Posts

The number of new malware samples in the wild this year targeting connected internet-of-things (IoT) devices has already more than doubled last year’s total. Source: Malware IoT Malware Activity Already More Than Doubled 2016 Numbers

As reports of the NSA officially connecting WannaCry to North Korea surface, experts are saying developers failed to contain the ransomware before it was ready for deployment. Source: Malware Someone Failed to Contain WannaCry

The latest dump from Wikileaks alleges the CIA installed custom router firmware on unsuspecting targets in order to spy on internet activity. Source: Malware Wikileaks Alleges Years of CIA D-Link and Linksys Router Hacking Via ‘Cherry Blossom’ Program

Microsoft patched 95 vulnerabilities today, including two under attack. Source: Malware Microsoft Patches Two Critical Vulnerabilities Under Attack

Zusy malware installs when victims hover over an opened PowerPoint file – no clicking needed. Source: Malware Zusy Malware Installs Via Mouseover – No Clicking Required

QakBot, a worm-like, information-stealing strain of malware is back and locking users out of their Active Directory accounts. Source: Malware QakBot Returns, Locking Out Active Directory Accounts

We had a number of great questions during CyberUK2017, and some of those…

The market for automated credential stuffing tools is growing fast, because of a record number of breaches. Source: Malware Password Breaches Fueling Booming Credential Stuffing Business

Attackers can remotely execute code on targeted systems via specially crafted subtitle files for videos. Source: Malware Subtitle Hack Leaves 200 Million Vulnerable to Remote Code Execution

A worm called EternalRocks has been spreading seven Windows SMB exploits leaked by the ShadowBrokers, including EternalBlue, which was used to spread WannaCry. Source: Malware EternalRocks Worm Spreads Seven NSA SMB Exploits