The unauthorized attacker was able to connect to accounts using SSH access The incident was discovered when the GoDaddy security team spotted some suspicious activity on some subset servers.[1] According to the reports, the data breach took place on October 19, 2019. Customers got notified via email because the third-party individual […]
News
New LokiBot banking Trojan campaign pushes Jigsaw ransomware payload The latest version of the info-stealing trojan malware LokiBot[1] now spreads a new variant of Jigsaw ransomware, experts from the Malwarehunter team[2] reported on the 1st of May, 2020. LikiBot is an old and well-known banking malware, which stands out from […]
LokiBot and Jigsaw tandem spreads via new malspam campaign
Adobe released updates that patch critical remote code execution vulnerabilities besides other security flaws Adobe released emergency updates for Adobe Illustrator, Adobe Bridge, and Magento e-commerce platforms.[1] The update includes patches for 35 newly discovered vulnerabilities that were reported as critical.[2] When one of the programs gets affected, multiple arbitrary […]
Adobe Illustrator, Magento, and Bridge get critical security updates
Shade developers voluntarily shut down the ransomware after five years of existence Shade ransomware, a.k.a. Troldesh or Encoder.858 is known as one of the most proliferate file-encrypting cyber infection since 2014. Actors behind this threat have been improving the malware multiple times and deserved an “award” of the most successful […]
Shade ransomware releases decryption keys and shuts down
Black Rose Lucy malware gets back as an Android-based ransomware After the first wave in 2018, Black Rose Lucy[1] malware-as-a-service (MaaS) shifted its activity from Android malware to ransomware and is currently actively spreading via social media links and fake Streaming Video Optimisation (SVO) alerts. Nearly 80 diverse samples have […]
Black Rose Lucy MaaS returns as an FBI ransomware
New ransomware gang is threatening to release secret documents of a high-profile architectural company One of the largest architecture and design companies, Zaha Hadid Architects had suffered a cyberattack last week. According to the latest report from ZDNet,[1] unknown criminal gang going by the name of “Light” has breached the firm’s […]
Zaha Hadid network encrypted with ransomware, files leaked
Viewing a GIF may have led to Microsoft Teams account hacking and data stealing Security researchers revealed a flaw that allowed the account takeover of the Microsoft Teams platform.[1] The way to hack such accounts involves sending the recipients a regular GIF. Viewing the image may have been enough to […]
Microsoft patches the vulnerability that allowed account takeover
SQL injection bug was actively exploited by hackers in the wild Sophos is one of the prominent security vendors around, specializing in network, email, and communication security products for mainly enterprise sectors. Recently, the firm received several reports about Sophos’ XG Firewall zero-day[1] vulnerability related to the SQL infection process, […]
Sophos Firewall zero-day vulnerability patched
DoppelPaymer arranged an attack over the City of Torrance, 200 GB files said to be stolen DoppelPaymer ransomware hit the City of Torrance, Los Angeles, California, with 200 GB files stolen, 150 servers compromised, and 500 devices encrypted. While the incident is currently under investigation, experts speculate that the attack […]
DoppelPaymer attacks the City of Torrance: 100 BTC ransom expected
SBA takes PPP and EIDL services down temporarily due to a data breach affecting 8,000 applicants US government is taking various measures to help small businesses to survive the current Coronavirus pandemic. A Small Business Association (SBA)[1] is one of the federal agencies expanded by Congress to grant law authorized […]