Remove 2014 Remove DNS Remove Ransomware Remove Surveillance
article thumbnail

Security Affairs newsletter Round 209 – News of the week

Security Affairs

DNS hijacking campaigns target Gmail, Netflix, and PayPal users. Victims of Planetary Ransomware can decrypt their files for free. Experts spotted the iOS version of the Exodus surveillance app. Emsisoft released a free decryptor for CryptoPokemon ransomware. A new round of the weekly SecurityAffairs newsletter arrived!

article thumbnail

Security Affairs newsletter Round 175 – News of the week

Security Affairs

Copyright (C) 2014-2015 Media.net Advertising FZ-LLC All Rights Reserved -->. Copyright (C) 2014 Media.net Advertising FZ-LLC All Rights Reserved -->. Pierluigi Paganini. Security Affairs – Newsletter ).

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

IT threat evolution Q3 2021

SecureList

In June, more than six months after DarkHalo had gone dark, we observed the DNS hijacking of multiple government zones of a CIS member state that allowed the attacker to redirect traffic from government mail servers to computers under their control – probably achieved by obtaining credentials to the control panel of the victims’ registrar.

Malware 86
article thumbnail

Security Affairs newsletter Round 223 – News of the week

Security Affairs

NCSC report warns of DNS Hijacking Attacks. Emsisoft released a free decryptor for the Ims00rry ransomware. DoppelPaymer, a fork of BitPaymer Ransomware, appeared in the threat landscape. Israel surveillance firm NSO group can mine data from major social media. iOS URL Scheme expose users to App-in-the-Middle attack.

article thumbnail

Security Affairs newsletter Round 221 – News of the week

Security Affairs

LooCipher: The New Infernal Ransomware. China installs a surveillance app on tourists phones while crossing in the Xinjiang. Sodin Ransomware includes exploit for Windows CVE-2018-8453 bug. Godlua backdoor, the first malware that abuses the DNS over HTTPS (DoH). Cyber Defense Magazine – July 2019 has arrived.

Scams 48
article thumbnail

Group-IB presents its annual report on global threats to stability in cyberspace

Security Affairs

While 2017 was the year of WannaCry , NotPetya , and BadRabbit ransomware epidemics, 2018 revealed a lack of preparedness for side-channel attacks and threats related to microprocessor vulnerabilities. If they manage to compromise a telecommunications company, they can then also compromise its customers for surveillance or sabotage purposes.

Banking 87
article thumbnail

Uncovering RedStinger - Undetected APT cyber operations in Eastern Europe since 2020

Malwarebytes

It contained a Russian name (redacted for privacy) followed by the DNR letters (probably Donetskaya Narodnaya Respublika, referring to one of the cities declared independent in 2014, and a known target to the group). Attackers made a great and long surveillance of this victim, which extended until Jan 2023. лидерывозрождения[.]рф)