Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
 |
2019-07-11 09:29:05 |
Hotel Kiosks Could Be Unsafe Due to Exposed Keys in Tech Tool (lien direct) |
Researchers found that an application available on an unsecured website included credentials that could have allowed compromising consumer-facing Uniguest kiosks used by businesses in various activity sectors. [...] |
Tool
|
|
|
 |
2019-06-14 11:48:00 |
Exposed Docker APIs Abused by DDoS, Cryptojacking Botnet Malware (lien direct) |
Attackers are actively scanning for exposed Docker APIs on port 2375 and use them to deploy a malicious payload which drops a Dofloo Trojan variant, a malware known as a popular tool for building large scale botnets. [...] |
Malware
Tool
|
|
|
 |
2019-06-03 12:56:01 |
New Email Hacking Tool from OilRig APT Group Leaked Online (lien direct) |
A tool for hijacking Microsoft Exchange email accounts allegedly used by the OilRig hacker group has been leaked online. The utility is called Jason and it is not detected by antivirus engines on VirusTotal. [...] |
Tool
|
APT 34
|
|
 |
2019-05-29 15:45:00 |
YouTube Cryptocurrency Videos Pushing Info-Stealing Trojan (lien direct) |
A scam and malware campaign is underway on YouTube that uses videos to promote a "bitcoin generator" tool that promises to generate free bitcoins for its users. In reality, this scam is pushing the Qulab information-stealing and clipboard hijacking Trojan. [...] |
Malware
Tool
|
|
|
 |
2019-05-10 17:15:02 |
The Week in Ransomware - May 10th 2019 - MegaCortex, Jokeroo, and More (lien direct) |
This week the biggest news was the analysis of MegaCortex by Sophos. Then we had Dharma utilizing an ESET Remover tool as a distraction while the ransomware encrypted a victim's files. Finally, we had the Jokeroo RaaS pull an exit scam. [...] |
Ransomware
Tool
|
|
|
 |
2019-05-10 16:36:00 |
Nigerian BEC Scammers Shifting to RATs As Tool of Choice (lien direct) |
Scammers running business email compromise (BEC) fraud have grown in number, attack more often, and turn to remote access trojans as the preferred malware type to accompany their raids. [...] |
Malware
Tool
|
|
|
 |
2019-05-08 10:16:01 |
Dharma Ransomware Uses Legit Antivirus Tool To Distract Victims (lien direct) |
A new Dharma ransomware strain is using ESET AV Remover installations as a "smoke screen" technique designed to distract victims while their files are encrypted in the background as detailed by Trend Micro. [...] |
Ransomware
Tool
|
|
|
 |
2019-04-29 16:44:00 |
Botnet of Over 100K Devices Used to DDoS Electrum Servers (lien direct) |
The malicious actors behind the DDoS attacks against Electrum Bitcoin wallet users have switched to a new malware loader for their botnet Trojan, after previously using the Smoke Loader tool and the RIG exploit kit. [...] |
Malware
Tool
|
|
|
 |
2019-04-27 12:55:02 |
Fake Windows PC Cleaner Drops AZORult Info-Stealing Trojan (lien direct) |
Researchers have discovered a web site pushing a PC cleaner tool for Windows that in reality is just a front for the Azorult password and information stealing Trojan. [...] |
Tool
|
|
|
 |
2019-03-04 14:13:05 |
Windows 10 IoT Core Test Interface Lets Attackers Take Over Devices (lien direct) |
Embedded and IoT cable-connected devices running Microsoft's Windows 10 IoT Core are exposed to remote command execution attacks with SYSTEM privileges that require no authentication, with the help of an open source RAT tool released on GitHub. [...] |
Tool
|
|
|
 |
2019-02-22 14:12:00 |
19-Year Old WinRAR RCE Vulnerability Gets Micropatch Which Keeps ACE Support (lien direct) |
A micropatch was released to fix a 19-year old arbitrary code execution vulnerability impacting 500 million users of the WinRAR compression tool and to keep ACE support after the app's devs removed it when they patched the security issue. [...] |
Tool
Vulnerability
|
|
|
 |
2019-02-19 11:17:01 |
(Déjà vu) GandCrab Decrypter Available for v5.1, New 5.2 Variant Already Out (lien direct) |
