Tag: Cyberattack

Production of ASCO Stymied by Ransomware

Delaware, USA ā€“ June 18, 2019 ā€“ One of the leaders of airplane parts manufacturing was informed to have shut down operations at its plants because of a large-scale ransomware attack. Asco Industries who is the leader in the design and manufacture of major functional components for Boeing and Airbus commercial passenger jets, Airbus A400M […]

Read More
Hoya Corp Focalizes Cryptojacking Attempt

Delaware, USA ā€“ April 9, 2019 ā€“ The largest optical products manufacturer Hoya Corporation suffered a cyber attack that infected more than 100 computers compromising usersā€™ credentials and tried to take root for cryptocurrency mining, The Japan Times informs. The network controlling server was brought down on March 1 and the orders processing and production […]

Read More
Ransomware Targets Michigan Daily Graft

Delaware, USA ā€“ April 8, 2019 ā€“ Another local infrastructure was hit by massive ransomware attack. Disruption of routine operations requiring a computer and inability to process payments is only the top of the iceberg of all the issues that Genesee County, Michigan faced trying to restore after the Packman ransomware attack, the abc12 informs. […]

Read More
Bayern Holds Out Against Winnti Malware

Delaware, USA ā€“ April 5, 2019 ā€“ German chemical giant Bayer stood a cyber attack that was meant to steal the companyā€™s sensitive data, Reuters informed. The malware that was further identified as typical of the Chinese Winnti group had infiltrated the system early last year and was closely monitored by Bayerā€™s Cyber Defence Center […]

Read More
Stealthphish investigation: 528 domains involved in BEC attack against Fortune 500 companies

About a week ago we got this info from one of our partners ā€œWe are seeing phishing emails flying in our environment (Internal to Internal)ā€ along with sharing an email sample with us. Today weā€™re going to analyze the recent phishing attacks targeted at Fortune 500 and Global 2000 companies dubbed ā€œStealthphishā€ aimed at compromising […]

Read More
Petya.A / NotPetya is an AI-powered cyber weapon, TTPs lead to Sandworm APT group

Itā€™s been a hot summer for security industry: in less than a week since the initially suspected ransomware Petya.A has turned out to be much more than meets the eye. Security researchers around the world have rightfully dubbed it NotPetya and EternalPetya, as the malware was never meant to ask for ransom ā€“ it was […]

Read More
WannaCry no more: ransomware worm IOC’s, Tor C2 and technical analysis + SIEM rules

Good news everyone! After a rather long day, night and morning of studying the news, researching and hunting the #WannaCryĀ ransomwarewormĀ there are some discoveries to be shared.. This includesĀ HostĀ andĀ NetworkĀ IOCs, their analysis obtained with help of fellowĀ security researchersĀ and practitioners, review of C2 infrastructure and its interactions with Tor. Last but not least are some freeĀ SIEM use casesĀ that […]

Read More