Security

MalwareBytesSecurity

The top 5 dumbest cyber threats that work anyway

Credit to Author: William Tsing| Date: Sat, 08 Apr 2017 15:00:23 +0000

The common conception of cyber attacks is kind of like bad weather: ranging from irritating to catastrophic, but always unpredictable. Hackers are simply too sophisticated to draw any reliable judgments on and we shouldn’t try. As it turns out, some hackers are fairly predictable in their successful use of really dumb attacks.

Categories:

Tags:

(Read more…)

The post The top 5 dumbest cyber threats that work anyway appeared first on Malwarebytes Labs.

Read More
SecurityTrendMicro

TippingPoint Threat Intelligence and Zero-Day Coverage – Week of April 3, 2017

Credit to Author: Elisa Lippincott (TippingPoint Global Product Marketing)| Date: Fri, 07 Apr 2017 18:41:41 +0000

Late last week, a buffer overflow vulnerability in IIS 6.0 on Windows 2003 servers, identified by CVE-2007-7269, was publicly disclosed. The vulnerability can be exploited since no bounds checking is done on headers matching a particular pattern within the PROPFIND method requests and successful attempts can lead to remote code execution on vulnerable targets. According…

Read More
FortinetSecurity

In-Depth Look at New Variant of MONSOON APT Backdoor, Part 2

Credit to Author: Jasper Manuel and Artem Semenchenko | Date: Wed, 05 Apr 2017 08:58:18 -0700

In part 1 of FortiGuard Labs’ analysis of a new variant of the BADNEWS backdoor, which is actively being used in the MONSOON APT campaign, we did a deep technical analysis of what this backdoor of capable of and how the bad guys control it using the command and control server. In this part of the analysis, we will try to discover who might be behind the distribution of these files.

Read More