Tag: Malwarebytes Labs

Ransomware in December 2022

Categories: Threat Intelligence Our Threat Intelligence team looks at known ransomware attacks by gang, country, and industry sector in December 2022, and looks at why LockBit had to make a public apology (Read more…) The post Ransomware in December 2022…

How to protect your business from supply chain attacks

Categories: Business Categories: News Many have been calling attention to supply chain attacks for years. Is your business ready to listen? (Read more…) The post How to protect your business from supply chain attacks appeared first on Malwarebytes Labs. This…

New data wipers deployed against Ukraine

Categories: News Tags: Data wipers Tags: Sandworm Tags: Ukraine Tags: Ukrinform CERT-UA says the Russian Sandworm group deployed data wipers against Ukrinform, Ukraine’s national news agency. (Read more…) The post New data wipers deployed against Ukraine appeared first on Malwarebytes…

Update your LearnPress plugins now!

Categories: News Tags: wordpress Tags: learnpress Tags: vulnerability Tags: SQL Tags: injection Tags: update Tags: fix Tags: plugin Tags: patch We take a look at reports of a WordPress plugin issue. It’s been fixed, but you may need to update!…

Hive! Hive! Hive! Ransomware site submerged by FBI

Categories: News Categories: Ransomware Tags: DoJ Tags: FBI Tags: Europol Tags: HIve Tags: ransomware Tags: RDP Tags: Patch management Tags: Vulnerability Tags: phishing The DoJ, FBI, and Europol have released details about a months-long international disruption campaign against the Hive…

What happened in privacy in 2022

In 2022, privacy was upended for millions of people. Here are the biggest stories from last year. (Read more…) The post What happened in privacy in 2022 appeared first on Malwarebytes Labs. This article has been indexed from Malwarebytes Labs…

WhatsApp hijackers take over your account while you sleep

Categories: News Tags: WhatsApp Tags: Zuk Tags: @ihackbanme Tags: voicemail attack Tags: WhatsApp hack There’s an easy way to protect yourself. Here’s how. (Read more…) The post WhatsApp hijackers take over your account while you sleep appeared first on Malwarebytes…

CISA releases advice on how to safeguard K–12 organizations

Categories: Business Categories: News Tags: K-12 Tags: CISA Tags: NIST Tags: CSF Tags: CPG CISA’s released a report with recommendations on how to safeguard K–12 organizations from cybersecurity threats. (Read more…) The post CISA releases advice on how to safeguard…

Consumer privacy and social media

Categories: News Categories: Privacy Tags: Social media Tags: privacy Tags: policies Tags: fines Tags: legislation Tags: scraping Tags: advertising Social media platforms are making a lot of money with targeted advertising. To improve the targeting, they want us much of…

Riot Games compromised, new releases and patches halted

Categories: News Tags: Riot Games Tags: valorant Tags: league of legends Tags: compromise Tags: development Tags: patch Tags: patching Tags: update Riot Games has revealed that it has been compromised after a social engineering attack. (Read more…) The post Riot…

What privacy can get you

Categories: News Categories: Privacy For this year’s Data Privacy Day (and Data Privacy Week), we’re offering the most convenient advantages and benefits of privacy. (Read more…) The post What privacy can get you appeared first on Malwarebytes Labs. This article…

A week in security (January 16—22)

Categories: News Tags: Google Tags: Rust Tags: Chromium Tags: Mailchimp Tags: SweepWizard Tags: bossware Tags: TikTok Tags: surveillance firm Tags: Voyager Labs Tags: TracketPacer Tags: Facebook Tags: Instagram Tags: Vice Society Tags: Liquor Control Board of Ontario Tags: Zoho ManageEngine…

Ransomware revenue significantly down over 2022

Categories: News Categories: Ransomware Tags: ransomware Tags: revenue Tags: attacks Tags: negotiators Tags: back-ups Tags: restore Tags: Continental According to blockchain data platform Chainanalysis, ransomware revenue plummeted significantly in 2022 due to a growing unwillingness to pay. (Read more…) The…

