Categories: Business Learn more about EDR and MDR and which is right for your business. (Read more…) The post Webinar recap: EDR vs MDR for business success appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes Labs…
Category: Malwarebytes Labs
Identity crisis: How an anti-porn crusade could jam the Internet, featuring Alec Muffett: Lock and Code S04E11
Categories: Podcast This week on Lock and Code, we speak with longtime security researcher about the eerily similar attempts across the globe to weaken the Internet to achieve one specific, social goal. (Read more…) The post Identity crisis: How an…
KeePass vulnerability allows attackers to access the master password
Categories: Exploits and vulnerabilities Categories: News Categories: Personal Tags: KeePass Tags: memory dump Tags: CVE-2023-32784 There is a Proof-of-Concept available for an unpatched vulnerability in KeePass that allows attackers to dump the master password. (Read more…) The post KeePass vulnerability…
Child safety app riddled with vulnerabilities: Update now!
Categories: Personal Tags: Parental control kids place Tags: child Tags: safety Tags: controls Tags: restrict. block Tags: limit Tags: vulnerability Tags: exploit Tags: password Tags: upload Tags: dashboard Child safety app Parental Control – Kids Place has been found to…
Zip domains, a bad idea nobody asked for
Categories: News Just, why? (Read more…) The post Zip domains, a bad idea nobody asked for appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes Labs Read the original article: Zip domains, a bad idea nobody asked…
APT attacks: Exploring Advanced Persistent Threats and their evasive techniques
Categories: Business Unpacking one of the most dangerous threats in cybersecurity. (Read more…) The post APT attacks: Exploring Advanced Persistent Threats and their evasive techniques appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes Labs Read the…
PharMerica breach impacts almost 6 million people
Categories: News Categories: Ransomware Tags: PharMerica Tags: Money Message Tags: ransomware Tags: PII Tags: SSN US pharmacy giant PharMerica has reported a cybersecurity incident that affects over 5.8 million people. The data theft has been claimed by ransomware group Money…
Leaked Babuk ransomware builder code lives on as RA Group
Categories: News Tags: ransomware Tags: RA Group Tags: babuk Tags: code Tags: leaked Tags: encrypted Tags: stolen Tags: exfiltrated Tags: ransom Tags: hijack Tags: blackmail Tags: double extortion Tags: leak Tags: sell We take a look at yet another ransomware…
3 reasons to use a VPN
Categories: Personal Categories: Privacy Tags: VPN Tags: Privacy Tags: always on Tags: location Tags: sensitive information Most VPN users can be put in one of three categories. It all depends on your needs and your threat model. (Read more…) The…
A week in security (May 8-14)
Categories: News Tags: YouTube Tags: ad block Tags: sponsored tweets Tags: Twitter Tags: fake BBC News Tags: AVLab assessment Tags: Google Tags: Google Passkey Tags: MSP Tags: Patch Tuesday Tags: Discord Tags: RedStinger Tags: tech support scam Tags: Aurora stealer…
Why we should be more open about ransomware attacks
Categories: News Categories: Ransomware Tags: ransomware Tags: data breach Tags: dark web Tags: share information Paying the ransom and not saying a word about what happened is what cybercriminals would like us all to do. (Read more…) The post Why…
Windows 11 is showing its first signs of Rust
Categories: News Tags: Windows 11 Tags: OS Tags: operating system Tags: programming language Tags: rust Tags: C Tags: C++ Tags: kernel Tags: buffer overflow We take a look at the slow introduction of programming language Rust into the Windows 11…
Update now! Ruckus vulnerability added to CISA’s list of actively exploited bugs
