Android application found on Google Play Store carrying Windows malware!

Credit to Author: Vaibhav Billade| Date: Mon, 30 Mar 2020 14:35:50 +0000

Recently, Quick Heal Security Labs found an Android application present on the Google Play Store which was infected by Windows malware. The application is meant for Gionee SmartWatch configuration and visualizing the data through App. On further analyzing the App, we found few HTML files which were infected with Windows…

Read more

Facing down the myriad threats tied to COVID-19

Credit to Author: gallagherseanm| Date: Tue, 24 Mar 2020 18:21:40 +0000

EDITOR’S NOTE: This is an ongoing, live report and will be updated continuously with new information as it becomes available.<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/2LILTixT6V0″ height=”1″ width=”1″ alt=””/>

Read more

Fake “Corona Antivirus” distributes BlackNET remote administration tool

Credit to Author: Threat Intelligence Team| Date: Mon, 23 Mar 2020 19:35:57 +0000

Beware of fraudulent antivirus products taking advantage of the COVID-19 crisis.

Categories:

Tags:

(Read more…)

The post Fake “Corona Antivirus” distributes BlackNET remote administration tool appeared first on Malwarebytes Labs.

Read more

COVID-19 and tech: New collaboration tools mean new security risks

Credit to Author: Paul Heltzel| Date: Thu, 19 Mar 2020 07:26:00 -0700

As the coronavirus forces companies to move their communication and file sharing onto collaboration platforms, be prepared for unintended consequences: New security threats will surface, requiring new methods of securing your environment.

Read more

CVE-2020-0796 – A “wormable” Remote Code Execution vulnerability in SMB v3

Credit to Author: Quickheal| Date: Fri, 13 Mar 2020 03:08:36 +0000

Since last two days, the Internet is rife with news around a critical remote code execution vulnerability in SMBv3.1.1 compression mechanism. Today, on 12th March 2020 Microsoft has released an emergency out-of-band patch to address this vulnerability. As per Microsoft release information, it’s a remote code execution vulnerability in the…

Read more

APT36 jumps on the coronavirus bandwagon, delivers Crimson RAT

Credit to Author: Threat Intelligence Team| Date: Mon, 16 Mar 2020 15:00:00 +0000

We look at a spear phishing attack from APT36, an Advanced Persistent Threat group posing as the government of India and offering guidance on coronavirus. Instead, users are infected with a Crimson RAT that steals data.

Categories:

Tags:

(Read more…)

The post APT36 jumps on the coronavirus bandwagon, delivers Crimson RAT appeared first on Malwarebytes Labs.

Read more

A week in security (March 2 – 8)

Credit to Author: Malwarebytes Labs| Date: Mon, 09 Mar 2020 20:07:46 +0000

A roundup of the previous week’s security headlines, including the introduction of a new series on child identity theft, an examination of law enforcement’s cybersecurity woes, a progress check on our stalkerware initiative, and more coronavirus scammers on the prowl.

Categories:

Tags:

(Read more…)

The post A week in security (March 2 – 8) appeared first on Malwarebytes Labs.

Read more

Lock and Code S1Ep1: On RSA, the human element, and the week in security

Credit to Author: Malwarebytes Labs| Date: Mon, 02 Mar 2020 17:15:47 +0000

We look at all the interesting security news from last week and also present the latest episode of our podcast, Lock and Code.

Categories:

Tags:

(Read more…)

The post Lock and Code S1Ep1: On RSA, the human element, and the week in security appeared first on Malwarebytes Labs.

Read more