4 ways to protect your privacy while scrolling

Categories: News Categories: Privacy Tags: Privacy Tags: browser Tags: VPN Tags: BrowserGuard For every level of privacy awareness, there are layers you can use to protect yourself. Here are four suggestions. (Read more…) The post 4 ways to protect your…

Ransomware money laundering operation disrupted, founder arrested

Categories: News Categories: Ransomware Tags: Cryptocurrency exchange Tags: Bitzlato Tags: Conti Tags: ransomware Tags: Hydra Tags: dark web marketplace The China-based cryptocurrency exchange Bitzlato is accused of processing over $700 million of illicit funds. (Read more…) The post Ransomware money…

Mailchimp breach feels like deja vu

Categories: News Tags: Mailchimp Tags: social engineering Tags: targete attack Email marketing provider Mailchimp has been breached again, nine months after it was compromised last year. (Read more…) The post Mailchimp breach feels like deja vu appeared first on Malwarebytes…

Google sponsored ads lead to rogue imitation sites

Categories: News Tags: google Tags: ads Tags: advert Tags: paid Tags: sponsored Tags: result Tags: listing Tags: rogue Tags: malware Tags: NFT Tags: phish Tags: phishing Tags: data theft Tags: infostealer We take a look at a flurry of reports…

LastPass users should move their crypto funds, experts warn

Categories: News Tags: LastPass Tags: breach Tags: cryptocurrency Tags: unencrypted data Tags: vault Tags: secret key Tags: lawsuit Experts are warning LastPass users to move their crypto funds since there are plenty of indications that the breach is actively being…

Update now! Two critical flaws in Git’s code found, patched

CVE-2022-23521 and CVE-2022-41903 are critical flaws present in Git’s code. Thankfully, they’ve been addressed in its latest version. (Read more…) The post Update now! Two critical flaws in Git’s code found, patched appeared first on Malwarebytes Labs. This article has…

A week in security (January 9—15)

Categories: News Tags: AWIS Tags: weekly blog roundup Tags: week in security Tags: Slack Tags: GitHub Tags: Magecart Tags: Microsoft Tags: Pokemon NFT Tags: Facebook Tags: Instagram Tags: Snapchat Tags: TikTok Tags: YouTube Tags: Google Tags: Meta Tags: identity theft…

Google to support the use of Rust in Chromium

Categories: News Tags: Google Tags: Chromium Tags: Rust Tags: memory safety Tags: rule of two Google has announced that it will support the use of third-party Rust libraries in Chromium which is a step forward in memory safety for the…

Law enforcement app SweepWizard leaks data on crime suspects

Categories: News Tags: Erik McCauley Tags: SweetWizard Tags: law enforcement app Tags: ODIN Intelligence Tags: Wired SweepWizard, an app designed to assist law enforcement is causing a bit of trouble, was found inadvertently leaking sweeping data for years. (Read more…)…

TikTok dances to the tune of $5.4m cookie fine

Categories: News Tags: tiktok Tags: fine Tags: cookie Tags: consent Tags: opt out Tags: France Tags: CNIL We take a look at the latest fine hitting a social media network, this time over the issue of cookie consent. (Read more…)…

Multiple schools hit by Vice Society ransomware attack

Categories: News Tags: ransomware Tags: high society Tags: compromise Tags: school Tags: schools Tags: learning Tags: documents Tags: data Tags: leak We take a look at reports of 14 schools being compromised by ransomware group Vice Society. (Read more…) The…

Timely patching is good, but sometimes it’s not enough

Categories: News Categories: Ransomware Tags: Lorenz Tags: ransomware Tags: CVE-2022-29499 Tags: Mitel Tags: backdoor Tags: web shell A recent case-study showed once again that timely patching is important, but it’s not a silver bullet for stopping ransomware. (Read more…) The…

