Babuk Ransomware Mystery Challenge: Who Leaked Builder?

Babuk Ransomware Mystery Challenge: Who Leaked Builder?

Critical Infrastructure Security , Cybercrime , Cybercrime as-a-service Code for Generating Unique Copies of Crypto-Locking Malware Uploaded to VirusTotal Mathew J. Schwartz (euroinfosec) • June 29, 2021     Tests of the Babuk builder found that it generates working copies of the malicious executable and decryptor. (Source: Kevin Beaumont) The code used to build copies…

CVE-2021-22326 – Alert Detail – Security Database

CVE-2021-22326 – Alert Detail – Security Database

Executive Summary Informations Name CVE-2021-22326 First vendor Publication 2021-06-30 Vendor Cve Last vendor Modification 2021-06-30 Security-Database Scoring CVSS v3 Cvss vector : N/A Overall CVSS Score NA Base Score NA Environmental Score NA impact SubScore NA Temporal Score NA Exploitabality Sub Score NA   Calculate full CVSS 3.0 Vectors scores Security-Database Scoring CVSS v2 Cvss…

Report Urges NASA to Improve Cybersecurity Risk Management

Report Urges NASA to Improve Cybersecurity Risk Management

Governance & Risk Management , IT Risk Management GAO Offers Recommendations to Improve Space Agency’s Cyber Protections Scott Ferguson (Ferguson_Writes) • June 29, 2021     Photo: NASA via Flickr/CC A government watchdog is urging NASA‘s administrator to make multiple improvements to its cybersecurity and risk management policies to counter threats to the space agency’s…

The Servers, Logs, and Account Info Belonging to DoubleVPN Were Seized

The Servers, Logs, and Account Info Belonging to DoubleVPN Were Seized

It seems that law enforcement agencies have seized the servers and customer logs for DoubleVPN, a double-encryption service commonly used by threat actors to evade detection while performing malicious activities. DoubleVPN is a Russian-based VPN service specialized in the double-encryption of the data sent through their service. DoubleVPN works by encrypting the requests when using…

CVE-2021-35474 – Alert Detail – Security Database

CVE-2021-35474 – Alert Detail – Security Database

Executive Summary Informations Name CVE-2021-35474 First vendor Publication 2021-06-30 Vendor Cve Last vendor Modification 2021-06-30 Security-Database Scoring CVSS v3 Cvss vector : N/A Overall CVSS Score NA Base Score NA Environmental Score NA impact SubScore NA Temporal Score NA Exploitabality Sub Score NA   Calculate full CVSS 3.0 Vectors scores Security-Database Scoring CVSS v2 Cvss…

Data-Wiping Attacks Hit Outdated Western Digital Devices

Data-Wiping Attacks Hit Outdated Western Digital Devices

Breach Notification , Cybercrime , Endpoint Security Manufacturer Stopped Supporting Targeted Network-Attached Storage Devices in 2015 Mathew J. Schwartz (euroinfosec) • June 28, 2021     Screen grab posted by the owner of a LAN-connected Western Digital My Book Live after it was apparently hit by a data-wiping attack that also changed the device’s admin…

LinkedIn denies data breach exposing data of over 700 million users

LinkedIn denies data breach exposing data of over 700 million users

LinkedIn has denied allegations of data breach after LinkedIn data of over 700 million users was reported exposed on the dark web. According to a report by Restore Privacy, an unknown hacker has obtained a new dataset of over 700 million LinkedIn users containing details including phone numbers, physical addresses, geolocation data, and inferred salaries….

Microsoft admits it signed malicious Netfilter driver targeting gamers in China

Microsoft admits it signed malicious Netfilter driver targeting gamers in China

Microsoft is investigating an incident involving a driver signed by the company that turned out to be a malicious Windows rootkit distributed within gaming environment in China. The tech giant was alerted about the issue by G DATA Software security analyst Karsten Hahn, who said his company received a false-positive alert from a driver named…