malware

Pierluigi Paganini January 18, 2016
Some facts that probably you still ignore on the Stuxnet attack

A collection of interesting info about the Stuxnet attack published years ago by The New York Times, a must-read for experts. The popular cyber security expert Mikko Hypponen has retwitted an old blog post on the Stuxnet malware, a good opportunity to summarize the events and understand what is happened behind the scene. In 2011, The […]

Pierluigi Paganini January 18, 2016
A Las Vegas Casino sues IT security firm Trustwave after failing attempt to stop hackers

The Las Vegas Casino firm Affinity Gaming sued Trustwave for allegedly failing a data breach investigation, but Trustwave denies any wrongdoing. Affinity Gaming, a casino operator operating five casinos in Nevada, and six in other locations in the US, has sued the It security company Trustwave for a “bad” investigation, after a network breach it […]

Pierluigi Paganini January 17, 2016
Energy industry under unceasing attack in 2015

A study conducted by TripWire over the past year revealed successful cyber attacks on the energy industry increased as never before. US oil and gas companies are under attack, over 80% of them have reported a significant increase in the number of cyber attacks. According to Tripwire, over the past year successful cyber attacks have increased […]

Pierluigi Paganini January 16, 2016
The Apple Gatekeeper bypassed once again by a researcher

Once again, the security expert Patrick Wardle has demonstrated how to bypass the Apple Gatekeeper security feature. Once again, a security expert demonstrated how to bypass OS X’s Gatekeeper security feature, and the worst news is that the patch distributed by Apple fixes the problem only temporarily. Apple tried to mitigate the attack method (CVE-2015-7024) with the […]

Pierluigi Paganini January 15, 2016
Law enforcement arrested operators behind the MegalodonHTTP Botnet

The operators behind the MegalodonHTTP botnet have been arrested in an international joint effort of law enforcement and a private security firm. In December, Norway law enforcement arrested five people accused of running the MegalodonHTTP Remote Access Trojan (RAT) as part of a joint operation between Norway’s Kripos National Criminal Investigation Service and Europol, codenamed “OP […]

Pierluigi Paganini January 15, 2016
Hyatt hotels data breach, 250 hotels impacted in 50 countries

The Hyatt Hotels Corporation announced a total of 250 of its resorts were compromised last year in a malware-based attack that stole customer payment card information. Hyatt Hotels revealed that 250 of its resorts have been involved in the data breach suffered last year. In December the Hyatt Hotels Corporation issued an official announcement to inform its users that unknown hackers […]

Pierluigi Paganini January 14, 2016
Flawed RANSOM_CRYPTEAR ransomware makes impossible the file recovery

Faulty ransomware derived from  an open source ransomware project makes files unrecoverable due to a serious coding error. The story I’m gong to tell you is incredible, a cyber criminal gang has developed a very singular ransomware called RANSOM_CRYPTEAR.B and now I’ll tell you why? According to the experts at TrendMicro, the Ransomware has built starting from […]

Pierluigi Paganini January 11, 2016
The BlackEnergy malware was a key element of the Ukraine power outage

According to security experts the BlackEnergy malware was a key element of the attack against Ukrainian power grid that caused the power outage.  On December 23, the entire Ivano-Frankivsk region in Ukraine suffered a major power outage, according to security experts and the Ukrainian Government the attackers used a destructive varian of the popular BlackEnergy […]

Pierluigi Paganini January 08, 2016
Rovnix malware is threatening Japanese bank customers

The Rovnix Banking Trojan is an aggressive malware that has been used in a new campaign targeting the customers of more than a dozen Japanese banks. Malware experts at IBM’s X-Force have spotted a new strain of the Rovnix malware targeting the Japanese bank customers. The new threat comes from Russia and it is very […]

Pierluigi Paganini January 07, 2016
Authors digitally signed Spymel Trojan to evade detection

Zscaler ThreatLabZ detected a new infostealer malware family dubbed Spymel that uses stolen certificates to evade detection. In late December, security experts at Zscaler ThreatLabZ detected a new infostealer malware family dubbed Spymel that uses stolen certificates to evade detection. “ThreatLabZ came across yet another malware family where the authors are using compromised digital certificates to evade detection. The malware family in […]