Menu

Blog

Archive for the ‘cybercrime/malcode’ category: Page 62

Jul 28, 2022

Flag and anthem of Human empire

Posted by in categories: cybercrime/malcode, policy, transportation

- IMAGINARY
ANTHEM: “Anthem of the Human empire“
same tune as “The Flag Parade” by John Williams from Star Wars Episode I

- MODERATION POLICY
1) Keep comments civil.
2) Ideological and political comments are not allowed.
3) Comment section under explicit political videos will be deactivated. Same with old toxic comment sections.
4) Comments under video with mild political implications will be reviewed first.
5) SPAM = BAN
6) Warning at first infraction, recidivists will be blocked.
7) Serious offenders will be blocked with no warning.
8) Insult me and you will be blocked with no warning.
9) “Satire” is not an excuse made using Flag 3D screensaver, available here:
http://www.3planesoft.com/holidays-screensavers/flag-3d-screensaver/

Continue reading “Flag and anthem of Human empire” »

Jul 28, 2022

These 28+ Android Apps with 10 Million Downloads from the Play Store Contain Malware

Posted by in categories: business, cybercrime/malcode

Researchers have discovered a new infostealer malware, dubbed DUCKTAIL, targeting individuals and organizations that operate on Facebook’s Business.

Jul 28, 2022

New Ducktail Infostealer Malware Targeting Facebook Business and Ad Accounts

Posted by in categories: business, cybercrime/malcode

Researchers have discovered a new infostealer malware, dubbed DUCKTAIL, targeting individuals and organizations that operate on Facebook’s Business.

Jul 27, 2022

MIT system can fix your software bugs on its own (by borrowing from other software)

Posted by in categories: biotech/medical, cybercrime/malcode, genetics, robotics/AI

Circa 2015


New software being developed at MIT is proving able to autonomously repair software bugs by borrowing from other programs and across different programming languages, without requiring access to the source code. This could save developers thousands of hours of programming time and lead to much more stable software.

Bugs are the bane of the software developer’s life. The changes that must be made to fix them are often trivial, typically involving changing only a few lines of code, but the process of identifying exactly which lines need to be fixed can be a very time-consuming and often very frustrating process, particularly in larger projects.

Continue reading “MIT system can fix your software bugs on its own (by borrowing from other software)” »

Jul 27, 2022

Cybersecurity firms expose the role of Israeli-made spyware in attack on journalists

Posted by in category: cybercrime/malcode

An Israel-based company was exposed for employing a malware that exploited a vulnerability in Google’s search engine to access the personal data of co.


Cybersecurity researchers were able to link a zero-day vulnerability in Google’s search engine to a US-sanctioned Israeli spyware company that targets journalists throughout West Asia.

On 21 July, cybersecurity company Avast reported that the Israeli spyware company, Candiru, was behind the DevilsTongue malware that has targeted dozens of journalists in Lebanon, Turkey, Yemen, and Palestine.

Continue reading “Cybersecurity firms expose the role of Israeli-made spyware in attack on journalists” »

Jul 27, 2022

LinkedIn phishing target employees managing Facebook Ad Accounts

Posted by in categories: business, cybercrime/malcode

A new phishing campaign codenamed ‘Ducktail’ is underway, targeting professionals on LinkedIn to take over Facebook business accounts that manage advertising for the company.

The operators of Ducktail have a narrow targeting scope and select their victims carefully, trying to find people who have admin privileges on their employer’s social media accounts.

The discovery of this campaign comes from researchers at WithSecure, who have been tracking what they believe to be a Vietnamese threat actor since 2021, and collected evidence of activity dating going back to 2018.

Jul 26, 2022

Windows enables default account lockout policy for RDP (Remote Desktop Protocol) to reduce ransomware attacks based on brute forcing RDP

Posted by in categories: cybercrime/malcode, policy

Microsoft has chosen to add specific security measures against brute force attacks against RDP (Remote Desktop Protocol). These security improvements have been introduced in the most recent builds of Windows 11. Given the evolution of this type of attack abusing RDP, Microsoft decided to add the security measure in the latest Insider Preview22528.1000. This system automatically locks accounts for 10 minutes after 10 invalid login attempts. The news was broken by David Weston (VP of OS & Enterprise Security) on Twitter last week.

These kinds of attacks against RDP are quite common in human operated ransomware. With this relatively simple measure, it is possible to complicate brute force attacks, being quite effective in discouraging them. However, it was already possible to activate this measure in Windows 10, so the novelty is really enabling it by default.

Continue reading “Windows enables default account lockout policy for RDP (Remote Desktop Protocol) to reduce ransomware attacks based on brute forcing RDP” »

Jul 26, 2022

New Android malware apps installed 10 million times from Google Play

Posted by in categories: cybercrime/malcode, mobile phones

A new batch of malicious Android apps filled with adware and malware was found on the Google Play Store that have been installed close to 10 million times on mobile devices.

The apps pose as image-editing tools, virtual keyboards, system optimizers, wallpaper changers, and more. However, their underlying functionality is to push intrusive ads, subscribe users to premium services, and steal victims’ social media accounts.

The discovery of these malicious apps comes from the Dr. Web antivirus team, who highlighted the new threats in a report published today.

Jul 26, 2022

Microsoft Adds Default Protection Against RDP Brute-Force Attacks in Windows 11

Posted by in categories: cybercrime/malcode, policy

Microsoft is now taking steps to prevent Remote Desktop Protocol (RDP) brute-force attacks as part of the latest builds for the Windows 11 operating system in an attempt to raise the security baseline to meet the evolving threat landscape.

To that end, the default policy for Windows 11 builds – particularly, Insider Preview builds 22528.1000 and newer – will automatically lock accounts for 10 minutes after 10 invalid sign-in attempts.

“Win11 builds now have a DEFAULT account lockout policy to mitigate RDP and other brute-force password vectors,” David Weston, Microsoft’s vice president for OS security and enterprise, said in a series of tweets last week. “This technique is very commonly used in Human Operated Ransomware and other attacks — this control will make brute forcing much harder which is awesome!”

Jul 24, 2022

Alarming Cyber Statistics For Mid-Year 2022 That You Need To Know

Posted by in categories: cybercrime/malcode, government

A couple of times per year, I take a deep dive on writing about the newly reported cybersecurity statistics and trends that are impacting the digital landscape. Unfortunately, despite global efforts, every subsequent year the numbers get worse and show that we are far from being able to mitigate and contain the numerous cyber-threats targeting both industry and government.

Below is a synopsis with links on some of the recent cyber developments and threats that CISOs need to key a close watch on (and that you need to know) for the remaining part of 2022 and beyond.

While many of the statistics seem dire, there is some positive aspect on the trends side as the cybersecurity community has been taking several initiatives to create both cyber awareness and action. And for those attending the 2022 RSA Conference in San Francisco, hopefully the backdrop of the following statistics and trends from mid-year 2022 can also be useful to analyze and match with product and services roadmaps for cybersecurity.

Page 62 of 202First5960616263646566Last