Menu

Blog

Archive for the ‘cybercrime/malcode’ category: Page 125

Apr 24, 2021

Now for AI’s Latest Trick: Writing Computer Code

Posted by in categories: cybercrime/malcode, information science, robotics/AI, transportation

Advances in machine learning have made it possible to automate a growing array of coding tasks, from auto-completing segments of code and fine tuning algorithms… See More.


Programs such as GPT-3 can compose convincing text. Some people are using the tool to automate software development and hunt for bugs.

Apr 24, 2021

Martin Rees and Frederick Lamb on humanity’s fate

Posted by in categories: alien life, cybercrime/malcode, evolution, military

Rees explained how his astronomy background meshes with his concern for humanity’s fate:

People often ask does being an astronomer have any effect on one’s attitude toward these things. I think it does in a way, because it makes us aware of the long-range future. We’re aware that it’s taken about 4 billion years for life to evolve from simple beginnings to our biosphere of which we are a part, but we also know that the sun is less than halfway through its life and the universe may go on forever. So we are not the culmination of evolution. Post-humans are going to have far longer to evolve. We can’t conceive what they’d be like, but if life is a rarity in the universe, then, of course, the stakes are very high if we snuff things out this century.

Bottom line: From nuclear weapons to biowarfare to cyberattacks, humanity has much to overcome. Martin Rees and Frederick Lamb discuss the obstacles we face as we look forward to humanity’s future on Earth.

Apr 23, 2021

Prometei Botnet Exploiting Unpatched Microsoft Exchange Servers

Posted by in categories: cryptocurrencies, cybercrime/malcode

Attackers are exploiting the ProxyLogon Microsoft Exchange Server flaws to co-opt vulnerable machines to a cryptocurrency botnet named Prometei, according to new research.

“Prometei exploits the recently disclosed Microsoft Exchange vulnerabilities associated with the HAFNIUM attacks to penetrate the network for malware deployment, credential harvesting and more,” Boston-based cybersecurity firm Cybereason said in an analysis summarizing its findings.

First documented by Cisco Talos in July 2020, Prometei is a multi-modular botnet, with the actor behind the operation employing a wide range of specially-crafted tools and known exploits such as EternalBlue and BlueKeep to harvest credentials, laterally propagate across the network and “increase the amount of systems participating in its Monero-mining pool.”

Apr 23, 2021

Hackers Exploit VPN to Deploy SUPERNOVA malware on SolarWinds Orion

Posted by in categories: cosmology, cybercrime/malcode

On an incident response engagement, CISA found that cybercriminals exploited VPN flaws to acquire access and deploy Supernova malware on SolarWinds.

Apr 23, 2021

Phishing message sent from Twitter? The platform confirms massive error

Posted by in categories: business, cybercrime/malcode

An unprecedented event occurred a few hours ago when, by mistake, thousands of users received an email from Twitter requesting users to confirm their accounts, giving the impression of being a massive phishing attack. This incident, which began around 10:00 PM on Thursday, impacted individual and business accounts alike.

The subject line of these messages only mentioned the phrase “Confirm your Twitter account”, and included a button to complete the action. While these messages seemed legitimate, the cybersecurity community soon began to question their provenance and intentions, as this clearly seemed like a simple but effective phishing attack.

Continue reading “Phishing message sent from Twitter? The platform confirms massive error” »

Apr 23, 2021

Hackers use email phishing campaign to deploy multiple variants of Trojans

Posted by in categories: cybercrime/malcode, government, law

A new phishing campaign targets specific targets by trying to distribute various remote access Trojan (RAT) variants. According to Cisco Talos Intelligence researchers, this hacking campaign was identified as “Fajan” and could be being operated from an Arabic-speaking country.

Experts believe this campaign would have started in early March, starting with a commitment to “low-profile” targets to determine whether malware samples were properly distributed or some debugging process was needed.

Continue reading “Hackers use email phishing campaign to deploy multiple variants of Trojans” »

Apr 23, 2021

Giant Android botnet compromise thousands of Internet TV users

Posted by in categories: cybercrime/malcode, mobile phones, robotics/AI

Human Security cybersecurity specialists reveal the finding of a massive botnet made up of compromised Android devices. This malicious operation, identified as Pareto, would aim to conduct advertising fraud related to payment connected television (CTV) services and would so far be made up of about one million infected devices.

As you will recall, the term botnet refers to a network of computer systems committed to a specific malware variant, executed autonomously and automatically and under remote control by attack operators.

Continue reading “Giant Android botnet compromise thousands of Internet TV users” »

Apr 23, 2021

More than 1 million admin credentials to access Windows RDP servers for sale on dark web hacking forum

Posted by in category: cybercrime/malcode

A recent security report mentions that a dark web leak containing access keys has been published to more than 1.3 million Windows Remote Desktop servers. This is a clear indication of the scope of cybercrime and could even be binding on other incidents of which cybersecurity community knows little.

It’s not all bad news, as network administrators will also benefit from a new service launched by advanced cybersecurity firm Advanced Intel called RDPwned that allows you to verify whether an organization’s RDP credentials have been sold on the hacking black market.

Continue reading “More than 1 million admin credentials to access Windows RDP servers for sale on dark web hacking forum” »

Apr 23, 2021

Cybercriminals Using Telegram Messenger to Control ToxicEye Malware

Posted by in category: cybercrime/malcode

Telegram Messenger being used by cybercriminals to control ToxicEye Malware.

Apr 20, 2021

Hackers Used to Be Humans. Soon, AIs Will Hack Humanity

Posted by in categories: cybercrime/malcode, economics

Like crafty genies, AIs will grant our wishes, and then hack them, exploiting our social, political, and economic systems like never before.