Cyber Crime

Pierluigi Paganini December 17, 2014
Operation Tornado – FBI Used Metasploit to unmask Tor users

Operation Tornado is the first time that FBI deployed a tracking code broadly against every visitor to a website, instead of targeting a particular user. The Wired portal has published a detailed post to describe how the FBI used a collection of freely available exploits and hacking tool to de-anonymize users in the Tor network. Wired revealed […]

Pierluigi Paganini December 16, 2014
TSPY_BANKER Banking Trojan Targets banks in South Korea

Security experts at Trend Micro detected a new banking trojan dubbed TSPY_BANKER.YYSI which uses Pinterest as command and control system. According to researchers at Trend Micro once again, banks in South Korea are targeted by a new financial malware designed to target their customers. The attackers have targeted customers of the principal financial institutions of […]

Pierluigi Paganini December 16, 2014
Sony Pictures Entertainment is fighting back

Sony Pictures is adopting various measures to contains damages including a “fighting back” activity against website that share the stolen data. We will talk about the Sony Pictures data breach for a long time, the cyber attacks conducted by the GOP hacking team is causing serious damages to the company. It is early to estimate the overall economic impact […]

Pierluigi Paganini December 16, 2014
Worm exploits Shellshock to infect QNAP systems

Security experts at Sans Institute discovered a worm which exploits the popular Shellshock flaw to compromise QNAP systems in the wild. Experts at Sans Institute have discovered a new series of attacks in the wild exploiting the Shellshock attack code to compromise disk storage systems made by the Taiwan-based QNAP firm. The threat actors used […]

Pierluigi Paganini December 15, 2014
SoakSoak Malware infected more than 100,000 WordPress Websites

Google blacklisted over 11000 domains that were infected with this SoakSoak malware which redirect user traffic and download malicious payloads on targets. WordPress is one of the most popular content management system (CMS) with more than 70 million websites on the Internet. For this reason, it is under continuous attack by threat actors that try to […]

Pierluigi Paganini December 14, 2014
Android malware used to spread pirated Assassin Creed App

Security experts at Zscaler discovered a pirated version of the Assassin Creed mobile app for Android that was used to spread a malware. Security experts at Zscaler discovered a trojanized and pirated version of the popular Assassin Creed application for Android platform. Assassin Creed is one of the most popular paid video games, available for almost […]

Pierluigi Paganini December 14, 2014
UK – A new GCHQ-NCA unit will catch pedophiles in the Deep Web

Prime Minister Cameron announced that a newborn cyber unit composed by officials from GCHQ and NCA will fight online pedophiles even in the Deep Web. Prime Minister David Cameron has revealed that national intelligence agencies will join the efforts to track and arrest online abusers and pedophiles. The British Prime Minister announced that the British Intelligence […]

Pierluigi Paganini December 13, 2014
Serbia – Hackers claimed to have stolen the entire national database

A group of hackers claims to have compromised the national database system stolen all information related to citizens resident in Serbia. Hackers claim to have data about all citizens in Serbia, if the news is confirmed this is another clamorous data breach that could have serious repercussion on the Government. It seems that cyber criminals hacked […]

Pierluigi Paganini December 13, 2014
Internet of Things – Security and privacy issues presented at ISACA Roma & OWASP Italy conference

Yesterday Pierluigi Paganini presented at the ISACA Roma & OWASP Italy conference the state of the art for the Internet of Things paradigm. Yesterday I presented at the ISACA Roma & OWASP Italy conference the state of the art for the Internet of Things paradigm. The presentation highlights the security and privacy issues for the […]

Pierluigi Paganini December 12, 2014
Electronic Payment Service Cash Anywhere Publicly Admits to Security Breach

Shockingly, for the last five years, hackers have been using a banking malware to siphon unencrypted credit/debit card information from the computer networks of Charge Anywhere, an electronic payment service used by millions of merchants worldwide. Charge Anywhere, an electronic payment service provider to merchant publicly admitted to a security breach that may have compromise […]