Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
 |
2019-10-15 10:32:53 |
Pitney Bowes system taken down by malware (lien direct) |
Pitney Bowes reported today that it was hit with malware that has made some files inaccessible, but stopped short of calling it a ransomware attack. Pitney Bowes said the attack has encrypted some corporate information and disrupted customer access to certain services, but at this time the company does not believe any customer or employee […]
|
Ransomware
Malware
|
|
|
 |
2019-10-11 09:37:18 |
15 New Ransomware Victims Hit Since the Start of October! (lien direct) |
Since October 1, Armor, a global cloud security solutions provider, has identified 15 new organizations which have been hit by ransomware in the U.S. including 5 healthcare networks and/or organizations, 2 municipalities (one of which has suffered 3 ransomware attacks this year), 3 school districts, a police department, the North Carolina State Bar, 2 Florida employment […]
|
Ransomware
|
|
|
 |
2019-10-11 09:23:01 |
Ransomware attacks targeting flaw in iTunes for Windows (lien direct) |
Ransomware attackers have been abusing a vulnerability in the Windows version of Apple iTunes to avoid detection from antivirus software, according to security researchers. The problem deals with the Apple-created Bonjour updater that comes with iTunes for Windows, which is used to deliver software updates to the app. Security firm Morphisec has discovered it also suffers from […]
|
Ransomware
Vulnerability
|
|
|
 |
2019-10-08 09:07:04 |
(Déjà vu) RobbinHood Ransomware is now using street cred to force victims to pay (lien direct) |
The operators behind the RobbinHood ransomware have changed their language in the ransom note, at least in one variant of the malware, to take from victims all hope of decrypting the files for free and to make them pay for the recovery. Boastful and arrogant in their message, the cybercriminals point to past incidents involving their […]
|
Ransomware
|
|
|
 |
2019-10-07 09:15:51 |
DCH Health System pays ransom after attack (lien direct) |
Alabama-based DCH Health System said it has paid off the hackers behind a ransomware attack that severely disrupted operations at three hospitals beginning on Tuesday morning, according to a Saturday report by Tuscaloosa News. The news closely follows an FBI warning that the number of sophisticated attacks on businesses and state and local governments is continuing to climb. […]
|
Ransomware
|
|
|
 |
2019-10-04 10:27:37 |
Ransomware attacks on the rise as FBI send out an alert (lien direct) |
The FBI yesterday issued a new public service announcement regarding the ongoing ransomware epidemic, emphasizing that attacks are becoming more targeted since early 2018, with losses increasingly significantly in that time. The alert is intended to update and supplement a previous ransomware warning that the FBI issued back in September 2016, and specifically identifies state and local […]
|
Ransomware
|
|
|
 |
2019-10-03 09:05:20 |
Sodinokibi Ransomware building an all-star team of affiliates (lien direct) |
Stalkware is being installed on more and more victims’ devices, and the trend is only accelerating, according to a new report. When spouses, colleagues, domestic partners, and random strangers install software to spy on a victim, the “stalkerware” can be a disturbing tool of abuse. And it’s a tool that’s part of a problem that […]
|
Ransomware
Tool
|
|
★★★
|
 |
2019-10-02 09:37:32 |
Only critical patients to be seen at 3 hospitals, thanks to ransomware attack (lien direct) |
Ten hospitals-three in Alabama and seven in Australia-have been hit with paralyzing ransomware attacks that are affecting their ability to take new patients, it was widely reported on Tuesday. All three hospitals that make up the DCH Health System in Alabama were closed to new patients on Tuesday as officials there coped with an attack […]
|
Ransomware
|
|
|
 |
2019-09-27 09:54:04 |
(Déjà vu) Ransomware targets REvil Chinese Users with DHL Spam (lien direct) |
A new spam campaign is underway that is targeting Chinese recipients to trick them into installing the REvil (Sodinokibi) Ransomware. This spam campaign was discovered by security researcher onion and pretends to be an email from DHL stating that the delivery of a package has been delayed due to an incorrect customs declaration. It then proceeds to […]
|
Ransomware
Spam
|
|
|
 |
2019-09-16 16:23:08 |
To Pay Or Not To Pay – Security Pros Have Their Say. (lien direct) |
The debate as to whether ransomware should be paid or not has been a bone of contention for many years. We all know that rewarding criminal behaviour is a bad idea, but when stakes are high, it can be difficult to take the high road. And cybercriminals seem to be capitalising on these grey areas. […]
