Category: Malwarebytes Labs

Update Android now! Google patches three important vulnerabilities

Categories: Android Categories: Exploits and vulnerabilities Categories: News Tags: Google Tags: Android Tags: update Tags: CVE-2023-21085 Tags: CVE-2023-21096 Tags: CVE-2022-38181 Tags: Use-after-free Tags: input validation Google has released an Android update that fixes two critical remote code execution (RCE) vulnerabilities,…

Pre-ransomware notifications are paying off right from the bat

Categories: News Categories: Ransomware Tags: pre-ransomware notifications Tags: JCDC Tags: CISA Tags: ransomware Tags: IRS Tags: Emotet Tags: MDR CISA has published the first results of its pre-ransomware notifications that were introduced at the start of 2023. And they appear…

A week in security (March 27 – April 2)

Categories: News Tags: Lock and Code Tags: Anna Pobletts Tags: ChatGPT Tags: World Backup Day Tags: GitHub Tags: accidental breach Tags: DDoS service Tags: Instagram scammer Tags: top cyber threats of 2023 Tags: 3CX Tags: BingBang Tags: Apple Tags: EE…

TikTok: What’s going on and should I be worried?

Categories: News Categories: Privacy Tags: TikTok Tags: social media Tags: data Tags: app Tags: privacy Tags: algorithm TikTok has garnered a ton of media attention about its alleged risks. But is it really that much worse than other social media…

Super FabriXss: an RCE vulnerability in Azure Service Fabric Explorer

Categories: Exploits and vulnerabilities Categories: News Tags: Azure Tags: Microsoft Tags: Super FabriXss Tags: RCE Tags: vulnerability Tags: CVE-2023-23383 Researchers disclosed how they found a remote code execution vulnerability in Azure Service Fabric Explorer. (Read more…) The post Super FabriXss:…

3 tips to raise your backup game

Categories: Personal Because backups are the dental floss of cybersecurity—the thing that everyone knows they should do, that everyone intends to do, that nobody actually does. (Read more…) The post 3 tips to raise your backup game appeared first on…

3CX desktop app used in a supply chain attack

Categories: News Tags: 3CX Tags: supply-chain Tags: sideload Researchers have found that the 3CX desktop app may be compromised and used in supply chain attacks. (Read more…) The post 3CX desktop app used in a supply chain attack appeared first…

Fake DDoS services set up to trap cybercriminals

Categories: News Tags: NCA Tags: national crime agency Tags: DDoS Tags: distributed denial of service Tags: booter Tags: underground The British National Crime Agency has been setting up fake DDoS services to teach people a lesson in what not to…

Food giant Dole reveals more about ransomware attack

Categories: News Categories: Ransomware Tags: Dole Tags: ransomware attack Tags: data breach While Dole hasn’t said a lot about the February ransomware incident, it has revealed threat actors accessed employee data. (Read more…) The post Food giant Dole reveals more…

Bogus Chat GPT extension takes over Facebook accounts

Categories: News Tags: Chat GPT Tags: chrome Tags: extension Tags: rogue Tags: facebook Tags: cookies We look at a bogus Chat GPT Chrome extension which was after Facebook cookies. (Read more…) The post Bogus Chat GPT extension takes over Facebook…

Ransomware gunning for transport sector’s OT systems next

Categories: News Categories: Ransomware Tags: ENISA Tags: operational technology Tags: OT Tags: OT systems Tags: ransomware ENISA released a report tackling the threat landscape of the transportation industry. And it has foreseen the targeting of OT systems in the future.…

GitHub accidentally exposes RSA SSH key

Categories: News Tags: GitHub Tags: RSA Tags: SSH Developer platform GitHub has changed its RSA SSH key after it was accidentally exposed on a public repository. (Read more…) The post GitHub accidentally exposes RSA SSH key appeared first on Malwarebytes…

USB bombs sent to news organizations

Categories: News Tags: usb Tags: bomb Tags: mail Tags: post Tags: letter USB sticks repurposed as explosive devices provide a dramatic reminder of how little you know about unknown USB devices. (Read more…) The post USB bombs sent to news…

