article thumbnail

Stolen Nvidia certificates used to sign malware—here’s what to do

Malwarebytes

This creates a “chain of trust” between a signature on a piece of software and a CA—like DigiCert or Let’s Encrypt—that operating systems trust. The two leaked Nvidia certificates have expired, being valid from 2011 to 2014 and 2015 to 2018. An expired certificate (the valid to date is 2014).

Malware 101
article thumbnail

Dissecting the malicious arsenal of the Makop ransomware gang

Security Affairs

Their operations are based on the human operator ransomware practice where most of the intrusion is handled by hands-on keyboard criminals, even in the encryption stage. He is a former member of the ANeSeC CTF team, one of the firsts Italian cyber wargame teams born back in 2011.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Updates from the MaaS: new threats delivered through NullMixer

Security Affairs

The Originating Malvertising Campaign According to CTI investigation on the adversary infrastructure, we were able to identify an ongoing campaign luring system administrators to install the malicious code into their machines. He is a former member of the ANeSeC CTF team, one of the firsts Italian cyber wargame teams born back in 2011.

Malware 81
article thumbnail

Happy 10th anniversary & Kali's story.so far

Kali Linux

It was not until May 2011 that the next major version of BackTrack got released, which also happens to be the last, BackTrack 5. Being a system administrator, a patch could contain a security update to stop a vulnerability. Things were not as stable as when it was first released. This gave three years of support from upstream.

InfoSec 52