Hacking

Pierluigi Paganini July 27, 2019
Hackers inject Magecart multi-gateway skimmer in fake Google domains

Attackers deployed a Magecart credit card skimmer script into fake Google domains used to trick visitors into making online transactions.  Experts at Sucuri discovered threat actors using fake Google domains hosting a Magento skimmer script used to steal payment data when unaware visitors make transactions. The campaign was uncovered when the owner of a website […]

Pierluigi Paganini July 27, 2019
Marcus Hutchins sentenced to supervised release, no jail for the expert

Marcus Hutchins has been sentenced to “time served” and one year of supervised release his role in developing and selling the Kronos banking malware. The popular researcher Marcus Hutchins, also known as MalwareTech, has been sentenced to “time served” and one year of supervised release his role in developing and selling the Kronos banking malware. […]

Pierluigi Paganini July 26, 2019
A flaw in LibreOffice could allow the hack of your PC

LibreOffice users have to know that their unpatched computers could be hacked by simply opening a specially crafted document. Bad news for LibreOffice users, the popular free and open-source office suite is affected by an unpatched remote code execution vulnerability Recently, LibreOffice released the latest version 6.2.5 that addresses two severe flaws tracked as CVE-2019-9848 and CVE-2019-9849. […]

Pierluigi Paganini July 26, 2019
Johannesburg residents left in the dark after a ransomware attack at City Power

South African electric utility City Power that provides energy to the city of Johannesburg, has suffered serious disruptions after a ransomware attack. A ransomware infected systems at City Power, an electricity provider in the city of Johannesburg, South Africa, and some residents were left without power. The energy utility informed its customers via Twitter of […]

Pierluigi Paganini July 26, 2019
Imperva blocked the largest Layer 7 DDoS attack it has ever seen

Researchers at Imperva revealed that an undisclosed streaming service was hit by a massive DDoS attack that stopped it for 13 days. An undisclosed streaming service was hit by a 13‑day DDoS massive attack powered by a Mirai botnet composed of 402,000 IoT devices. Imperva confirmed that its systems were able to repel the attack […]

Pierluigi Paganini July 25, 2019
New variant of Linux Botnet WatchBog adds BlueKeep scanner

Experts at Intezer researchers have spotted a strain of the Linux mining that also scans the Internet for Windows RDP servers vulnerable to the Bluekeep. Researchers at Intezer have discovered a new variant of WatchBog, a Linux-based cryptocurrency mining botnet, that also includes a module to scan the Internet for Windows RDP servers vulnerable to the Bluekeep vulnerability (CVE-2019-0708). […]

Pierluigi Paganini July 25, 2019
German firms BASF, Siemens, Henkel hit by cyber attacks

A new wave of cyber attacks carried out by a China-linked APT group hit German blue-chip companies BASF, Siemens, Henkel and others. On Wednesday, German blue-chip companies BASF, Siemens, Henkel along with a host of others confirmed they had been targeted by a wave of cyber attacks. German media reported that the cyber attacks were […]

Pierluigi Paganini July 24, 2019
Computers at Indiana County infected with a ransomware

The Indiana County is the last victim in a wave of ransomware attacks that hit US cities, officials are investigating the extent of the attack. The computer systems of the Indiana County were hit by a ransomware attack, officials are currently investigating the extent of the attack. Officials of an Indiana county say they are […]

Pierluigi Paganini July 24, 2019
Emsisoft releases the third decryptor in a few days, this time for LooCipher ransomware

Security experts at Emsisoft released the third decryptor in a few days, this time announced a free one for the LooCipher ransomware. A few days ago, the experts at Emsisoft released two free decryptors for the ZeroFucks ransomware and Ims00rry ransomware, now the malware team announced the released of a decryptor for the LooCipher ransomware. […]

Pierluigi Paganini July 24, 2019
Malvertising campaign exploits recently disclosed WordPress Plugin flaws

Experts at Defiant have uncovered a campaign that exploited recently disclosed plugin vulnerabilities to inject malware into websites. Experts at Defiant, the company that developed the Wordfence security plugin for WordPress, uncovered a malvertising campaign that leverages recently disclosed plugin flaws to inject malicious code into websites. Threat actors behind the malvertising campaign are leveraging […]