ChatGPT leaks bits of users’ chat history

Categories: News Tags: ChatGPT Tags: privacy Tags: chat history ChatGPT suddenly started showing users the titles of other users’ chats. (Read more…) The post ChatGPT leaks bits of users’ chat history appeared first on Malwarebytes Labs. This article has been…

Beware: Fake IRS tax email delivers Emotet malware

Categories: News Tags: emotet Tags: malware Tags: IRS Tags: scam Tags: email Tags: W-9 Tags: word Tags: document Tags: macro Tags: macros We look at a current tax scam in circulation which looks to make an Emotet deposit on your…

Google Pixel: Cropped or edited images can be recovered

Categories: Exploits and vulnerabilities Categories: News Tags: Google Tags: Pixel Tags: Markup Tags: CVE-2023-21036 Tags: recover Tags: PNG Tags: truncated A vulnerability in the Markup tool that comes pre-installed on Pixel phones allows anyone with access to the edited image…

New Kritec Magecart skimmer found on Magento stores

Categories: Threat Intelligence Tags: Magecart Tags: skimmer Tags: Kritect Tags: Magento Compromised online stores have been injected with skimmers hiding around the Google Tag Manager script. We identified a new one that looked similar at first but is part of…

A look at a Magecart skimmer using the Hunter obfuscator

Categories: Threat Intelligence Tags: magecart Tags: skimmer Tags: obfuscation Tags: hunter Tags: credit card Tags: magento The threat actor behind this operation is using an open-source JavaScript obfuscator to hide its code. (Read more…) The post A look at a…

The NBA tells fans about data breach

Categories: News Tags: NBA Tags: data breach Tags: Mailchimp The NBA is warning fans of a data breach at a third-party newsletter service which could result in targeted phishing attempts (Read more…) The post The NBA tells fans about data…

A week in security (March 13 – 19)

Categories: News Tags: Becky Holmes Tags: Lock and Code S04E06 Tags: ransomware Tags: WhatsApp Tags: AI chatbot Tags: investment fraud Tags: Clop Tags: Microsoft zero-day Tags: Microsoft Tags: STALKER 2 Tags: Facebook Tags: Microsoft OneNote Tags: LockBit Tags: Rubrik The…

LockBit ransomware attacks Essendant

Categories: News Categories: Ransomware Tags: lockbit Tags: ransomware Tags: essendant Tags: data Tags: encrypt Tags: ransom Tags: leak Tags: website Tags: outage Tags: network The LockBit ransomware group has attacked Essendant, a US-based distributor of office products, and is threatening…

Ransomware attack hits ANOTHER school

Categories: News Categories: Ransomware Tags: Wymondham College Tags: ransomware attack Tags: ransomware Tags: Vice Society Tags: National Cyber Security Centre Tags: NCSC Wymondham College is operating as normal, with a few expected distruptions that may be minimal but lasting. (Read…

Facebook illegally processed user data, says court

Categories: News Categories: Privacy Two European privacy watchdogs have won cases against Meta. The rulings may have serious consequences for European website owners. (Read more…) The post Facebook illegally processed user data, says court appeared first on Malwarebytes Labs. This…

Emotet adopts Microsoft OneNote attachments

Categories: Threat Intelligence Emotet finally got the memo and added Microsoft OneNote lures. (Read more…) The post Emotet adopts Microsoft OneNote attachments appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes Labs Read the original article: Emotet…

Update now! Microsoft fixes two zero-day bugs

Categories: Exploits and vulnerabilities Categories: News Tags: patch Tuesday Tags: March Tags: 2023 Tags: Microsoft Tags: Adobe Tags: Fortinet Tags: Android Tags: SAP Tags: CVE-2023-23397 Tags: CVE-2023-24880 Tags: CVE-2023-26360 Tags: CVE-2022-41328 This Patch Tuesday, Microsoft has released fixes for two…

“Just awful” experiment points suicidal teens at chatbot

Categories: News Categories: Privacy Tags: Koko Tags: Robert Morris Tags: Motherboard Tags: AI ethics Tags: AI Tags: artificial intelligence Startup Koko has been criticized for experimenting with young adults at risk of harming themselves. Worse, the young adults were unaware…

