{"id":13583,"date":"2018-10-15T09:10:07","date_gmt":"2018-10-15T17:10:07","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2018\/10\/15\/news-7350\/"},"modified":"2018-10-15T09:10:07","modified_gmt":"2018-10-15T17:10:07","slug":"news-7350","status":"publish","type":"post","link":"https:\/\/www.palada.net\/index.php\/2018\/10\/15\/news-7350\/","title":{"rendered":"A week in security (October 8 \u2013 14)"},"content":{"rendered":"<p><strong>Credit to Author: Malwarebytes Labs| Date: Mon, 15 Oct 2018 15:56:13 +0000<\/strong><\/p>\n<p>Last week, we warned you away from some <a href=\"https:\/\/blog.malwarebytes.com\/cybercrime\/2018\/10\/avoid-these-doctor-who-series-11-scams\/\" target=\"_blank\" rel=\"noopener\">dubious Doctor Who streams<\/a>, explained how Endpoint Detection and Response may <a href=\"https:\/\/blog.malwarebytes.com\/malwarebytes-news\/2018\/10\/when-endpoint-detection-and-response-edr-is-not-enough\/\" target=\"_blank\" rel=\"noopener\">not be enough<\/a>, and explored what happens during a confusing <a href=\"https:\/\/blog.malwarebytes.com\/cybercrime\/2018\/10\/bloomberg-blunder-supply-chain-risks\/\" target=\"_blank\" rel=\"noopener\">supply chain story<\/a>. We also showed you how to <a href=\"https:\/\/blog.malwarebytes.com\/101\/2018\/10\/6-ways-to-keep-up-with-cybersecurity-without-going-crazy\/\" target=\"_blank\" rel=\"noopener\">keep up with security<\/a>, explained the risks of <a href=\"https:\/\/blog.malwarebytes.com\/threat-analysis\/2018\/10\/fake-browser-update-seeks-to-compromise-more-mikrotik-routers\/\" target=\"_blank\" rel=\"noopener\">fake browser updates<\/a>, and explored the <a href=\"https:\/\/blog.malwarebytes.com\/101\/2018\/10\/workplace-violence-the-forgotten-insider-threat\/\" target=\"_blank\" rel=\"noopener\">unpleasant world of workplace violence<\/a>.<\/p>\n<h3>Other cybersecurity news:<\/h3>\n<ul>\n<li>Google Plus <a href=\"https:\/\/www.blog.google\/technology\/safety-security\/project-strobe\/\" target=\"_blank\" rel=\"noopener\">suffers a breach<\/a> (Source: Google)<\/li>\n<li>More <a style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\" href=\"https:\/\/www.riskiq.com\/blog\/labs\/magecart-shopper-approved\/\" target=\"_blank\" rel=\"noopener\">MageCart attacks<\/a><span style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\"> (Source: RiskIQ)<\/span><\/li>\n<li>Millions of surveillance cams <a style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\" href=\"https:\/\/www.sec-consult.com\/en\/blog\/2018\/10\/millions-of-xiongmai-video-surveillance-devices-can-be-hacked-via-cloud-feature-xmeye-p2p-cloud\/\" target=\"_blank\" rel=\"noopener\">left exposed<\/a><span style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\"> (Source: SEC Consult)<\/span><\/li>\n<li>NCSC release report on <a style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\" href=\"https:\/\/www.theregister.co.uk\/2018\/10\/11\/hacking_tools_taxonomy\/\" target=\"_blank\" rel=\"noopener\">hacking tools<\/a><span style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\"> (Source: The Register)<\/span><\/li>\n<li>Don\u2019t provide bank accounts for election trolls [<a style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\" href=\"https:\/\/www.justice.gov\/file\/1035547\/download\" target=\"_blank\" rel=\"noopener\">PDF<\/a><span style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\">] (Source: Justice.gov)<\/span><\/li>\n<li>\u201cOnly\u201d 30 million accounts breached in <a style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\" href=\"https:\/\/newsroom.fb.com\/news\/2018\/10\/update-on-security-issue\/\" target=\"_blank\" rel=\"noopener\">Facebook attack<\/a><span style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\"> (Source: Facebook)<\/span><\/li>\n<li>Gallmaker <a style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\" href=\"https:\/\/www.symantec.com\/blogs\/threat-intelligence\/gallmaker-attack-group\" target=\"_blank\" rel=\"noopener\">goes after embassies<\/a><span style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\"> (Source: Symantec)<\/span><\/li>\n<li>Evidence <a style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\" href=\"https:\/\/www.welivesecurity.com\/2018\/10\/11\/new-telebots-backdoor-linking-industroyer-notpetya\/\" target=\"_blank\" rel=\"noopener\">links<\/a><span style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\"> Industroyer to NotPeyta (Source: ESET)<\/span><\/li>\n<li>Identity spoofing danger for <a style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\" href=\"https:\/\/www.helpnetsecurity.com\/2018\/10\/12\/identity-spoofing-gambling\/\" target=\"_blank\" rel=\"noopener\">gamers and gamblers<\/a><span style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\"> (Source: Help Net Security)<\/span><\/li>\n<li>Healthcare phish attack <a style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\" href=\"https:\/\/www.healthcareitnews.com\/news\/phishing-attack-breaches-insurance-data-37000-patients-1-month\" target=\"_blank\" rel=\"noopener\">affects 37,000 patients<\/a><span style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\"> (Source: Healthcare IT News)<\/span><\/li>\n<\/ul>\n<p>Stay safe, everyone!