25 September 2020 Weekly Newsletter

 

BOCRA website

 

     

NEWSLETTER

Microsoft Bing Server Leaks Search Queries, Location Data, and Device Details


                                                     LATEST CYBER HACKS 

 
 

icon

 

Shopify Data Breach – Two Rogue Employees Stole Customer Data

Shopify confirmed the incident is not because of technical vulnerability and most of the customers are not affected. The company believes those rogue employees accessed around 200 customers’ records.

 

Activision Data Breach Leaves 500,000 Call Of Duty Players’ Accounts At Risk

As revealed, a recent hacking attack, that possibly happened on September 20, 2020, has affected at least 500,000 Activision accounts. The attackers are changing users’ account details to avert any restoration of hacked accounts.


                                                      VULNERABILITIES

 
 

icon

 

Detecting and Preventing Critical ZeroLogon Windows Server Vulnerability

Dubbed 'Zerologon' (CVE-2020-1472) and discovered by Tom Tervoort of Secura, the privilege escalation vulnerability exists due to the insecure usage of AES-CFB8 encryption for Netlogon sessions, allowing remote attackers to establish a connection to the targeted domain controller over Netlogon Remote Protocol (MS-NRPC).

icon

 

More Bugs Discovered In Discount Rules for WooCommerce Plugin

Team Wordfence has found numerous bugs affecting the Discount Rules for WooCommerce Plugin. As elaborated in their recent post, they found multiple stored Cross-Site Scripting (XSS) flaws leading to authorization bypass.

icon

 

Firefox for Android Bug Allows Hijacking Other Phones’ Browsers Over WiFi

A serious bug exists in Firefox for Android browsers that allows hijacking other phones’ browsers connected on the WiFi. Upgrade your phones Firefox browsers at the earliest


                                     MALWARES

 
 

icon

 

New Android Malware BlackRock Targets Massive List of Common Android Apps

Recently, ThreatFabric researchers released a report about their findings on Android banking trojan - BlackRock. First identified in May 2020, BlackRock can steal credentials and credit card information from a list of 337 financial, networking, communication, dating, and social apps.

icon

 

Microsoft removed 18 Azure AD apps used by Chinese state-sponsored hacker group

The Azure apps were part of the group's 2020 attack routine, which Microsoft described as "particularly challenging" to detect due to its multi-stage infection process and the broad use of PowerShell payloads.

icon

 

Ransomware gang targets Russian businesses in rare coordinated attacks

Security firm Group-IB says it identified a new cybercrime group that, for the past six months, has repeatedly and intentionally targeted Russian businesses with malware and ransomware attacks.


                               GENERAL NEWS

 
 

icon

 

The dark web won't hide you anymore, police warn crooks

Law enforcement agencies around the world have arrested 179 people involved in buying and selling illicit goods and services on the dark web as part of a coordinated international take down operation involving agencies in nine countries – and police have warned cyber criminals that "the golden age of the dark web is over".

icon

 

Russia wants to ban the use of secure protocols such as TLS 1.3, DoH, DoT, ESNI

The Russian government is working on updating its technology laws so it can ban the use of modern internet protocols that can hinder its surveillance and censorship capabilities.

COMM-CIRT

Botswana Communications Regulatory Authority

Private Bag 00495, Gaborone, Botswana

+2673929961

Disclaimer: This information was gathered from multi-trusted and it is not created by COMM-CIRT