Month: April 2018

MicrosoftSecurity

Announcing: new British Standard for cyber risk and resilience

Credit to Author: Jenny Erie| Date: Wed, 04 Apr 2018 16:00:35 +0000

Technology is an integral part of the fabric of everyday life. There is almost no organization that does not rely on digital services in some way in order to survive. The opportunity that technology provides also brings with it more vulnerabilities and threats as organizations and data become more connected and available. This trend results

Read more

Read More
MalwareBytesSecurity

LockCrypt ransomware: weakness in code can lead to recovery

Credit to Author: Malwarebytes Labs| Date: Wed, 04 Apr 2018 15:00:54 +0000

A lesser-known variant called LockCrypt ransomware has been creeping around under the radar since June 2017. We take a look inside its code and expose its flaws.

Categories:

Tags:

(Read more…)

The post LockCrypt ransomware: weakness in code can lead to recovery appeared first on Malwarebytes Labs.

Read More
MicrosoftSecurity

Hunting down Dofoil with Windows Defender ATP

Credit to Author: Windows Defender ATP| Date: Wed, 04 Apr 2018 15:00:18 +0000

Dofoil is a sophisticated threat that attempted to install coin miner malware on hundreds of thousands of computers in March, 2018. In previous blog posts we detailed how behavior monitoring and machine learning in Windows Defender AV protected customers from a massive Dofoil outbreak that we traced back to a software update poisoning campaign several

Read more

Read More
IndependentKrebs

Dot-cm Typosquatting Sites Visited 12M Times So Far in 2018

Credit to Author: BrianKrebs| Date: Wed, 04 Apr 2018 13:02:37 +0000

A story published here last week warned readers about a vast network of potentially malicious Web sites ending in “.cm” that mimic some of the world’s most popular Internet destinations (e.g. espn[dot]cm, aol[dot]cm and itunes[dot].cm) in a bid to bombard hapless visitors with fake security alerts that can lock up one’s computer. If that piece lacked one key detail it was insight into just how many people were mistyping .com and ending up at one of these so-called “typosquatting” domains. On March 30, an eagle-eyed reader noted that four years of access logs for the entire network of more than 1,000 dot-cm typosquatting domains were available for download directly from the typosquatting network’s own hosting provider. The logs — which include detailed records of how many people visited the sites over the past three years and from where — were deleted shortly after that comment was posted here, but not before KrebsOnSecurity managed to grab a copy of the entire archive for analysis.

Read More
MalwareBytesSecurity

Panerabread.com breach could have impacted millions

Credit to Author: Wendy Zamora| Date: Tue, 03 Apr 2018 20:53:29 +0000

The Panerabread.com breach might have exposed 37 million customers’ data online. What should you do to make sure your security isn’t compromised?

Categories:

Tags:

(Read more…)

The post Panerabread.com breach could have impacted millions appeared first on Malwarebytes Labs.

Read More