<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\/security-world\/week-in-security\/2018\/10\/week-security-october-8-14\/\">A week in security (October 8 \u2013 14)<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\">Malwarebytes Labs<\/a>.<\/p>\n<p><a href=\"https:\/\/blog.malwarebytes.com\/security-world\/week-in-security\/2018\/10\/week-security-october-8-14\/\" target=\"bwo\" >https:\/\/blog.malwarebytes.com\/feed\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><strong>Credit to Author: Malwarebytes Labs| Date: Mon, 15 Oct 2018 15:56:13 +0000<\/strong><\/p>\n<table cellpadding='10'>\n<tr>\n<td valign='top' align='center'><a href='https:\/\/blog.malwarebytes.com\/security-world\/week-in-security\/2018\/10\/week-security-october-8-14\/' title='A week in security (October 8 \u2013 14)'><img src='https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2018\/01\/shutterstock_610335074.jpg' border='0'  width='300px'  \/><\/a><\/td>\n<\/tr>\n<tr>\n<td valign='top' align='left'>A roundup of the security news from October 8\u201314 including breaches, phishing attacks, and hacking tools.<\/p>\n<p>Categories: <\/p>\n<ul class=\"post-categories\">\n<li><a href=\"https:\/\/blog.malwarebytes.com\/category\/security-world\/\" rel=\"category tag\">Security world<\/a><\/li>\n<li><a href=\"https:\/\/blog.malwarebytes.com\/category\/security-world\/week-in-security\/\" rel=\"category tag\">Week in security<\/a><\/li>\n<\/ul>\n<p>Tags: <a href=\"https:\/\/blog.malwarebytes.com\/tag\/breach\/\" rel=\"tag\">breach<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/cybersecurity\/\" rel=\"tag\">cybersecurity<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/cybersecurity-news\/\" rel=\"tag\">cybersecurity news<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/industroyer\/\" rel=\"tag\">Industroyer<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/magecart-attacks\/\" rel=\"tag\">MageCart attacks<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/malware\/\" rel=\"tag\">malware<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/notpeyta\/\" rel=\"tag\">NotPeyta<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/phishing\/\" rel=\"tag\">phishing<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/roundup\/\" rel=\"tag\">roundup<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/week-in-security\/\" rel=\"tag\">week in security<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/weeks-roundup\/\" rel=\"tag\">weeks roundup<\/a><\/p>\n<table width='100%'>\n<tr>\n<td align=right>\n<p><b>(<a href='https:\/\/blog.malwarebytes.com\/security-world\/week-in-security\/2018\/10\/week-security-october-8-14\/' title='A week in security (October 8 \u2013 14)'>Read more&#8230;<\/a>)<\/b><\/p>\n<\/td>\n<\/tr>\n<\/table>\n<\/td>\n<\/tr>\n<\/table>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\/security-world\/week-in-security\/2018\/10\/week-security-october-8-14\/\">A week in security (October 8 \u2013 14)<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\">Malwarebytes Labs<\/a>.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10488,10378],"tags":[11510,4500,19871,19872,19873,3764,19874,3924,13053,10497,10498,19875],"class_list":["post-13583","post","type-post","status-publish","format-standard","hentry","category-malwarebytes","category-security","tag-breach","tag-cybersecurity","tag-cybersecurity-news","tag-industroyer","tag-magecart-attacks","tag-malware","tag-notpeyta","tag-phishing","tag-roundup","tag-security-world","tag-week-in-security","tag-weeks-roundup"],"_links":{"self":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/13583","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=13583"}],"version-history":[{"count":0,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/13583\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=13583"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=13583"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=13583"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}