Security

FortinetSecurity

Spring Parade for Refreshed Android Marcher

Credit to Author: Dario Durando, Kenny Yang, David Maciejak| Date: Wed, 17 May 2017 21:14:16 -0700

Android malware continues to grow exponentially now that it has overtaken the top position as the most popular OS (across all platforms), making it the target of choice for malware authors. Android Marcher is an Android banker malware that has been on the FortiGuard Labs radar since late 2013. Since that time it has been seen in a number of campaigns targeting many different banks and countries. And now, Marcher has once again resurfaced with a new campaign. Over the past few months we have observed it masking itself in a variety of ways…

Read More
FortinetSecurity

New Loki Variant Being Spread via PDF File

Credit to Author: Xiaopeng Zhang and Hua Liu| Date: Wed, 17 May 2017 18:24:02 -0700

The Loki Bot has been observed for years. As you may know, it is designed to steal credentials from installed software on a victim’s machine, such as email clients, browsers, FTP clients, file management clients, and so on. FortiGuard Labs recently captured a PDF sample that is used to spread a new Loki variant. In this blog, we will analyze how this new variant works and what it steals. The PDF sample Figure 1. Content of the PDF sample The PDF sample only contains one page, shown above, which includes some…

Read More
SecuritySophos

See WannaCry ransomware in action

Credit to Author: Bill Brenner| Date: Wed, 17 May 2017 18:03:23 +0000

We break down the process of the WannaCry ransomware outbreak, including how it spread and demo how Sophos Intercept X protects against it.<img alt=”” border=”0″ src=”https://pixel.wp.com/b.gif?host=news.sophos.com&#038;blog=834173&#038;post=34342&#038;subd=sophos&#038;ref=&#038;feed=1″ width=”1″ height=”1″ /><img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/jqJ-6ruYsmU” height=”1″ width=”1″ alt=””/>

Read More
FortinetSecurity

WannaCry FAQ – Take-aways and Learnings

Credit to Author: Aamir Lakhani| Date: Wed, 17 May 2017 10:58:45 -0700

WannaCry FAQ: How does WannaCry spread? WannaCry has multiple ways of spreading. Its primary method is to use the Backdoor.Double.Pulsar backdoor exploit tool released last March by the hacker group known as Shadow Brokers, and managed to infect thousands of Microsoft Windows computers in only a few weeks. Because DoublePulsar runs in kernel mode, it grants hackers a high level of control over the compromised computer system.

Read More
FortinetSecurity

Zero Patch IoT Environment

Credit to Author: Axelle Apvrille| Date: Wed, 17 May 2017 09:28:10 -0700

Over the last few months or years I have reported vulnerabilities on several IoT devices. None have been patched so far, and I think it is time to discuss the situation openly. One of the issues I have faced several times is the zero-security-culture phenomenon. Some of those IoT companies were typically very small and young, with sadly neither the skills nor the resources to fix security issues. For example, I remember sending several vulnerabilities to a given company. I got an automated response for the first email (ok),…

Read More
MalwareBytesSecurity

Privacy Awareness Week: A primer

Credit to Author: Malwarebytes Labs| Date: Wed, 17 May 2017 15:00:24 +0000

The Asia Pacific Privacy Authorities (APPA) began an initiative called Privacy Awareness Week, or PAW, with the purpose of educating users about current privacy issues and promoting the importance of keeping their personal information safe. This remains the core of why it exists for more than a decade now.

Categories:

Tags:

(Read more…)

The post Privacy Awareness Week: A primer appeared first on Malwarebytes Labs.

Read More
KasperskySecurity

How to properly update Windows to protect your computer from WannaCry

Credit to Author: Marvin the Robot| Date: Wed, 17 May 2017 15:05:26 +0000

By now, everyone has heard about the WannaCry ransomware attack. So far we have two posts about it: one with a general overview of what happened, and another with advice for businesses. But it’s become clear that not everyone understands how to patch the Windows vulnerability that is exploited by WannaCry, which allows it to […]

Read More