A free file decryption tool is available for users whose computers got infected with the latest confirmed versions of GandCrab. It can unlock data encrypted by versions 4 through 5.1 of the malware, and some earlier releases of the threat. [...] |
Tool
|
|
|
 |
2019-02-19 11:17:01 |
(Déjà vu) GandCrab Decrypter Available for v5.1, New Variant Already Out (lien direct) |
A free file decryption tool is available for users whose computers got infected with the latest confirmed versions of GandCrab. It can unlock data encrypted by versions 4 through 5.1 of the malware, and some earlier releases of the threat. [...] |
Tool
|
|
|
 |
2019-01-10 12:40:00 |
(Déjà vu) Criminals Grabbed at Least 4.3 Percent of All Monero Coins on the Market (lien direct) |
Crooks earned roughly 57 million USD in a 4 year. period s by taking advantage of other people's hardware to mine for Monero and by using large botnets as a tool towards quick illegal monetary gains of more than $1 million per month [...] |
Tool
|
|
|
 |
2019-01-10 12:40:00 |
(Déjà vu) Criminals Grabbed at Least 4,3 Percent of All Monero Coins on the Market (lien direct) |
Crooks earned roughly 57 million USD in a 4 year. period s by taking advantage of other people's hardware to mine for Monero and by using large botnets as a tool towards quick illegal monetary gains of more than $1 million per month [...] |
Tool
|
|
|
 |
2019-01-09 13:46:02 |
Windows 10 Build 18312 (19H1) Released With Reserved Storage Implementation (lien direct) |
Windows 10 Preview Build 18312 is now available for Insiders in the Fast Ring and it comes with Reserved Storage implementation, improved Reset page UI, Windows Subsystem for Linux Command Line Tool improvements. [...] |
Tool
|
|
|
 |
2019-01-05 12:55:00 |
New ReiKey app for macOS can Detect Mac Keyloggers (lien direct) |
macOS users have a new open source tool to help them identify generic keyloggers on their system. Called ReiKey, the app can scan and monitor for software that installs keyboard event taps to intercept keystrokes. [...] |
Tool
|
|
|
 |
2019-01-05 11:05:00 |
NSA Releasing the GHIDRA Reverse Engineering Tool at RSAConference (lien direct) |
At the RSAConference in March, a free reverse engineering framework called GHIDRA is being released that was developed by the U.S. National Security Agency. [...] |
Tool
|
|
|
 |
2018-12-27 09:47:03 |
New Shamoon Sample from France Signed with Baidu Certificate (lien direct) |
A new sample of Shamoon disk-wiping malware was uploaded from France recently to the VirusTotal scanning platform. It tries to pass as a system optimization tool from Chinese technology company Baidu. [...] |
Malware
Tool
|
|
|
 |
2018-12-18 10:59:03 |
File Inclusion Bug in Kibana Console for Elasticsearch Gets Exploit Code (lien direct) |
Exploit code has been published for a local file inclusion (LFI) type of vulnerability affecting the Console plugin in Kibana data visualization tool for Elasticsearch; an attacker could use this to upload a malicious script and potentially get remote code execution. [...] |
Tool
Vulnerability
|
|
|
 |
2018-12-12 11:26:05 |
Op \'Sharpshooter\' Uses Lazarus Group Tactics, Techniques, and Procedures (lien direct) |
A new advanced threat actor has emerged on the radar, targeting organizations in the defense and the critical infrastructure sectors with fileless malware and an exploitation tool that borrows code from a trojan associated with the Lazarus group [...] |
Malware
Tool
Threat
Medical
|
APT 38
|
|
 |
2018-11-27 12:31:03 |
Windows Defender Can Detect Accessibility Tool Backdoors (lien direct) |
Windows Defender will now detect when accessibility programs such as sethc.exe or utilman.exe have been hijacked by an Image File Execution Options debugger so that they can be used as a backdoor. [...] |
Tool
|
|
|
 |
2018-11-23 16:27:02 |
Google is Adding Force-Installed Extension Removal to the Chrome Cleanup Tool (lien direct) |
