《维他命》逐日清静简讯20190314
宣布时间 2019-03-14
原文链接:
https://www.infosecurity-magazine.com/news/google-apple-and-godaddy-recall-1m-1/2、Google Play中210个APP熏染广告软件SimBad,波及1.5亿用户
原文链接:
https://www.bleepingcomputer.com/news/security/simbad-adware-found-in-210-android-apps-with-over-150m-installs/3、信息窃取木马Ursnif的新变种,主要针对日本
凭证清静厂商Cybereason的剖析,信息窃取木马Ursnif的一个新的变种正在日本起劲分发。该变种获得了许多新的功效,包括隐藏的长期性机制、包括加密钱币�?楹痛排碳用苣?椤⒂Χ匀毡厩寰补ぞ逷hishwall的Anti-Phishwall�?椤⒓觳馊毡居镅陨柚谩⒓觳馕恢眯畔⒌�。详细IoC指标请参考以下链接。
原文链接:
https://cyware.com/news/latest-ursnif-variant-targets-japanese-users-to-steal-credentials-190c4a694、针对巴西的攻击运动Operation Comando,主要分发CapturaTela
Palo Alto Networks的Unit 42研究团队检测到针对巴西的攻击运动Operation Comando。该运动自2018年8月以来一直活跃,攻击者主要针对旅馆客户,使用恶意软件CapturaTela来窃取客户的信用卡信息。攻击者主要通过垂纶邮件来熏染目的,除了CapturaTela之外,攻击者还使用了其它几种RAT,包括LimeRAT、RevengeRAT、NjRAT、AsyncRAT、NanCoreRAT和RemcosRAT。
原文链接:
https://cyware.com/news/attackers-use-new-capturatela-info-stealing-malware-to-launch-operation-comando-campaign-19cb2bfe5、针对俄罗斯金融机构的垂纶攻击,主要分发RTM Bot新变种
原文链接:
https://cyware.com/news/financial-institutions-in-russia-targeted-using-new-version-of-rtm-bot-in-recent-phishing-campaign-78d8ab5d6、卡巴斯基宣布2018年垃圾邮件及垂纶攻击报告
原文链接:
https://securelist.com/spam-and-phishing-in-2018/89701/声明:本资讯由尊龙凯官网入口维他命清静小组翻译和整理


京公网安备11010802024551号