10 JANUARY 2023 WEEKLY NEWSLETTER

BOCRA website

     

NEWSLETTER

 

Microsoft ends Windows 7 extended security updates on Tuesday


                                                     LATEST CYBER HACKS 

 
 
icon

Exclusive: Russian hackers targeted U.S. nuclear scientists

A Russian hacking team known as Cold River targeted three nuclear research laboratories in the United States this past summer, according to internet records reviewed by Reuters and five cyber security experts.

icon

Air France and KLM notify customers of account hacks

Air France and KLM have informed Flying Blue customers that some of their personal information was exposed after their accounts were breached.

Flying Blue is a loyalty program allowing clients of multiple airlines, including Air France, KLM, Transavia, Aircalin, Kenya Airways, and TAROM, to exchange loyalty points for various rewards.


                                                      VULNERABILITIES

 
 
icon

Exploit drops for remote code execution bug in Control Web Panel

A pre-authentication remote code execution (RCE) exploit has landed for popular web hosting platform Control Web Panel (CWP). The corresponding vulnerability in CWP 7 was pateched and then released in version 0.9.8.1147 on October 25. All previous versions are affected.

CWP, formerly CentOS Web Panel, is a free-to-use, Linux control panel with roughly 200,000 servers in active use.

icon

Attackers Abuse Genuine Windows Tool to Deliver Pupy RAT

Researchers have identified attackers are exploiting Windows Problem Reporting—an error reporting tool—to deliver malware to a targeted system. The embedded Windows tool allows attackers to infect the devices without raising any red flags.

icon

Vidar Stealer Operators Exploit SM Platforms to Evade Detection

A few days back the commercial off-the-shelf malware BitRat was observed with a new distribution methodology. Now, another information stealer malware named Vidar Stealer has surfaced with advanced techniques to exploit popular Social Media (SM) platforms as an intermediary C2 server.


                                     MALWARES

 
 
icon

Hackers Leverage Compromised Fortinet Devices to Distribute Ransomware

Threat actors have exploited Fortinet Virtual Private Network (VPN) devices to try and infect a Canadian-based college and a global investment firm with ransomware.

 

icon

Microsoft Reveals Tactics Used by 4 Ransomware Families Targeting macOS

Microsoft has shed light on four different ransomware families – KeRanger, FileCoder, MacRansom, and EvilQuest – that are known to impact Apple macOS systems.

 

icon

Ransomware Roundup – Monti, BlackHunt, and Putin Ransomware

On a bi-weekly basis, FortiGuard Labs gathers data on ransomware variants of interest that have been gaining traction within our datasets and across the OSINT community. The Ransomware Roundup report provides brief insights into the evolving ransomware landscape and the Fortinet solutions that protect against those variants.


                               GENERAL NEWS

 
 
icon

Can You Trust Your VSCode Extensions?

Aqua Nautilus researchers have recently discovered that attackers can easily impersonate popular Visual Studio Code extensions and trick unknowing developers into downloading them. In original vulnerability research, we’ve uncovered a new attack method which could act as an entry point for an attack on many organization

icon

Top 18 New Technology Trends for 2023

Technology today is evolving at a rapid pace, enabling faster change and progress, causing an acceleration of the rate of change. However, it is not only technology trends and emerging technologies that are evolving, a lot more has changed this year due to the outbreak of COVID-19 making IT professionals realize that their role will not stay the same in the contactless world tomorrow.