Eskenzi PR ad banner Eskenzi PR ad banner

Cyber Bites

Code on computer

In a statement at midday today (local time), Spanish multinational security company Prosegur announced that it was the victim of a cybersecurity incident disrupting its telecommunication platform. The company restricted communications with its customers to avoid malware propagation. Although there is no official confirmation, BleepingComputer has learned that the attack affects all Prosegur locations in Europe. Source: BleepingComputer

Read more
Fake Shared Documents Fooling Dropbox users in Phishing Scam

It’s funny how hackers, phishers, and scamsters can be blatantly obvious and inexplicably unpredictable at the same time. I’m saying obvious because they target the most widely used services/platforms and lots of users know what they’re up to — not just security professionals, but many ordinary users know about these phishing scams and what to look for. Source: Security Boulevard

Read more

The BBC reports that the grotty image was shared early afternoon on 25 November, but was quickly taken down. An official from the Welsh government said the filthy tweet was down to a cyber attack, not the clumsy clicking of some civil servant. And that's all we really know about the whole situation, with details being rather woolly and statements from the government being somewhat sheepish. Source: The Inquirer

Read more
WhatsApp vulnerability Patched still impacting thousands of apps

A vulnerability in the WhatsApp for Android that was found, disclosed and patched can still affect thousands of additional apps that have not been patched. CVE-2019-11932 allows attackers to use a maliciously coded GIF files to remotely execute code was made public on Oct. 2, 2019 and then patched in WhatsApp version 2.19.244 takes advantage of a library called libpl_droidsonroids_gif.so which is part of the android-gif-drawable package that is used in many other applications, Trend Micro reported....

Read more
New Ransomware Has Made a Name for Itself

A new ransomware called DeathRansom began with a rocky start, but has now resolved it's issues and has begun to infect victims and encrypt their data. When DeathRansom was first being distributed, it pretended to encrypt files, but researchers and users found that they could just remove the appended .wctc extension and the files would become usable again. Starting around November 20th, though, something changed. Source: Bleeping Computer

Read more
Phish victims fall for 3rd-party fake payment processing page

Cybercriminals have devised a card-skimming scheme that involves creating a phishing page that impersonates a retailer’s third-party payment service platform (PSP). Certain e-commerce websites outsource their financial transactions by redirecting customers to a secure page operated by PSP companies. But in this scam, discovered by researchers at Malwarebytes, the malicious actors swap out the genuine PSP payment processing page with a fraudulent one that asks for customers’ personal and financial data. These details will then be...

Read more
Page 183 of 262 1 182 183 184 262