Categories: Exploits and vulnerabilities Categories: News Tags: Ruckus Tags: CISA Tags: AndoryuBot Tags: CVE-2023-25717 Tags: 163.123.142.146 CISA has added a Ruckus vulnerability being abused by the AndoryuBot botnet to its catalog. (Read more…) The post Update now! Ruckus vulnerability added…
Sponsored Twitter post uses fake BBC News site to boost slippery oil trading app
Categories: News Categories: Personal Tags: forex Tags: BBC Tags: fake Tags: trading Tags: digital Tags: reviews Tags: website Tags: AI Tags: app Tags: phone Tags: twitter Tags: sponsored Tags: ad Tags: advert Tags: blue check Tags: verified We take a…
YouTube is testing ad blocker detection
Categories: News Categories: Personal Tags: youtube Tags: ad Tags: advert Tags: network Tags: ad industry Tags: block Tags: blocker Tags: adblock Tags: malware Tags: malvertising Tags: intrusive Tags: popup Tags: affiliate We take a look at YouTube’s testing of ad…
Google Passkeys: How to create one and when you shouldn’t
Categories: News Tags: Google passkey Tags: passkey Tags: passwordless future Tags: passwordless Tags: phishing Google is offering users the best option to date to securing their accounts from phishing. (Hint: It’s not passwords.) (Read more…) The post Google Passkeys: How…
Malwarebytes achieves perfect score in latest AVLab assessment
Categories: Business We blocked 100% of malware for the sixth consecutive quarter in a row. (Read more…) The post Malwarebytes achieves perfect score in latest AVLab assessment appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes Labs…
How to spot and avoid a tech support scam
Categories: Awareness Categories: Personal Categories: Scams Tags: Tech Support Scams Tags: Malwarebytes Tags: impersonating Tags: screen lockers Tags: fake warnings Tags: remote access Tech support scams are an ongoing nuisance. Knowing how they operate helps you to recognize them. (Read…
New Discord username policy raises user privacy fears
Categories: News Tags: Discord Tags: privacy Tags: username Tags: discriminator Tags: DM Tags: bot Tags: chat Tags: change Tags: changing Tags: server Tags: hijack phish Tags: private We take a look at the reaction to Discord’s proposed changes to how…
Uncovering RedStinger – Undetected APT cyber operations in Eastern Europe since 2020
Categories: Threat Intelligence We discovered a new interesting lure that targeted the Eastern Ukraine region and started tracking the threat actor behind it. (Read more…) The post Uncovering RedStinger – Undetected APT cyber operations in Eastern Europe since 2020 appeared…
Update now! May 2023 Patch Tuesday tackles three zero-days
Categories: Exploits and vulnerabilities Categories: News Tags: Microsoft Tags: CVE-2023-29336 Tags: CVE-2023-24932 Tags: bootkit Tags: CVE-2023-29325 Tags: Outlook Tags: preview Tags: CVE-2023-24941 Tags: Apple Tags: Cisco Tags: Google Tags: Android Tags: VMWare Tags: SAP Tags: Mozilla Microsoft’s Patch Tuesday round…
Navigating mobile malware trends: Crucial insights and predictions for MSPs
Categories: Business How MSPs can prepare for the complex landscape of mobile malware. (Read more…) The post Navigating mobile malware trends: Crucial insights and predictions for MSPs appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes Labs…
Brightline breach hits at least 964,000 people, US records show
Categories: News Categories: Ransomware Tags: Brightlight Tags: GoAnywhere MFT Tags: data breach Tags: Cl0p Following the Cl0p ransomware gang’s attacks that leveraged Fortra’s GoAnywhereMFT software tool, behavioral health provider Brightline informed customers about a data breach related to the attacks.…
Ransomware attack on MSI led to compromised Intel Boot Guard private keys
Categories: News Categories: Ransomware Tags: MSI Tags: Intel Tags: Boot Guard Tags: firmware updates Tags: Money Message The leaked data after the ransomware attack on MSI includes private keys which could be used to bypass Intel Boot Guard (Read more…)…
Fake system update drops Aurora stealer via Invalid Printer loader
