Flash Player zero-day being exploited in targeted attacks

Adobe patches vulnerability (CVE-2016-7855) which was being used in a limited number of targeted attacks. Twitter Card Style:  summary A newly discovered zero-day vulnerability in Adobe Flash Player is being exploited by attackers in the wild. Adobe released a Security Bulletin (APSB16-36) yesterday which patches the vulnerability (CVE-2016-7855). read more Source: Symantec

Read More

Tech support scams increasing in complexity

Tech support scammers have begun using code obfuscation to avoid detection. Twitter Card Style:  summary Tech support scams remain one of the major and evolving forces in the computer security landscape. Between January 1 and April 30 this year, the Internet Crime Complaint Center (IC3) received 3,668 complaints related to tech support scams, which amounted…

Read More

Attackers use Discord VoIP chat servers to host NanoCore, njRAT, SpyRAT

Malicious actors are abusing a free VoIP service for gamers to distribute remote access Trojans, as well as infostealers and downloaders. Twitter Card Style:  summary Discord, a free VoIP service designed for gaming communities, has had its chat servers abused to host malware. Click to Tweet:  Attackers abuse Discord chat servers to deliver remote access…

Read More

Malware and spam groups exploit US election fever

As the presidential election draws near, the level of malware and spam activity attempting to capitalize on interest in the campaigns of Donald Trump and Hillary Clinton has risen. Twitter Card Style:  summary Over the past month, Symantec has blocked almost 8 million spam emails relating to the US presidential election. The volume of spam…

Read More

TA16-288A: Heightened DDoS Threat Posed by Mirai and Other Botnets

Original release date: October 14, 2016 Systems Affected Internet of Things (IoT)—an emerging network of devices (e.g., printers, routers, video cameras, smart TVs) that connect to one another via the Internet, often automatically sending and receiving data Overview Recently, IoT devices have been used to create large-scale botnets—networks of devices infected with self-propagating malware—that can…

Read More

Beware of the student loan forgiveness scam spam

Trojan.Ascesso has been observed trying to send out thousands of student loan forgiveness scam emails. Twitter Card Style:  summary According to reports, 42 million people owe US$1.3 trillion in student debt in America today. With most of these student loans being government-backed, the student debt industry in America is big business and estimated to be…

Read More

Surge of email attacks using malicious WSF attachments

Ransomware attack groups among the most frequent users of new tactic. Twitter Card Style:  summary_large_image Symantec has seen a major increase in the number of email-based attacks using malicious Windows Script File (WSF) attachments over the past three months. Ransomware groups in particular have been employing this new tactic. read more Source: Symantec

Read More

Microsoft Patch Tuesday – October 2016

This month the vendor is releasing 10 bulletins, five of which are rated Critical. Blog Feature Image:  microsoftpatch.png Twitter Card Style:  summary Hello, welcome to this month’s blog on the Microsoft patch release. This month the vendor is releasing 10 security bulletins, five of which are rated Critical. As always, customers are advised to follow…

Read More

Odinaff: New Trojan used in high level financial attacks

Multiple banks attacked by Carbanak-linked group. Twitter Card Style:  summary Since January 2016, discreet campaigns involving malware called Trojan.Odinaff have targeted a number of financial organizations worldwide. These attacks appear to be extremely focused on organizations operating in the banking, securities, trading, and payroll sectors. Click to Tweet:  Banks & other financial targets hit by…

Read More

Odinaff: New Trojan used in high level financial attacks

Multiple banks attacked by Carbanak-linked group. Twitter Card Style:  summary Since January 2016, discreet campaigns involving malware called Trojan.Odinaff have targeted a number of financial organizations worldwide. These attacks appear to be extremely focused on organizations operating in the banking, securities, trading, and payroll sectors. Click to Tweet:  Banks & other financial targets hit by…

Read More