Year: 2019

Lazarus Snoops Around Russia with Keymarble RAT

Delaware, USA ā€“ February 21, 2019 ā€“ The notorious Lazarus APT group was noticed coming against Russian organizations with customized Office documents composed for the victim market. Against all the odds, the North Korean angeled Lazarus sets sights on their friendā€™s businesses. The attack started with delivering a ZIP archive with a sideshow PDF and […]

Read More
Unceasingly Developed Rietspoof in Action

Delaware, USA ā€“ February 20, 2019 ā€“ Uprising activity of yet another malware was spotted by security researchers of Avast. The Rietspoof malware is now being spread in Skype and Live Messenger and downloads other malicious software from its command and control server. Rietspoof was first noticed in August 2018 and was updated monthly, but […]

Read More
CracksNow is Banned for Distributing GandCrab Ransomware

Delaware, USA ā€“ February 19, 2019 ā€“ A number of torrent sites banned a popular trusted uploader after multiple justified claims, TorrentFreak reports. It is the highly popular ransomware that hopped on another ride to abuse by hiding in the kindly rendered keygens and cracks. The files downloaded from the CracksNow uploader contain GandCrab ransomware […]

Read More
Trickbot Starts Collecting RDP Credentials

Delaware, USA ā€“ February 18, 2019 ā€“ Trickbot became interested in victims’ credentials at the end of last year, and just a few months later, malware authors expanded the trojanā€™s functions adding capabilities of stealing RDP credentials. Trend Micro’s experts analyzed the latest campaign and discovered new features in one of its modules. In addition […]

Read More
Maltaā€™s Staminal Bank of Valletta Victimized by Overseas Hackers

Delaware, USA ā€“ February 15, 2019 ā€“ Another bank was brought to ensure its customers about their accountsā€™ being effectively protected and unaffected after the security breach. Bank of Valletta with the Maltese Government being its largest stakeholder had to knock off its services including email services, operations with cards, internet and mobile banking, and […]

Read More
Astaroth Malware Abuses Antivirus Tools to Steal Data

Delaware, USA ā€“ February 14, 2019 ā€“ The infamous Astaroth trojan started to exploit antivirus solutions to hide its activities and download additional modules. Cybereason researchers analyzed a new campaign targeting the countries of South America and Europe and discovered that adversaries found a way to abuse solutions popular in these regions (Avast and security […]

Read More
Tweaked EXE Snakes Into MacOS

Delaware, USA ā€“ February 13, 2019 ā€“ Adversaries are constantly looking for ways to infect Mac systems with malware bypassing Gatekeeper, and sometimes they succeed. Unexpectedly a .exe file overbore MacOS native security protection tool that enabled it to deploy the malicious file, Trend Micro researchers reported. A new malware delivering campaign hits victims in […]

Read More
New Linux Malware Hunts Its Predecessor to Mine Cryptonight

Delaware, USA ā€“ February 12, 2019 ā€“ A new round of evolution of coinmining infections on Linux systems. In the second half of 2018, attacks on Linux servers became more frequent: in September, cross-platform malware XBash started its attacks on Windows and Linux servers, and in less than two months, adversaries began the active distribution […]

Read More
Mario Hits to Let Off GandCrab Ransomware

Delaware, USA ā€“ February 11, 2019 ā€“ Another geo-targeted threat was detected being spread posing as a payment notice with a .xls attachment understandably conducing the receiver to open the attachment and to enable its content, Bromium researchers informed. Once the attachment is opened, the macro runs the country settings on the attacked system to […]

Read More
US State Agency Hit by QakBot Malware

Delaware, USA ā€“ February 8, 2019 ā€“ A new spam campaign spreading a banking trojan was reported by Cofense researchers. The notorious Emotet botnet is now delivering more advanced malware targeting the US governmental institution. The campaign to deliver the QakBot malware performed typically of Emotet behavior delivering the destructive Office document with macros and […]

Read More