Categories: Threat Intelligence Tags: malvertising Tags: Aurora stealer Tags: loader Tags: Amadey Not all system updates mean well, and some will even trick you into installing malware. (Read more…) The post Fake system update drops Aurora stealer via Invalid Printer…
A week in security (May 1 – 7)
Categories: News The most interesting security related news of the week from May 1 till 7 (Read more…) The post A week in security (May 1 – 7) appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes…
The rise of “Franken-ransomware,” with Allan Liska: Lock and Code S04E11
This week on Lock and Code, we speak with Allan Liska about a new trend in ransomware delivery and development, and why it presents new challenges to organizations and law enforcement investigators. (Read more…) The post The rise of “Franken-ransomware,”…
Ransomware review: May 2023
LockBit maintained its position as the top ransomware attacker and was also observed expanding into the Mac space. (Read more…) The post Ransomware review: May 2023 appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes Labs Read…
Google and Apple cooperate to address unwanted tracking
Categories: News Categories: Privacy Tags: Google Tags: Apple Tags: AirTag Tags: Tile Tags: Samsung Tags: Bluetooth Tags: trackers Tags: stalking Tags: car thieves Google and Apple want to create a specification for tech that alerts users when they’re being tracked…
Microsoft vs Google spat sees users rolling back security updates to fix browser issues
Categories: News Tags: Chrome Tags: Windows Tags: Edge Tags: browser Tags: update Tags: Microsoft Tags: default Tags: install We take a look at trouble brewing in browser land after a controversial Windows update leaves Chrome fans without a useful feature.…
Newspaper evades Russian censors, hides news in Counter-Strike map
Categories: News Tags: Russia Tags: Ukraine Tags: censorship Tags: press Tags: freedom Tags: restrictions Tags: evade Tags: counter-strike: global offensive Tags: counter strike GO Tags: steam Tags: workshop Tags: map Tags: de_vonya We take a look at one newspaper’s innovative…
Apple releases first Rapid Security Response update for iOS, iPadOS, and macOS users
Categories: Apple Categories: News Tags: macOS Tags: iOS Tags: iPadOS Tags: Rapid Security Response Tags: RSR After announcing Rapid Security Response (RSR) last year, Apple has finally released the first RSR patches to the public. (Read more…) The post Apple…
World Password Day must die
Categories: News Critical technology should not require an annual pep talk to function correctly. (Read more…) The post World Password Day must die appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes Labs Read the original article:…
The one and only password tip you need
Categories: News I was asked to write a list of password tips. It’s a short list. (Read more…) The post The one and only password tip you need appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes…
How small businesses can secure employees’ mobile devices
Categories: Business Categories: News Tags: Small Business Week Tags: mobile security policy Tags: A third of organizations aren’t protecting their mobile devices at all. Don’t be one of them. (Read more…) The post How small businesses can secure employees’ mobile…
AI-powered content farms start clogging search results with ad-stuffed spam
Categories: News Tags: spam Tags: AI Tags: GPT Tags: generated Tags: content Tags: farm Tags: SEO Tags: click Tags: news Tags: ad Tags: advert Tags: google Tags: advertisers We take a look at the potential issues surrounding AI-generated content produced…
Upcoming webinar: Is EDR or MDR better for your business?
Categories: Business Be sure to catch the full webinar on Wednesday, May 10, 2023. (Read more…) The post Upcoming webinar: Is EDR or MDR better for your business? appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes…
Google Authenticator WILL get end-to-end encryption. Eventually.
