Cyber Crime

Pierluigi Paganini June 29, 2015
Magnitude exploit kit now include also the CVE-2015-3113

The French researcher Kafeine confirmed that the author of the Magnitude exploit kit have added the code to exploit the Adobe CVE-2015-3113 flaw. Cyber criminals have added the recently the recently discovered CVE-2015-3113 to the popular Magnitude exploit kit. Last week, Adobe released a security update for the critical Adobe Flash Player vulnerability CVE-2015-3113 that is […]

Pierluigi Paganini June 29, 2015
Experts found Government Credentials on the Open Web too easily

Recorded Future discovered that credentials stolen in a number of breaches and belonging to government agencies are available online on several paste sites. According to analysts at Recorded Future, the credentials stolen in several data breached related to 100 US government domains are available online on a number of paste sites and on other websites. […]

Pierluigi Paganini June 28, 2015
Popular travel websites warn Customers of Phishing scam

The customers of popular travel websites are targeted by phishing scam in an attempt to lure them into disclosing personal information. The users of popular travel websites are targeted by phishing campaigns in an attempt to lure them into disclosing personal information. The travel websites have issued an alert to inform their customers of fraudulent […]

Pierluigi Paganini June 28, 2015
Security Affairs newsletter Round 15 – Best of the week from best sources

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from the best sources free for you in your email box. Password Recovery Scam – how to hack a Gmail account Signal amplification and brute-force attack for car thieves Electronic Frontier Foundation – WhatsApp ranked as the worst at protecting […]

Pierluigi Paganini June 28, 2015
US Healthcare companies are the most targeted by Stegoloader

The authors of the Stegoloader malware are exploiting digital steganography to target companies worldwide, mainly US Healthcare companies. A couple of weeks ago, the security researchers at Dell SecureWorks discovered a new strain of malware dubbed Stegoloader, that exploits steganography as an evasion technique. Once infected the victim’s machine, a specific loader module loads a PNG file that contains […]

Pierluigi Paganini June 27, 2015
SCADA systems available for sale in the Underground

Security experts have discovered the availability in underground forums of the credentials and other information related to SCADA systems. SCADA (Supervisory Control and Data Acquisitions) systems are the most important components for the control of processes inside a critical infrastructure. A recent report published by Dell revealed a 100 percent increase in the number of attacks on […]

Pierluigi Paganini June 27, 2015
Europol arrested members of a gang behind Zeus And SpyEye

The law enforcement agencies from six European countries coordinated by the Europol have arrested members of a Ukrainian ring behind Zeus and SpyEye botnets. The law enforcement agencies from six European countries have dealt a serious blow to the organized crime by taking down a Ukrainian ring suspected of developing managing the popular Zeus and […]

Pierluigi Paganini June 27, 2015
Magento payment card stealers are being used in the wild

The security researchers at Sucuri firm discovered a malicious code that could be used to steal payment card data from Magento platform. Security experts at Sucuri have uncovered a new method used by criminals to syphon payment card data from websites based on the Magento e-commerce Platform. Researchers explained that attackers can collect any data submitted […]

Pierluigi Paganini June 26, 2015
SEC investigates FIN4 hackers who target publicly traded firms

The U.S. Securities and Exchange Commission (SEC) is investigating on the activities related to a FIN4 APT targeting executives at publicly traded firms. The U.S. Securities and Exchange Commission (SEC) has launched an investigation on the activities related to a hacking crew targeting executives at publicly traded firms. According to the Reuters, the SEC has contacted at least […]

Pierluigi Paganini June 26, 2015
Darknets in the Deep Web, the home of assassins and pedophiles

Security experts at Trend Micro published a report on the Deep Web and related illegal activities that exploit the darknets it contains. Experts at TrendMicro published an interesting report on the Deep Web focusing their analysis on the services and products available in the dark part of the internet that is not indexed by the principal search […]