FIN7 sysadmin behind “billions in damage” gets 10 years

Credit to Author: Pieter Arntz| Date: Tue, 20 Apr 2021 20:55:42 +0000

Fedir Hladyr is considered the mastermind behind the Carbanak campaign that stole $900 million from financial institutions and others.

Categories: Reports

Tags:

(Read more…)

The post FIN7 sysadmin behind “billions in damage” gets 10 years appeared first on Malwarebytes Labs.

Read more

CodeCov supply-chain compromise likened to SolarWinds attack

Credit to Author: Malwarebytes Labs| Date: Tue, 20 Apr 2021 20:13:24 +0000

A sophisticated supply-chain attack on CodeCov appears to have given attackers access to “hundreds” of the company’s clients, and their codebases.

Categories: Awareness

Tags:

(Read more…)

The post CodeCov supply-chain compromise likened to SolarWinds attack appeared first on Malwarebytes Labs.

Read more

Interview with a bug bounty hunter: Youssef Sammouda

Credit to Author: Pieter Arntz| Date: Tue, 20 Apr 2021 16:43:18 +0000

Youssef Sammouda is a bug bounty hunter with 100 resolved Facebook reports to his name. We interviewed him about his amazing work.

Categories: HackingSecurity world

Tags:

(Read more…)

The post Interview with a bug bounty hunter: Youssef Sammouda appeared first on Malwarebytes Labs.

Read more

A week in security (April 12 – 18)

Credit to Author: Malwarebytes Labs| Date: Mon, 19 Apr 2021 17:20:14 +0000

A roundup of the previous week’s security news, from April 12 to 18.

Categories: A week in security

Tags:

(Read more…)

The post A week in security (April 12 – 18) appeared first on Malwarebytes Labs.

Read more

Lazarus APT conceals malicious code within BMP image to drop its RAT

Credit to Author: Threat Intelligence Team| Date: Mon, 19 Apr 2021 15:00:00 +0000

The North Korean APT uses a clever technique to bypass security products by embedding one of its payload as a BMP image.

Categories: Malwarebytes news

Tags:

(Read more…)

The post Lazarus APT conceals malicious code within BMP image to drop its RAT appeared first on Malwarebytes Labs.

Read more

Shady scam bots trick Omegle users into nonconsensual video sex recordings

Credit to Author: Malwarebytes Labs| Date: Fri, 16 Apr 2021 17:42:20 +0000

A BBC investigation has highlighted the use of Virtual Cam Whores (VCWs) on Omegle by scammers.

Categories: Awareness

Tags:

(Read more…)

The post Shady scam bots trick Omegle users into nonconsensual video sex recordings appeared first on Malwarebytes Labs.

Read more

Patch now! NSA, CISA, and FBI warn of Russian intelligence exploiting 5 vulnerabilities

Credit to Author: Malwarebytes Labs| Date: Fri, 16 Apr 2021 14:59:38 +0000

US intelligence and law enforcement agencies have issued a joint advisory listing 5 specific vulnerabilities being used by the SVR against the US and its allies.

Categories: Malwarebytes news

Tags:

(Read more…)

The post Patch now! NSA, CISA, and FBI warn of Russian intelligence exploiting 5 vulnerabilities appeared first on Malwarebytes Labs.

Read more

Deepfakes were going to change everything. And then they didn’t

Credit to Author: Christopher Boyd| Date: Fri, 16 Apr 2021 14:36:04 +0000

Deepfakes are out there, but they aren’t where many people expected them to be.

Categories: Social engineering

Tags:

(Read more…)

The post Deepfakes were going to change everything. And then they didn’t appeared first on Malwarebytes Labs.

Read more