Tenda Router Zero-Days Emerge in Spyware Botnet Campaign

A variant of the Mirai botnet, called Ttint, has added espionage capabilities to complement its denial-of-service functions. Source: Threadpost

Video-Game Piracy Group ‘Team Xecuter’ Leaders in Custody

The two alleged leaders of Team Xecuter targeted popular consoles like the Nintendo Switch, the Sony PlayStation Classic and Microsoft Xbox. Source: Threadpost

MosaicRegressor: Lurking in the Shadows of UEFI

 Part II. Technical details (PDF) UEFI (or Unified Extensible Firmware Interface) has become a prominent technology that is embedded within designated chips on modern day computer systems. Replacing the legacy BIOS, it...

Egregor Ransomware Threatens ‘Mass-Media’ Release of Corporate Data

The newly discovered ransomware is hitting companies worldwide, including the GEFCO global logistics company. Source: Threadpost

Voter Registration ‘Error’ Phish Hits During U.S. Election Frenzy

Phishing emails tell recipients that their voter's registration applications are incomplete - but instead steal their social security numbers, license data and more. Source: Threadpost

Account Takeover Fraud Losses Total Billions Across Online Retailers

Account takeover fraud (ATO) attacks are on the rise, up nearly 300 percent since last year. Source: Threadpost

Researchers Mixed on Sanctions for Ransomware Negotiators

Financial institutions, cyber-insurance firms, and security firms have all been put on notice by the U.S. Department of the Treasury. Source: Threadpost

LatAm Banking Trojans Collaborate in Never-Before-Seen Effort

Eleven different malware families are coordinating on distribution, features, geo-targeting and more. Source: Threadpost

Years-Long ‘SilentFade’ Attack Drained Facebook Victims of $4M

Facebook detailed an ad-fraud cyberattack that's been ongoing since 2016, stealing Facebook credentials and browser cookies. Source: Threadpost

305 CVEs and Counting: Bug-Hunting Stories From a Security Engineer

Larry Cashdollar, senior security response engineer at Akamai, talks about the craziest stories he's faced, reporting CVEs since 1994. Source: Threadpost
- Advertisement -

APLICATIONS

‘Tortilla’ Wraps Exchange Servers in ProxyShell Attacks

The Microsoft Exchange ProxyShell vulnerabilities are being exploited yet again for ransomware, this time with Babuk from the new "Tortilla" threat actor. Source: Threadpost