Categories: News Google has promised to add end-to-end encryption to Google Authenticator backups after users were warned against turning on the new feature. (Read more…) The post Google Authenticator WILL get end-to-end encryption. Eventually. appeared first on Malwarebytes Labs. This…
Google takes CryptBot to the wood shed
Categories: News Tags: CryptBot Tags: malware Tags: chrome Tags: download Tags: package Tags: packages Tags: google Tags: legal Tags: court order Tags: RICO Tags: Pakistan We take a look at Google’s efforts to shut down a particularly nasty set of…
Oracle WebLogic Server vulnerability added to CISA list as “known to be exploited”
Categories: Exploits and vulnerabilities Categories: News Tags: Oracle Tags: WebLogic Tags: CVE-2023-21839 Tags: CVE-2023-1389 Tags: CVE-2021-45046 Tags: CISA Tags: reverse shell An easy to exploit vulnerability in Oracle WebLogic Server has been added to the CISA list of things you…
How to keep your ChatGPT conversations out of its training data
Categories: News Tags: ChatGPT Tags: AI training Tags: ChatGPT Business OpenAI has introduced a feature that lets you opt your conversations out of ChatGPT’s training data, but you have to switch it on. (Read more…) The post How to keep…
Is it OK to train an AI on your images, without permission?
Categories: News Tags: AI Tags: bot Tags: tool Tags: scrape Tags: scraper Tags: website. image Tags: images Tags: art Tags: artist Tags: consent A tool that’s harvesting pictures to train image-generating AIs has caused some measure of chaos among webmasters…
A week in security (April 24 -30)
Categories: News Tags: Lockbit Tags: cl0p Tags: papercut Tags: vmware Tags: magecart Tags: fileless Tags: chatgpt Tags: apc Tags: Pupy rat Tags: guloader Tags: black basta Tags: flipper zero Tags: clickjacking The most interesting security related news of the week…
How to protect your small business from social engineering
Categories: Personal Tags: Small Business Week 2023 Tags: Small Business Week Tags: phishing Tags: pretexting Tags: baiting Tags: tailgating Tags: BEC Tags: CEO fraud Tags: business email compromise Tags: O’Neill Bragg & Staffin Tags: 2022 Internet Crime Report Tags: FBI…
Microsoft: You’re already using the last version of Windows 10
Categories: News Tags: Windows 10 Tags: Windows 11 Tags: Windows 10 end of support The current version of Windows 10, version 22H2, will be the last edition of the operating system (OS). (Read more…) The post Microsoft: You’re already using…
Update now: Critical flaw in VMWare Fusion and VMWare Workstation
Categories: News Tags: VMware Tags: workstation Tags: fusion Tags: virtual machine Tags: SCSI Tags: DVD Tags: CD Tags: virtualisation Tags: exploit Tags: vulnerability Tags: flaw Tags: CVE VMWare has released fixes and mitigations for three Important and one Critical vulnerability…
LockBit and Cl0p ransomware gangs actively exploiting Papercut vulnerabilities
Categories: News Categories: Ransomware Tags: PaperCut Tags: Cl0p Tags: LockBit Vulnerabilities in PaperCut printing management are being used in ransomware attacks. (Read more…) The post LockBit and Cl0p ransomware gangs actively exploiting Papercut vulnerabilities appeared first on Malwarebytes Labs. This…
ChatGPT writes insecure code
Categories: News Tags: ChatGPT Tags: How Secure is Code Generated by ChatGPT? Tags: Raphaël Khoury Tags: Anderson Avila Tags: Jacob Brunelle Tags: Baba Mamadou Camara Tags: Université du Québec Tags: ChatGPT makes insecure code Researchers have found that ChatGPT, OpenAI’s…
Fileless attacks: How attackers evade traditional AV and how to stop them
