Monday, 9 October 2017

WordPress Sites Vulnerable By Leak Into Postman SMTP Plug-In



Over 100,000 WordPress sites are vulnerable due to a vulnerability in the Postman SMTP plug-in, and a developer security update is not yet available. Postman is an SMTP mailer that helps send emails generated by the WordPress site.

The plug-in is vulnerable to reflected cross-site scripting, which allows an attacker to steal the content of cookies from, for example, the administrator, according to security company White Fir. Due to the unpatched vulnerability, WordPress decided to remove the plug-in from the database with available plug-ins on WordPress.org . Meanwhile, GitHub has published a patched version of Postman, but it has not been developed by the original author. The original developer would have been informed about the problem.

Tuesday, 3 October 2017

Personal Cyber Security



Rubica, the Answer to your Personal Cyber Security

Cyber security has become one of the major concerns around the globe especially given the increased number of operations relying on digital networking. There are numerous cyber related crimes that major organizations face every day hence the necessity for personal cyber security. Companies are currently spending billions of dollars trying to deal with the problems of cyber security. However, with a reliable personal cyber security provider like Rubica, you will be able to enjoy among the most reliable and most effective solutions to any cyber threat against your systems.

Rubica is a company that provides other organizations with the opportunity to strengthen their personal cyber security with the help of human intelligence. With Rubica, you are sure that your personal data is protected against all forms of online threats and your systems’ security enhanced to withstand common attacks. The main aim of Rubica is to help you be at peace with your digital operations through enhanced cyber security.

Rubica uses an app that you can install in your system. The firm also boasts of highly qualified and reliable experts that analyze and assess your system for any malicious activity. Once a digital security issue has been detected, the Rubica experts work towards neutralizing it for your safety and security. You can trust these experts because they comprise of a team of US Navy, Scotland Yard, and NSA who are fully trained to deal with all aspects of cyber security.

The reliance of major organizations on Rubica to help solve their cyber security fears has been enhanced by its 10-year experience in active, real-time, and personal analysis. The company uses its software and human intelligence to analyze the personal behavior sequence of each client.

For efficiency in promoting cyber security, Rubica has collaborated with multiple parties that include insurance companies, financial organizations, and legal consultants, among other relevant agencies. Rubica does this to promote cyber security education to its customers as well as the different communities from where the firm operates as a way of creating awareness about personal cyber security.

It is important to acknowledge that the impact of threats to personal cyber security has a way of affecting different economies and societies. For instance, the cyber-attack on Ukraine that eventually caught up with the rest of the world. This cyberattack affected major financial institutions forcing them to shut down all their computing and digital systems. Rubica could employ its expertise in such instances to enhance personal cyber security since all suspicious activities are identifiable before they can harm the targeted systems.

Wednesday, 5 July 2017

Developer Medoc Confirms Backdoor In Update



Ukrainian software company tax and accounting Medoc develops confirmed that attackers malicious code added to an update allowing the Petya-ransomware is installed. Initially the company denied even attackers had used the company's software to install Petya-ransomware. On Facebook , the company has been now confirms that the victim of a hack.

Previously, researchers at antivirus company ESET discovered attackers had added a backdoor on an update for Medoc which was released on June 22. The software company announced that it has developed an update that should fix the problem. The servers of the software have been seized by the police, so the update that addresses the issues and to prevent new attacks still can not be rolled. Ukrainian Police advise on Facebook to use non Medoc temporary and computers it is installed to disconnect from the network.

Test: Ten Tested Virus Scanners For MacOS



German test lab AV-Test has a new test virus put online, this time for anti-virus software for MacOS looked. The amount of new malware for MacOS is not commensurate with those for Windows. However, last year there was an increase in visible , of 819 new units in 2015 to 3033 in 2016.

Most infections MacOS is still doing for social engineering, in which users are tricked into installing malware, although some cases are known where attackers managed to add malware to legitimate programs. That there is little malware for MacOS in circulation is evident from the number of copies that malware-AV-Test used for the test. The lab works on Windows with tens of thousands of malware specimens. 184 specimens were used for the test with Mac malware.

