Nivdort: Data-Stealing Trojan Arrives via Spam
This post was written with Rahamathulla Hussain. During the past couple of weeks, McAfee Labs has observed a huge increase in spam related to Nivdort, a malicious file that usually arrives as a .zip...
View ArticleMobile World Congress: a Microcosm of a Hyper-Connected Future
Mobile World Congress 2016 has given us a glimpse into the innovations that will hit our stores this year. From the looks of things we will get much more than just thinner handsets. Many phone...
View ArticleMalicious Forums Turn Amateur Hackers Into Cybercriminals
This blog was written by Oliver Devane and Mohinder Gill. Security researchers are aware of forums that offer downloads of malicious software such as keyloggers and remote access tools. Some...
View ArticleTargeted Ransomware No Longer a Future Threat
This post was written by Christiaan Beek and Andrew Furtak. In 2015, Intel Security investigated a ransomware campaign that targeted the financial sector of a certain country. This was the first time...
View ArticleA Future Beyond Mobile Devices; Trusting the Promises of Mobile World Congress
More than 100,000 people descended upon Mobile World Congress (MWC) last week to watch experts from around the world discuss and share their views of what the future has in store for “mobile.” After...
View ArticleTrillium Toolkit Leads to Widespread Malware
This blog was written by Oliver Devane and Mohinder Gill. Any aspiring cybercriminal can buy one of many malicious toolkits to craft a downloader and distribute malware. After a time these downloaders...
View ArticleLocky Ransomware on Rampage With JavaScript Downloader
Locky is a ransomware family that encrypts victims’ files and demands money to decrypt the files. It has infected many computers in a short time due to a huge spam campaign. Propagation vector...
View ArticleMacro Malware Associated With Dridex Finds New Ways to Hide
Macro malware is on the upswing and cybercriminals are always searching for new ways to deceive users and evade detection. McAfee Labs recently discovered a W97M/Downloader variant that uses a new...
View ArticleCriminals are Getting Excited for Tax Filing Season
Cybercriminals are plotting to take advantage of tax season, by fraudulently impersonating consumers and scamming Americans. For the citizens of the United States, tax season is upon us, during which...
View ArticleLocky Ransomware Arrives via Email Attachment
Locky is a new ransomware threat being spread via spam campaigns. This new malware has capabilities similar to those of Dridex. Locky arrives in a Microsoft Office email attachment that evades antispam...
View ArticleSensitive California Student Information to Be Released to Nonprofit
The US District Court of California (Eastern district) has issued an order requiring the California Department of Education (CDE) to produce data to the plaintiffs in a lawsuit involving allegations...
View ArticleTeslaCrypt Ransomware Arrives via Neutrino Exploit Kit
This post was written by Sriram P. and Varadharajan Krishnasamy. TeslaCrypt is a ransomware family that encrypts files and extorts money from its victims to decrypt the files. Similar to other...
View ArticleReport Highlights Enterprise Biometric Vulnerabilities, Opportunities
Authentication in the modern enterprise is becoming more difficult. The risks are rising, but adding more security controls can impede workers and are difficult to integrate into legacy systems....
View ArticleHacktivists Turn to Phishing to Fund Their Causes
At Intel Security we recently observed a phishing campaign targeting Apple account holders. The link directed the user to a compromised WordPress site used to serve the fake Apple ID login page. Users...
View Article5G Networks Pose Cyber Risks, Opportunities
Fifth-generation networking (5G) holds the potential for a massive immersion of technology into the lives of people and businesses. It is an evolution of technology that could allow enough bandwidth...
View ArticleCybersecurity Suffers Due to Human Resources Challenges
The cybersecurity industry is in a state of disrepair. Growing human resource problems put the efforts to secure technology at risk, due to insufficient staffing, skills, and diversity. The need for...
View ArticleMcAfee Labs Threats Report Discusses Cyber Threat Intelligence Sharing and More
During keynote presentations at the RSA Conference 2016 in early March, Chris Young from Intel Security, Mark McLaughlin from Palo Alto Networks, and Michael Brown from Symantec discussed the need to...
View ArticleW97M Downloader Serves Vawtrak Malware
McAfee Labs recently found a variant of the W97M macro malware downloader that runs the Vawtrak malware. Although W97M usually employs Microsoft Office documents to run malicious Visual Basic scripts...
View ArticleSecure Your Instance of Amazon’s Elastic Compute Cloud
It is absolutely necessary to secure resources in the cloud. Moving your resources to the cloud does not make your data 100% secure. You are actually moving to a shared security responsibility model in...
View ArticleMalware Employs PowerShell to Infect Systems
Email is one of the favorite methods used by attackers to infect systems. The malware used in email campaigns is often ransomware or banking malware. We have recently seen some interesting tactical...
View Article