Categories: Business Find threats camouflaging themselves in RAM. (Read more…) The post Fileless attacks: How attackers evade traditional AV and how to stop them appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes Labs Read the original…
Magecart threat actor rolls out convincing modal forms
Categories: Threat Intelligence Tags: magecart Tags: skimmer Tags: modal Tags: fraud Tags: e-commerce It’s hard to put individuals at fault when the malicious copy is better than the original. This credit card skimmer was built to fool just about anyone.…
Decoy dog toolkit plays the long game with Pupy RAT
Categories: News Tags: Pupy RAT Tags: nation state Tags: russia Tags: decoy dog Tags: toolkit Tags: linux Tags: mobile Tags: windows Tags: malware Tags: DNS Tags: evasive We take a look at the discovery of a long running malware toolkit…
APC warns about critical vulnerabilities in online UPS monitoring software
Categories: Exploits and vulnerabilities Categories: News Tags: APC Tags: UPS Tags: Schneider Electric Tags: CVE-2023-29411 Tags: CVE-2023-29412 Tags: CVE-2023-29413 In a security notification, APC has warned home and corporate users about critical vulnerabilities in the software used to monitor and…
Update your PaperCut application servers now: Exploits in the wild
Categories: News Tags: PaperCut Tags: server Tags: exploit Tags: attack Tags: authentication Tags: update Tags: patch We take a look at urgent updates needed for users of PaperCut, after two exploits were found in the wild. (Read more…) The post…
Black Basta ransomware attacks Yellow Pages Canada
Categories: News Categories: Ransomware Tags: Yellow Pages Tags: Canada Tags: Black Basta Tags: ransomware Yellow Pages Canada has suffered a cyberattack by the Black Basta ransomware group. (Read more…) The post Black Basta ransomware attacks Yellow Pages Canada appeared first…
GuLoader returns with a rotten shipment
Categories: News Tags: GuLoader Tags: loader Tags: malware Tags: malspam Tags: email Tags: mail Tags: delivery Tags: collection Tags: scam Tags: infection Tags: Italy We take a look at a GuLoader campaign which comes bundled with an Italian language fake…
A week in security (April 17 – 23)
Categories: News Tags: fake Chrome update Tags: AirBnb scam Tags: fake IRS tax email Tags: Ransomware in Germany report Tags: Living Off The Land Tags: LOTL attack Tags: ALPHV ransomware Tags: ransomware Tags: spring cleaning your browser Tags: lost injured…
Adult content malvertising scheme leads to clickjacking
Categories: News Tags: 18+ Tags: malvertising Tags: Google ads Tags: clickjacking Malwarebytes’ researchers have discovered a malvertising scheme that uses adult lures for clickjacking purposes. (Read more…) The post Adult content malvertising scheme leads to clickjacking appeared first on Malwarebytes…
Removing the human: When should AI be used in emotional crisis? Lock and Code S03E09
Categories: Podcast This week on Lock and Code, we speak with Courtney Brown about a mental health nonprofit’s use of AI to speak to people suffering emotional distress. (Read more…) The post Removing the human: When should AI be used…
Update now, there’s a Chrome zero-day in the wild
Categories: News Tags: chrome Tags: browser Tags: update Tags: vulnerability Tags: CVE Tags: exploit Tags: exploitation Tags: zero-day Users of Chrome should ensure they’re running the latest version to patch an integer overflow in the Skia graphics library. (Read more…)…
Would-be hitman busted after being fooled by parody website
Categories: News Tags: Josiah Ernesto Garcia Tags: Air National Guard Tags: Air Guard Tags: Pentagon leak Tags: murder-for-hire Tags: hired gun Instead of using his time and military training for good, 21-year-old Josiah Garcia decided to become a hired gun—and…
US Facebook users can now claim Cambridge Analytica settlement cash
