Hacking

Pierluigi Paganini April 09, 2020
Phishers prefer Tesla, top 3 malware strains in Coronavirus phishing campaigns

Group-IB’s CERT-GIB analyzed hundreds of coronavirus-related phishing emails and discovered top malware strains in COVID-19 campaigns Group-IB’s Computer Emergency Response Team (CERT-GIB) analyzed hundreds of coronavirus-related phishing emails between February 13 and April 1, 2020. Spyware turned out to be the most common malware class hiding in fraudulent COVID-19 emails, with AgentTesla topping the list of phishers’ favorite strains. Group-IB researchers also discovered that coronavirus […]

Pierluigi Paganini April 09, 2020
German foreign ministry limits the use of Zoom over security concerns

The German foreign ministry has restricted the use of the video conferencing service Zoom due to concerns about security vulnerabilities recently discovered. During Coronavirus pandemic video conferencing services have become a precious instrument for the people that worked or studied from home. Zoom is one of the most popular video conferencing platforms, but recently privacy […]

Pierluigi Paganini April 09, 2020
Less than 2% of all daily malspam are Coronavirus-themed attacks, Microsoft reports

Microsoft shares new threat intelligence, the IT giant pointed out that malspam activities have not increased due to Coronavirus outbreak. In recent weeks, security firms and experts reported numerous Coronavirus-themed attacks, now Microsoft shares new threat intelligence on malicious activities during the pandemic. Despite threat actors are exploiting the current coronavirus pandemic to target users, […]

Pierluigi Paganini April 09, 2020
Australian Signals Directorate (ASD) is hacking crooks behind Coronavirus-themed attacks

The Australian government will use any means to crack down on cybercriminals exploiting the coronavirus outbreak, including hacking back. While the number of Coronavirus-themed attacks continues to increase, law enforcement agencies are spending a significant effort to detect and neutralize them. The Australian Signals Directorate (ASD) announced it will employ its offensive cyber capabilities against […]

Pierluigi Paganini April 08, 2020
NASA warns of a significant increase in cyber attacks during Coronavirus outbreak

This week, NASA sent out a memo to its personnel warning of a significant increase in the cyberattacks during the Coronavirus outbreak. NASA sent out a memo to its personnel warning of a significant increase in cyberattacks on the agency while its employees are in smart-working due to the Coronavirus outbreak. According to the Agency, roughly […]

Pierluigi Paganini April 08, 2020
Maze ransomware gang discloses data from drug testing firm HMR

The drug testing firm Hammersmith Medicines Research LTD (HMR), which performs live trials of Coronavirus vaccines, discloses a data breach. Hammersmith Medicines Research LTD (HMR), a London-based company that carries out clinical trials for new medicines and that is on standby to perform live trials of Coronavirus vaccines, has suffered a data breach. On March 21, the […]

Pierluigi Paganini April 07, 2020
xHelper, the Unkillable Android malware that re-Installs after factory reset

xHelper, a new strain of Android malware is able to re-install itself on infected devices even after victims delete it or force a factory reset. xHelper is a piece of malware that was first spotted in October 2019 by experts from security firm Symantec, it is a persistent Android dropper app that is able to reinstall itself even […]

Pierluigi Paganini April 07, 2020
Updated: Italian email provider Email.it hacked, data of 600k users available for sale

A database stolen from the Italian email provider Email.it containing more than 600,000 users is available for sale on the dark web. The Italian email provider Email.it has been hacked, the company admitted the incident while a hacker group named NN Hacking Group is offering the stolen data for sale on the dark web. The group […]

Pierluigi Paganini April 07, 2020
Interpol warns that crooks are increasingly targeting hospitals

While the Coronavirus outbreak is threatening the world, the INTERPOL warns that crooks are increasingly targeting hospitals with ransomware. The INTERPOL (International Criminal Police Organisation) is warning of ransomware attacks against hospitals despite the currently ongoing Coronavirus outbreak. Attackers are targeting organizations in the healthcare industry via malspam campaigns using malicious attachments. The attachments used […]

Pierluigi Paganini April 06, 2020
DarkHotel APT uses VPN zero-day in attacks on Chinese government agencies

DarkHotel nation-state actor is exploiting a VPN zero-day to breach Chinese government agencies in Beijing and Shanghai Chinese security-firm Qihoo 360 has uncovered a hacking campaign conducted by a DarkHotel APT group (APT-C-06) aimed at Chinese government agencies in Beijing and Shanghai. State-sponsored hackers used a zero-day vulnerability in Sangfor SSL VPN servers to gain access […]