Cyber Crime

Pierluigi Paganini July 15, 2018
FBI: Overall BEC/EAC losses between Oct 2013 and May 2018 result in $12 billion

The number of business email account (BEC) and email account compromise (EAC) scam incidents worldwide reached 78,000 between October 2013 and May 2018. FBI provided further data related to Email Account Compromise, according to the feds, the number of business email account (BEC) and email account compromise (EAC) scam incidents worldwide reached 78,000 between October 2013 and May 2018. “Business […]

Pierluigi Paganini July 14, 2018
A few days after discovery of GandCrab ransomware ver 4.0, experts found 4.1 version

Security experts from Fortinet recently detected a new version of the GandCrab ransomware, ver 4.1, that is being distributed through compromised websites A few days ago, I wrote about the return of the GandCrab ransomware (v4), a new version appeared in the threat landscape and experts at BleepingComputer first reported it. GandCrab ransomware is a young threat, it first […]

Pierluigi Paganini July 13, 2018
Spambot aims at targets WordPress sites in World Cup-Themed spam scam

Imperva observed a spambot targeting WordPress sites aimed at tricking victims into clicking on links to sites offering betting services on FIFA World Cup Security experts from Imperva recently observed a spike in spam activity directed at WordPress websites, attackers aimed at tricking victims into clicking on links to sites offering betting services on the 2018 FIFA […]

Pierluigi Paganini July 12, 2018
Timehop provides additional details on the recent security breach

Timehop has recently announced to have suffered a data breach that affected 21 million user accounts. The company now shares additional details about the incident. Timehop service aims to help people in finding new ways to connect with each other by analyzing past activities, earlier this month, the company revealed that one or more malicious hackers […]

Pierluigi Paganini July 12, 2018
Popular software VSDC official website was hacked and used to distribute malware

Hackers have compromised the website of VSDC, (http://www.videosoftdev.com), a popular company that provides free audio and video conversion and editing software. Experts from Chinese security firm Qihoo 360 Total Security discovered that attackers hijacked the download links of the popular audio and video editor, VSDC. The experts discovered that hackers hijacked download links on the websites […]

Pierluigi Paganini July 11, 2018
Hackers steal $13.5 Million from Israeli Bancor exchange

The Israeli-based decentralized cryptocurrency Bancor exchange is the last victim of a security breach in the cryptocurrency industry. According to a statement published by the Bancor exchange,  an unknown hacker has stolen roughly $13.5 million worth of cryptocurrency. The security breach occurred on July 9, 2018 at 00:00 UTC, the attackers gained access to one […]

Pierluigi Paganini July 10, 2018
BlackTech APT using stolen D-Link certificates to spread malware

A cyber-espionage group tracked as BlackTech is abusing code-signing certificates stolen from D-Link for the distribution of their malware. Security experts from ESET discovered that an APT group tracked as BlackTech is using code-signing certificates stolen from Taiwanese-based tech firm D-Link and the security company Changing Information Technology Inc. According to the experts, the cyber espionage group […]

Pierluigi Paganini July 09, 2018
GoDaddy-owned hosting company Domainfactory hacked

The hosting company Domainfactory has taken down its forums after hackers posted messages claiming to have breached into its infrastructure. While I was writing about the Timehope security breach, another incident is making the headlines, the victim is the German hosting company Domainfactory. The hosting company, that was owned by GoDaddy since 2016, has taken […]

Pierluigi Paganini July 09, 2018
Timehop data breach, data from 21 million users exposed

Timehop, the service that aims to help people in finding new ways to connect with each other by analyzing past activities, has been hacked. Timehop is a service that aims to help people in finding new ways to connect with each other by analyzing past activities. “Timehop created the digital nostalgia category and continues to […]

Pierluigi Paganini July 09, 2018
Hacker hijacked original LokiBot malware to sell samples in the wild

An expert found evidences that demonstrate the current distributed LokiBot malware samples were “hijacked” by a third actor. According to the researcher who goes online by the Twitter handle “d00rt,” samples of the LokiBot malware samples being distributed in the wild are modified versions of the original sample. I just released an article where are […]