News

WannaMine: a New Round of Threat Development

Delaware, USA – January 29, 2018 – CrowdStrike reported in their blog about a new round of WannaMine fileless malware activity. The operations of several companies were almost completely paralyzed due to infection with this virus. WannaMine was first discovered at the end of October 2017 by researchers from PandaLabs, but shortly after detection, its […]

Mezzo Banking Trojan Gathers Financial Data for Further Campaigns

Delaware, USA – January 29, 2018 – Threat actors leverage new Mezzo banking trojan to prepare a large-scale attack. At the moment, this trojan just collects and uploads data to the command and control servers, but it has the functionality to replace the files of financial software, as researchers from Kaspersky Lab report. Malware can […]

Two More Campaigns Spreading Monero Cryptocurrency Miners

Delaware, USA – January 26, 2018 – The growing popularity of the Monero cryptocurrency for operations in Darknet leads to new campaigns distributing various cryptocurrency miners. Adversaries attack both corporate web servers and ordinary users. Browsers started to introduce protection from Javascript miners so last weeks there has been an increase in the number of […]

New IoT Botnets Gain Strength

Delaware, USA – January 25, 2018 – A few days ago, a new IoT botnet was discovered; researchers from Bitdefender dubbed it HNS. Botnet continues to proliferate around the world: in the last 24 hours the number of bots in it has almost doubled, and at the moment there are more than 24,000 devices. Initially, […]

Monero Ransomware: New Trend or Test for Delivery Mechanism?

Delaware, USA – January 24, 2018 – The popularity of bitcoin among cybercriminals continues to fall, and forensic firm Chainalysis says that the use of bitcoin in the DarkNet fell from 30% to 1%. More and more adversaries switch to other crypto-currencies to make it more challenging to track them. Researchers from Fortinet discovered an […]

Malvertising Campaign EvilTraffic Leverages Thousands Compromised Websites

Delaware, USA – January 23, 2018 – Experts from CSE Cybsec discovered a huge malvertising campaign – EvilTraffic. Adversaries attack WordPress websites exploiting CMS vulnerabilities, and then upload to compromised websites a zip archive with malware, which after unpacking redirects visitors via hitcpm.com to malicious sites generating advertising traffic. The advertising websites contain links to […]

Vulnerabilities in Gemalto’s SafeNet Sentinel

Delaware, USA – January 23, 2018 – 14 serious vulnerabilities were discovered in Gemalto’s SafeNet Sentinel solution, some of which could lead to remote code execution or denial of service. Gemalto has already released patches that fix detected vulnerabilities but did not notify users of the severity of existing threats, so not all solutions have […]

SamSam ransomware campaign

Delaware, USA – January 22, 2018 – Over the past month, a hacker group that spreads SamSam Ransomware has conducted a number of successful attacks against organizations in the US, Canada and India. Since December 25, adversaries have managed to get more than 25 bitcoins ransom. Significant media attention was attracted to the story of […]

Dridex Banking Trojan is Distributed via Compromised FTP Sites

Delaware, USA – January 22, 2018 – Last week, researchers from Forcepoint Security Labs registered a spam campaign distributing the latest version of Dridex banking trojan. For approximately seven hours there were sent about 10,000 emails containing links to compromised FTP servers. Adversaries used two document types in this campaign: DOC files abused the DDE […]

Dark Caracal: Global Cyber Espionage Campaign Operators

Delaware, USA – January 19, 2018 – It became known about yet another global cyber espionage campaigns, which were conducted for at least five years and affected thousands of victims in more than 20 countries. Researchers from Lookout and the Electronic Frontier Foundation published the detailed report on the operations of a cybercriminal group dubbed […]