|
Ransomware
|
|
|
 |
2019-09-12 13:02:01 |
(Déjà vu) Confidential Military, Financial Files stolen from Ryuk Related Malware. (lien direct) |
A new malware with strange associations to the Ryuk Ransomware has been discovered to look for and steal confidential financial, military, and law enforcement files. While Ryuk Ransomware encrypts a victim’s files and then demands a ransom, it is not known for actually stealing files from an infected computer. A new infection discovered today by MalwareHunterTeam, […]
|
Ransomware
Malware
|
|
|
 |
2019-09-12 12:54:05 |
Philadelphia based Entercom hacked for $500,000 ransom. (lien direct) |
Radio giant Entercom, the Philadelphia-based owner of more than 235 stations nationwide, was reportedly hit with a ransomware attack last weekend affecting its internal systems including email, production and billing. The ransomware attack appears to have compromised a machine on Entercom’s programming side, forcing some stations to complete music logs by hand and run without […]
|
Ransomware
|
|
|
 |
2019-09-11 11:25:05 |
Montegomery County School District Ransomware Attack. (lien direct) |
A Montgomery County school district has become the latest apparent victim of a ransomware cyberattack that struck just after the start of the new school year. On Monday, Souderton Area School District Superintendent Dr. Frank Gallagher said that the district's computer network was hit by the malware attack on Sunday, Sept. 1. Students had returned […]
|
Ransomware
Malware
|
|
|
 |
2019-09-10 14:54:03 |
(Déjà vu) Windows users targeted with Ransomware and Trojans. (lien direct) |
Over the weekend and into today, four different malvertising campaigns have been redirecting users to exploit kits that install password stealing Trojans, ransomware, and clipboard hijackers. All four of these campaigns were discovered by exploit kit expert nao_sec and are being distributed through malvertising that redirect visitors to the exploit kits landing pages. These landing pages are typically hosted […]
|
Ransomware
|
|
|
 |
2019-09-09 09:22:04 |
(Déjà vu) Nemty Ransomware Spread From Fake PaylPal Site. (lien direct) |
A web page pretending to offer an official application from PayPal is currently spreading a new variant of Nemty ransomware to unsuspecting users. It appears that the operators of this file-encrypting malware are trying various distribution channels as it was recently observed as a payload from the RIG exploit kit (EK). Source: Bleeping Computer
|
Ransomware
Malware
|
|
|
 |
2019-09-06 11:32:02 |
Attackers reach new Heights in Ransomware Demands. (lien direct) |
New Bedford, Massachusetts’ refusal to pay a $5.3 million ransom highlights how victim towns and cities may be hitting the limit to what they’re willing to spend to speed recovery. Cyber extortionists’ ransom demands have surged in recent years, as ransomware cotinues to cripple the operations of manufacturers, hospitals, and - most recently - local […]
|
Ransomware
|
|
|
 |
2019-09-06 11:30:04 |
(Déjà vu) School District closed due to a Ransomware Attack. (lien direct) |
The summer school holiday has not ended for students in Flagstaff, Arizona, as a ransomware attack hitting the School District computers forces the decision to cancel classes for today. The schedule for tomorrow is uncertain. All schools are impacted by the incident and there are no after-school activities. The district learned of a “cybersecurity issue” […]
|
Ransomware
|
|
|
 |
2019-08-19 12:15:03 |
Ransomware Modifications Double Year-On-Year In Q2 2019. (lien direct) |
Kaspersky researchers detected 16,017 new ransomware modifications in Q2 2019 – including ones belonging to eight new malware families. This is more than double the number of new samples detected a year ago, in Q2 2018 (7,620). The Kaspersky IT Threat Evolution Q2 2019 report also highlights that more than 230,000 users were attacked during […]
|
Ransomware
Malware
Threat
|
|
|
 |
2019-08-12 17:13:04 |
DSLR cameras are vulnerable to ransomware attack according to reseachers. (lien direct) |
Check Point Software Technologies issued a report yesterday that detailed how its security researchers were able to remotely install malware on a digital DSLR camera. In it, researcher Eyal Itkin found that a hacker can easily plant malware on a digital camera. He says that the standardised Picture Transfer Protocol is an ideal method for […]
|
Ransomware
Malware
|
|
|
 |
2019-07-18 18:30:05 |
Ransomware attack hits US ration station. (lien direct) |
