Compromised Website Images Camouflage ObliqueRAT Malware
.
The ObliqueRAT malware is now cloaking its payloads as seemingly-innocent image files that are hidden on compromised websites.
Executive Summary Informations Name CVE-2021-2234 First vendor Publication 2021-04-22 Vendor Cve Last vendor Modification 2021-04-22 Security-Database Scoring CVSS v3 Cvss vector : CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N Overall CVSS Score 5.3 Base Score 5.3 Environmental Score 5.3 impact SubScore 3.6 Temporal Score 5.3 Exploitabality Sub Score 1.6 Attack Vector Network Attack Complexity High Privileges Required Low User Interaction…
Microsoft and Citizen Lab have linked Israeli spyware company Candiru (also tracked as Sourgum) to new Windows spyware dubbed DevilsTongue deployed using now patched Windows zero-day vulnerabilities. “Candiru is a secretive Israel-based company that sells spyware exclusively to governments,” Citizen Lab explained in a report published today. “Reportedly, their spyware can infect and monitor iPhones,…
Events , Governance & Risk Management , Legacy Infrastructure Security BlastWave CEO Tom Sego on Re-Envisioning How We Secure Networks Tom Field (SecurityEditor) • May 21, 2021 Tom Sego, co-founder and CEO, BlastWave Inc. You can see it in the latest high-profile attacks: Security requirements are ever more…
BEIJING: Facebook said on Wednesday (Mar 24) it had blocked a group of hackers in China who used the platform to target Uighurs living abroad with links to malware that would infect their devices and enable surveillance. The social media company said the hackers, known as Earth Empusa or Evil Eye in the security industry, targeted…
Breach Notification , Incident & Breach Response , Security Operations Seller of 99 Million Customers’ Stolen Data Calls Firm ‘Incompetent,’ but Stops Sale Mathew J. Schwartz (euroinfosec) • April 1, 2021 A broker of breached data claims via dedicated .onion leak site to have deleted 8TB of stolen MobiKwik customer data that the…
Critical Infrastructure Security , Digital Identity , Endpoint Security Critical Networks Within National Security Systems Should Implement Zero Trust Akshaya Asokan (asokan_akshaya) • February 27, 2021 NSA: Consider Zero Trust models for all National Security Systems’ critical networks Source: NSA The US National Security Agency has issued its zero trust guidance aimed at…