Four products (Bitdefender, Intego, Symantec and Kaspersky Lab) were able to detect all malware instances. MacKeeper ends with a score of 85.9 percent down. Besides the detection was also the tax system looked when copying files. Then put Canimaan Software and MacKeeper down the best performance, followed by Kaspersky Lab and Symantec with one second difference. Intego slows the most systems. Finally, we looked at the false positives. In this case considers a virus if infected legitimate, clean files. During this test item was no virus in error.

Attackers Behind Petya-Ransomware Emptying Bitcoin Wallet


The attackers behind Petya-ransomware have 9,000 euros paid by victims transferred to another bitcoin wallet. That leaves Aleks Gostev on Twitter know, chief security expert at anti-virus firm Kaspersky Lab. The ransomware which last Tuesday infected several organizations showed users see a screen where they were instructed to make about $ 300 to the specified bitcoin wallet.

Unlike many other ransomware became for all victims the same bitcoin wallet used. Last night decided the attackers 9,000 victims who had paid to worry about another wallet. In addition, there appeared on Pastebin message that bitcoin 100 (225 000 euro) were asked for the decryption key to decrypt all infected systems by Petya.

However, it is unclear whether the persons who placed the Pastebin message also behind the Petya-ransomware. According to researcher Matt Suiche attackers try to confuse the public by the story Petya actually a wiper which data could again turn into a story about ransomware, let him opposite Vice Magazine know.

Cyber Security Council Wants More Companies To Be Notified Of Cyber Attack


The Cyber Security Council, the advisory body of the Cabinet when it comes to cyber security, wants more companies to be notified of a cyber attack, rather than just the vital sectors. According to Ron Moss, a member of the Council, the loss of Petya attack could have been less if companies such as APM Terminals and parcel TNT were warned before, let it faces BNR know.

In the case of the Petya-ransomware though there were no signs or information that the attack would take place, and the news was known until the outbreak had occurred. "If the attacks take place, then the damage is already done, then there is not much point to inform," said Ronald Prins of security firm Fox-IT. He points to the outbreak of the WannaCry-ransomware, which spread very rapidly. "And so there was no warning as possible."

D66 MP Kees Verhoeven endorses the opinion of the Cyber ​​Security Council and wants the government will implement it. "There could be considered a National Computer Emergency Response Team. A team which companies can exchange knowledge and information about cyber attacks." According to Verhoeven should be informed on the one hand on attacks and malware, but companies have on the other hand are structurally better prepared. "This is largely the responsibility of the companies themselves, but the government can play a supporting role. We have the National Cyber ​​Security Center. The infrastructure to do it so, but apparently works not yet."

Update


The opinion of the Cyber Security Council has now been published online ( pdf ). It calls for a nationwide system of information centers for information exchange covering all Dutch businesses. In addition, suppliers must of internet products and services have an active stance when it comes to offering safe products and have to do the simple declaration to cybercrime to the police.

Fourth Largest South Korean Bitcoin Stock Exchange Bithumb Hacked



Attackers have hacked the fourth largest South Korean bitcoin stock exchange Bithumb and data and money of users stolen. Bithumb is one of the largest exchanges where digital currency bitcoin and ethereum traded. The attackers were able to access the personal information of nearly 32,000 Bithumb users, including names, mobile phone numbers and email addresses, so let know Brave New Coin.

According to the exhibition is about three percent of the customers. Let customers know that converted stolen millions of euros to digital currency, but Bithumb suggests that the attackers had no direct access to client funds. According to the fair, the attackers managed to penetrate through the computer of an employee. The attackers would then use the stolen personal information to calling customers and to steal additional information which transactions could be carried out.

Bithumb discovered the data breach on June 29 and alerted the authorities on 30 June. More than 100 Bithumb users have been reported to the South Korean police. The exchange said the victims of the data breach will pay a fee of the equivalent of 76 euros. Users who have suffered Further damages will be compensated for as soon as the amount is confirmed, so notify South Korean media.

Friday, 21 April 2017

Cybercriminals Use NSA Exploits To Attack Servers


Cyber criminals are currently actively using the NSA exploits last week by the hacker group Shadow Brokers were made public to provide servers backdoors and possibly spreading ransomware. Let know several security researchers.

