Security News > 2019 > September

News Wrap: GandCrab Operators Resurface, Utilities Firms Hit By LookBack Malware
2019-09-27 12:00

The malware landscape continues to evolve with the re-emergence of the GandCrab operators and a continued spearphishing attack spreading the LookBack RAT.

Researchers Disclose Another SIM Card Attack Possibly Impacting Millions
2019-09-27 11:33

A new variant of a recently disclosed SIM card attack method could expose millions of mobile phones to remote hacking, researchers have warned. read more

Thousands of PCs Affected by Nodersok/Divergent Malware
2019-09-27 11:25

Fileless threat leverages widely used Node.js framework and WinDivert packet-capture utility to turn infected machines into proxies for malicious behavior.

Match knowingly puts people at risk from scammers, FTC charges
2019-09-27 10:37

Match.com allegedly put users on its free version at risk - by not filtering out communications that it knew were from fake accounts.

Pupil mental health monitor promises app rewrite after hardcoded login creds discovered
2019-09-27 10:20

You Steer-ed into some potential trouble there Exclusive A British firm whose mobile apps monitor the mental state of 35,000 British schoolchildren is having to rewrite them after researchers...

Analysis: President Trump and 'The Server'
2019-09-27 09:48

The latest edition of the ISMG Security Report features an analysis of Donald Trump's comments about "the server" in a discussion with the president of Ukraine. Also: insights on "privacy by...

DoorDash Breach Exposes 4.9 Million Users' Personal Data
2019-09-27 09:18

Do you use DoorDash frequently to order your food online? If yes, you are highly recommended to change your account password right now immediately. DoorDash—the popular on-demand food-delivery...

DoorDash Says 4.9 Million Records Breached
2019-09-27 09:18

'Unusual Activity' By Third-Party Service Provider to BlameFood delivery startup DoorDash says 4.9 million customer, contractor and merchant records were breached after "unusual activity" by a...

FBI Reviewed Cybersecurity Firm's Evidence in 2016 DNC Election Hack
2019-09-27 07:31

CLAIM: The FBI only relied on the word of a cybersecurity firm, CrowdStrike, to determine that Russia hacked the emails of the Democratic National Committee. AP’S ASSESSMENT: False. CrowdStrike...

Magecart Hackers Target L7 Routers
2019-09-27 07:11

One of the financially motivated threat actors operating under the Magecart umbrella appears to be testing malicious code to inject into commercial-grade layer 7 (L7) routers, IBM reports. read more