t Have Latest Security Patches http://ift.tt/292RLRi Only 17% of Android Devices Have Latest Security Patches Although roughly 68% of all Android devices are eligible to receive monthly security updates, the vast majority don’t have the latest security patches applied, a recent report from Duo Security reveals. For nearly a year,…

  • Hacker tricks Facebook into giving him access to someone else’s account without really hacking – International Business Times UK

    Hacker tricks Facebook into giving him access to someone else’s account without really hacking – International Business Times UK http://ift.tt/295vorg Facebook got tricked by a hacker into letting him gain access to someone else’s account. The hacker allegedly contacted Facebook posing as a user and claiming that he was unable to access his account. He…

  • EduCrypt: A ransomware that teaches victims a lesson about internet safety

    EduCrypt: A ransomware that teaches victims a lesson about internet safety http://ift.tt/2954O5F Jakub Kroustek discovered EduCrypt, which is based on the open source Hidden Tear ransomware. Threat Intel via CERT-EU : EMM AlertFilter System: CERT-LatestNews http://ift.tt/1gYYfLb June 29, 2016 at 09:28AM

  • Detecting DNS Data Exfiltration

    Detecting DNS Data Exfiltration http://ift.tt/29553xO Cisco Blog > Threat Research Threat Research Detecting DNS Data Exfiltration The recent discovery of Wekby and Point of Sale malware using DNS requests as a command and control channel highlights the need to consider DNS as a potentially malicious channel. Although a skilled analyst may be able to quickly…

  • Security Firm Hijacks Cyber-Espionage Server Infrastructure from Iranian APT

    Security Firm Hijacks Cyber-Espionage Server Infrastructure from Iranian APT http://ift.tt/29cgkMr US security firm Palo Alto Networks has managed to sinkhole the C&C server infrastructure of a threat group activating from Iran’s border that had focused on high-value targets all over the globe. The company first came across the group’s activities at the start of May,…