Thus Double Pulsar tool found on the various servers. The NSA would use this tool after it has been through an exploit access to a server. In addition, security reports SenseCy that there is currently a "trend" going where the leaked NSA exploits used to infect Windows Servers with ransomware. The attackers were using either a vulnerability in Windows SMB Server make that Microsoft patched in March.

Further details are not given, however, about this ransomware attacks. Earlier researcher Kevin Beaumont predicted that the NSA exploits a ransomware worm would be used. "It's the next logical step yields for worms and criminals, because the money and is easy to do," says the researcher. Beaumont says that if known exploits are currently being used to servers a backdoor provide.

Thursday, 5 May 2016

Stolen Passwords 272 Million Email Accounts Found


An American security company claims to have discovered the stolen usernames and passwords of 272 million email accounts. A large part relates to accounts of Russian mail service Mail.ru, let the company hold Security across news agency Reuters to know.

How the data is not stated precisely captured. According to Alex Holden Security Hold the stolen credentials were offered a forum for cyber criminals. He managed to get the data and verified. It turned out to be nearly 57 million Mail.ru accounts, 40 million Yahoo accounts, Microsoft 33 million accounts and nearly 24 million Gmail accounts and hundreds of thousands accounts of Chinese and German email providers.

Mail.ru, in response to the discovery launched an investigation to see which users are affected, to warn subsequently. A preliminary audit showed that did not work the leaked usernames and passwords.

Humble Bundle Offers Collection Of Books On Hacking


Humble Bundle , a platform that offers all kinds of games and books at low prices, now offers a bundle of different hacking books too. It is about 13 DRM-free books from No Starch Press with a value of $ 366. The asking price of Humble Bundle is partly determined by users.

For the first four books may include users decide what they want to pay. For the next five books must be paid at least $ 14.75. The last four books going away for at least 15 dollars. Users may also pay more. A portion of the proceeds going to charity. Also, users can choose how their money is split between the publisher and the charity.

The books are by different authors and deal with practical malware analysis, programming in Python, Designing BSD Rootkits, bitcoin, working with the Arduino and Raspberry Pi, hacking the Xbox and use the Linux command line. Meanwhile, there are 45,000 book bundles sold. The campaign will run until 11 May.

German Government Launches Test Plan For Security Routers


In order to ensure that routers that individuals and small businesses purchase are safe, the Bundesamtes für Sicherheit in der Informationstechnik (BSI), part of the German Ministry of the Interior, today a comprehensive test plan ( pdf ) launched broadband routers.

The test plan, especially for Internet service providers and manufacturers intended, which describes a secure router to meet.In this way, potential buyers can more easily compare models in the field of security with each other. According to the BSI, the security of a router, an important factor when choosing a particular manufacturer or type. The German federal government has recently abolished the so-called router obligation. Thereby German internet users can choose yourself which soon modem and router that they want to use their broadband connection.

"Routers are a central part in the digitalization and networking. They are the heart of the home network, but protect at the same time against Internet threats. The abolition of the router obligation have internet August this this year more choice in choosing their router. users should make use of this by looking at the safety when choosing a router, "said Arne Schönbohm, head of the BSI.

In the test plan different parts are discussed, such as the presence of security measures. Thus, each router must sort the BSI have a firewall and there should be no default port forwarding enabled. In addition, made several recommendations, such as the presence of an automatic update feature. Furthermore, the test plan contains examples of common vulnerabilities and attack scenarios.

UK Hospitals Receive 230,000 Euro Fine For Data Leak


A collective of UK hospitals has been fined more than 230,000 euros since it had placed the private information of staff inadvertently on its website. It was the national insurance number, date of birth, religion and sexual orientation of 6,500 employees.

The collective discovered the data breach after 10 months and had another 5 months to inform the affected employees. The information was provided voluntarily by the staff, so that collectively an annual overview of diversity and equality could publish within hospitals. The spreadsheets were found to contain hidden data simply became visible by double-clicking on a table. Because of the data breach, the UK data protection authority ICO now fined 185,000 pounds (the equivalent of more than 230,000 euros).