Monthly Archives: June 2015

Hacked Routers exploited to serve the Dyre banking trojan

Researchers at the Fujitsu Security Operations Center spotted a strain of Dyre being served exploiting hundreds of compromised home routers. According to the popular security expert Brian Krebs, criminals are exploiting a new technique to spread the Dyre banking malware, … Continue reading

Posted in Malware, Vulnerabilidad | Tagged , , | Leave a comment

Ransomware slinging exploit kit targets Flash remote code execution

Attackers have added a recent dangerous Adobe vulnerability to the Magnitude exploit kit, according to respected independent malware researcher “Kafeine”. The remote code execution vulnerability (CVE-2015-3113) revealed last week allows attackers to hijack un-patched machines targeting Internet Explorer on Windows … Continue reading

Posted in Cyber Security, Vulnerabilidad | Tagged , | Leave a comment

Client-Side Injected Malware en navegadoras

Client-Side Injected Malware (CSIM) incluye los widgets no autorizados, anuncios y spyware que se inyectan en sitios web por extensiones instalados en los navegadores, o por el malware descargado involuntariamente a las computadoras de los visitantes, tabletas y dispositivos móviles … Continue reading

Posted in Cyber Security, Malware, Vulnerabilidad | Tagged , , , , | Leave a comment

Darknets in the Deep Web, the home of assassins and pedophiles

Security experts at Trend Micro published a report on the Deep Web and related illegal activities that exploit the darknets it contains. Experts at TrendMicro published an interesting report on the Deep Web focusing their analysis on the services and products available … Continue reading

Posted in Cyber Security, Vulnerabilidad | Tagged , , , , | Leave a comment

Dyre banking VXers LOVE Mondays, Symantec says

Nobody can accuse trojan coders of being lazy; the masterminds behind the Dyre banking malware are putting in full five-day working weeks to maintain some 285 command and control servers handling stolen banking credentials. The malware is one of the … Continue reading

Posted in Cyber Security, Vulnerabilidad | Tagged | Leave a comment

US Businesses and Users Lost $18 Million to CryptoWall Ransomware

In a little over a year, the amount of money cashed in by operators of CryptoWall ransomware from victims in the United States got closer to the $20 / €17.8 million mark, according to the latest report from the FBI’s … Continue reading

Posted in Cyber Security, Vulnerabilidad | Tagged , , | Leave a comment

Redmond: IE Win 8.1 defence destroying hack ain’t worth patch, natch

HP security research bod Dustin Childs says the company couldn’t get Microsoft to patch an IE exploit, so it’s gone public. Childs says the Address Space Layout Randomisation (ASLR) hole affects millions of 32bit systems and should have been patched. … Continue reading

Posted in Cyber Security, Vulnerabilidad | Tagged , | Leave a comment

Phishing gone: eBay patches to block session-jacking Magento holes

Vulnerability Lab researcher Hadji Samir says eBay has squashed three vulnerabilities in its Magento shopping platform that could permit session hijacking and man-in-the-middle attacks. The penetration tester disclosed this month the vulnerabilities along with proof-of-concept videosshowing how attackers could steal … Continue reading

Posted in Cyber Security, Vulnerabilidad | Tagged , | Leave a comment

SAP HANA Databases Vulnerable to XSS and SQL Injections

Speaking at the Black Hat Sessions conference in Ede, Netherlands,  Dmitry Chastukhin, Director of Professional Services for ERPScan, has presented a report in which he details various problems with SAP’s encryption algorithms and static keys. These issues affect the SAP … Continue reading

Posted in Cyber Security, Vulnerabilidad | Tagged , | Leave a comment