Categories: News Tags: Facebook Tags: class action lawsuit settlement Tags: Cambridge Analytica Tags: Lauren Price Tags: Meta In December, Facebook decided to pay $725 million to settle a class action lawsuit. Facebook users in the US can now claim their…
Fancy Bear known to be exploiting vulnerability in Cisco routers
Categories: Exploits and vulnerabilities Categories: News Tags: APT28 Tags: Sofacy Tags: Fancy Bear Tags: GRU Tags: Cisco Tags: CVE–2017-6742 Tags: SNMP Tags: Jaguar Tooth A joint advisory about a Cisco vulnerability by several US and UK agencies gives us a…
FTC tackles tech support scams by chasing payment processor firms
Categories: News Tags: ftc Tags: tech support scam Tags: scammers Tags: payment processor Tags: fine Tags: visa Tags: chargeback We take a look at a story involving the FTC going head to head with a payment processor caught up in…
QBot changes tactic, remains a menace to business networks
Categories: News Tags: QBot Tags: Trojan dropper QBot has resurfaced with a new tactic involving a reply-chain phishing email, a fake PDF, and the likely promise of a ransomware infection. (Read more…) The post QBot changes tactic, remains a menace…
What your peers said: G2 comparison of top Endpoint Security vendors
Categories: Business #1 in Endpoint Protection, #1 ROI for EDR, #1 for EDR implementation. (Read more…) The post What your peers said: G2 comparison of top Endpoint Security vendors appeared first on Malwarebytes Labs. This article has been indexed from…
Instagram scam promises money in exchange for your image
Categories: News Tags: fake Tags: muse Tags: art Tags: artist Tags: instagram Tags: check Tags: payment Tags: fraud Tags: wire Tags: bank Tags: banking Tags: drawing Tags: painting We take a look at a fake check scam which plugs into…
Malware authors join forces and target organisations with Domino Backdoor
Categories: News Tags: domino Tags: loader Tags: backdoor Tags: malware Tags: ransomware Tags: emotet Tags: network Tags: corporate Tags: business Tags: organisation Tags: data Tags: theft Tags: steal Tags: banking Tags: trojan We take a look at a malware collective…
Introducing the Malwarebytes Admin app: Endpoint security at your fingertips
Categories: Business IT security on the go. (Read more…) The post Introducing the Malwarebytes Admin app: Endpoint security at your fingertips appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes Labs Read the original article: Introducing the…
Payment giant’s point-of-sale outage caused by ALPHV ransomware
Categories: News Categories: Ransomware Tags: NCR Tags: Aloha Tags: ALPHV Tags: BalckCat Tags: ransomware An issue with the NCR Aloha point-of-sale system turned out to be a ransomware attack claimed by the ALPHV group (Read more…) The post Payment giant’s…
Spring cleaning tips for your browser
Categories: News Tags: Some tips that can enhance your browser’s speed Tags: so you have more time to enjoy the outdoors Some tips that can enhance your browser’s speed, so you have more time to enjoy the outdoors. (Read more…)…
Avoid this “lost injured dog” Facebook hoax
Categories: News Tags: facebook Tags: scam Tags: spam Tags: hoax Tags: dog Tags: injured Tags: lost Tags: vet Tags: missing We take a look at a Facebook hoax which uses supposedly injured dogs as the lure for a bait and…
Swatting-as-a-Service is a growing and complicated problem to solve
Categories: News Tags: swatting Tags: caller ID spoofing Tags: telegram Tags: cryptocurrency Tags: AI generated voice Using a false call to deploy emergency services to the address of a victim or a school has been turned into Swatting-as-a-Service (Read more…)…
LockBit ransomware on Mac: Should we worry?
