There has been detected a backdoor program allowing cash dispersal on automated teller machines (ATMs) in multiple countries although mostly in Russia. Security company Kaspersky reports that the program, designated Backdoor.MSIL.Tyupkin, requires physical access to the ATM system and booting it off of a CD to install the malware.
The analysis of the malware can be read in Kaspersky blog.
Thursday, October 9, 2014
Monday, October 6, 2014
ESET Global Threat Report for September 2014
ESET have published a report discussing global threats of September 2014.
TOP 10 threats list (previous ranking listed too):
1. HTML/Refresh (-)
2. WIN32/Bundpil (1.)
3. JS/Kryptik.I (2.)
4. Win32/Adware.MultiPlug (3.)
5. Win32/RiskWare.NetFilter (4.)
6. LNK/Agent.AK (5.)
7. Win32/Sality (6.)
8. HTML/Iframe (-)
9. Win32/Danger.DoubleExtension (-)
10. INF/Autorun (7.)
Complete report (with a description about each of the above listed threats) can be downloaded here (in PDF format).
TOP 10 threats list (previous ranking listed too):
1. HTML/Refresh (-)
2. WIN32/Bundpil (1.)
3. JS/Kryptik.I (2.)
4. Win32/Adware.MultiPlug (3.)
5. Win32/RiskWare.NetFilter (4.)
6. LNK/Agent.AK (5.)
7. Win32/Sality (6.)
8. HTML/Iframe (-)
9. Win32/Danger.DoubleExtension (-)
10. INF/Autorun (7.)
Complete report (with a description about each of the above listed threats) can be downloaded here (in PDF format).
Monday, September 29, 2014
Google Chrome Updated
Google have released version 37.0.2062.124 of their Chrome web browser. New version contains fixes to one security issue (CVE-2014-1568).
More information about these in Google Chrome Releases blog.
More information about these in Google Chrome Releases blog.
Friday, September 26, 2014
Mozilla Product Updates Released
Mozilla have released updates to Firefox and Seamonkey browsers and Thunderbird email client to address a critical vulnerability.
Affected products are:
- Mozilla Firefox earlier than 32.0.3
- Mozilla Firefox ESR earlier than 24.8.1 and 31.1.1
- Mozilla Thunderbird earlier than 31.1.2
- Mozilla Thunderbird earlier than 24.8.1
- SeaMonkey 2.29.1
Link to the security advisory with details about addressed security issue:
MFSA 2014-73 RSA Signature Forgery in NSS
Fresh versions can be obtained via inbuilt updater or by downloading from the product site:
Firefox
Thunderbird
Seamonkey
Affected products are:
- Mozilla Firefox earlier than 32.0.3
- Mozilla Firefox ESR earlier than 24.8.1 and 31.1.1
- Mozilla Thunderbird earlier than 31.1.2
- Mozilla Thunderbird earlier than 24.8.1
- SeaMonkey 2.29.1
Link to the security advisory with details about addressed security issue:
MFSA 2014-73 RSA Signature Forgery in NSS
Fresh versions can be obtained via inbuilt updater or by downloading from the product site:
Firefox
Thunderbird
Seamonkey
Labels:
Firefox,
Mozilla,
seamonkey,
security,
thunderbird,
update,
vulnerability
Tuesday, September 23, 2014
Symantec Intelligence Report: August 2014
Symantec have published their Intelligence report that sums up the latest threat trends for August 2014.
Report highlights:
- While there has been a general decline in ransomware threats since March 2014, the overall volume of crypto-style ransomware has increased over 700 percent since January.
- The largest data breach reported in August resulted in the exposure of 27 million identities. For the month, 31 million identities were exposed.
- The average number of spear-phishing attacks dropped to 20 per day in August, the lowest seen in the last twelve months.
The report (in PDF format) can be viewed here.
Report highlights:
- While there has been a general decline in ransomware threats since March 2014, the overall volume of crypto-style ransomware has increased over 700 percent since January.
- The largest data breach reported in August resulted in the exposure of 27 million identities. For the month, 31 million identities were exposed.
- The average number of spear-phishing attacks dropped to 20 per day in August, the lowest seen in the last twelve months.
The report (in PDF format) can be viewed here.
Tuesday, September 16, 2014
Adobe Reader And Acrobat Security Updates
Adobe have released security updates to fix some vulnerabilities in their PDF products, Adobe Reader and Adobe Acrobat. The vulnerabilities could allow an attacker to take over the affected system.
Affected versions:
*of series XI (11.x)
Adobe Reader 11.0.08 and earlier
Adobe Acrobat 11.0.08 and earlier
*of series X (10.x)
Adobe Reader 10.1.11 and earlier
Adobe Acrobat 10.1.11 and earlier
Users of vulnerable versions are instructed to update their versions either by using automatic update functionality or by downloading fresh version manually. The default installation configuration runs automatic updates on a regular schedule and can be manually activated by choosing Help > Check for Updates.
Those who want to upgrade manually, can download the latest versions of the links below:
Adobe Reader
Acrobat Standard and Pro
More information about fixed vulnerabilities can be read from Adobe's security bulletin.
Affected versions:
*of series XI (11.x)
Adobe Reader 11.0.08 and earlier
Adobe Acrobat 11.0.08 and earlier
*of series X (10.x)
Adobe Reader 10.1.11 and earlier
Adobe Acrobat 10.1.11 and earlier
Users of vulnerable versions are instructed to update their versions either by using automatic update functionality or by downloading fresh version manually. The default installation configuration runs automatic updates on a regular schedule and can be manually activated by choosing Help > Check for Updates.
Those who want to upgrade manually, can download the latest versions of the links below:
Adobe Reader
Acrobat Standard and Pro
More information about fixed vulnerabilities can be read from Adobe's security bulletin.
Labels:
acrobat,
adobe,
pdf reader,
security,
update,
vulnerability
Google Chrome Updated
Google have released version 37.0.2062.120 of their Chrome web browser. New version contains fixes to four security issues. Also, Adobe Flash has been updated.
More information about these in Google Chrome Releases blog.
More information about these in Google Chrome Releases blog.
Subscribe to:
Posts (Atom)