Less than two weeks after the Marcher Trojan was found masquerading as the unreleased Super Mario Run game for Android, the infamous DroidJack RAT (Remote Access Trojan) has reportedly adopted the same distribution tactic.
read more
Samsung SmartCam Flaw Allows Remote Command Execution
Samsung SmartCam IP cameras are affected by a severe remote command execution flaw that can be exploited to hijack vulnerable devices, researchers have warned.
Samsung Electronics sold its security division, Samsung Techwin, to South Korean conglomerate Hanwha Group in 2014. However, Hanwha’s SmartCam products are still branded as “Samsung.”
read more
UK’s Largest National Health Service (NHS) Trust Discloses ‘IT Attack’
Barts Health NHS Trust in London suffered an unspecified 'IT attack' on January 13. Initial reports suspected it was a ransomware attack; but this has since been ruled out. Nevertheless, the Trust took 'a number of drives offline as a precautionary measure.'
read more
Student Pleads Guilty to Developing Keylogger
A 21-year-old from Great Falls, Virginia, has admitted developing a piece of malware used by cybercriminals to infect thousands of computers, the U.S. Department of Justice announced last week.
read more
Phished Gmail Accounts Immediately Accessed by Hackers
Cybercriminals have been using specially crafted URLs to trick even tech-savvy people into entering their Gmail credentials on a phishing website. Once an account has been compromised, the attackers immediately access it and start targeting the victim’s contacts.
read more
New RIG Campaign Distributes Cerber Ransomware
A newly observed campaign leveraging the RIG exploit kit is targeting outdated versions of popular applications such as Flash, Internet Explorer, or Microsoft Edge to distribute the Cerber ransomware, Heimdal Security warns.
read more
No Backdoor, but WhatsApp Can Snoop Encrypted Conversations
A report emerged on Friday that the popular mobile messaging app WhatsApp packs a backdoor allowing its operator (Facebook) to tap into users’ end-to-end encrypted conversations, but experts have refuted the claim as an exaggeration and F.U.D.
read more
Advantech WebAccess Flaws Allow Access to Sensitive Data
Advantech has patched a couple of serious vulnerabilities in WebAccess, a web-based software package for human-machine interfaces (HMI) and supervisory control and data acquisition (SCADA) systems.
read more
Attackers Use Office’s OLE to Distribute Keylogger
A recently observed targeted attack campaign that hit a major financial services provider was distributing an unknown keylogger disguised as a Silverlight update, Proofpoint researchers reveal.
read more
Rudi Giuliani to Advise Trump on Cyber Security
President-elect Donald Trump's transition team announced Thursday that former New York mayor Rudi Giuliani "will be sharing his expertise and insight as a trusted friend concerning private sector cyber security problems and emerging solutions developing in the private sector." The details of this new role are vague and sparse; but it would be fair to say that it has raised eyebrows in the security industry.
read more


