Thursday, October 9, 2014

Cash Dispersal Enabling ATM Malware Discovered

There has been detected a backdoor program allowing cash dispersal on automated teller machines (ATMs) in multiple countries although mostly in Russia. Security company Kaspersky reports that the program, designated Backdoor.MSIL.Tyupkin, requires physical access to the ATM system and booting it off of a CD to install the malware.

The analysis of the malware can be read in Kaspersky blog.

Monday, October 6, 2014

ESET Global Threat Report for September 2014

ESET have published a report discussing global threats of September 2014.

TOP 10 threats list (previous ranking listed too):

1. HTML/Refresh (-)
2. WIN32/Bundpil (1.)
3. JS/Kryptik.I (2.)
4. Win32/Adware.MultiPlug (3.)
5. Win32/RiskWare.NetFilter (4.)
6. LNK/Agent.AK (5.)
7. Win32/Sality (6.)
8. HTML/Iframe (-)
9. Win32/Danger.DoubleExtension (-)
10. INF/Autorun (7.)


Complete report (with a description about each of the above listed threats) can be downloaded here (in PDF format).

Monday, September 29, 2014

Google Chrome Updated

Google have released version 37.0.2062.124 of their Chrome web browser. New version contains fixes to one security issue (CVE-2014-1568).

More information about these in Google Chrome Releases blog.

Friday, September 26, 2014

Mozilla Product Updates Released

Mozilla have released updates to Firefox and Seamonkey browsers and Thunderbird email client to address a critical vulnerability.

Affected products are:
- Mozilla Firefox earlier than 32.0.3
- Mozilla Firefox ESR earlier than 24.8.1 and 31.1.1
- Mozilla Thunderbird earlier than 31.1.2
- Mozilla Thunderbird earlier than 24.8.1
- SeaMonkey 2.29.1

Link to the security advisory with details about addressed security issue:
MFSA 2014-73 RSA Signature Forgery in NSS


Fresh versions can be obtained via inbuilt updater or by downloading from the product site:
Firefox
Thunderbird
Seamonkey

Tuesday, September 23, 2014

Symantec Intelligence Report: August 2014

Symantec have published their Intelligence report that sums up the latest threat trends for August 2014.

Report highlights:
- While there has been a general decline in ransomware threats since March 2014, the overall volume of crypto-style ransomware has increased over 700 percent since January.
- The largest data breach reported in August resulted in the exposure of 27 million identities. For the month, 31 million identities were exposed.
- The average number of spear-phishing attacks dropped to 20 per day in August, the lowest seen in the last twelve months.


The report (in PDF format) can be viewed here.

Tuesday, September 16, 2014

Adobe Reader And Acrobat Security Updates

Adobe have released security updates to fix some vulnerabilities in their PDF products, Adobe Reader and Adobe Acrobat. The vulnerabilities could allow an attacker to take over the affected system.

Affected versions:
*of series XI (11.x)
Adobe Reader 11.0.08 and earlier
Adobe Acrobat 11.0.08 and earlier

*of series X (10.x)
Adobe Reader 10.1.11 and earlier
Adobe Acrobat 10.1.11 and earlier


Users of vulnerable versions are instructed to update their versions either by using automatic update functionality or by downloading fresh version manually. The default installation configuration runs automatic updates on a regular schedule and can be manually activated by choosing Help > Check for Updates.

Those who want to upgrade manually, can download the latest versions of the links below:
Adobe Reader
Acrobat Standard and Pro

More information about fixed vulnerabilities can be read from Adobe's security bulletin.

Google Chrome Updated

Google have released version 37.0.2062.120 of their Chrome web browser. New version contains fixes to four security issues. Also, Adobe Flash has been updated.

More information about these in Google Chrome Releases blog.