05 Mar The Week in Ransomware – March 5th 2021 – Targeting service providers This week we have seen ransomware attacks targeting online service providers and MSPs to not only encrypt the victim but also cause significant outages for their customers. […]
05 Mar US indicts John McAfee for cryptocurrency fraud, money laundering US federal prosecutors have charged John McAfee, founder of cybersecurity firm McAfee, and his executive advisor Jimmy Gale Watson Jr for cryptocurrency fraud and money laundering. […]
05 Mar New ransomware only decrypts victims who join their Discord server A new ransomware called ‘Hog’ encrypts users’ devices and only decrypts them if they join the developer’s Discord server. […]
05 Mar Chrome extension turns on YouTube captions when eating noisy chips A new AI-powered Google Chrome extension will automatically turn on YouTube extensions if it detects you are eating noisy chips. […]
05 Mar Microsoft: Exchange updates can install without fixing vulnerabilities Due to the critical nature of recently issued Microsoft Exchange security updates, admins need to know that the updates may have installation issues on servers where User Account Control (UAC) is enabled. […]
05 Mar Ongoing phishing attacks target US brokers with fake FINRA audits The US Financial Industry Regulatory Authority (FINRA) has issued a regulatory notice warning US brokerage firms and brokers of an ongoing phishing campaign using fake compliance audit alerts to harvest information. […]
05 Mar Supermicro, Pulse Secure release fixes for ‘TrickBoot’ attacks Supermicro and Pulse Secure have released advisories warning that some of their motherboards are vulnerable to the TrickBot malware’s UEFI firmware-infecting module, known as TrickBoot. […]
04 Mar CompuCom MSP hit by DarkSide ransomware cyberattack US managed service provider CompuCom has suffered a DarkSide ransomware attack leading to service outages and customers disconnecting from the MSP’s network to prevent the spread of malware. […]
04 Mar VMware releases fix for severe View Planner RCE vulnerability VMware has addressed a high severity unauth RCE vulnerability in VMware View Planner, allowing attackers to abuse servers running unpatched software for remote code execution. […]
04 Mar Researcher bitsquats Microsoft’s windows.com to steal traffic A researcher was able to bitsquat Microsoft’s windows.com domain by cybersquatting variations of windows.com. Adversaries can abuse this tactic to conduct automated attacks or collect data due to the nature of bit flipping. […]