Tampa-based community radio station WMNF 88.5-FM is stepping up cybersecurity after its computer systems were hobbled by ransom-seeking hackers last month. Interim general manager Cindy Reichard said the ordeal began June 18 when a programmer noticed a computer in one of the studios was acting strangely. The station then received a digital message: Your files […]
|
Ransomware
|
|
|
 |
2019-07-16 09:44:03 |
Ransomware attacks on US municipalities boycotted by mayors. (lien direct) |
Numerous big cities across the United States have fallen victim to ransomware attacks costing the municipalities tens of millions of dollars to recover. While some city administrators refrain from giving in to extortion demands, most end up paying in exchange for the decryption keys. Seeing how ransomware operators are showing no signs of stopping, city mayors have […]
|
Ransomware
|
|
★★
|
 |
2019-07-15 10:00:02 |
Hackers demanding $2 million via ransomware attack on US college. (lien direct) |
Hackers are increasingly launching ransomware attacks in order to make a quick buck. They lock down the target's computer systems and then demand a ransom to decrypt the data. That same thing has happened with New York City's Monroe College which has been hit by a ransomware attack. The hackers are now demanding $2 million to allow […]
|
Ransomware
|
|
|
 |
2019-07-04 11:52:01 |
Cost-cutting could put the NHS at risk of suffering another cyberattack. (lien direct) |
A new report has concluded that the United Kingdom's NHS remains vulnerable to cyberattacks two years on the from WannaCry ransomware attack that cost the healthcare provider £92m in damages and lost productivity. According to a new report on NHS Cyber Security by Imperial College London's Institute of Global Health Innovation, outdated computer systems, lack […]
|
Ransomware
|
Wannacry
|
|
 |
2019-07-02 13:55:01 |
Florida city fires IT employee after paying ransom demand last week. (lien direct) |
Officials from Lake City, Florida, have fired an IT employee last week after the city was forced to approve a gigantic ransomware payment of nearly $500,000 last Monday. The employee, whose name was not released, was fired on Friday, according to local media reports [1, 2], who cited the Lake City mayor. The city’s IT manager […]
|
Ransomware
|
|
|
 |
2019-06-27 10:53:01 |
Second US town pays up to ransomware. (lien direct) |
A town in Florida has paid $500,000 (£394,000) to hackers after a ransomware attack. The total paid by Florida municipalities over ransomware in the last two weeks now stands at $1.1m. Officials in Lake City voted to pay hackers in Bitcoin after suffering downed computer systems for two weeks. Coastal suburb Riviera Beach recently paid […]
|
Ransomware
|
|
|
 |
2019-06-25 22:18:01 |
Fax machines make a comeback at Norsk Hydro. (lien direct) |
LockerGoga ransomware attack in March saw a return to pen-and paper drawings and fax communications between offices. Aluminium producer Norsk Hydro has revealed that it has had to resort to the use of pen and paper to continue business following a ransomware attack in March. According to a report by the BBC, “five weeks on, […]
|
Ransomware
|
|
|
 |
2019-06-20 14:59:01 |
Florida city votes to pay $600K ransom after cyberattack. (lien direct) |
Hackers have targeted another city with another ransomware cyberattack — this time in South Florida, where officials have agreed to pay $600,000 to avoid the type of problems that have crippled Baltimore systems for weeks. Source: UPI
|
Ransomware
|
|
|
 |
2019-06-14 09:39:04 |
(Déjà vu) French Authorities release pyLocky Decryptor. (lien direct) |
A decryptor for pyLocky Ransomware versions 1 and 2 has been released by French authorities that allows victim to decrypt their files for free. According to a post by the French Ministry of Interior, this decryptor was created in collaboration between French law enforcement, the French Homeland Security Information Technology and Systems Service, and volunteer […]
|
Ransomware
|
|
|
 |
2019-06-14 09:39:00 |
Ransomware attacks leaves ASCO without work. (lien direct) |
Nearly 1,000 employees in ASCO's Zaventem, Belgium, office have been left incapable of doing their jobs after a ransomware attack crippled the aircraft-parts manufacturer, according to a June 11 report from vrt NWS. “From the ISF's standpoint, everyone who has access to an organization's information and systems should be made aware of the risks from […]
|
Ransomware
|
|
|
 |
2019-06-13 13:59:00 |
ASCO production halted by ransomware attack. (lien direct) |
ASCO, one of the world’s largest suppliers of airplane parts, has ceased production in factories across four countries due to a ransomware infection reported at its plant in Zaventem, Belgium. As a result of having IT systems crippled by the ransomware infection, the company has sent home approximately 1,000 of its 1,400 workers. Source: ZDNet
