Showing posts with label malware. Show all posts
Showing posts with label malware. Show all posts

Tuesday, 2 June 2015

Apple Mac OSX Zero-Day Bug Allows Hackers to Install RootKit Malware

A zero-day software vulnerability discovered deep in the firmware of many Apple computers could allows an attacker to modify the system’s BIOS and install a rootkit, potentially gaining complete control of the victim’s Mac.

Wednesday, 10 December 2014

The first malware with a digital signature Sony


Sony Pictures hacking led not only to leak of sensitive data about employees, but also the fees with the stars, the future of digital copies of movies and postal correspondence top managers. Yesterday it was reported on yet another effect: "Kaspersky Lab" version of the malware found Destover, digitally signed by Sony.

Sunday, 9 November 2014

Amazon phishing campaign aim to infect Holiday shoppers

Security experts at AppRiver firm uncovered Malicious Amazon phishing emails that aim to infect Holiday Shoppers in the U.S. and U.K.
Researchers at AppRiver firm reported that cyber criminals are targeting holiday shoppers at Amazon UK with large a scale phishing campaign, which is spreading malicious emails.

Monday, 27 October 2014

Malicious Tor node was found in Russia


Specialists of the company Leviathan Security Group  had discovered a malicious Tor node on the territory of Russia. It appends a binary code to the end of files that the user downloads from the Internet. Tor is  a good tool for anonymous access. But anonymity does not mean security.
Researchers say that this behavior can be viewed as the server kind of MiTM-attack.
To demonstrate this vulnerability, developers of Leviathan Security Group had launched a program BDF (Backdoor Factory), which modifies executable files, adding to them arbitrary code. Author of BDF program explains the principle of its operation in the demonstration video (speech was recorded on hacker conference DerbyCon 2014).



About the Malware Russian node was notified project coordinators Tor, so now it is marked as a bad node (flag BadExit). Members of Tor network must take note of this information.
It should be noted that from 1110 output nodes in the Tor network it was the only one that add malicious code to binary. All other were tested and do not carry anything like that. Although it is impossible to guarantee certain: nodes can act selectively and modify only some of the files that do not show themselves during the scan.


Source: xaker.ru