Conti Group Takes Advantage of Vulnerable Exchange Servers

Conti Group Takes Advantage of Vulnerable Exchange Servers

Fraud Management & Cybercrime , Governance & Risk Management , Patch Management Pondurance: Ransomware Group Used Backdoors That Persist Prajeet Nair (@prajeetspeaks) • August 10, 2021     Some patched on-premises Microsoft Exchange email servers are still proving to be vulnerable. The Conti ransomware group is now leveraging backdoors that persist, cybersecurity consulting firm Pondurance…

NIST Guidance Focuses on Creating ‘Cyber Resiliency’

NIST Guidance Focuses on Creating ‘Cyber Resiliency’

Governance & Risk Management , IT Risk Management , Next-Generation Technologies & Secure Development Updated Security Approach Designed to Mitigate Ransomware, Nation-State Attack Risks Scott Ferguson (Ferguson_Writes) • August 10, 2021     Ron Ross, NIST Fellow and one of the co-authors of an updated guide to cyber resiliency As ransomware and nation-state attacks have…

New Android Malware ‘FlyTrap’ Hacks Thousands of Facebook Accounts

New Android Malware ‘FlyTrap’ Hacks Thousands of Facebook Accounts

The cybersecurity team of zLabs Zimperium has recently detected several applications that have stolen the passwords of thousands of Facebook users.  Not only this, but the Zlab security researchers have also checked this attack, and they claimed that the malware used in this attack was dubbed as “FlyTrap.” According to the report, FlyTrap has been…

Flaws in John Deere Systems Show Agriculture’s Cyber Risk

Flaws in John Deere Systems Show Agriculture’s Cyber Risk

John Deere, Researchers Spar Over Impact of Vulnerabilities Jeremy Kirk (jeremy_kirk) • August 9, 2021     Flaws in John Deere systems could have allowed an attacker to remotely take over equipment, such as this row crop tractor. (Photo: John Deere) Numerous vulnerabilities uncovered in tractor manufacturer John Deere’s systems underscore the cyber risks that…

NCSC Sticks by ‘Three Random Words’ Strategy for Passwords

NCSC Sticks by ‘Three Random Words’ Strategy for Passwords

NCSC Sticks by ‘Three Random Words’ Strategy for Passwords | IT Security News Android App Android App with push notifications Sponsors Endpoint Cybersecurity www.endpoint-cybersecurity.com – Consulting in building your security products– Employee awareness training– Security tests for applications and pentesting… and more. Daily Summary Categories CategoriesSelect Category(ISC)2 Blog  (323)(ISC)2 Blog infosec  (13)(ISC)² Blog  (400)2020-12-08 – Files for an…

Hackers might exploit bug in Amazon Kindle, company issues fix | #cybersecurity | #cyberattack | #cybersecurity | #infosecurity | #hacker | National Cyber Security

Hackers might exploit bug in Amazon Kindle, company issues fix | #cybersecurity | #cyberattack | #cybersecurity | #infosecurity | #hacker | National Cyber Security

A team of cyber-security researchers has discovered security flaws in popular e-reading device Amazon Kindle that might have led hackers to take full control of a Kindle device, opening a path to stealing information stored. By tricking victims into opening a malicious e-book, a threat actor could have leveraged the flaws to target specific demographics…

Two members of QQAAZZ, which laundered funds from cybercrime, plead guilty

Two members of QQAAZZ, which laundered funds from cybercrime, plead guilty

Written by Tonya Riley Aug 9, 2021 | CYBERSCOOP Two individuals involved with laundering funds from U.S. victims of cybercrime pleaded guilty to their role in a transnational organization that relied in part on hacking to defraud victims out of millions of dollars, the Justice Department announced Friday. The defendants, Arturs Zaharevics and Aleksejs Trofimovics,…

Iranian Group Used Android Backdoor

Iranian Group Used Android Backdoor

Cyberwarfare / Nation-State Attacks , Endpoint Security , Fraud Management & Cybercrime IBM: Campaign Targeted Reformists Before Election Akshaya Asokan (asokan_akshaya) • August 9, 2021     Screenshot of ITG18’s hacking activities seen from its leaked videos in July 2020. (Source: IBM X-Force) A group dubbed “ITG18,” which apparently is linked to an Iranian advanced…

SMS Phishing Scam Impersonates State Agencies

SMS Phishing Scam Impersonates State Agencies

Fraud Management & Cybercrime , Fraud Risk Management , Social Engineering Millions of Smartphone Users Nationwide Are Targets Dan Gunderman (dangun127) • August 9, 2021     (Photo: Oleg Magni/Unsplash) The Federal Trade Commission has issued a warning about a new smishing scheme targeting millions of smartphones nationwide that impersonates state workforce agencies in an…