HackDig : Dig high-quality web security articles for hacker

Katyusha Scanner, a new SQLi Vulnerability Scanner Available for $500 in the underground

Katyusha Scanner is a new fully automated SQLi vulnerability scanner discovered by researchers at security firm Recorded Future. Recorded Future security researchers have discovered a fully automated SQLi vulnerability scanner, dubbed Katyusha Scanner, on a hacking forum. The tool is offered for sale for just $500, it allows mass scans, simply managed from a
Publish At:2017-07-14 00:15 | Read:355 | Comments:0 | Tags:APT Breaking News Cyber Crime Deep Web Hacking Vulnerability

From BlackEnergy to ExPetr

Much has been written about the recent ExPetr/NotPetya/Nyetya/Petya outbreak – you can read our findings here:Schroedinger’s Pet(ya) and ExPetr is a wiper, not ransomware. As in the case of Wannacry, attribution is very difficult and finding links with previously known malware is challenging. In the case of Wannacry, Google’s Neel Mehta was
Publish At:2017-06-30 21:50 | Read:309 | Comments:0 | Tags:Research APT BlackEnergy Data Encryption Petya Wiper

Shadow Brokers sent out first round of exploits and threaten to dox former NSA hacker

Shadow Brokers has sent out the first round of exploits to the subscribers of its service, the hackers also threaten to dox former NSA hacker. In May the notorious Shadow Brokers group announced the launch of a monthly subscription model for its data dumps, 0-Day Exploit Subscriptions goes for $21,000 per month. The group claimed to have exploit codes for al
Publish At:2017-06-29 10:25 | Read:248 | Comments:0 | Tags:APT Hacking Intelligence Cybercrime Equation group malware M

Kasperagent malware used in a new campaign leveraging Palestine-Themed decoy files

Researchers uncovered a new cyber espionage campaign involving the Kasperagent spyware delivered with Palestine-Themed decoy files. In March, experts at security firm Qihoo 360 have spotted a cyber espionage campaign conducted by a threat actor tracked as APT-C-23 and Two-Tailed Scorpion. A few weeks later, in April, researchers at Palo Alto Networks and Cle
Publish At:2017-06-18 16:35 | Read:359 | Comments:0 | Tags:APT Breaking News Cyber warfare Hacking APT-C-23 Kasperagent

Joint Technical Alert published by DHS and FBI warns of North Korea’s Hidden Cobra APT

The United States Computer Emergency Readiness Team (US-CERT) issued a technical alert about the activity of the North Korea’s ‘Hidden Cobra’ APT group. The joint Technical Alert (TA) report is the result of the efforts between of the Department of Homeland Security (DHS) and the Federal Bureau of Investigation (FBI). The US Government has tracke
Publish At:2017-06-14 20:30 | Read:226 | Comments:0 | Tags:APT Breaking News Cyber warfare cyber espionage DHS Hidden C

Experts spotted Industroyer ICS Malware and linked it to Ukraine Power Outage

Researchers at antivirus firm ESET have discovered a new strain of malware, dubbed Industroyer, that appears to have been designed to target power grids. The experts published a detailed analysis of the malware, they speculated the malicious code has been involved in the December 2016 attack on an electrical substation in Ukraine. “Win32/Industroyer is
Publish At:2017-06-13 07:40 | Read:291 | Comments:0 | Tags:APT Breaking News Hacking Malware BlackEnergy CRASHOVERRIDE

Platinum hackers leverages Intel Active Management tools to bypass Windows firewall

The PLATINUM hacker group has developed a system leveraging Intel Active Management Technology (AMT) to bypass the Windows firewall. Microsoft is warning users of a new attack that leverage Intel’s Active Management Technology to to evade firewalls and other endpoint-based network monitoring. The technique has been already used by a threat actor in Sou
Publish At:2017-06-09 11:35 | Read:582 | Comments:0 | Tags:APT Breaking News Hacking Active Management Technology AMT P