|
Ransomware
|
|
|
 |
2019-06-11 10:01:02 |
“Triple Threat” cyber-attack targets Lake City. (lien direct) |
Lake City was targeted by a malware attack. The ransomware known as “Triple Threat” combines three methods of attack to targeted systems. Many city systems are out of order. All email systems are inoperable. Most land-lines are also out of order. All emergency services, including police and fire, remain intact. Source: WCJB
|
Ransomware
Malware
|
|
|
 |
2019-06-11 10:00:02 |
(Déjà vu) Ransomware hits Auburn Food Bank. (lien direct) |
Ransomware attacks hit indiscriminately and sometimes they may affect charitable organizations that can't afford to surrender to the demand. Auburn Food Bank in King County, Washington, fell victim to a ransomware strain known as GlobeImposter 2.0, which encrypted all computers on their network. Only one machine escaped the attack and is currently used to maintain […]
|
Ransomware
|
|
|
 |
2019-06-03 12:54:04 |
(Déjà vu) GandCrab Ransomware Shurts Down with 2.5 Billion in Retirement Savings. (lien direct) |
After almost a year and a half, the operators behind the GandCrab Ransomware are shutting down their operation and affiliates are being told to stop distributing the ransomware. Filling the gaps left behind by the shutdown of large scale ransomware operations such as TeslaCrypt, CryptoWall, and Spora, GandCrab exploded into the ransomware world on January […]
|
Ransomware
|
Tesla
|
|
 |
2019-06-03 12:54:00 |
(Déjà vu) Computer, Server or Homestation? The Ransomware Varies. (lien direct) |
A variant of the Maze Ransomware, otherwise known as the ChaCha Ransomware, has been spotted being distributed by the Fallout exploit kit. An interesting feature of this ransomware is that it says the ransom amount will be different depending on whether the victim is a home computer, server, or workstation. Malwarebytes security researcher Jérôme Segura […]
|
Ransomware
|
|
|
 |
2019-05-30 14:19:05 |
Decline in Ransomware phishing campaigns. (lien direct) |
Malicious URL links in emails are now one of the key threats spreading malware into computer systems, outnumbering email attachments five to one in prevalence. Source: CBR
|
Ransomware
Malware
|
|
★★★★
|
 |
2019-05-14 13:15:01 |
Over 25,000 patients\' data breached from Connecticut-based Southeastern Council on Alcoholism and Drug Dependence. (lien direct) |
Connecticut-based Southeastern Council on Alcoholism and Drug Dependence is notifying 25,148 patients that their data was potentially breached during a February ransomware attack. On February 18, SCADD officials said they discovered some disruptions the network. A review determined a ransomware attack had compromised some of its systems. SCADD worked with a third-party forensics team to […]
|
Ransomware
|
|
|
 |
2019-05-10 09:42:00 |
This ransomware sneakily infects victims by disguising itself with anti-virus software. (lien direct) |
A successful family of ransomware which has been terrorising organisations around the world has been updated with a new trick to lure victims into installing file-locking malware: posing as anti-virus software. Dharma first emerged in 2016 and the ransomware has been responsible for a number of high-profile cyber incidents, including the takedown of a hospital network in Texas […]
|
Ransomware
|
|
|
 |
2019-05-10 09:41:00 |
Healthcare IT pros now confident in their cyber attack response ability. (lien direct) |
Almost two years since the ransomware attack that brought the NHS (National Health Service) to a halt, healthcare IT professionals feel more confident in their ability to respond to a cyber-attack, according to new research from Infoblox. As healthcare providers continue to undertake digital transformation initiatives in an effort to improve efficiencies and the quality […]
|
Ransomware
|
|
|
 |
2019-05-09 10:21:05 |
Baltimore Severs Down After Ransomware Attack. (lien direct) |
Another city has become the victim of a ransomware attack, as government officials in Baltimore have revealed that the city hall computer networks have been infected, according to CBS Baltimore. Experts have identified the ransomware used in this case as the RobbinHood variant, about which there is little information given that it is relatively new. […]
|
Ransomware
|
|
|
 |
2019-05-07 13:24:05 |
Ransomware no longer biggest cyber security threat, report finds. (lien direct) |
Ransomware attacks are becoming less prevalent as cyber criminals look to news way of attacking a system, a new report has found. Instead, hackers are turning towards hidden HTTPs tunnels that appear as normal encrypted web traffic to target healthcare organisations. The Vectra 2019 Spotlight Report on Healthcare identified Internet of Things (IoT) devices; unpartitioned […]
