Cyber Crime

Pierluigi Paganini January 07, 2016
Authors digitally signed Spymel Trojan to evade detection

Zscaler ThreatLabZ detected a new infostealer malware family dubbed Spymel that uses stolen certificates to evade detection. In late December, security experts at Zscaler ThreatLabZ detected a new infostealer malware family dubbed Spymel that uses stolen certificates to evade detection. “ThreatLabZ came across yet another malware family where the authors are using compromised digital certificates to evade detection. The malware family in […]

Pierluigi Paganini January 06, 2016
Phantom Squad took credit for the PlayStation network outage

The hacking crew Phantom Squad claims responsibility for an alleged DDoS attack that brought down the PlayStation Network. Around 13:00 EST on Monday, The PlayStation Network suffered a major outage worldwide, Sony early confirmed that the network was “experiencing issues” and its status page showed that the problems were affecting all of its major services. Sony […]

Pierluigi Paganini January 05, 2016
Dating scam package offered in the underground

The popular security expert Brian Krebs has reviewed a dating scam package offered in the underground by Russians fraudsters. Russians fraudsters have automated the sale of plug-and-play online dating scam packages. As usual happens in these cases, these services are offered on underground websites specialised in online frauds,  crooks promise a response rate of 1.2 percent […]

Pierluigi Paganini January 04, 2016
China hacked thousands of Hotmail accounts belonging to Tibetan and Uighur minorities

After many years, Microsoft admitted that Chinese authorities hacked thousands of Hotmail accounts, belonging to China’s Tibetan and Uighur minorities. After many years, Microsoft finally concluded that Chinese authorities indeed hacked thousands of Hotmail accounts, belonging to China’s Tibetan and Uyghur minorities, but at the time did not warn the users, allowing the victims to […]

Pierluigi Paganini January 03, 2016
Analyzing Ransom32, the first JavaScript ransomware variant

Ransom32 is a new crypto-ransomware variant recently reported, it is the first ransomware variant that has been developed in the JavaScript. Ransom32 is a new crypto-ransomware variant that was first reported on December 29th, 2015, by an infected user on the Bleeping Computer forums. It is the first ransomware variant that has been developed in the […]

Pierluigi Paganini January 01, 2016
All BBC Websites went down after a major DDoS attack

The BBC website and iPlayer service went down on December 31th morning following a major cyber attack raising panic on the social media. The cyber attack started at 0700 GMT when all the visitors to the site started seeing an error message. Thousands of users complained on social media after seeing the error message, and the […]

Pierluigi Paganini December 29, 2015
Former Employee tried to sell Yandex Source Code for Just $29K

A former employee at stole the source code of the Yandex Search Engine and its algorithms and tried to sell the for tens of thousands of euro. A former employee, Dmitry Korobov, of Russian search engine Yandex is accused of stealing the source code and algorithms implemented by the company. The man alleged attempted to sell […]

Pierluigi Paganini December 29, 2015
A new emergency patch for Adobe Flash Zero-Day, update your system!

Adobe has released security patches for Adobe Flash Player to fix critical vulnerabilities that could be exploited to take control of the affected system. Adobe released an emergency patch for Flash Zero-Day (CVE-2015-8651) that is currently being exploited in targeted attacks. The out-of-band security update issued on Monday fix a number of security vulnerabilities that could be exploited […]

Pierluigi Paganini December 28, 2015
CVE-2015-8562 – 16,000 Daily Attacks on vulnerable Joomla servers

Experts at Symantec discovered that hackers quickly take advantage of CVE-2015-8562 remote code execution to compromise Joomla servers. Joomla recently patched the CVE-2015-8562 vulnerability that could be exploited by attackers for remote code execution. According to the security expert Daniel Cid from Sucuri, hundreds of attacks are now taking place. “What is very concerning is that this […]

Pierluigi Paganini December 28, 2015
Darkweb, a look back at 2015 events and 2016 predictions

Which are the main events observed in the darkweb during the 2015 and what to expect in the next 12 months? The DarkWeb is a set of publicly accessible content that are hosted on websites whose IP address is hidden, but to which anyone can access it as long as it knows the address. The […]