{"id":16461,"date":"2019-09-30T08:10:04","date_gmt":"2019-09-30T16:10:04","guid":{"rendered":"https:\/\/www.palada.net\/index.php\/2019\/09\/30\/news-10201\/"},"modified":"2019-09-30T08:10:04","modified_gmt":"2019-09-30T16:10:04","slug":"news-10201","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2019\/09\/30\/news-10201\/","title":{"rendered":"A week in security (September 23 \u2013 29)"},"content":{"rendered":"<p><strong>Credit to Author: Malwarebytes Labs| Date: Mon, 30 Sep 2019 15:43:14 +0000<\/strong><\/p>\n<p>Last week on Labs, we highlighted an <a rel=\"noreferrer noopener\" aria-label=\"Emotet campaign using Snowden\u2019s new book as lure (opens in a new tab)\" href=\"https:\/\/blog.malwarebytes.com\/botnets\/2019\/09\/emotet-malspam-campaign-uses-snowdens-new-book-as-lure\/\" target=\"_blank\">Emotet campaign using Snowden\u2019s new book as a lure<\/a>, discussed how <a rel=\"noreferrer noopener\" aria-label=\"15,000 webcams are vulnerable to attack (opens in a new tab)\" href=\"https:\/\/blog.malwarebytes.com\/hacking-2\/2019\/09\/15000-webcams-vulnerable-how-to-protect-webcam-hacking\/\" target=\"_blank\">15,000 webcams are vulnerable to attack<\/a>, how <a rel=\"noreferrer noopener\" aria-label=\"insurance data security laws skirt political turmoil (opens in a new tab)\" href=\"https:\/\/blog.malwarebytes.com\/privacy-2\/2019\/09\/insurance-data-security-laws-skirt-political-turmoil\/\" target=\"_blank\">insurance data security laws skirt political turmoil<\/a>, and how the <a rel=\"noreferrer noopener\" aria-label=\"new iOS exploit checkm8 allows permanent compromise of iPhones (opens in a new tab)\" href=\"https:\/\/blog.malwarebytes.com\/mac\/2019\/09\/new-ios-exploit-checkm8-allows-permanent-compromise-of-iphones\/\" target=\"_blank\">new iOS exploit checkm8 allows permanent compromise of iPhones<\/a>. <\/p>\n<h3>Other cybersecurity news<\/h3>\n<ul>\n<li><a rel=\"noreferrer noopener\" aria-label=\"Google (opens in a new tab)\" href=\"https:\/\/www.wired.com\/story\/googles-quantum-supremacy-isnt-end-encryption\/\" target=\"_blank\">Google<\/a> said its quantum computer outperformed conventional models, but it will still be years before it will end encryption. (Source: Wired)<\/li>\n<li>Google quietly removed at least 46 apps from the Play store belonging to <a rel=\"noreferrer noopener\" aria-label=\"iHandy (opens in a new tab)\" href=\"https:\/\/www.buzzfeednews.com\/article\/craigsilverman\/sweet-camera-play-store-removed-ihandy\" target=\"_blank\">iHandy<\/a>, a major Chinese mobile developer due to &#8220;deceptive or disruptive ads.&#8221; (Source: BuzzfeedNews)<\/li>\n<li>The data breach at food delivery company <a rel=\"noreferrer noopener\" aria-label=\"DoorDash (opens in a new tab)\" href=\"https:\/\/www.cnet.com\/news\/doordash-data-breach-affected-4-9-million-customers-workers-and-merchants\/\" target=\"_blank\">DoorDash<\/a> affected 4.9 million customers, drivers, and merchants. (Source: CNet)<\/li>\n<li>At <a rel=\"noreferrer noopener\" aria-label=\"DefCon (opens in a new tab)\" href=\"https:\/\/www.motherjones.com\/politics\/2019\/09\/defcon-2019-hacking-village\/\" target=\"_blank\">DefCon<\/a>, researchers assembled over 100 voting machines and hackers broke into every single one of them. (Source: Mother Jones)<\/li>\n<li>New York&#8217;s attorney general has filed suit against <a rel=\"noreferrer noopener\" aria-label=\"Dunkin' Donuts (opens in a new tab)\" href=\"https:\/\/thehill.com\/policy\/cybersecurity\/463267-ny-files-suit-against-dunkin-donuts-over-security-breaches\" target=\"_blank\">Dunkin&#8217; Donuts<\/a> over the company&#8217;s alleged failure to notify its customers of a cyberattack. (Source: The Hill)<\/li>\n<li><a rel=\"noreferrer noopener\" aria-label=\"27 countries (opens in a new tab)\" href=\"https:\/\/edition.cnn.com\/2019\/09\/23\/politics\/united-nations-cyber-condemns-russia-china\/index.html\" target=\"_blank\">27 countries<\/a> have signed a joint agreement on what constitutes fair and foul play in cyberspace, with a nod toward condemning China and Russia. (Source: CNN)<\/li>\n<li>The <a rel=\"noreferrer noopener\" aria-label=\"U.S. Senate (opens in a new tab)\" href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/us-senate-passes-bill-in-response-to-rampant-ransomware-cyberattacks\/\" target=\"_blank\">US Senate<\/a> passed the DHS Cyber Hunt and Incident Response Teams Act (S.315) in response to rampant ransomware attacks. (Source: BleepingComputer)<\/li>\n<li>Thousands of Windows computers across the world have been infected with <a rel=\"noreferrer