Menu

Blog

Archive for the ‘cybercrime/malcode’ category: Page 68

Jul 8, 2021

Why ransomware attacks are on the rise — and what can be done to stop them

Posted by in categories: business, cybercrime/malcode, government

These attacks — along with news of several high-profile data breaches linked to the Russian government-backed hack of American software company SolarWinds, including at tech titans like Microsoft — have prompted questions about how these attacks have occured, and how to better guard against them.

State and local leaders testified June 17 before the Senate about how cyber threats they face have grown. And along with the increased penalties for cybercriminials included in a bipartisan Senate infrastructure package, a second bipartisan Senate bill would require public and private entities to report cybersecurity breaches to the government within 24 hours, as well as add liability protections to help encourage businesses to come forward.

Here’s what you should know as debate over cybersecurity and how to fight ransomware continues.

Jul 7, 2021

Cyber Shield enhances partnerships as cyber threats continue

Posted by in categories: cybercrime/malcode, food, health, law enforcement

Cyber incidents are an ongoing and substantial threat. Find out how The National Guard is working to deter, disrupt and defeat malicious cyber activity.


ARLINGTON, Va. – The National Guard plays a critical role in defending computer networks and mitigating cyber-attacks that occur almost daily, said Guard senior leaders during a roundtable discussion Tuesday.

“Cyber incidents are an ongoing and substantial threat,” said Army Gen. Daniel Hokanson, chief of the National Guard Bureau. “In 2021 alone, America’s power plants, food supply, water supply, health care, law enforcement, and defense sectors have all come under attack.”

Continue reading “Cyber Shield enhances partnerships as cyber threats continue” »

Jul 6, 2021

DARPA makes hardware bug bounty platform open source

Posted by in category: cybercrime/malcode

😃


Defense Advanced Research Projects Agency (DARPA) has made its hardware vulnerability disclosure platform for white-hat hackers open source.

The platform, known as Finding Exploits to Thwart Tampering (FETT), was first launched last year, and the agency hopes that moving to an open-source structure will help ethical hackers to spot flaws with chip design and aid the creation of new processor prototypes.

Continue reading “DARPA makes hardware bug bounty platform open source” »

Jul 5, 2021

Google cloud VMs servers can be hacked via DHCP using this vulnerability in a specific scenario

Posted by in category: cybercrime/malcode

A recent security report states that it is possible to hijack sessions on Google Compute Engine virtual machines to gain root access through a DHCP attack. While deploying this attack is impractical, an exploit attempt can be highly functional.

The report, published on GitHub, mentions that a threat actor could allow threat actors to take control of virtual machines because these deployments rely on ISC DHCP software, which employs a very weak random number generator. A successful attack clutters these virtual machines with DHCP traffic, forcing the use of a fake metadata server controlled by an attacker.

If the attack is successful, the virtual machine uses the unauthorized server for its configuration instead of an official Google one, which would allow cybercriminals to log in to the affected device with root access.

Jul 4, 2021

Fourth of July weekend ransomware attack hits thousands of companies in 17 countries

Posted by in categories: business, cybercrime/malcode

In some cases, chain reactions fed more widespread disruption.

The Swedish Coop grocery store chain had to close hundreds of stores on Saturday because its cash registers are run by Visma Esscom, which manages servers for a number of Swedish businesses and in turn uses Kaseya.

Brett Callow, a ransomware expert at the cybersecurity firm Emsisoft, said he was unaware of any previous ransomware supply-chain attack on this scale.

Jul 4, 2021

Helicopter Ingenuity in trouble on Mars losing ability to take Hi-Res color photos

Posted by in categories: cybercrime/malcode, robotics/AI, space

On June 25, 2021 NASA published detail description of future missions for Ingenuity Mars Helicopter considering 2nd software update because of HD imaging issue. Ingenuity’s team determined that capturing color images may have been inducing the imaging pipeline glitch, which resulted in the instability (Flight 6 anomaly). So Mars Helicopter needs 2nd software update to make thing going well within upcoming 9th flight. Ingenuity’s first bug was solved by software update (watchdog timer issue). Another software update for Mars Helicopter is intended to return ability to make 13 Megapixels photos on mars without flight anomalies for Ingenuity. Last week Mars Helicopter completed 8th flight on flying to 160 meters South and Perseverance goes to new location Séítah as well. Black and white images are from Ingenuity’s onboard camera directly. Mars Helicopter flew for 77.4 seconds. Maximal horizontal speed was 4 meters per second. Altitude was 10 meters. Ingenuity made amazing work to live on Mars autonomously.

Credit: nasa.gov, NASA/JPL-Caltech, NASA/JPL-Caltech/ASU

Continue reading “Helicopter Ingenuity in trouble on Mars losing ability to take Hi-Res color photos” »

Jul 4, 2021

Ransomware attack before holiday leaves companies scrambling

Posted by in categories: biotech/medical, business, cybercrime/malcode

Businesses around the world rushed Saturday to contain a ransomware attack that has paralyzed their computer networks, a situation complicated in the U.S. by offices lightly staffed at the start of the Fourth of July holiday weekend.

It’s not yet known how many organizations have been hit by demands that they pay a ransom in order to get their systems working again. But some cybersecurity researchers predict the attack targeting customers of software supplier Kaseya could be one of the broadest ransomware attacks on record.

It follows a scourge of headline-grabbing attacks over recent months that have been a source of diplomatic tension between U.S. President Joe Biden and Russian President Vladimir Putin over whether Russia has become a safe haven for cybercriminal gangs.

Jul 2, 2021

Hacker obtains data on thousands of VPN users

Posted by in category: cybercrime/malcode

User records from a popular no-logs VPN service were obtained following a data breach.


A hacker has obtained LimeVPN’s entire database from a backup of its website which they are now selling online.

Jul 2, 2021

NSA, FBI warn of ongoing brute force hacking campaign tied to Russian military

Posted by in categories: cybercrime/malcode, government, military

Russian military intelligence tied to the group Fancy Bear are using brute force techniques to infiltrate the networks of government and private sector organizations, a joint advisory from US and UK cybersecurity agencies said.

Jun 30, 2021

Cybercriminals are deploying legit security tools far more than before, researchers conclude

Posted by in category: cybercrime/malcode

Answer.


Financially motivated cybercriminals are increasingly turning to Cobalt Stike, a legitimate tool that cybersecurity professionals use to test system security, researchers at Proofpoint found.

The cybersecurity firm declined to disclose specific numbers but reported a 161% increase in attacks using Cobalt Strike in 2020 compared to 2019. Proofpoint researchers have already seen tens of thousands of organizations targeted by the tool this year and expect those numbers to climb in 2021, according to the report the firm released Tuesday.

Continue reading “Cybercriminals are deploying legit security tools far more than before, researchers conclude” »

Page 68 of 170First6566676869707172Last