|
Ransomware
|
|
|
 |
2019-05-07 13:23:02 |
Surge of MegaCortex ransomware attacks detected. (lien direct) |
UK cyber-security firm Sophos reported detecting a spike in ransomware attacks at the end of last week from a new strain named MegaCortex. Sophos said the ransomware appears to have been designed to target large enterprise networks as part of carefully planned targeted intrusions –in a tactic that is known as “big-game hunting.” The modus […]
|
Ransomware
|
|
|
 |
2019-04-26 10:52:01 |
Ransomware attack takes Weather Channel down. (lien direct) |
The Weather Channel confirmed that it fell victim to a malicious ransomware attack. On Thursday, April 18, 2019, The Weather Channel live broadcast went offline for about an hour according to The Wall Street Journal, which the company later confirmed in a Twitter statement was due to a 'malicious software attack.' The FBI is now investigating […]
|
Ransomware
|
|
|
 |
2019-04-26 10:48:05 |
235% year-on-year increase in attacks on businesses. (lien direct) |
A surge in ransomware and trojans in the first three months of the year led to a massive 235% year-on-year increase in detected cyber-threats to businesses in Q1 2019, according to Malwarebytes. The security vendor's Cybercrime tactics and techniques report for the first quarter revealed a definite shift from consumers to businesses, which is apparently hitting SMBs with […]
|
Ransomware
|
|
|
 |
2019-04-10 10:53:00 |
Porn Site Ransomware Cybercriminal Jailed for More than Six Years. (lien direct) |
Zain Qaiser, a member of an organized Russian-speaking cyber gang, responsible for “one of the most successful and closely guarded pieces of malicious software ever developed by the cybercrime community,” was jailed for more than six years in the U.K. on Tuesday. In the U.S., both the FBI and Secret Service have also made arrests […]
|
Ransomware
|
|
|
 |
2019-04-04 12:28:03 |
(Déjà vu) Python-based bot scanner can help criminals spread malware. (lien direct) |
Code and infrastructure from two known malware families have been observed with a new threat named Xwo, which helps operators of the MongoLock ransomware discover unprotected web services reachable over the internet. MongoLock targets unprotected MongoDB databases, wiping them from the server and demanding a ransom to restore them. Xwo is a Python-based bot scanner […]
|
Ransomware
Malware
Threat
|
|
|
 |
2019-04-03 09:35:03 |
Fans of Swedish Youtuber PewDiePie spread malware to increase channel subscriptions. (lien direct) |
PewDiePie, the famous Swedish Youtuber, is no stranger to controversy. This time he is in the news again for the wrong reason after a user, who claims to be his fan, released ransomware with a note that reads 'Subscribe to PewDiePie'. According to The Independent, the ransomware PewCrypt is designed in such a way that […]
|
Ransomware
Malware
|
Uber
|
★★★★
|
 |
2019-03-28 15:53:00 |
(Déjà vu) New Ransomware UNNAM3D moves files into protected RAR archives. (lien direct) |
A new ransomware called Unnam3d R@nsomware is being distributed via email that will move a victim’s files into password protected RAR archives. The ransomware then demands a $50 Amazon gift card code in order to get the archive password. Source: BleepingComputer
|
Ransomware
|
|
|
 |
2019-03-26 20:06:02 |
(Déjà vu) US Chemical firm hit by cyberattacks. (lien direct) |
Operations at two major US-based chemical companies, Hexion and Momentive, were disrupted recently by a cyberattack reportedly involving LockerGoga, the ransomware that recently hit Norwegian aluminum giant Norsk Hydro. Source: TechBizWeb
|
Ransomware
|
|
★★
|
 |
2019-03-15 10:59:05 |
Ransomware attack causes students to lose GCSE coursework. (lien direct) |
Hackers have used ransomware to encrypt files at a school, causing it to lose some students’ GCSE coursework. The Sir John Colfox Academy in Bridport, Dorset, said a member of staff mistakenly opened an email containing a virus. The email claimed to be from a colleague at another Dorset school and infected the computer network. […]
|
Ransomware
|
|
|
 |
2019-03-13 11:52:04 |
(Déjà vu) New strain of ransomware spreads using NSA\'s EternalBlue exploit. (lien direct) |
A new Ransomware-as-a-Service called Yatron is being promoted on Twitter that plans on using the EternalBlue and DoublePulsar exploits to spread to other computer on a network. This ransomware will also attempt to delete encrypted files if a payment has not been made in 72 hours. BleepingComputer was first notified about the Yatron RaaS by a […]
|
Ransomware
|
|
|