18 OCTOBER 2022 WEEKLY NEWSLETTER

BOCRA website

     

NEWSLETTER

 

Venus Ransomware Abuses Remote Desktop Services


                                                     LATEST CYBER HACKS 

 
 
icon

FBI warns Chinese hackers scanning state political parties

The FBI is warning Democratic and Republican state parties that Chinese hackers are scouring their headquarters for vulnerable systems they could potentially hack ahead of the midterms, The Washington Post reported.

icon

Japanese tech firm Oomiya hit by LockBit 3.0. Multiple supply chains potentially impacted

One of the affiliates for the LockBit 3.0 RaaS hit the Japanese tech company Oomiya. Oomiya is focused on designing and manufacturing microelectronics and facility system equipment.

icon

Tata Power, a top power producer in India, confirms cyberattack

Tata Power, a leading power generation company in India, has confirmed it was hit by a cyberattack. In a brief statement released on Friday, the Mumbai-based company said that the attack impacted some of its IT systems.


                                                      VULNERABILITIES

 
 
icon

Critical RCE Vulnerability Discovered in Popular Cobalt Strike Hacking Software

HelpSystems, the company behind the Cobalt Strike software platform, has released an out-of-band security update to address a remote code execution vulnerability that could allow an attacker to take control of targeted systems.

icon

Researchers Keep a Wary Eye on Critical New Vulnerability in Apache Commons Text

There's nothing yet to suggest CVE-2022-42889 is the next Log4j. But proof-of-concept code is available, and interest appears to be ticking up.


                                     MALWARES

 
 
icon

Modified WhatsApp App Caught Infecting Android Devices with Malware

An unofficial version of the popular WhatsApp messaging app called YoWhatsApp has been observed deploying an Android trojan known as Triada.

icon

Venus Ransomware Abuses Remote Desktop Services

In a new attack campaign, operators behind Venus ransomware are compromising publicly-exposed Remote Desktop (RDP) services to encrypt Windows devices.


                              

icon

Magniber Ransomware Learns New Techniques, Targets Home Users

A malicious campaign is spreading Magniber ransomware in the systems of Windows home users. Last month, the attackers created websites advertising fake antivirus and security updates for Windows 10, loaded with the malware.


                              


                               GENERAL NEWS

 
 
icon

Windows Mark of the Web bypass zero-day gets unofficial patch

A free unofficial patch has been released through the 0patch platform to address an actively exploited zero-day flaw in the Windows Mark of the Web (MotW) security mechanism.

icon

Phishing works so well crims won't bother with deepfakes, says Sophos chap

Shier said current deepfakes – AI generated videos that mimic humans – aren't the most efficient tool for scammers to utilize because simpler and cheaper attacks like phishing and other forms of social engineering work very well.