Hacking News

Latest hacking information from the underworld

New Magniber Ransomware Targets South Korea, Asia Pacific

Researchers identified a new ransomware family called Magniber that uniquely targets only users in South Korea and the Asia-Pacific regions. The ransomware is primarily being distributed by the Magnitude exploit kit, a primary distribution vehicle in the past for Cerber ransomware. Because of Magniber’s close affiliation to both the Magnitude EK and and Cerber, researchers […]

New Magniber Ransomware Targets South Korea, Asia Pacific Read More »

Hackers race to use Flash exploit before vulnerable systems are patched

Hackers are rushing to exploit a zero-day Flash vulnerability to plant surveillance software before organisations have time to update their systems to patch the weakness. Uncovered by researchers at Kaspersky Lab on Monday, the CVE-2017-11292 Adobe Flash vulnerability allows attackers to deploy a vulnerability which can lead to code execution on Windows, Mac, Linux, and Chrome OS systems. The exploit

Hackers race to use Flash exploit before vulnerable systems are patched Read More »

Every Credit Card Reporting Company is upgrading their IT Security after Equifax

There were questions from Chase Bank about an applying for a credit card that someone was attempting to open in his name. Mifflin, who exists in San Antonio, says he called the bank and was told the identity thieves have my Social Security number. He set up fraud warnings with the three major credit recording

Every Credit Card Reporting Company is upgrading their IT Security after Equifax Read More »

Windows, Linux and Mac OS got Chrome 62 Update

The most exciting new features support for OpenType variable fonts, the full statement of the Network Quality Estimator API, the capacity to capture and stream DOM elements, and HTTP warnings for the browser’s Natural and Incognito mode. While for most users this wouldn’t seem like a big opportunity, the most important new feature attached in

Windows, Linux and Mac OS got Chrome 62 Update Read More »

Critical Code Execution Flaw Patched in PeopleSoft Core Engine

Organizations that have their PeopleSoft installations exposed to the internet should pay special attention to a remote code execution vulnerability patched on Tuesday as part of Oracle’s massive quarterly Critical Patch Update. The flaw, CVE-2017-10366, allows an attacker to gain remote code execution on a server running PeopleSoft software. The flaw is in the core engine,

Critical Code Execution Flaw Patched in PeopleSoft Core Engine Read More »

BoundHook Attack Exploits Intel Skylake MPX Feature

A post-intrusion technique developed by researchers at CyberArk Labs called BoundHooking allows attackers to exploit a feature in all Intel chips introduced since Skylake. The attack technique allows for the execution of code from any process without detection by antivirus software or other security measures, researchers said. According to CyberArk, a BoundHooking attack exploits the

BoundHook Attack Exploits Intel Skylake MPX Feature Read More »

Mysterious cyber espionage campaign uses ‘torpedo’ lure to trick you into downloading malware

An espionage group is launching cyber attacks against organisations in the maritime and defence sectors in what’s highly likely to be an effort to steal confidential information and research data. Dubbed Leviathan, the group has been active since at least 2014 and takes particular interest in maritime industries, naval defence contractors and associated university research

Mysterious cyber espionage campaign uses ‘torpedo’ lure to trick you into downloading malware Read More »

Security flaws in children’s smartwatches make them vulnerable to hackers

Internet connected smartwatches for children have been found to contain security vulnerabilities which allow hackers access to track the wearer’s location, eavesdrop on conversations or even communicate with the child user. And with some of these devices, data is transmitted and stored without encryption, says an investigation by the Norwegian Consumer Council (NCC). Working alongside

Security flaws in children’s smartwatches make them vulnerable to hackers Read More »

Lenovo Quietly Patches Massive Bug Impacting Its Android Tablets and Zuk, Vibe Phones

Security experts are urging Lenovo customers to update their Android tablets and handsets to protect themselves against a handful of critical vulnerabilities impacting tens of millions of vulnerable Lenovo devices. On Oct. 5, Lenovo quietly rolled out four patches impacting all of its Android tablets, Vibe and Zuk phones, and the Moto M (XT1663) and

Lenovo Quietly Patches Massive Bug Impacting Its Android Tablets and Zuk, Vibe Phones Read More »