Clop ransomware is victimizing GoAnywhere MFT customers

Categories: Exploits and vulnerabilities Categories: News Categories: Ransomware Tags: Clop Tags: ransomware Tags: GoAnywhere Tags: CVE-2023-0669 The Clop ransomware gang has claimed responsibility for attacking several GoAnywhere MFT customers by exploiting a vulnerability in the managed file transfer software’s administrative…

A week in security (March 6 – 12)

Categories: News The most interesting security related news from the week of March 6 to 12. (Read more…) The post A week in security (March 6 – 12) appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes…

Breast cancer photos published by ransomware gang

Categories: News Categories: Ransomware Tags: ALPHV Tags: BlackCat Tags: Lehigh Valley Health Network Tags: LVHN Russia-linked ransomware group ALPHV has leaked the data it stole from Lehigh Valley Health Network, including clinical photos of women undergoing breast cancer treatment. (Read…

WhatsApp refuses to weaken encryption, would rather leave UK

Categories: News Categories: Privacy Tags: WhatsApp Tags: Online Safety Bill Tags: encryption Tags: Signal end-to-end encryption Tags: private messaging With the UK’s Online Safety Bill set to become law this year, WhatsApp is standing its ground against weakening encryption. (Read…

TikTok “a loaded gun” says NSA

Categories: News Categories: Privacy Speaking at a US Senate hearing on Wednesday, General Paul Nakasone, Director of the NSA, said one sixth of American youth say they’re constantly on TikTok. That’s a loaded gun. (Read more…) The post TikTok “a…

Malware targeting SonicWall devices could survive firmware updates

Categories: News Researchers at Mandiant have identified a campaign that persisted on SonicWall SMA 100 Series appliances tenaciously. (Read more…) The post Malware targeting SonicWall devices could survive firmware updates appeared first on Malwarebytes Labs. This article has been indexed…

Update Android now! Two critical vulnerabilities patched

Categories: Android Categories: News Tags: Android Tags: 2023-03-05 Tags: RCE Tags: EoP Tags: CVE-2023-20951 Tags: CVE-2023-20954 Tags: CVE-2022-33213 Tags: CVE-2022-33256 Tags: CVE-2021-33655 The March security updates for Android include fixes for two critical remote code execution (RCE) vulnerabilities. Update as…

DoppelPaymer ransomware group disrupted

Categories: News Categories: Ransomware Tags: Europol Tags: FBI Tags: police Tags: arrests Tags: DoppelPaymer Tags: Emotet Tags: Dridex In cooperation with the FBI, European police agencies have made arrests that have disrupted the DoppelPaymer ransomware operation (Read more…) The post…

Ransomware review: March 2023

Categories: Ransomware Categories: Threat Intelligence February 2023 saw a record number of victims for LockBit, a record high ransom demand, and a devastating assault on the City of Oakland. (Read more…) The post Ransomware review: March 2023 appeared first on…

Warning issued over Royal ransomware

Categories: News Categories: Ransomware Tags: CISA Tags: Royal Tags: ransomware Tags: phishing Tags: RDP Tags: public facing applications In a Cybersecurity Advisory, CISA and the FBI have shared information about Royal ransomware, which despite being rather new has made a…

Play ransomware gang leaks City of Oakland data

Categories: News Categories: Ransomware Tags: Play ransomware Tags: ransomware Tags: City of Oakland Tags: Oakland California After claiming responsibility for attacking the City of Oakland, California, the Play ransomware gang has begun leaking the data it stole. (Read more…) The…

A week in security (February 27 – March 5)

Categories: News The most interesting security related news from the week of February 27 to March 5. (Read more…) The post A week in security (February 27 – March 5) appeared first on Malwarebytes Labs. This article has been indexed…

8 cybersecurity tips to keep you safe when travelling

Categories: Awareness Categories: News Tags: travel Tags: safe Tags: devices Tags: VPN Tags: backups Tags: connections Tags: updates Here are some cybersecurity tips to keep you safe while you travel. (Read more…) The post 8 cybersecurity tips to keep you…

National Cybersecurity Strategy Document: What you need to know

Categories: News Tags: whitehouse Tags: biden Tags: national cybersecurity document Tags: federal Tags: government Tags: data Tags: privacy Tags: security The US Government has been working on the National Cybersecurity Strategy Document 2023 for some time now, and it’s finally…

Intel CPU vulnerabilities fixed. But should you update?

