May 13, 2019 Warning Issued over Electricfish Malware used by North Korea-Backed Threat Group Hidden Cobra US-CERT has issued a warning about a new malware variant dubbed Electricfish, which is reportedly being used by the North Korea-backed threat group Hidden Cobra, ... Read more
April 30, 2019 Biggest Malware Threats in Healthcare Revealed A recent report from Malwarebytes has revealed Trojans are the biggest malware threat. Trojans account for 79% of all malware detected on healthcare systems by ... Read more
April 25, 2019 Exploitable Flaws Discovered in New WPA3 Wi-Fi Security Standard The next generation of Wi-Fi security – WPA3 – was launched in the summer of 2018, which promised to be the most secure form of ... Read more
April 19, 2019 New Malvertising Campaign Detected Using Highly Sophisticated Aftershock-3PC Malware A new form of malware named Aftershock-3PC is being used in a major malvertising campaign. The malware uses a range of advanced techniques to avoid ... Read more
April 16, 2019 DHS and FBI Issue Warning About New North Korean Hoplight Trojan The U.S Department of Homeland Security (DHS) and the Federal Bureau of Investigation (FBI) have both issued advisories about a new Trojan called Hoplight which ... Read more
April 12, 2019 A Quarter of Phishing Emails Bypass Office 365 Anti-Phishing Defenses Microsoft Office 365 default anti-phishing defenses are bypassed by a quarter of all phishing emails, according to new research from cybersecurity firm Avanan. Avanan conducted ... Read more
April 11, 2019 Cryptocurrency Mining Malware Still Dominates the Malware Threat Landscape The latest Global Threat Index report from Check Point shows cryptocurrency mining malware continues to be the biggest malware threat, even with the demise of ... Read more
April 11, 2019 The Baldr Information Stealer: A Dangerous New Malware Threat A new information stealer has been detected which could become a long-term threat. The Baldr information stealer is not especially sophisticated and lacks persistence, but ... Read more
April 4, 2019 Beware of Tax Season Phishing Scams Cybercriminals have stepped up their efforts to scam U.S. taxpayers into divulging their sensitive information and installing malware. Many elaborate tax season phishing scams have ... Read more
April 1, 2019 Europol Meets with Industry Leaders to Discuss Ways to Combat Phishing Europol has hosted a meeting with 70 industry experts to discuss ways to tackle the growing problem of phishing and business email compromise attacks. According ... Read more
March 13, 2019 March 2019 Patch Tuesday: 2 Actively Exploited Bugs Patched by Microsoft March 2019 Patch Tuesday has seen Microsoft issue fixes for 64 vulnerabilities, two of which are being actively exploited in the wild. The two ... Read more
March 8, 2019 Google Chrome and Windows 7 Flaws Being Actively Exploited in the Wild All Chrome users have been advised to update to the latest version of the browser – 72.0.3626.121 – as soon as possible to prevent a ... Read more
March 5, 2019 IRS Launches 2019 Campaign to Raise Awareness of Tax Scams with Phishing Warning The IRS has launched its annual campaign to raise awareness of tax scams that are highly prevalent during tax season. The Dirty Dozen campaign details ... Read more
March 4, 2019 Actively Exploited Zero-Day ColdFusion Vulnerability Patched by Adobe Adobe has issued an out-of-band update to correct the actively exploited ColdFusion vulnerability CVE-2019-7816. The zero-day flaw in its web application development platform is a ... Read more
February 27, 2019 WinRAR Vulnerability Actively Exploited in the Wild to Install Backdoor The 19-year old WinRAR vulnerability that was recently identified by Check Point is being exploited in the wild to install a backdoor that allows remote ... Read more
February 21, 2019 Businesses Targeted in Ongoing Credential-Stealing Separ Malware Phishing Attack An ongoing phishing campaign is targeting businesses and distributing the information-stealing Separ malware. The campaign has mostly concentrated on businesses in South East Asia and ... Read more
February 21, 2019 Drupal Updates Released to Correct Critical RCE Vulnerability An update for the Drupal CMS has been released that corrects a critical vulnerability – CVE-2019-6340 – which, if exploited, could allow the execution of ... Read more
February 19, 2019 Trickbot Trojan Updated to Obtain VNC, PuTTY, and RDP Credentials The Trickbot banking Trojan has been updated with a new module which is capable of obtaining VNC, PuTTY, and remote desktop credentials. The latest variant ... Read more
February 19, 2019 FINRA Issues Phishing Warning to Brokerage Firms The Financial Industry Regulatory Authority (FINRA) has issued a warning to brokerage firms about a new phishing campaign. The scam involves spam emails which appear ... Read more
February 15, 2019 Emotet Threat Actors Now Distributing Trojan via XML Files Masked as Word Documents At least one cybercriminal group distributing the Emotet Trojan has started using a new tactic to infect end users with the malware. The malware is ... Read more
February 15, 2019 Mac Users Targeted with New Shlayer Malware Variant A new Shlayer malware variant has been detected that infects Mac computers and disables macOS Gatekeeper security software. The latest version of the malware was ... Read more
February 11, 2019 Phishing Campaign Leverages Google Translate to Steal Google and Facebook Credentials A phishing campaign has been detected that abuses Google Translate to make the phishing webpage appear to be an official login page for Google. The ... Read more
February 6, 2019 Office 365 Phishing Campaign Uses SharePoint Collaboration Request as Lure A single Office 365 username/password combination can give a hacker access to a vast quantity of sensitive information. Information detailed in emails can be of ... Read more
February 4, 2019 Xvideos Sextortion Scam Threatens to Expose Porn Viewing Habits An xvideos sextortion scam threatens to expose users’ porn viewing habits to friends, family, and work colleagues. The scammer claims to have recorded the ... Read more
January 28, 2019 Fake Google Update Installer Used to Install AZORult Trojan Researchers at Minerva Labs have identified a new AZORult Trojan campaign that installs the malware through a fake Google update installer. The AZORult Trojan is ... Read more
January 21, 2019 Cryptocurrency Mining Malware Tops Most Wanted Malware List Check Point’s Most Wanted Malware report for December 2018 shows that cryptocurrency mining malware was the leading malware threat in December. The top four malware ... Read more
January 8, 2019 Phishing Website Uses Custom Web Fonts to Evade Detection Phishers are constantly developing new ways to prevent their websites from being detected. One threat actor is now using custom web fonts to disguise malicious ... Read more
January 1, 2019 FTC Issues Warning About New Netflix Phishing Scam The U.S. Federal Trade Commission has issued a warning about a new global Netflix phishing scam that attempts to fool Netflix subscribers into disclosing their ... Read more
December 20, 2018 Actively Exploited Internet Explorer Flaw Patched by Microsoft Microsoft has issued an out of band update for Internet Explorer to correct a vulnerability that is being actively exploited in the wild. The Internet ... Read more
December 17, 2018 Fortinet FortiMail Given AAA Rating in SE Labs Phishing Detection Test Fortinet’s FortiMail Secure Email Gateway has recently been independently tested by SE Labs and has been shown to be highly effective at identifying and blocking ... Read more