ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login
    1. Topics
    2. Tags
    3. malware
    Log in to post
    • All categories
    • mlnewsM

      NotPetya Might Have Not Have Been an NSA Leak

      Watching Ignoring Scheduled Pinned Locked Moved News nsa malware security
      6
      0 Votes
      6 Posts
      1k Views
      stusS

      After monitoring this new outbreak for 24 hours, I came to the conclusion we were dealing with cyber warfare, and not ransomware. Two separate reports coming from Comae Technologies and Kaspersky Lab experts confirm this now.

      NotPetya is a destructive disk wiper similar to Shamoon which has been targeting Saudi Arabia in the recent past. Note that Shamoon actually deleted files, NotPetya goes about it slightly different, it does not delete any data but simply makes it unusable by locking the files and then throwing away the key. The end result is the same.

      Someone is hijacking known ransomware families and using them to attack Ukrainian computer systems. Guess who.

      You never had a chance to recover your files. There are several technical indicators that NotPetya was only made to look as ransomware as a smoke screen:

      It never bothers to generate a valid infection ID The Master File Table gets overwritten and is not recoverable The author of the original Petya also made it clear NotPetya was not his work

      This has actually happened earlier. Foreshadowing the NotPetya attack, the author of the AES-NI ransomware said in May he did not create the XData ransomware, which was also used in targeted attacks against Ukraine. Furthermore, both XData and NotPetya used the same distribution vector, the update servers of a Ukrainian accounting software maker.

      Catalin Cimpanu, the Security News Editor for Bleepingcomputer stated: "The consensus on NotPetya has shifted dramatically in the past 24 hours, and nobody would be wrong to say that NotPetya is on the same level with Stuxnet and BlackEnergy, two malware families used for political purposes and for their destructive effects. Evidence is clearly mounting that NotPetya is a cyber-weapon and not just some overly-aggressive ransomware."

      Cybersecurity has moved from tech to a CEO and Board-level business issue

      You did not sign up for this, but today it is abundantly clear that as an IT pro you are have just found yourself on the front line of 21-st century cyber war. Cybersecurity has moved from tech to a CEO and Board-level business issue. I strongly suggest you have another look at your defense-in-depth, and make sure to:

      Have weapons-grade backups
      Religiously patch
      Step users through new-school security awareness training.

    • stusS

      [ALERT] Looks Like A New Worldwide Ransomware Outbreak

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion security malware ransomware knowbe4 knowbe4 blog windows patching zero day
      2
      3 Votes
      2 Posts
      1k Views
      DanpD

      @stus Thanks. Was just reading about it here.

    • mlnewsM

      CheckPoint Claims Recent Discovery of Old Malware

      Watching Ignoring Scheduled Pinned Locked Moved News checkpoint microsoft malware trojan fireball ars technica
      1
      1 Votes
      1 Posts
      751 Views
      No one has replied
    • mlnewsM

      PowerPoint Hovering Attack

      Watching Ignoring Scheduled Pinned Locked Moved News powerpoint security trojan softpedia malware
      3
      0 Votes
      3 Posts
      1k Views
      scottalanmillerS

      @EddieJennings said in PowerPoint Hovering Attack:

      @mlnews Looks like the tl;dr is don't enable content unless you're 100% sure of the source.

      Or download it. Or open it....

    • scottalanmillerS

      Patch Fast

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion article scott alan miller patching smbitjournal malware security ransomware
      14
      6 Votes
      14 Posts
      3k Views
      scottalanmillerS

      Never used this but take a look...

      http://www.smikar.com/

    • mlnewsM

      Telefonica Hit with Ransomware

      Watching Ignoring Scheduled Pinned Locked Moved News malware security ransomware bleeping computer
      17
      3 Votes
      17 Posts
      3k Views
      scottalanmillerS

      I mean I know it all sucks and it would be awesome if all the right people got all the right info and took all the right actions. but they don't and won't. So we need to push everyone that we can to do what they can. It's just what we have to work with.

