Malwarebytes Week in Security

Taken from https://blog.malwarebytes.com/category/security-world/week-in-security/feed/

18th December 2017

A week in security (December 11–17)

Last week we explained what fast flux is and how it’s being abused, we showed you all kinds of Bitcoin-related scams, presented a video recording of a tech support scammer trying to sell free software, and pointed out some free software to keep an eye on your Internet traffic. We also informed you about an ad server found predominantly on adult websites, which has taken the lead in the number of URLs blocked by our web protection module. Other news South Korea is preparing a bill that will ban minors and foreigners from trading in cryptocurrencies or opening investment accounts for them within South Korea. (Source: Techspot) Security researchers have publicly disclosed an unpatched zero-day vulnerability in the firmware of AT&T DirecTV WVB kit after trying to get the device manufacturer to patch this flaw over the past few months. (Source: The Hacker News) Intel will implement a hardware lock on management engine equipped chips to defend against patch rollbacks. (Source: The Register)..
18th December 2017

A week in security (December 11 – December 17)

Last week we explained what fast flux is and how it’s being abused, we showed you all kinds of Bitcoin-related scams, presented a video recording of a tech support scammer trying to sell free software, and pointed out some free software to keep an eye on your Internet traffic. We also informed you about an ad server found predominantly on adult websites, which has taken the lead in the number of URLs blocked by our web protection module. Other news South Korea is preparing a bill that will ban minors and foreigners from trading in cryptocurrencies or opening investment accounts for them within South Korea. (Source: Techspot) Security researchers have publicly disclosed an unpatched zero-day vulnerability in the firmware of AT&T DirecTV WVB kit after trying to get the device manufacturer to patch this flaw over the past few months. (Source: The Hacker News) Intel will implement a hardware lock on management engine equipped chips to defend against patch rollbacks. (Source: The Register)..
11th December 2017

A week in security (December 04 – December 10)

Last week on the blog, we looked at a RIG EK malware campaign, explored how children are being tangled up in money mule antics, took a walk through the world of Blockchain, and gave a rundown of what’s involved when securing web applications. We also laid out the trials and tribulations of the Internet of Things, advised you to be on the lookout for an urgent TeamViewer update, tore down the disguise of new Mac malware HiddenLotus, sighed at the inevitability of a Napoleon-themed piece of ransomware, and unveiled our New Mafia report. Other news Bitcoin chaos as NiceHash is compromised and thousands of Bitcoins go wandering into the void, potentially to the tune of $62m. (source: Reddit) How easy is it to make a children’s toy start swearing? This easy. (source: The Register) Chrome 63 is now available and comes with multiple security improvements and additions. (source: Chrome updates website) Phishers are slowly turning to HTTPs scam sites—but why? (source: PhishLabs) The Andromeda ..
4th December 2017

A week in security (November 27 – December 03)

Last week on Labs, we touched on a huge macOS High Sierra vulnerability, a PayPal phish, and Terror EK’s new tactic. We also took a crack at identity theft protection services, drive-by cryptomining, and rounded up interesting talks while attending a security conference in Ireland called IRISSCON. Other news Our friends at Zimperium investigated a fake WhatsApp on Google Play, and found that this app displays an advertisement of a malicious game called Cold Jewel Lines (already removed from the Play Store) that further infects users with a second malware “capable of click fraud, data extraction, and SMS surveillance.” (Source: SC Magazine) A question to parents: Should you buy your child smart toys for Christmas? Security experts say that whatever your decision is, make sure you read up on the potential risks first. (Source: Help Net Security) Facebook users, rejoice! The social media network now has a tool that tells you which posts you have liked that are mere propaganda from Russia..
27th November 2017

A week in security (November 20 – November 26)

Last week, we warned you about a new method by which the Mac malware OSX.Proton is being spread, we informed you where all those free Bitcoins you were texted about were being held up, how the EU intends to battle fake news, and how the Terdot Trojan likes social media. We also revealed our 2018 security predictions. Other news Due to zero entropy implementation of Address Space Layout Randomization (ASLR), the Windows 10 defense is ‘worthless’ and this bug dates back to Windows 8. (source: ZDNet) A new tech support scam technique streamlines the entire scam experience, leaving the potential victims only one click or tap away from speaking with a scammer. (Source: Microsoft blog) You have less than 90 days to claim your share of $586 million refund if you were scammed via (not by) Western Union. (Source: Tripwire) Firefox 59 to make it a lot harder to use data URIs in phishing attacks, as it will stop rendering them in certain scenarios. (Source: Virusbulletin blog) An increasing numb..