Recently, Google did some house cleaning. They removed ten different apps from the Play Store, all of which contained droppers for financial Trojans, this according to a recent blog post by Check Point Research. Apparently, all ten of the poisoned apps were submitted by the same threat actor, who took …
Consider Replacing Your Old Broadband Routers For Security
A company named ‘UK security Watchdog, Which?’ recently released a report with some disturbing security ramifications. Based on a survey of more than 6000 UK households, the company identified 13 different older routers that are still regularly being used today. Of those 13, nine were found to fall well short …
Global Scale Phishing Attack Brings New Malware
There’s an ongoing, global scale phishing attack you should be aware of, even if your firm isn’t currently being targeted by it. The attack is being tracked by Mandiant, who recently published a report about it. According to that report, the attack was planned in waves, hitting more than 50 …
Chrome Zero Day Exploit Gets Fixed With Latest Update
On April 20, 2021, Google released Chrome 90.0.4430.85, designed to address a zero-day exploit hackers are currently taking advantage of, tracked as CVE-2021-21224. The patch also patches four other high severity security flaws that had previously been plaguing the most popular browser on the web. By the time you read …
Newly Discovered Linux Malware Has Been Around For Years
Recently, researchers at Qihoo 360 Network Security discovered a particularly stealthy piece of malware designed to create backdoors in the Linux ecosystem. It was so good at its job, and so stealthy that it went completely undetected for years. That gave the hackers controlling it a convenient access point literally …
Popular NAS Device Vendor Fixes Vulnerability Recommends Update
QNAP recently addressed a critical security vulnerability you need to be aware of. Previous to the fix, the company had included hard-coded credentials to serve as a backdoor to the device. Unfortunately, hackers became aware of this and began abusing those credentials. That resulted in a number of confirmed instances …
Microsoft Edge Will Redirect Users To HTTPS Secure Sites
If you’re a Microsoft Edge user, be aware. Beginning in July, with the release of Edge 92, the browser will automatically redirect users to a secure HTTPS connection any time they visit a website via the HTTP protocol. Microsoft is not alone in this, and in fact, is coming a …
New Android Malware Called FluBot Is Stealing Passwords
There’s a new malware threat you need to be aware of, and it recently made its way onto the UK’s National Cyber Security Centre’s radar. Called FluBot, it is designed to steal information including passwords and banking particulars. There are a couple of interesting aspects about this threat that are …
Hackers Delivering And Hiding Malware While Undetected
Last year, Google made some important changes to their Chrome browser in a bid to increase user security. Among these changes was to default to “HTTPS” in the browser in an attempt to reduce the number of “man in the middle” and similar types of attacks. Their strategy worked. Other …
Ficker Malware Tricks People To Get Their Passwords
Jiri Kropac, the head of ESET’s Threat Detection Labs, recently reported a new malware campaign to be aware of. This one is a bit different in terms of methodology. Hackers most commonly employ emails utilizing various social engineering tricks in an attempt to lure unsuspecting recipients into clicking malicious links …