5 must-haves for K-12 cybersecurity

Categories: Business Over the years, cyberattacks on K-12 schools and districts have steadily increased and in 2022 that trend only continued. In this post, we’ll look at the 5 must-haves for K-12 cybersecurity. (Read more…) The post 5 must-haves for…

Cyberattack halts Royal Mail’s overseas post

Categories: News Tags: royal mail Tags: cyber attack Tags: post Tags: disruption We take a look at reports that Royal Mail is experiencing severe issues due to an unnamed cyberattack. (Read more…) The post Cyberattack halts Royal Mail’s overseas post…

Pokemon NFT card game malware chooses you

Categories: News Tags: pokemon Tags: NFT Tags: scam Tags: fake Tags: malware Tags: remote connection Tags: card game We take a look at reports of a set of fake Pokemon sites offering up a bogus NFT card game which actually…

A week in security (January 1 – 8)

Categories: News Tags: Lock and Code S04E01 Tags: LastPass breach Tags: Okta breach Tags: VPN Tags: Synology Tags: fake Flipper Zero Tags: cyber insurance Tags: WordPress plugin Tags: Twitter data dump Tags: Twitter The most interesting security related news from…

Slack private code on GitHub stolen

Categories: News Tags: Slack Tags: GitHub Tags: data breach Tags: Slack breach Tags: compromised tokens Stolen employee tokens gave an attacker access to Slack’s private code repositories. (Read more…) The post Slack private code on GitHub stolen appeared first on…

Security vulnerabilities in major car brands revealed

Categories: News Tags: car Tags: vehicle Tags: exploit Tags: single sign on Tags: vulnerable Tags: kia Tags: honda Tags: infiniti Tags: nissan Tags: acura Tags: mercedes-benz Tags: hyundai Tags: genesis Tags: bmw Tags: rolls royce Tags: ferrari Tags: spireon Tags:…

Malware targets 30 unpatched WordPress plugins

Categories: News Tags: WordPress Tags: exploit Tags: vulnerability Tags: plugin Tags: theme Tags: update Tags: linux malware Tags: backdoor It’s time to check your website is up to date. (Read more…) The post Malware targets 30 unpatched WordPress plugins appeared…

LA housing authority is latest LockBit ransomware victim

Categories: News Categories: Ransomware Tags: LockBit Tags: LockBit ransomware Tags: ransomware Tags: Housing Authority of the City of Los Angeles Tags: HACLA Tags: opportunistic attack In an incident still under investigation, the Housing Authority of the City of Los Angeles…

Google patches 60 vulnerabilities in first Android update of 2023

Categories: Android Categories: News Tags: 2023-01-01 Tags: 2023-01-05 Tags: Google Tags: Android Tags: CVE-2022-42719 Tags: CVE-2022-42720 Tags: CVE-2022-42721 Tags: mac80211 Tags: CVE-2022-41674 Tags: Qualcomm Tags: CVE-2022-22088 Google has published its first security bulletin of 2023 with details of vulnerabilities affecting…

Fake Flipper Zero websites look to cause a big splash

Categories: News Tags: flipper zero Tags: fake Tags: scam Tags: phish Tags: portal Tags: social media Tags: twitter Tags: shop Tags: sale Tags: sold out Tags: pentest Tags: pentesting Tags: hardware Tags: enthusiast Tags: technology We take a look at…

FBI warns of imposter ads in search results

Categories: News Tags: FBI Tags: ad Tags: ads Tags: advert Tags: paid Tags: sponsored Tags: search engine Tags: results Tags: fake Tags: download Tags: phish Tags: phishing Tags: malware The FBI has issued a warning about criminals impersonating brands in…

Okta breached last month, no customers compromised

Categories: News Tags: Okta Tags: GitHub Tags: Auth0 Okta’s code repository on GitHub has been accessed by an unauthorized third party, but there’s no reason for customers to worry (Read more…) The post Okta breached last month, no customers compromised…