News

WinRAR Exploits Massively Used in Recent Attacks

Delaware, USA – March 18, 2019 – Less than a month ago, cyber security community became aware of a severe vulnerability in the archiver, which allows throwing a malicious file into Autorun folder, and to date, researchers have discovered over one hundred of WinRAR exploits used in real attacks. McAfee Labs reported their findings on […]

GMO Sniffer Steals Card Data on US Websites

Delaware, USA – March 15, 2019 – Another group gets into the game using the notorious method of stealing payment card data using JavaScript code inserted to the site. The new family of skimmers, which experts from Group-IB called GMO (after the name of the site associated with the malicious campaign), was found on six […]

Ursnif and Bebloh Target Japan in Joint Campaign

Delaware, USA – March 14, 2019 – A new tsunami of spam struck Japan, infecting users with the latest versions of the Ursnif and Bebloh trojans. In the current campaign, adversaries use a version of Ursnif compiled just a few weeks ago that has a number of new features. Researchers at Cybereason recorded a massive […]

XSS Hole Gives an Easy Way into WordPress

Delaware, USA – March 13, 2019 – Extending WordPress capabilities with plugins doesn’t only widen the default functions but also brings a number of risks. Woocommerce Abandoned Cart Lite plugin provides a webadmin with the report of the products frequently bought from the site as well as the details about the shopping card list. However, […]

Game Dev Under Supply-Chain Attack by Winnti Group

Delaware, USA – March 12, 2019 – Game development business has recently become the target of the notorious Chinese Winnti Group, ESET informs in their research. A gaming platform and two headline games have fallen the victims to the recent attack that compromised the networks and darted in a malicious payload. All three victims of […]

Ryuk Strikes Governmental Systems in Jackson County

Delaware, USA – March 11, 2019 – Local governmental systems in Jackson County, Georgia, suffered an extensive attack that made the officials pay the ransom equal to $400,000 to restore the access to the systems after shutting down all the operations. The local services laid under the necessity of conducting the on-time performance on paper […]

StealthWorker Malware Conducts Distributed Brute Force Attacks

Delaware, USA – March 7, 2019 – Another campaign spreading brute-force malware was observed in the wild by FortiGuard Labs. The StealthWorker malware targets Windows and Linux machines, as well as exfiltrates sensitive information from e-tail websites and also exploits a variety of vulnerabilities of CMSs, phpMyAdmin, Magento. The current StealthWorker campaign doesn’t resort to […]

Jokeroo RaaS Prepares to Take a Piece of GandCrab “Business”

Delaware, USA – March 6, 2019 – The new Ransomware-as-a-Service platform prepares to enter the game and is actively promoted both on the Darknet forums and through social networks. Initially, the attackers behind Jokeroo ransomware tried to present their creation as the newest version of GandCrab but soon abandoned this tactic. The platform is hidden […]

Operation Sharpshooter Definitively Linked to Lazarus Group

Delaware, USA – March 5, 2019 – More indisputable proof of the notorious Lazarus group being responsible for the ‘Operation Sharpshooter’ cyber espionage campaign in late 2018 has been published by McAfee. ‘Operation Sharpshooter’ targeted critical infrastructures, financial and governmental sectors worldwide but most notably in the US, Turkey, and Germany. The initial analysis revealed […]

QBot Trojan Targets Organizations in the US and Europe

Delaware, USA – March 4, 2019 – Only a month has passed since the last QBot malware distribution campaign (also known as QakBot banking trojan), and now its new modification attacks companies in Europe and the USA again. Security researchers at Varonis discovered a wave of phishing attacks using a new incarnation of the infamous […]