Categories: News Categories: Ransomware Tags: LockBit Tags: ransomware Tags: Patrick Wardle Tags: macOS ransomware Tags: first Mac ransomware Tags: Azim Khodjibaev Tags: BleepingComputer Tags: Mark Stockley With plans to offer more ransomware, LockBit has just created a variant for macOS.…
Woman tracks down and turns table on Airbnb scammer
Categories: News Categories: Scams Tags: Airbnb Tags: TikTok Tags: @livvoogus Tags: Olivia Tags: Mr. Tyler A superhost scammed a woman out of a thousand dollars. She didn’t take it lying down. (Read more…) The post Woman tracks down and turns…
Update Chrome now! Google patches actively exploited flaw
Categories: Exploits and vulnerabilities Categories: News Tags: Google Tags: Chrome zero-day Tags: CVE-2023-2033 Tags: V8 flaw Tags: V8 Google has released an updated version of Chrome to address a zero-day flaw that is being exploited in the wild. (Read more…)…
Beware: Fake IRS tax email wants your Microsoft account
Categories: News Categories: Scams Tags: IRS tax scam Tags: tax scam Tags: IRS Tags: Jerome Segura Tags: Telegram bot Tags: Emotet Expect more IRS tax-related shenanigans from fraudsters, who are now going for corporate accounts, after some states received deadline…
Ransomware in Germany, April 2022 – March 2023
Categories: News In the last 12 months, Germany was one of the most attacked countries in the world, the most attacked in the EU, and a favourite target of the notorious Black Basta group. (Read more…) The post Ransomware in…
Living Off the Land (LOTL) attacks: Detecting ransomware gangs hiding in plain sight
Categories: Business Good tools gone bad. (Read more…) The post Living Off the Land (LOTL) attacks: Detecting ransomware gangs hiding in plain sight appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes Labs Read the original article:…
Massive malvertising campaign targets seniors via fake Weebly sites
Categories: Threat Intelligence Tags: malvertising Tags: weebly Tags: google Tags: ads Tags: seniors Tags: recipe Tags: tech support Tags: scam Scammers are buying ads on for the most common Google searches made by seniors and defrauding them with tech support…
Is AI being used for virtual kidnapping scams?
Categories: News Tags: kidnap Tags: scam Tags: virtual Tags: AI Tags: voice Tags: fake Tags: fraud Tags: hoax Tags: kidnapping We take a look at claims that AI is now being used for a notorious form of kidnapping hoax. (Read…
Port scan attacks: Protecting your business from RDP attacks and Mirai botnets
Categories: Business Prevent port scanning attacks with Malwarebytes for Business. (Read more…) The post Port scan attacks: Protecting your business from RDP attacks and Mirai botnets appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes Labs Read…
Google Pay accidentally handed out free money, bug now fixed
Categories: News Tags: Google Pay Tags: Google Pay bug Tags: free money All good things must end, they say, including generous offers of rewards caused by a short-lived glitch in Google Pay. (Read more…) The post Google Pay accidentally handed…
Sextortion “assistance” scammers con victims further
Categories: News Tags: FBI Tags: extortion Tags: sextortion Tags: crime Tags: criminal Tags: nude Tags: nudes Tags: photographs Tags: images Tags: video Tags: photo Tags: scam Tags: payment Tags: profit Tags: assistance Tags: help We take a look at an…
Ransomware in France, April 2022–March 2023
Categories: Ransomware Categories: Threat Intelligence In the last 12 months France was one of the most attacked countries in the world, and a favourite target of LockBit, the world’s most dangerous ransomware. (Read more…) The post Ransomware in France, April…
Ransomware review: April 2023
Categories: Ransomware Categories: Threat Intelligence Cl0p was the most used ransomware in March 2023, dethroning the usual frontrunner LockBit, after breaching over 104 organizations with a zero-day vulnerability. (Read more…) The post Ransomware review: April 2023 appeared first on Malwarebytes…
Don’t plug your phone into a free charging station, warns FBI
Categories: Awareness Categories: News Tags: FBI Tags: juice jacking Tags: public chargers The FBI warned consumers against using free public charging stations, stating that criminals have managed to hijack public chargers to infect devices with malware. (Read more…) The post…
KFC, Pizza Hut owner employee data stolen in ransomware attack