Google is adding the ability to remove force-installed extensions, or ones installed by Windows group policies, to the Chrome Cleanup Tool. [...] |
Tool
|
|
|
 |
2018-10-25 09:04:00 |
Free Decrypter Available for the Latest GandCrab Ransomware Versions (lien direct) |
A newly released decryption tool allows free recovery of files encrypted by certain versions of GandCrab, a ransomware family that affected hundreds of thousands of people since the beginning of the year. [...] |
Ransomware
Tool
|
|
|
 |
2018-10-18 00:01:00 |
New Reconnaissance Tool Uses Code from Eight-Year-Old Comment Crew Implant (lien direct) |
A newly discovered first-stage implant targeting Korean-speaking victims borrows code from another reconnaissance tool linked to Comment Crew, a Chinese nation-state threat actor that was exposed in 2013 following cyber espionage campaigns against the United States. [...] |
Tool
Threat
|
APT 1
|
|
 |
2018-10-11 03:00:00 |
Aircraft Analysis Tool Facing the Internet Exposes Airlines to Risks (lien direct) |
Security researchers discovered that more than two dozen systems used by airlines to analyze data from airplane sensors were available online and could be used to pivot into datacenter systems and servers vulnerable to legacy security issues. [...] |
Tool
|
|
|
 |
2018-10-08 10:30:04 |
PSA: Disk Cleanup Cleans Downloads Folder in Windows 10 October 2018 Update (lien direct) |
If you normally use the Disk Cleanup tool in Windows 10 to remove temporary and unnecessary files, after installing the Windows 10 October 2018 Update you need to be more careful. This is because Microsoft has quietly add the "Downloads" folder as an additional location that files can be removed. [...] |
Tool
|
|
|
 |
2018-09-18 18:35:05 |
Xbash Malware Deletes Databases on Linux, Mines for Coins on Windows (lien direct) |
What may very well be considered a cybercriminal's dream tool is now real and it is hunting Windows and Linux servers: a botnet with self-spreading capabilities that combines cryptomining and ransomware functions. [...] |
Ransomware
Malware
Tool
|
|
|
 |
2018-08-03 19:51:05 |
CCleaner v5.45 Pulled Due to Anger Over Usage Data Collection (lien direct) |
It has not been a good week for Piriform's PC cleaning tool CCleaner. With the release of CCleaner version 5.45, it was quickly discovered that the program's "Active Monitoring" component, which is utilized to send anonymous usage data back to Piriform, could no longer be disabled. [...] |
Tool
|
CCleaner
|
|
 |
2018-08-01 01:15:00 |
Just Five File Types Make Up 85% of All Spam Malicious Attachments (lien direct) |
Despite a lone report claiming that online piracy is the primary source of malware, spam still reigns supreme as today's main infection vector and the go-to tool of online criminals, according to a report published yesterday by Finnish cyber-security firm F-Secure. [...] |
Spam
Tool
|
|
|
 |
2018-07-24 16:43:00 |
Bitdefender Releases Decryption Tool for Older Version of LockCrypt Ransomware (lien direct) |
Romanian antivirus firm Bitdefender released yesterday a decryption tool that can recover files encrypted by an older version of the LockCrypt ransomware, the one that locks files with the .1btc extension. [...] |
Ransomware
Tool
|
|
|
 |
2018-06-27 05:30:05 |
NSA Exploit "DoublePulsar" Patched to Work on Windows IoT Systems (lien direct) |
An infosec researcher who uses the online pseudonym of Capt. Meelo has modified an NSA hacking tool known as DoublePulsar to work on the Windows IoT operating system (formerly known as Windows Embedded). [...] |
Tool
|
|
|
 |
2018-06-25 12:18:03 |
Google Earth\'s New Tool Measures The Distance and Area of Locations on Earth (lien direct) |
Google released an update to Google Earth today that allows you to measure the distance between two locations or the square feet of an area. Now when you get into an argument with a friend about how far apart two locations are or how large an area is, you can simply go to Google Earth and prove each other wrong. [...] |
Tool
|
|
|