Security News > 2021

‘ValidCC,’ a Major Payment Card Bazaar and Looter of E-Commerce Sites, Shuttered
2021-02-02 18:04

ValidCC, a dark web bazaar run by a cybercrime group that for more than six years hacked online merchants and sold stolen payment card data, abruptly closed up shop last week. There are dozens of online shops that sell so-called "Card not present" payment card data stolen from e-commerce stores, but most source the data from other criminals.

Trickbot malware now maps victims’ networks using Masscan
2021-02-02 17:52

The Trickbot malware has been upgraded with a network reconnaissance module designed to survey local networks after infecting a victim's computer. Trickbot uses the network scanner module to map the victims' networks and send home information on any devices with open ports.

Tiny Kobalos Malware Bedevils Supercomputers to Steal Logins
2021-02-02 17:37

ESET identified Kobalos victims by scanning for connections to SSH servers that use a specific TCP source port known to be abused by the malware. Kobalos also is likely using stolen credentials - ESET observed that in systems compromised by Kobalos, any SSH client in use has credentials stolen using a second-stage malware.

Magento Web Skimmers Piggyback in Ongoing Costway Website Compromise
2021-02-02 17:31

Two web skimmers have been discovered on the payment webpages of Costway, one of the top retailers in North America and Europe, which sells appliances, furniture and more. The skimmers are targeting consumers' credit-card payment details.

A Swiss Army Knife for Industrial Operations Protection
2021-02-02 16:37

The 25+ year gap between IT and Operational Technology security means that OT networks have few, if any, modern security controls in place, as many of these Industrial Control Systems are legacy assets that were not designed with security in mind and were previously isolated, until digital transformation came along. With asset visibility to identify vulnerabilities and suspicious behavior, continuous threat monitoring to detect and track threats that cross the IT/OT boundary, and secure remote access solutions with strict controls over sessions, we can jumpstart the process of closing the IT/OT security gap.

Malicious script steals credit card info stolen by other hackers
2021-02-02 16:00

A threat actor has infected an e-commerce store with a custom credit card skimmer designed to siphon data stolen by a previously deployed Magento card stealer. Credit card skimmers are JavaScript scripts that cybercrime groups known as Magecart groups inject into hacked e-commerce sites as part of web skimming attacks.

Apple pulls iCloud 12 for Windows 10 with Keychain sync feature
2021-02-02 15:25

Apple has pulled iCloud 12 for Windows 10 from the Microsoft Store for what is believed to be issues with their new Chrome iCloud Keychain password synchronization feature. On January 26th, Apple released iCloud 12 with a new 'Passwords' feature, that when enabled, prompts users to install an 'iCloud Passwords' extension to synchronize and automatically fill in passwords saved in the iCloud Keychain.

Check your Zoom background to remove sensitive personal-identifying items (or go virtual)
2021-02-02 15:20

Newfield said that it's easy to zoom in on items in the background of a Zoom window, such as bills or phone numbers hanging on a refrigerator or bulletin board. TechRepublic submitted three screenshots of a reporter's working environment at home and Newfield said he didn't see any security risks when he blew up the images.

Agent Tesla Trojan ‘Kneecaps’ Microsoft’s Anti-Malware Interface
2021-02-02 15:15

Researchers have identified new versions of the Agent Tesla remote access trojan that target the Windows anti-malware interface used by security vendors to protect PCs from attacks. The newly discovered variants have also adopted new obfuscation capabilities, raising the stakes for businesses to fend off the ever-evolving Agent Tesla malware.

Identity Theft Spikes Due to COVID-19 Relief
2021-02-02 14:00

Cases of identity theft in the United States doubled in 2020, mainly due to cybercriminals taking advantage of people affected economically by COVID-19 who filed to receive government benefits. This is according to the Federal Trade Commission, which received about 1.4 million reports of identity theft last year, according to a blog post published Monday, when the commission kicked off its annual "Identity Theft Awareness Week.".