noopener\" aria-label=\"Nodersok (opens in a new tab)\" href=\"https:\/\/www.zdnet.com\/article\/microsoft-new-nodersok-malware-has-infected-thousands-of-pcs\/\" target=\"_blank\">Nodersok<\/a>, malware that downloads and installs a copy of the Node.js framework to convert infected systems into proxies and perform click fraud. (Source: ZDNet)<\/li>\n<li>Social media platforms will be forced to disclose <a rel=\"noreferrer noopener\" aria-label=\"encrypted (opens in a new tab)\" href=\"http:\/\/www.thetimes.co.uk\/article\/police-can-access-suspects-facebook-and-whatsapp-messages-in-deal-with-us-q7lrfmchz\" target=\"_blank\">encrypted<\/a> messages from suspected terrorists, pedophiles, and other serious criminals under a new treaty between the UK and the US. (Source: The Times)<\/li>\n<li>Microsoft has blacklisted the <a rel=\"noreferrer noopener\" aria-label=\"CCleaner (opens in a new tab)\" href=\"https:\/\/betanews.com\/2019\/09\/25\/microsoft-blacklists-ccleaner\/\" target=\"_blank\">CCleaner<\/a> utility and links to the software can no longer be posted in its support forums. (Source: BetaNews)<\/li>\n<\/ul>\n<p>  Stay safe!  <\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\/a-week-in-security\/2019\/09\/a-week-in-security-september-23-29\/\">A week in security (September 23 \u2013 29)<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\">Malwarebytes Labs<\/a>.<\/p>\n<p><a href=\"https:\/\/blog.malwarebytes.com\/a-week-in-security\/2019\/09\/a-week-in-security-september-23-29\/\" target=\"bwo\" >https:\/\/blog.malwarebytes.com\/feed\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><strong>Credit to Author: Malwarebytes Labs| Date: Mon, 30 Sep 2019 15:43:14 +0000<\/strong><\/p>\n<table cellpadding='10'>\n<tr>\n<td valign='top' align='center'><a href='https:\/\/blog.malwarebytes.com\/a-week-in-security\/2019\/09\/a-week-in-security-september-23-29\/' title='A week in security (September 23 \u2013 29)'><img src='https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2018\/01\/shutterstock_610335074.jpg' border='0'  width='300px'  \/><\/a><\/td>\n<\/tr>\n<tr>\n<td valign='top' align='left'>A roundup of the security news from September 23\u201329 including Emotet, checkm8, securing webcams, insurance data,  Nodersok, voting machines, iHandy, CCleaner, encryption and breaches. <\/p>\n<p>Categories: <\/p>\n<ul class=\"post-categories\">\n<li><a href=\"https:\/\/blog.malwarebytes.com\/category\/a-week-in-security\/\" rel=\"category tag\">A week in security<\/a><\/li>\n<\/ul>\n<p>Tags: <a href=\"https:\/\/blog.malwarebytes.com\/tag\/ccleaner\/\" rel=\"tag\">ccleaner<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/checkm8\/\" rel=\"tag\">checkm8<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/doordash\/\" rel=\"tag\">doordash<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/emotet\/\" rel=\"tag\">emotet<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/ihandy\/\" rel=\"tag\">ihandy<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/insurance-data\/\" rel=\"tag\">insurance data<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/nodersok\/\" rel=\"tag\">nodersok<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/webcams\/\" rel=\"tag\">webcams<\/a><\/p>\n<table width='100%'>\n<tr>\n<td align=right>\n<p><b>(<a href='https:\/\/blog.malwarebytes.com\/a-week-in-security\/2019\/09\/a-week-in-security-september-23-29\/' title='A week in security (September 23 \u2013 29)'>Read more&#8230;<\/a>)<\/b><\/p>\n<\/td>\n<\/tr>\n<\/table>\n<\/td>\n<\/tr>\n<\/table>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\/a-week-in-security\/2019\/09\/a-week-in-security-september-23-29\/\">A week in security (September 23 \u2013 29)<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\">Malwarebytes Labs<\/a>.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10488,10378],"tags":[12969,14861,23070,23087,15715,23088,23089,23055,11837],"class_list":["post-16461","post","type-post","status-publish","format-standard","hentry","category-malwarebytes","category-security","tag-a-week-in-security","tag-ccleaner","tag-checkm8","tag-doordash","tag-emotet","tag-ihandy","tag-insurance-data","tag-nodersok","tag-webcams"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/16461","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=16461"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/16461\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=16461"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=16461"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=16461"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}