malware

QuickHealSecurity

The Runner: a key component of the SamSam ransomware campaign – An analysis by Quick Heal Security Labs

Credit to Author: Amar Patil| Date: Thu, 08 Feb 2018 06:53:36 +0000

In Jan 2018, Greenfield, Indiana-based Hancock Health (healthcare network) was attacked by SamSam ransomware. It encrypted the files containing patients’ data which disrupted their critical services. Even though SamSam is not a new ransomware, it has evolved over a period of time. We had observed its first variant in Feb…

Read More
QuickHealSecurity

The Runner: a key component of the SamSam ransomware campaign

Credit to Author: Amar Patil| Date: Thu, 08 Feb 2018 06:53:36 +0000

In Jan 2018, Greenfield, Indiana-based Hancock Health (healthcare network) was attacked by SamSam ransomware. It encrypted the files containing patients’ data which disrupted their critical services. Even though SamSam is not a new ransomware, it has evolved over a period of time. We had observed its first variant in Feb…

Read More
QuickHealSecurity

Malspam campaigns exploiting recent MS Office vulnerability ‘CVE-2017-11882’ – An Analysis by Quick Heal Security Labs

Credit to Author: Aniruddha Dolas| Date: Mon, 05 Feb 2018 10:12:34 +0000

No wonder malspam campaigns are a major medium to spread malware. Previously, we have written about such campaigns making use of MS Office malware such as malicious macro, CVE-2017-0199, CVE-2017-8759 and DDE-based attack. Recently, we have started observing various malspam campaigns exploiting the latest MS Office vulnerability CVE-2018-11882. Let’s take a look…

Read More
QuickHealSecurity

Malspam campaigns exploiting recent MS Office vulnerability ‘CVE-2017-11882’

Credit to Author: Aniruddha Dolas| Date: Mon, 05 Feb 2018 10:12:34 +0000

No wonder malspam campaigns are a major medium to spread malware. Previously, we have written about such campaigns making use of MS Office malware such as malicious macro CVE-2017-0199, CVE-2017-8759 and DDE-based attack. Recently, we have started observing various malspam campaigns exploiting the latest MS Office vulnerability CVE-2018-11882. Let’s take a…

Read More
QuickHealSecurity

CVE-2018-4878 – Adobe Flash Player use after free (Zero Day) vulnerability Alert!

Credit to Author: Pradeep Kulkarni| Date: Sat, 03 Feb 2018 09:39:38 +0000

The recent zero-day vulnerability CVE-2018-4878 in Adobe Flash Player enables attackers to perform a Remote Code Execution on targeted machines. Adobe has released a security advisory APSA18-01 on February 2, 2018 to address this issue. According to Adobe the in wild attack is targeted and it impacts limited windows users….

Read More
MalwareBytesSecurity

Ransomware’s difficult second album

Credit to Author: Christopher Boyd| Date: Fri, 02 Feb 2018 15:00:00 +0000

We take a look at the difficulties faced by ransomware authors as they try to adapt and evolve to the next form of stealthier Bitcoin hoarding: cryptocurrency mining.

Categories:

Tags:

(Read more…)

The post Ransomware’s difficult second album appeared first on Malwarebytes Labs.

Read More