Malware

Pierluigi Paganini September 10, 2015
North Korea exploits a 0-day in the South Korea’s principal Word processor

FireEye suspects that the North Korea is responsible for a number of attacks against the South Korea relying a 0day in the South most popular Word processor. Security experts from FireEye speculate that The North Korea has carried out cyber attacks against entities of the South Korea by exploiting a zero-day ( CVE-2015-6585) in a […]

Pierluigi Paganini September 10, 2015
Microsoft fixed the Windows Media Center Hacking Team bug with the Patch Tuesday

This month’s Patch Tuesday features 12 updates including a fix for a Windows Media Center Hacking Team exploits reported to Microsoft by Trend Micro. In June, the Italian surveillance firm Hacking Team suffered a dramatic data breach, attackers leaked internal data of the company, including email messages and source code of the zero-day exploits used […]

Pierluigi Paganini September 10, 2015
Turla APT Group Abusing Satellite Internet Links

Security experts at Kaspersky Lab published a report on the Turla APT revealing the use Satellite links to control its botnet. According to a new analysis published by the experts at Kaspersky Lab reported that the popular Turla APT group exploited poorly secured satellite infrastructure to hide command-and-control operations. Turla APT was active in the last decade, […]

Pierluigi Paganini September 09, 2015
Musical Chairs: Multi-Year Campaign relying on the Gh0st RAT

Security experts at Paloalto Networks have uncovered a multiyear espionage campaign dubbed Musical Chairs Involving New Variant of Gh0st RAT Malware. The Gh0st RAT malware is a popular remote administration tool (RAT) created in China in the early 2000s that was used in a number of cyber espionage operations. Targeted espionage operations on Tibetan activists, including the Operation Night Dragon and the GhostNet attacks, […]

Pierluigi Paganini September 08, 2015
Adult Player, pornography-focused ransomware takes secret photos of victims

Security firm Zscaler spotted Adult Player, a new malicious pornography-focused ransomware that takes secret photos of victims to blackmail. Security firm Zscaler spotted a new malicious Android app used in a classic extortion scheme to request a ransom to the victims. The malicious app dubbed Adult Player appeared offers pornographic content to its users, but in […]

Pierluigi Paganini September 08, 2015
Hundreds million legit websites could serve Ransomware because of Script Injection compromise

Heimdal Security published an interesting post on the increase in malicious scripts that are being injected into legit websites in order to serve ransomware. Heimdal Security recently published an interesting blog post on the increase in malicious scripts that are being injected into legit websites in order to serve malware. The attackers compromise websites running […]

Pierluigi Paganini September 06, 2015
Carbanak trojan reloaded! A new variant spotted in the wild

The CSIS Security Group has spotted a new version of the notorious Carbanak Trojan in the wild targeting financial organizations in Europe and US. Do you remember the Carbanak gang? In February, researchers from Kaspersky discovered that a multinational gang of hackers dubbed Carbanak that swiped 1 Billion dollars from 100 financial institutions across 30 countries, most of the […]

Pierluigi Paganini September 04, 2015
Match com, millions online daters at risk due to a malvertising campaign

Malwarebytes has uncovered a new malvertising campaign targeting the Match.com ‘s ad network which has been breached by a malware campaign. Are you a UK single looking for love and passion? Be aware another threat is menacing dating communities, this time the popular dating web site Match.com and its  5.5 million British users suffered a […]

Pierluigi Paganini September 04, 2015
New singular Android Ransomware relies on the XMPP protocol

A new variant of Android ransomware relies on the instant messaging protocol XMPP to establish a communication with C&C servers. According to security researchers at Check Point Software Technologies a new Android ransomware disguised as a video player app implements a method of communication different from any other similar threat. This Android ransomware is different from […]

Pierluigi Paganini September 02, 2015
Once again Chinese smartphones infected with pre-installed malware

Security experts at G-Data security firm have discovered new cases of Chinese Android mobile devices infected by pre-installed malware. Security researchers from G DATA have discovered more than two dozen Android mobile phones from different manufacturers already infected by pre-installed malware. The kits analyzed by the company are commercialized by many manufacturers including Huawei, Lenovo […]