Categories: News Categories: Ransomware Tags: The Habit Burger Grill Tags: KFC Tags: Pizza Hut Tags: Yum! Brands Tags: ransomware Yum! Brands, owner of KFC, Pizza Hut, and other fast food chains, was breached in January. It recently found employee data…
Ransomware in the UK: April 2022–March 2023
Categories: Ransomware Categories: Threat Intelligence In the last 12 months, the UK has been second only to the USA in terms of ransomware attacks, and its education sector has been subjected to a feeding frenzy by Vice Society. (Read more…)…
Update now! April’s Patch Tuesday includes a fix for one zero-day
Categories: Exploits and vulnerabilities Categories: News Tags: Microsoft Tags: Apple Tags: Google Tags: Adobe Tags: Cisco Tags: SAP Tags: Mozilla Tags: CVE-2023-28252 Tags: CVE-2023-28231 Tags: CVE-2023-21554 Tags: Word Tags: Publisher Tags: Office One fixed vulnerability is being actively exploited by…
A week in security (April 3 – 9)
Categories: News Tags: TikTok Tags: Super FabriXss Tags: Twitter Tags: macOS malware Tags: ransomware Tags: 2023 State of Malware Tags: Western Digital Tags: Android Tags: endpoint security Tags: ChatGPT Tags: K-12 Tags: IoT Tags: Facebook Tags: targeted advertising Tags: Google…
Apple releases emergency updates for two known-to-be-exploited vulnerabilities
Categories: Apple Categories: Exploits and vulnerabilities Categories: News Tags: iOS 16.4.1 Tags: iPadOS 16.4.1 Tags: macOS 13.3.1 Tags: CVE-2023-28206 Tags: CVE-2023-28205 Tags: use-after-free Tags: out-of-bounds write Tags: IOSurfaceAccelerator Apple has released iOS 16.4.1, iPadOS 16.4.1, and macOS 13.3.1 for the…
How the cops buy a “God view” of your location data, with Bennett Cyphers: Lock and Code S04E09
Categories: Podcast This week on Lock and Code, we speak with Bennett Cyphers about one largely unknown company’s efforts to package and sell Americans’ location data almost exclusively to cops. (Read more…) The post How the cops buy a “God…
IoT garage door exploit allows for remote opening attack
Categories: News Tags: IoT Tags: garage Tags: door Tags: remote Tags: open Tags: app Tags: switch Tags: alarm Tags: Nexx Multiple exploits are impacting a line of smart products for the home. (Read more…) The post IoT garage door exploit…
New tool allows you to opt out of Facebook’s targeted advertising
Categories: News Categories: Privacy Privacy watchdog noyb has built a tool for EU users to make it easier to opt out of Meta’s targeted advertising. (Read more…) The post New tool allows you to opt out of Facebook’s targeted advertising…
Google aims to reduce data theft with app data and account deletions
Categories: News Tags: android Tags: mobile Tags: play Tags: app store Tags: app Tags: application Tags: data Tags: collection Tags: account Tags: user Tags: delete Tags: deletion We take a look at proposals from Google to make it easier for…
Visitors of tax return e-file service may have downloaded malware
Categories: News Categories: Scams Tags: tax scams Tags: efile.com Tags: US tax 2023 Tags: backdoor Tags: Trojan Tags: Johannes Ullrich Tags: MalwareHunterTeam Tags: /u/SaltyPotter Tags: fake network error notification Cybercriminals have compromised eFile.com to host malicious code that allows for…
Uber data theft: Driver info stolen after law firm breached
Categories: News Tags: Uber breach Tags: Genova Burns Tags: The Register For the third time in the last six months, internal Uber data has been compromised. This latest incident is the result of a supply chain attack. (Read more…) The…
Fake ransomware demands payment without actually encrypting files
Categories: News Tags: ransomware Tags: fake Tags: faker Tags: fraud Tags: scam Tags: bogus Tags: midnight We take a look at a ransomware group that doesn’t produce any ransomware, only threats. (Read more…) The post Fake ransomware demands payment without…
Western Digital confirms breach, affects My Cloud and SanDisk users
Categories: News Tags: Western Digital Tags: WD Tags: data breach Tags: My Cloud Tags: SanDisk The company behind My Cloud and SanDisk says it has experienced a security incident. Little is still known about what happened and who attacked it.…
TikTok misused children’s data, faces $15.6M fine
Categories: News Tags: TikTok Tags: Information Commissioner’s Office Tags: ICO Tags: Sonia Livingston Tags: John Edwards TikTok has been fined by a UK data protection watchdog after its investigation shows the company failed to get parental consent. (Read more…) The…