Security Affairs newsletter Round 259

Pierluigi Paganini April 12, 2020

A new round of the weekly newsletter arrived! The best news of the week with Security Affairs

Coronavirus-themed attacks March 29 – April 04, 2020
Experts uncovered hidden behavior in thousands of Android Apps
Popular OGUsers hacking forum breached for the second time in a year
DarkHotel APT uses VPN zero-day in attacks on Chinese government agencies
ENISA released a Tool to map dependencies to International Standards
Hackers target Docker servers to deploy the new Kinsing cryptocurrency miner
Key Ring digital wallet exposes data of 14 Million users in data leak
Russian telco Rostelecom hijacks traffic for IT giants, including Google, Amazon and Facebook
Coronavirus: Europol arrests man behind €6M face masks and hand sanitisers scam
Interpol warns that crooks are increasingly targeting hospitals
Italian email provider Email.it hacked, data of 600k users available for sale
Updated: Italian email provider Email.it hacked, data of 600k users available for sale
xHelper, the Unkillable Android malware that re-Installs after factory reset
Dark Nexus, a new IoT botnet that targets a broad range of devices
Maze ransomware gang discloses data from drug testing firm HMR
NASA warns of a significant increase in cyber attacks during Coronavirus outbreak
NSO CEO claims Facebook wanted NSO surveillance tool to spy on users
WhatsApp new policy limits forwarding of viral messages
Australian Signals Directorate (ASD) is hacking crooks behind Coronavirus-themed attacks
German foreign ministry limits the use of Zoom over security concerns
Google and Mozilla address serious flaws in Firefox and Chrome browsers
Less than 2% of all daily malspam are Coronavirus-themed attacks, Microsoft reports
Phishers prefer Tesla, top 3 malware strains in Coronavirus phishing campaigns
Travelex paid $2.3 Million ransom to restore after a ransomware attack
CVE-2020-3952 flaw could allow attackers to hack VMware vCenter Server
DoppelPaymer crew leaked internal confidential documents belonging to aerospace companies
Hacker stole $250K from decentralized Bitcoin exchange Bisq
Sophos Sandboxie is now available as an open-source tool
Tails OS version 4.5 supports the Secure Boot
Fake Cisco ‘Critical Update used in phishing campaign to steal WebEx credentials
Hackers accessed staff mailboxes at Italian bank Monte dei Paschi
SFO discloses data breach following the hack of 2 of its websites
[adrotate banner=”9″][adrotate banner=”12″]

Pierluigi Paganini

(SecurityAffairs – newsletter)

[adrotate banner=”5″]

[adrotate banner=”13″]



you might also like

leave a comment