    • mlnewsM

      IBM Accidentally Shipped USB Sticks with Malware to Storwize Customers

      Watching Ignoring Scheduled Pinned Locked Moved News ibm storwize malware security el reg
      1
      2 Votes
      1 Posts
      947 Views
      No one has replied
    • mlnewsM

      CIA Hacking Tools Identified in the Wild

      Watching Ignoring Scheduled Pinned Locked Moved News cia security malware wikileaks vault7 ars technica
      2
      1 Votes
      2 Posts
      854 Views
      Reid CooperR

      Someone in the CIA is busy explaining to some congressional sponsors how their "no one will ever know it was us" isn't going as planned.

    • mlnewsM

      MS Word Zero Day Bug Puts Essentially All Windows Systems at Risk

      Watching Ignoring Scheduled Pinned Locked Moved News word windows malware zero day ars technica
      12
      3 Votes
      12 Posts
      2k Views
      DustinB3403D

      @travisdh1 No, yeah that's a good point.

      Just didn't think about it like that.

    • mlnewsM

      Wikileaks Publishes Details of the CIA's Grasshopper Windows Malware Maker

      Watching Ignoring Scheduled Pinned Locked Moved News cia malware grasshopper ars technica wikileaks
      1
      1 Votes
      1 Posts
      749 Views
      No one has replied
    • mlnewsM

      WikiLeaks Releases CIA Malware Codebase

      Watching Ignoring Scheduled Pinned Locked Moved News wikileaks marble malware virus cia security
      1
      2 Votes
      1 Posts
      835 Views
      No one has replied
    • AmbarishrhA

      virus cleanup-advise needed

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion virus malware
      12
      0 Votes
      12 Posts
      2k Views
      scottalanmillerS

      @Ambarishrh said in virus cleanup-advise needed:

      Can webroot help me here, thinking of using webroot and see if it can clean

      Maybe. Anything "might" work. But you'll never know.

    • DanpD

      DNSMessenger malware

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion dnsmessenger malware
      9
      1 Votes
      9 Posts
      1k Views
      JaredBuschJ

      @Dashrender said in DNSMessenger malware:

      That's all fine and dandy my point was that this hack is currently worthless on its own it requires a previous hack in order to make this one work

      The point is not how the infection was started. The point is that the infection itself is completely fileless. Never writing data to the disk.

      There are multitudes of ways into a Windows system that an attacker could use to execute the initial code.

    • mlnewsM

      Database Ransom Attacks Now Include Hadoop and CouchDB

      Watching Ignoring Scheduled Pinned Locked Moved News security couchdb hadoop malware ransomware hacking windows it pro
      2
      2 Votes
      2 Posts
      1k Views
      scottalanmillerS

      0_1485431142097_fdyhfr-meme-generator-hide-yo-kids-hide-yo-wife-5dc51d.png

    • stusS

      [ALERT] Yikes, A New And Scary Double-Ransomware Whammy.

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion ransim ransomware security malware knowbe4
      2
      4 Votes
      2 Posts
      1k Views
      scottalanmillerS

      Wow, that IS a scary one.

    • mlnewsM

      Why Advanced Ransomeware Is Cybercrimes Most Profitable Business Model

      Watching Ignoring Scheduled Pinned Locked Moved News knowbe4 knowbe4 blog ransomware malware cybercrime security
      1
      3 Votes
      1 Posts
      860 Views
      No one has replied
    • mlnewsM

      New Version Of Nymaim Malware Targets High-Level Managers

      Watching Ignoring Scheduled Pinned Locked Moved News knowbe4 security malware ransomware trojan
      1
      4 Votes
      1 Posts
      907 Views
      No one has replied
    • nadnerBN

      Lenovo Yoga 900 BIOS Update Allows Linux Installation

      Watching Ignoring Scheduled Pinned Locked Moved Water Closet lenovo linux malware yoga
      1
      2 Votes
      1 Posts
      684 Views
      No one has replied
    • steveS

      Nic Tolstoshev: Webroot on Security 2016

      Watching Ignoring Scheduled Pinned Locked Moved MangoCon webroot nic tolstoshev security antivirus malware youtube
      1
      2 Votes
      1 Posts
      832 Views
      No one has replied
    • scottalanmillerS

      Non-IT High Level Survey of Famous Malware

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion malware scishow security
      3
      4 Votes
      3 Posts
      918 Views
      scottalanmillerS

      It's quite a good show, I watch it often. Good place for science news.

    • 1
    • 2
    • 3
    • 4
    • 2 / 4