Security News

US Govt Warns Critical Industries After Ransomware Hits Gas Pipeline Facility
2020-02-19 11:43

The U.S. Department of Homeland Security's Cybersecurity and Infrastructure Security Agency earlier today issued a warning to all industries operating critical infrastructures about a new ransomware threat that if left unaddressed could have severe consequences. The advisory comes in response to a cyberattack targeting an unnamed natural gas compression facility that employed spear-phishing to deliver ransomware to the company's internal network, encrypting critical data and knocking servers out of operation for almost two days.

US Govt Warns Critical Industries After Ransomware Hits Gas Pipeline Facility
2020-02-19 03:43

The U.S. Department of Homeland Security's Cybersecurity and Infrastructure Security Agency earlier today issued a warning to all industries operating critical infrastructures about a new ransomware threat that if left unaddressed could have severe consequences. The advisory comes in response to a cyberattack targeting an unnamed natural gas compression facility that employed spear-phishing to deliver ransomware to the company's internal network, encrypting critical data and knocking servers out of operation for almost two days.

Ransomware Hit a Florida Voting System in 2016
2020-02-13 21:48

Election officials in Palm Beach County, Florida, revealed this week that its voter registration system was hit by ransomware in the weeks leading up to the 2016 presidential election, according to the The Palm Beach Post. On Wednesday, Wendy Sartory Link, the recently appointed election supervisor of Palm Beach county, acknowledged that the government voting system sustained a previously undisclosed ransomware attack in mid-September 2016, according to the news report.

Live Webinar | How MSPs Can Fight Ransomware and Grow Revenue with Cyber Protection Services
2020-02-13 20:33

Ransomware brings a business to a screeching halt every 11 seconds, making it the most pervasive and destructive malware threat out there. With fast-evolving ransomware strains, protecting your business means it is essential to take on so-called zero-day attacks that slip by traditional anti-virus defenses.

FBI: $3.5B Lost in 2019 to Known Cyberscams, Ransomware
2020-02-12 13:50

Businesses and individuals lost $3.5 billion to cybercriminals last year while reporting more incidents of internet crime to the FBI than any year previously, according to the bureau's Internet Core Competency Certification 2019 Internet Crime Report, which was released on Tuesday. People reported 467,361 complaints of cybercrime to the FBI in 2019-an average of nearly 1,300 incidents every day, and more than 100,000 more than the year prior, according to the report.

Forgotten motherboard driver turns out to be perfect for slipping Windows ransomware past antivirus checks
2020-02-11 02:00

A kernel-level Windows driver for old PC motherboards has been abused by criminals to silently disable antivirus protections, and hold files to ransom. When the ransomware infects a computer - either by some other exploit or by tricking a victim into running it - and loads the driver, the operating system and antivirus packages will allow it because the driver appears legit.

Ransomware Hits North Miami Beach Police Department
2020-02-10 16:15

The City of North Miami Beach last week announced that ransomware was found on computers within its police department's network. The attack was discovered on Tuesday and the FBI, the Secret Service, and the Miami-Dade Police Department were immediately alerted.

Ransomware uses vulnerable, signed driver to disable endpoint security
2020-02-10 15:19

Ransomware-wielding attackers have devised a novel tactic for disabling security protections that might get in their way: they are using a deprecated, vulnerable but signed driver to deliver a malicious, unsigned one that allows them to kill processes and files belonging to Windows endpoint security products. The vulnerable driver they are misusing was created by Taiwan-based motherboard manufacturer Gigabyte, found to be vulnerable in 2018 and later deprecated, but the signing certificate was never revoked.

Netherlands University Pays $240,000 After Targeted Ransomware Attack
2020-02-10 14:27

UM has been open and forthcoming on the details of the attack, providing detailed insight into a classic targeted ransomware attack. "The modus operandi of the group behind this specific attack," said Fox-IT in a forensic report commissioned by UM, "Comes over with a criminal group that already has a long history, and goes back to at least 2014. The group is often referred to publicly as 'TA505', as well as 'GraceRAT', named after one of the tools used by the group."