Russia-linked hacker group APT28 continues to target Montenegro

Once again, Montenegro was targeted by the Russia-linked hacker group APT28, according to the experts it is just the beginning. On June 5 Montenegro officially joined NATO alliance despite the strong opposition from Russian Government that threatened to retaliate. Cybersecurity experts believe that a new wave of attacks from the cyberspace will hit the state
Publish At:2017-06-07 22:45 | Read:292 | Comments:0 | Tags:APT Breaking News Cyber warfare Hacking DDoS Information War

President Putin blames Patriotic Russian hackers for recent Election attacks

Russian President Putin says patriotic hackers may have powered attacks against foreign countries and denied Russia involvement. President Vladimir Putin says patriotic hackers may have launched cyber attacks against foreign countries and but denied Russia involvement in cyber espionage campaigns. Source NY Times Russian state-sponsored APT groups area accus
Publish At:2017-06-03 01:20 | Read:433 | Comments:0 | Tags:APT Breaking News Cyber warfare Hacking Intelligence APT28 A

A new report links North Korea to the Lazarus APT Group

Moscow-based threat intelligence firm Group-IB published a report that details evidence linking the Lazarus APT Group to North Korea. Researchers at security firm Group-IB released a report that links the notorious Lazarus APT to North Korea. The activity of the Lazarus Group surged in 2014 and 2015, its members used mostly custom-tailored malware in their a
Publish At:2017-05-31 17:55 | Read:399 | Comments:0 | Tags:APT Breaking News Cyber warfare Hacking cyber espionage Laza

Flashpoint experts believe WannaCry authors speak Chinese after a linguistic analysis

Security experts at threat intelligence firm Flashpoint conducted a linguistic analysis of dozens of ransom notes displayed by the WannaCry ransomware. Malware researchers at threat intelligence firm Flashpoint conducted a linguistic analysis of 28 ransom notes displayed by the WannaCry ransomware. Flashpoint analyzed 28 WannaCry ransom notes written in vari
Publish At:2017-05-26 09:05 | Read:379 | Comments:0 | Tags:APT Breaking News Hacking China Cybercrime linguistic analys

At least 3 different groups have been leveraging the NSA EternalBlue exploit, what’s went wrong?

At least 3 different groups have been leveraging the NSA EternalBlue exploit weeks before the WannaCry attacks, here’s the evidence. In the last days, security experts discovered numerous attacks that have been leveraging the same EternalBlue exploit used by the notorious WannaCry ransomware. The Shadow Brokers hacker group revealed the exploit for the
Publish At:2017-05-22 13:00 | Read:568 | Comments:0 | Tags:APT Breaking News Cyber Crime Malware exploit

IT threat evolution Q1 2017

Overview Targeted attacks and malware campaigns More wipers The aim of most targeted attack campaigns is to steal sensitive data. However, this isn’t always the goal. Sometimes attackers erase data instead of – or as well as – trying to gain access to confidential information. We’ve seen several wiper attacks in recent years. They include Shamoon
Publish At:2017-05-22 11:35 | Read:650 | Comments:0 | Tags:Analysis Featured Quarterly Malware Reports APT Cyber espion

Researchers found a link between the APT3 Threat Group and the Chinese Intelligence Agency

Security experts at threat intelligence firm Record Future have found a clear link between APT3 cyber threat group and China’s Ministry of State Security. The curtain has been pulled back a little on the Chinese Intelligence Agency intelligence gathering structure — and it includes private security contractors and the network vendor supply chai
Publish At:2017-05-21 18:30 | Read:568 | Comments:0 | Tags:APT Breaking News Cyber warfare Hacking Intelligence APT3 Ch

Alleged Russian state-sponsored hackers behind Baltic energy networks

A wave of cyber attacks against the Baltic energy networks raised concerns that foreign states could disable them in the region. A wave of “exploratory” cyber attacks targeted energy networks of the Baltic states, the NATO alliance is following with apprehension the events. Baltic attacks raised concerns that foreign states could disable the ene
Publish At:2017-05-21 00:00 | Read:485 | Comments:0 | Tags:APT Breaking News Cyber warfare Hacking Security Baltic ener

Announce

Share high-quality web security related articles with you:)

Tools

Tag Cloud