• Trend Micro
  • About TrendLabs Security Intelligence Blog
Search:
  • Home
  • Categories
    • Ransomware
    • Vulnerabilities
    • Exploits
    • Targeted Attacks
    • Deep Web
    • Mobile
    • Internet of Things
    • Malware
    • Bad Sites
    • Spam
    • Botnets
    • Social
    • Open source
Home   »   Archives for March 2016

Tax Day Extortion: PowerWare Crypto-ransomware Targets Tax Files

  • Posted on:March 31, 2016 at 5:00 am
  • Posted in:Malware, Ransomware, Spam
  • Author:
    Trend Micro
0

As we are certain about some aspects of life, the same can be said about cybercrime. Tax Day draws closer in the U.S., and as millions of Americans are in the process of filing their taxes, cybercriminals are also stepping in to make this task profitable for them and difficult for their victims. We have seen recent incidents of organizations falling for business email compromise (BEC) schemes related to tax filing; now, it looks like online extortionists have joined the fray as well.

Read More
Tags: crypto-ransomwaremacro malwarespam mail

Critical ‘CVE-2015-1805’ Vulnerability Allows Permanent Rooting of Most Android Phones

  • Posted on:March 29, 2016 at 2:19 pm
  • Posted in:Mobile, Vulnerabilities
  • Author:
    Veo Zhang (Mobile Threats Analyst)
0

On March 18, Google published a security advisory for a critical vulnerability CVE-2015-1805 that applied to rooting apps. This bug allows malicious apps to gain “root” access to all Android phones below kernel version 3.18. This can greatly affect devices that no longer receive patches, or those with long rollout time. Initially, this flaw has been tagged as ‘medium’ in terms of severity. However, a zero-day exploit was found out that showed the vulnerability could still be exploited successfully, compromising the security of the device. As such, the level of severity was changed to ‘critical.’

Read More

PETYA Crypto-ransomware Overwrites MBR to Lock Users Out of Their Computers

  • Posted on:March 25, 2016 at 2:17 am
  • Posted in:Bad Sites, Malware, Ransomware
  • Author:
    Jasen Sumalapao (Threat Response Engineer)
8

As if encrypting files and holding them hostage is not enough, cybercriminals who create and spread crypto-ransomware are now resorting to causing blue screen of death (BSOD) and putting their ransom notes at system startup—as in, even before the operating system loads. Imagine turning on your computer and instead of the usual Windows icon loading, you get a flashing red and white screen with a skull-and-crossbones instead.

Read More
Tags: bitcoinbsodcrypto-ransomwarecybercrimepetyaransomware

Indian Military Personnel Targeted by “Operation C-Major” Information Theft Campaign

  • Posted on:March 23, 2016 at 5:29 am
  • Posted in:Malware, Targeted Attacks
  • Author:
    Trend Micro Forward-Looking Threat Research Team
0

A newly-discovered information theft campaign in India has stolen passport scans, photo IDs, and tax information from 160 Indian military officers, military attaches stationed in the said country, consultants, and resellers. Some evidence suggests that the attackers are based out of Pakistan, although no evidence suggests ties to the government.

This operation was not particularly sophisticated, however it was still able to acquire sensitive information that was probably acquired from restricted sources within the Indian government. This shows that targeted attacks don’t need to be well-planned operations backed by a big budget and sufficient resources. What attackers may lack in technical sophistication, they can make up for through tenacity, persistence, and clever social engineering.

Read More
Tags: cyber espionagesocial engineeringTargeted Attack

Online Banking Threats in 2015: The Curious Case of DRIDEX’s Prevalence

  • Posted on:March 17, 2016 at 10:03 am
  • Posted in:Malware
  • Author:
    Trend Micro
1

The thing about takedowns is that these do not necessarily wipe out the cybercriminal operations. In 2014, the ZeroAccess takedown has affected the botnet’s click fraud operation, but its infections continued to soar. DRIDEX’s case is similar as it continues to figure predominantly in the threat landscape despite takedown of its multiple command-and-control servers last October 2015.

Read More
Tags: DRIDEXmacro malwareonline banking threats
Page 1 of 412 › »

Security Predictions for 2020

  • Cybersecurity in 2020 will be viewed through many lenses — from differing attacker motivations and cybercriminal arsenal to technological developments and global threat intelligence — only so defenders can keep up with the broad range of threats.
    Read our security predictions for 2020.

Business Process Compromise

  • Attackers are starting to invest in long-term operations that target specific processes enterprises rely on. They scout for vulnerable practices, susceptible systems and operational loopholes that they can leverage or abuse. To learn more, read our Security 101: Business Process Compromise.

Popular Posts

Sorry. No data so far.

Stay Updated

  • Home and Home Office
  • |
  • For Business
  • |
  • Security Intelligence
  • |
  • About Trend Micro
  • Asia Pacific Region (APAC): Australia / New Zealand, 中国, 日本, 대한민국, 台灣
  • Latin America Region (LAR): Brasil, México
  • North America Region (NABU): United States, Canada
  • Europe, Middle East, & Africa Region (EMEA): France, Deutschland / Österreich / Schweiz, Italia, Россия, España, United Kingdom / Ireland
  • Privacy Statement
  • Legal Policies
  • Copyright © Trend Micro Incorporated. All rights reserved.