Breaking News

Pierluigi Paganini November 19, 2019
Belorussian authorities blocked ProtonMail following a wave of bomb threats

On Friday, Belorussian authorities have blocked access to the end-to-end encrypted email service ProtonMail after receiving a wave of bomb threats. On Friday, Belorussian authorities decided to block the access to ProtonMail after receiving a series of bomb threats. The threats were sent by an unknown attacker from a ProtonMail email address to private companies […]

Pierluigi Paganini November 18, 2019
Tianfu Cup 2019 – 11 teams earned a total of 545,000 for their Zero-Day Exploits

The Tianfu Cup 2019 International Cyber ​​Security Competition is ended and white hat hackers have earned $545,000 for working zero-day exploits. During Day 1 of the Tianfu Cup 2019 contest 13 hacking attempts out of a total of 32 were successful, 13 attempts failed and in 12 cases the researchers abandoned the attempts. Now that the competition […]

Pierluigi Paganini November 18, 2019
Google addressed an XSS flaw in Gmail

Google addressed an XSS vulnerability in Gmail, the IT staff at Google defined the vulnerability as “awesome.” MichaƂ Bentkowski, Chief Security Researcher from security frim Securitum, found an XSS vulnerability in Gmail and responsibly disclosed it this week after Google has addressed it.  The flaw, described by Google IT staff as an awesome XSS issue, resides […]

Pierluigi Paganini November 18, 2019
Experts report a rampant growth in the number of malicious, lookalike domains

Cyber security firm Venafi announced it has uncovered lookalike domains with valid TLS certificates that appear to target major retailers. Venafi, Inc. is a private cybersecurity company that develops software to secure and protect cryptographic keys and digital certificates. Ahead of the holiday shopping season, security experts from Venafi conducted a study of typosquatted domains […]

Pierluigi Paganini November 18, 2019
New NextCry Ransomware targets Nextcloud instances on Linux servers

NextCry is a new ransomware that was spotted by researchers while encrypting data on Linux servers in the wild. Security experts spotted new ransomware dubbed NextCry that targets the clients of the NextCloud file sync and share service. The name comes from the extensions the ransomware appends to the filenames of encrypted files. The malicious code targets Nextcloud […]

Pierluigi Paganini November 18, 2019
Crooks use carding bots to check stolen card data ahead of the holiday season

With the advent of this year’s holiday shopping season are cybercriminals are using carding bots to test stolen payment card data before using them. Cybercriminals need to test the validity of the stolen card data before carrying out fraudulent transactions or selling them during the holiday shopping season. Cybercriminals are automating this process using carding […]

Pierluigi Paganini November 17, 2019
Security Affairs newsletter Round 240

A new round of the weekly newsletter arrived! The best news of the week with Security Affairs Bad News: AI and 5G Are Expected to Worsen Cybersecurity Risks Boardriders and its subsidiarities QuikSilver and Billabong infected with ransomware Major ASP.NET hosting provider SmarterASP hit by ransomware attack Apple Mail stores parts of encrypted emails in […]

Pierluigi Paganini November 17, 2019
Tianfu Cup 2019 Day 1 – Chinese experts hacked Chrome, Edge, Safari, Office365

The Tianfu Cup 2019 International Cyber ​​Security Competition has started, in two days white hat hackers will attempt to exploit flaws in major software. The Tianfu Cup 2019 International Cyber ​​Security Competition has started, white hat hackers will attempt to devise working zero-day exploits for popular software. Each working exploit receives a cash prize and […]

Pierluigi Paganini November 17, 2019
Experts found undocumented access feature in Siemens SIMATIC PLCs

Researchers discovered a vulnerability in Siemens SIMATIC S7-1200 programmable logic controller (PLC) that could allow attackers to execute arbitrary code on vulnerable devices. Researchers discovered an undocumented access feature in Siemens SIMATIC S7-1200 programmable logic controller (PLC) that could be exploited by attackers to execute arbitrary code on affected devices. The feature was discovered by […]

Pierluigi Paganini November 16, 2019
WhatsApp flaw CVE-2019-11931 could be exploited to install spyware

The popular messaging platform WhatsApp made the headlines again, a new bug could be exploited by hackers to secretly install spyware. According to the website The Hacker News, WhatsApp has recently fixed a critical vulnerability, tracked as CVE-2019-11931, that could have allowed attackers to remotely compromise targeted devices. The CVE-2019-11931 is a stack-based buffer overflow issue […]