Fake Trezor app steals more than $1 million worth of crypto coins – Malwarebytes Labs

Fake Trezor app steals more than $1 million worth of crypto coins – Malwarebytes Labs

Several users of Trezor, a small hardware device that acts as a cryptocurrency wallet, have lost fortunes after being duped by a phishing app. Several users of Trezor, a small hardware device that acts as a cryptocurrency wallet, have been duped by a fake app with the same name. The app was available on Google…

Facebook Facing an Investigation by EU Regulators Following Data Leak

Facebook Facing an Investigation by EU Regulators Following Data Leak

Several days ago, we reported a large-scale data leak that affected 533 million Facebook accounts. The vulnerability that caused the data leak is now fixed. However, the social media platform is facing an investigation by EU regulators. The data breach was possible due to a vulnerability addressed by Facebook in 2019. Despite being two-years old,…

Facebook ads dropped malware posing as Clubhouse app for PC

Facebook ads dropped malware posing as Clubhouse app for PC

Upon clicking the ad, the user is taken to a fake Clubhouse app website that looks quite authentic but its download link drops malware. Last year, in two separate incidents hackers abused Facebook ads to phish 615,000 account credentials. Then, the infamous Ragnar Locker ransomware gang was found using Facebook ads to extort victims. Now…

(Are you) afreight of the dark? Watch out for Vyveva, new Lazarus backdoor

(Are you) afreight of the dark? Watch out for Vyveva, new Lazarus backdoor

ESET researchers discover a new Lazarus backdoor deployed against a freight logistics firm in South Africa ESET researchers have discovered a previously undocumented Lazarus backdoor, which they have dubbed Vyveva, being used to attack a freight logistics company in South Africa. The backdoor consists of multiple components and communicates with its C&C server via the…

600,000 Payment Cards Stolen From Swarmshop Darknet Market

600,000 Payment Cards Stolen From Swarmshop Darknet Market

Cryptocurrency Fraud , Cybercrime , Fraud Management & Cybercrime Group-IB: Administrator, Seller and Buyer Data Also Stolen Doug Olenick (DougOlenick) • April 8, 2021     Here’s a guide to the national origin of card data that was stolen from the Swarmshop market. (Source: Group-IB) For the second time in two years, the contents of…

Visa Describes New Skimming Attack Tactics

Visa Describes New Skimming Attack Tactics

Account Takeover Fraud , Card Not Present Fraud , Cybercrime Cybercriminals Using Web Shells to Control Retailers’ Servers Doug Olenick (DougOlenick) • April 9, 2021     Visa’s Payment Fraud Disruption team reports that cybercriminals are increasingly using web shells to establish command and control over retailers’ servers during payment card skimming attacks. See Also:…

Fake Netflix App Allows Hackers to Hijack WhatsApp

Fake Netflix App Allows Hackers to Hijack WhatsApp

A newly-discovered Android malware app called FlixOnline promised users access to Netflix content from all around the world on their smartphones before exploiting access to their WhatsApp, according to Check Point Research. Troubling, the app was not solely on third-party app stores – it was, instead, found on the Google Play Store, using Netflix imagery to…

Lazarus Group Targets Freight Logistics Firm

Lazarus Group Targets Freight Logistics Firm

Cyberwarfare / Nation-State Attacks , Fraud Management & Cybercrime , Governance & Risk Management ESET Report Ties ‘Vyveva’ Backdoor to North Korean APT Group Akshaya Asokan (asokan_akshaya) • April 9, 2021     Example of how the “Vyveva” backdoor works (Source: ESET) The Lazarus Group, a North Korean-linked advanced persistent threat group also known as…