Necurs: Mass mailing botnet returns with new wave of spam campaigns

Unexplained three-month absence resulted in a seven-fold decrease in rate of emails containing malware. Publish to Facebook:  No Twitter Card Style:  summary After a near three-month period of inactivity, the Necurs botnet sprang back to life last week and resumed the mass mailing spam campaigns for which it has become notorious. Click to Tweet:  #Necurs…

Read More

Personalized spam campaign targets Germany

A new spam campaign targeting German users uses victims’ real details and installs banking malware on compromised computers. Publish to Facebook:  No Twitter Card Style:  summary A spam campaign Symantec observed in January 2017 targeting people who live in Germany appears to be, once again, using detailed, real personal information to enhance the believability of…

Read More

Microsoft Patch Tuesday – March 2017

This month the vendor is releasing 18 bulletins, nine of which are rated Critical. Publish to Facebook:  No Twitter Card Style:  summary Hello, welcome to this month’s blog on the Microsoft patch release. This month the vendor is releasing 18 bulletins, nine of which are rated Critical. As always, customers are advised to follow these…

Read More

Spam campaign targets financial institutions with fake security software

Emails claim to be from HSBC and ask recipients to install fake Rapport security software. Publish to Facebook:  No Twitter Card Style:  summary Last month, Symantec detected a spam campaign mainly targeting financial institutions, which used social engineering to try trick victims into installing “virus detection software” that was in fact an information stealing Trojan…

Read More

Latest Intelligence for February 2017

Number of new malware variants reaches highest level since October 2016 and Symantec uncovers a wider campaign carried out by Shamoon attackers. Publish to Facebook:  No Twitter Card Style:  summary Some of the key takeaways from February’s Latest Intelligence, and the threat landscape in general, include the highest increase in malware variants since October 2016,…

Read More

Shamoon: Multi-staged destructive attacks limited to specific targets

Recent attacks involving the destructive malware Shamoon appear to be part of a much wider campaign in the Middle East and beyond. Publish to Facebook:  No Twitter Card Style:  summary Recent attacks involving the destructive malware Shamoon (W32.Disttrack.B) were launched by attackers conducting a much wider campaign in the Middle East. While the attackers have…

Read More

Android ransomware requires victim to speak unlock code

Latest Android.Lockdroid.E variant uses speech recognition instead of typing for unlock code input. Blog Feature Image:  EB-Header-image109.jpeg Publish to Facebook:  No Twitter Card Style:  summary Being a good listener is normally considered an admirable quality in a person; however, it isn’t a quality you necessarily want to find in a piece of malware. The latest…

Read More

Symantec and other industry leaders announce expanded Cyber Threat Alliance

Cybersecurity consortium formally establishes rapid security intelligence sharing system to combat cybercrime and advanced attacks. Blog Feature Image:  EB-Stats-02.jpeg Twitter Card Style:  summary Symantec is one of the six founding members of the Cyber Threat Alliance (CTA) which yesterday announced its formal incorporation as a not-for-profit entity. The organization also announced the appointment of former…

Read More

Sage 2.0 ransomware delivered by Pandex spambot, mimics Cerber routines

New variants of Sage ransomware sport Cerber-like behavior, although no definitive link was found between the two families. Twitter Card Style:  summary Symantec Security Response has recently discovered the Sage 2.0 ransomware (Ransom.Cry) being delivered by the Trojan.Pandex spambot, which we have previously seen sending JS downloaders with spambots, banki Click to Tweet:  Sage 2.0…

Read More

Attackers target dozens of global banks with new malware

Watering hole attacks attempt to infect more than 100 organizations in 31 different countries. Blog Feature Image:  virtual_abstraction.jpg Twitter Card Style:  summary Organizations in 31 countries have been targeted in a new wave of attacks which has been underway since at least October 2016. The attackers used compromised websites or “watering holes” to infect pre-selected…

Read More