Categories: Exploits and vulnerabilities Categories: News Tags: CVE-2022-21123 Tags: CVE-2022-21125 Tags: CVE-2022-21127 Tags: CVE-2022-21166 Tags: Intel Tags: VMs Tags: microcode Microsoft has released out of band updates for information disclosure vulnerabilities in Intel CPUs, but who needs them? (Read more…)…

YouTube under fire for allegedly gathering children’s data

Categories: News Tags: YouTube Tags: ICO Tags: data Tags: children Tags: YouTube Kids Tags: gathering Tags: collecting Tags: safety Tags: privacy The complaint asserts that YouTube collected “the location, viewing habits and preferences” of up to five million children. (Read…

LockBit ransomware demands $2 million for Pierce Transit data

Categories: News Categories: Ransomware Tags: Pierce Transit Tags: Tacoma Tags: Washington Tags: LockBit Tags: ransomware The ransomware group LockBit is offering data stolen from a Washington state public transit operator on the dark web. (Read more…) The post LockBit ransomware…

Ransomware led to multiple DISH Network outages

Categories: News Tags: DISH network Tags: ransomware Tags: SEC Tags: attack Tags: compromise Tags: outage We take a look at a ransomware outbreak impacting multiple DISH Network services. (Read more…) The post Ransomware led to multiple DISH Network outages appeared…

LastPass was undone by an attack on a remote employee

Categories: News Tags: LastPass Tags: remote Tags: work Tags: worker Tags: VPN Tags: media player Tags: compromise Tags: breach Tags: AWS Tags: cloud Tags: storage The attackers responsible for the LastPass breach compromised a remote worker’s computer. (Read more…) The…

AI voice cracks telephone banking voice recognition

Categories: News Tags: AI Tags: voice Tags: generated Tags: synthetic Tags: bank Tags: banking Tags: telephone Tags: login Tags: account Now that we have freely available artificial intelligence happily replicating people’s voices, could it be a security risk? (Read more…)…

iPhone users targeted in phone AND data theft campaign

Categories: News Tags: iPhone theft Tags: passcode theft Tags: iPhone and passcode theft Tags: Apple Tags: shoulder surfing Tags: social engineering When is an iPhone theft not just an iPhone theft? When the user’s Apple ID and more, goes with…

US Marshals Service hit by ransomware and data breach

Categories: News Categories: Ransomware Tags: US Marshalls Tags: WITSEC Tags: usms Tags: ransomware The US Marshals Service has suffered a ransomware attack in which an attacker managed to get hold of sensitive information about staff and fugitives. (Read more…) The…

A week in security (February 20 – 26)

Categories: News The most interesting security related news from the week of February 20 to 26. (Read more…) The post A week in security (February 20 – 26) appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes…

TikTok probed over child privacy practices

Categories: News Categories: Privacy Tags: Canada Tags: TikTok Tags: privacy Tags: young Tags: bans Tags: Netherlands Tags: EU Tags: UK Tags: state employees Canadian privacy protection authorities have announced they will start an investigation into TikTok’s privacy practices, especially in…

How to work from home securely, the NSA way

Categories: News Tags: network Tags: home Tags: secure Tags: router Tags: NSA Tags: social engineering Tags: social network Tags: email Tags: update Tags: hotspot The NSA has some advice about keeping remote workers safe from harm. (Read more…) The post…

Fake Amazon Prime email abuses LinkedIn’s URL shortener

Categories: News Categories: Scams Tags: LinkedIn Tags: Slinks Tags: phish Tags: phishing Tags: email Tags: payment details Tags: amazon Tags: gmail Tags: outlook Tags: hotmail Tags: scam Tags: scammers The email claims if you not update your card information in…

