Security News > 2020

Turkish Hackers Target Greek Government Websites, Stock Exchange
2020-01-18 00:32

Turkish hackers claimed Friday to have hijacked for more than 90 minutes the official websites of the Greek parliament, the foreign affairs and economy ministries, as well as the country's stock exchange. On their Facebook page, the hackers group, Anka Neferler Tim, justified their action by saying that "Greece is threatening Turkey in the Aegean Sea and in the eastern Mediterranean. And now it's threatening the conference on Libya".

Friday Squid Blogging: Giant Squid Genome Analyzed
2020-01-17 22:19

The problem with butter is it has both milk solids/sugars and water in it, the more it has the faster it goes rancid it's why salt used to be added. In warmer places "Clarified butter" that is "Canned" is the way to go, what it is is butter with the water and milk solids/sugars removed, it's easy to do you just need a sauce pan and a little patience, but "Canning" is not something most people do.

New JhoneRAT Malware Targets Middle East
2020-01-17 22:01

Researchers are warning of a new remote access trojan, dubbed JhoneRAT, which is being distributed as part of an active campaign, ongoing since November 2019, that targets victims in the Middle East. Researchers identified three malicious documents distributing JhoneRAT: the oldest, from November 2019, is called "Urgent.docx." The second document is from the beginning of January 2019, named "Fb.docx," and contains usernames and passwords from an alleged "Facebook" leak.

Feds Cut Off Access to Billions of Breached Records with Site Takedown
2020-01-17 21:46

The feds and international law enforcement have taken down a website that was selling access to billions of stolen personal records. The records contained the usual cybercrime goodies: Names, email addresses, usernames, phone numbers and passwords for online accounts, according to the DoJ. However, it's self-description on Twitter gives a more altruistic spin on its wares, framing itself as a HaveIBeenPwnd-like service: "Have your passwords been compromised? Find out by searching through over 12 billion records and 10,000 data breaches."

Mobile Carrier Customer Service Ushers in SIM-Swap Fraud
2020-01-17 21:03

Mobile carriers have left the door wide open to SIM-swap attacks, particularly when it comes to prepaid accounts, researchers have found. According to PhishLabs, a typical attack would start with an attacker phishing personal and banking information - often via SMS phishing, which has the added benefit of confirming that a victim's cell phone number is an active line.

FBI Takes Down Site Selling Subscriptions to Stolen Data
2020-01-17 20:18

A website that sold stolen personal data to subscribers, has been seized by the FBI in an action supported by the UK's National Crime Agency, the Dutch National Police Corp, the German Bundeskriminalamt, and the Police Service of Northern Ireland. The searchable data was claimed to be a total of 12 billion records gathered from 10,000 data breeches.

Microsoft Introduces Free Source Code Analyzer
2020-01-17 20:01

Microsoft this week announced a new source code analyzer designed to identify interesting characteristics of code. Called Microsoft Application Inspector, the new tool doesn't focus on discovering poor programming practices in the analyzed code.

Attacker Installs Backdoor, Blocks Others From Exploiting Citrix ADC Vulnerability
2020-01-17 19:51

A threat group targeting the recently disclosed critical vulnerability in Citrix Application Delivery Controller is installing their own backdoor while cleaning up other malware infections and blocking others from exploiting the vulnerability, FireEye has discovered. Tracked as CVE-2019-19781, the vulnerability impacts Citrix ADC and Gateway products.

'Nice guy' hackers are seemingly fixing the Citrix server hole, but leaving a nasty present behind
2020-01-17 19:49

Hackers exploiting the high-profile Citrix CVE-2019-19781 flaw to compromise VPN gateways are now patching the servers to keep others out. Researchers at FireEye report finding a hacking group that has been bundling mitigation code for NetScaler servers with its exploits.

'Friendly' hackers are seemingly fixing the Citrix server hole – and leaving a nasty present behind
2020-01-17 19:49

Hackers exploiting the high-profile Citrix CVE-2019-19781 flaw to compromise VPN gateways are now patching the servers to keep others out. Researchers at FireEye report finding a hacking group that has been bundling mitigation code for NetScaler servers with its exploits.