Security News > 2020 > December

Hacker-for-hire group develops new stealthy Windows backdoor
2020-12-03 11:57

Kaspersky researchers discovered a previously undocumented Windows PowerShell malware dubbed PowerPepper and developed by the hacker-for-hire group DeathStalker. The new PowerPepper implant was discovered by Kaspersky in May 2020 while researching other attacks using the group's other PowerShell-based implant known as Powersing.

Open Source Tool Helps Secure Siemens PCS 7 Control Systems
2020-12-03 11:57

Industrial cybersecurity company OTORIO has released an open source tool designed to help organizations harden Siemens' SIMATIC PCS 7 distributed control systems. According to the cybersecurity firm, the script is designed to assess the security configuration of the SIMATIC PCS 7 OS client, OS server and engineering station.

Google Play Apps Remain Vulnerable to High-Severity Flaw
2020-12-03 11:00

UPDATE. Researchers are warning that several popular Google Play applications - including mobile browser app Edge - have yet to push out an important update addressing a high-severity vulnerability in the Google Play Core Library. The vulnerability exists in Google Play Core Library, which is utilized by various popular applications like Google Chrome, Facebook and Instagram.

Hackers target EU Commission, COVID-19 cold chain supply orgs
2020-12-03 09:54

IBM X-Force warned of threat actors actively targeting organizations associated with the COVID-19 vaccine cold chain in a large scale spear-phishing campaign that has started three months ago, in September 2020. Cold chain orgs are an essential part of storing and delivering the COVID-19 vaccine at safe temperatures, minus 70 degrees Celsius for the one made by Pfizer and minus 20 Celsius for the one developed by Moderna.

Intel driver updates fix Windows 10 BSODs, Bluetooth issues
2020-12-03 08:32

Intel has released updated Wireless Bluetooth and Wi-Fi drivers for Windows 10 customers to address known issues causing blue screen of death errors and Bluetooth devices to lose connection or stop working. First of all, the new drivers address Windows 10 stop errors, yellow bang warnings in Device Manager, as well as random disconnections while playing online videos caused by Intel Wireless adapters with faulty drivers.

How a nightmare wormable, wireless, automatic hijack-a-nearby-iPhone security flaw was found and fixed
2020-12-03 08:26

A Google security guru has published details of a critical hole in Apple's iOS that can be exploited by miscreants to hijack strangers' iPhones over the air without any user interaction. On Tuesday, Google Project Zero's Ian Beer, who reported the flaw to Apple back on November 29, 2019, published a detailed technical account of how he found and developed an exploit the vulnerability, which he likened to a magic spell to gain remote control of the target device.

Raising defenses against ransomware in healthcare
2020-12-03 06:30

There are, of course, other factors that play a role in the attackers' preference for healthcare-related targets: the talent shortage for cybersecurity experts with healthcare expertise, the fact that most healthcare employees still don't make cybersecurity a priority, the fact that many of the devices and technologies they use run on antiquated operating systems - to name just a few. There might come a time when cybersecurity becomes a part of medical curriculums - in the meantime healthcare organizations can significantly lower the number of successful attacks with the proper defenses and training, DiMaggio notes.

TrickBot's new module aims to infect your UEFI firmware
2020-12-03 06:17

TrickBot malware developers have created a new module that probes for UEFI vulnerabilities, demonstrating the actor's effort to take attacks at a level that would give them ultimate control over infected machines. TrickBoot acts as a reconnaissance tool at this stage, checking for vulnerabilities in the UEFI firmware of the infected machine.

How to reduce the risk of third-party SaaS apps
2020-12-03 06:00

Third-party SaaS apps can significantly extend the functionality and capabilities of an organization's public cloud environment, but they can also introduce security concerns. Assessing the risk of these applications is the key to maintaining a balance between safety and productivity.

Android apps with 200 million installs vulnerable to security bug
2020-12-03 06:00

Roid apps with over 250 million downloads are still susceptible to a severe vulnerability in a Google library that was patched in August 2020. In August, mobile app security company Oversecured discovered a vulnerability in the Google Play Core Library that allowed malicious applications to execute code in legitimate apps.