SonicWall Zero-Day Exploited by Ransomware Group Before It Was Patched

SonicWall Zero-Day Exploited by Ransomware Group Before It Was Patched

A zero-day vulnerability addressed by SonicWall in its Secure Mobile Access (SMA) appliances earlier this year was exploited by a sophisticated and aggressive cybercrime group before the vendor released a patch, FireEye’s Mandiant unit reported on Thursday. Over the past half a year, a new cybercrime group has been observed using a broad range of…

Hackers Exploit SonicWall Zero-Day Bug in FiveHands Ransomware Attacks – KK Hack Labs

Hackers Exploit SonicWall Zero-Day Bug in FiveHands Ransomware Attacks – KK Hack Labs

An “aggressive” financially motivated threat group tapped into a zero-day flaw in SonicWall VPN appliances prior to it being patched by the company to deploy a new strain of ransomware called FIVEHANDS.The group, tracked by cybersecurity firm Mandiant as UNC2447, took advantage of an “improper SQL command neutralization” flaw in the SSL-VPN SMA100 product (CVE-2021-20016,…

DC Police confirms cyberattack after ransomware gang leaks data

DC Police confirms cyberattack after ransomware gang leaks data

The Metropolitan Police Department has confirmed that they suffered a cyberattack after the Babuk ransomware gang leaked screenshots of stolen data. The Metropolitan Police Department, also known as the DC Police or MPD, is the primary law enforcement agency for Washington, DC, the US capital. In a statement to BleepingComputer, the DC Police stated that…

New ransomware group uses SonicWall zero-day to breach networks

New ransomware group uses SonicWall zero-day to breach networks

A financially motivated threat actor exploited a zero-day bug in SonicWall SMA 100 Series VPN appliances to deploy new ransomware known as FiveHands on the networks of North American and European targets. The group, tracked by Mandiant threat analysts as UNC2447, exploited the CVE-2021-20016 SonicWall vulnerability to breach networks and deploy FiveHands ransomware payloads before patches were…

India Covid cases: ‘It’s like being hit by a tsunami’

India Covid cases: ‘It’s like being hit by a tsunami’

A second wave of coronavirus is sweeping through India overwhelming hospitals, morgues and crematoria. Protima Singh, who is managing operations on the ground for the International Federation of Red Cross, told BBC World News that the situation was very critical with so many people becoming infected with coronavirus. The needs are large, the hospitals are…

FBI shares with HIBP 4 million email addresses involved in Emotet attacks

FBI shares with HIBP 4 million email addresses involved in Emotet attacks

FBI shares with HIBP 4 million email addresses involved in Emotet attacks | IT Security News 27. April 2021 The FBI has shared with Have I Been Pwned service 4 million email addresses collected by Emotet botnet and employed in malware campaigns. Last week, European law enforcement has conducted an operation aimed at performing a…

OODA Loop – API Hole on Experian Partner Site Exposes Credit Scores

OODA Loop – API Hole on Experian Partner Site Exposes Credit Scores

A Rochester Institute of Technology sophomore discovered a vulnerability on a partner website of Experian that allows anyone to look up credit scores with a name and mailing address. Bill Demirkapi found the leak when he was looking for information about student loan vendors online.  He discovered the code behind a page that used an…