Samsung adds Message Guard protection against zero-click exploits

Categories: Android Categories: News Tags: Samsung Tags: message guard Tags: sandbox Tags: zero-click exploit Tags: images Tags: attachments Samsung has announced the introduction of Message Guard protection against zero-click exploits for the Samsung Galaxy S23 series. (Read more…) The post…

DNA testing company fined after customer data theft

Categories: News Tags: DNA Diagnostics Center Tags: DDC Tags: Orchid Cellmark Tags: DNA testing industry Tags: Ohio Attorney General Dave Yost Tags: Acting Attorney General Michelle Henry DNA Diagnostics Center, a leading DNA testing company, failed to protect client data…

BlackCat ransomware targets another healthcare facility

Categories: News Categories: Ransomware Tags: Lehigh Valley Health Network Tags: LVHN Tags: BlackCat Tags: ALPHV Tags: Noberus Tags: ransomware Tags: leak site Tags: DDoS The Lehigh Valley Health Network stated it was the target of a cybersecurity attack by a…

Royal Mail schools LockBit in leaked negotiation

Categories: News The LockBit gang has released a chat history showing its negotiations with Royal Mail. (Read more…) The post Royal Mail schools LockBit in leaked negotiation appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes Labs…

Twitter and two-factor authentication: What’s changing?

Categories: News Tags: twitter Tags: 2fa Tags: sms Tags: 2 factor authentication Tags: app Tags: authorisation Tags: authentication app Tags: hardware key Tags: login Tags: phish Tags: phishing Tags: verify Tags: mobile Twitter is making radical changes to how two…

A week in security (February 13 – 19)

Categories: News Tags: Josh Saxe Tags: Lock and Code S04E04 Tags: AI Tags: artificial intelligence Tags: endpoint security leader Tags: CISA Tags: DPRK Tags: ChatGPT Tags: informed consent Tags: valentine’s day Tags: password sharing Tags: Android Tags: data leaks Tags:…

GoAnywhere zero-day opened door to Clop ransomware

Categories: News Categories: Ransomware Tags: Clop Tags: Clop ransomware Tags: ransomware Tags: GoAnywhere Tags: managed file transfer Tags: MFT Tags: Fortra Tags: CISA Tags: Known Exploited Vulnerabilities Catalog The Clop ransomware gang has claimed responsibility for a wave of attacks…

Chip company loses $250m after ransomware hits supply chain

Categories: News Categories: Ransomware Tags: Applied materials Tags: MKS Tags: ransomware Tags: semiconductor Applied Materials has said it expects to miss $250 million in second-quarter sales due to a ransomware attack at a supplier. (Read more…) The post Chip company…

TikTok car theft challenge: Hyundai, Kia fix flaw

Categories: News Tags: Hyundai Tags: Kia Tags: car theft hack Tags: Kia Challenge Tags: viral TikTok challenge Tags: TikTok Hyundai and Kia have released a software update to fix a car theft hack that went viral on TikTok, and resulted…

iPhone calendar spam: What it is, and how to remove it

Categories: Awareness Categories: News Categories: Scams Tags: iPhone Tags: calendar Tags: spam Tags: iOS Tags: mobile Tags: device Tags: ad Tags: advert Tags: popup Tags: permission Tags: remove Tags: notification Tags: Apple Is your iPhone claiming that you’ve been hacked,…

WordPress sites backdoored with ad fraud plugin

Categories: Threat Intelligence Tags: ad fraud Tags: popunder Tags: ads Tags: fraud Tags: wordpress Tags: plugins Popunders are the ideal vehicle to serve ad fraud. In this case, we investigate a scheme where a webpage you can’t see is loading…

Fake Hogwarts Legacy cracks lead to adware, scams

Categories: News Categories: Scams Tags: Hogwarts Legacy Tags: video game survey scam Tags: survey scam Tags: Trojan dropper Tags: adware With Hogwarts Legacy becoming the popular game it was expected to be, online criminals have resorted to old tricks to…