New Malware Hermetic Wiper Used in Ukraine

Introduction While Russia began its invasion of Ukraine, several Ukraine defense and foreign ministry websites, banks and many others were taken down in a large, distributed denial of service (DDoS) attack all over Ukraine. This is consistent with tactics used in the past by Russia when it comes to cyber attacks as seen before in …

The P2P Botnet: FritzFrog

Preamble To start off, I believe that some definitions are in order, as understanding some of the concepts FritzFrog utilizes helps paint the picture of what exactly it does. Firstly, P2P is the short form of peer-to-peer; which refers to a type of network, where two or more systems are connected (Computerworld). Peers on a …

NFT hype will hijack your PC and webcam

NFT hype will hijack your PC and webcam With the rapid development of the Internet and computers, more and more novel things have appeared in our lives. We no longer read newspapers but read news on the Internet. People don’t need to go to the mall to shop. We only need to place an order …

As Deepfake gets Deeper, Security Risks Heighten

An emerging social engineering attack combines aspects of both misinformation and cyberattacks compromising data integrity: deepfakes. Deepfake is a term that combines the words “deep learning” and “fakes,” which refers to synthetic videos, images, and audio recordings generated through deep learning AI techniques. While there is a positive side to the deepfake when accompanied with …

Devious malware hosted on Discord pretends to be Windows 11 installer

How the attack is carried out Attackers distribute RedLine Stealer, a piece of malware that sets out to steal user information. They have developed a fake website that appears to be a carbon copy of Microsoft’s official Windows 11 installer page. However, the “Download Now” button beneath the “Get Windows 11” banner links to a …

Malware found hidden in Cities: Skylines mod

Cities: Skylines is a video game that allows players to design and manage cities. The game is available for many different gaming platforms, including PC, XBOX, Nintendo Switch and Play-Station 4 (1). Cities: Skylines is one of three city-building games created by the Finnish video game developers Colossal Order (2). The game developers allow the …

Adobe Commerce: Why Input Validation Matters

Last Sunday Adobe issued an extremely highly rated CVE under CVE-2022-24086 with a rating of 9.8/10 for their “Adobe Commerce” platform. The vulnerability allows anyone to execute arbitrary code execution, without any prior credentials or admin powers! The weakness found was based off input validation which is a relatively common weakness. If you’ve ever heard …

2FA provider secretly also provides surveillance through telecommunications network

Twitter appears to be distancing themselves from their two-factor authentication provider, Mitto AG, following recent controversy regarding Mitto AG’s COO selling access to their network to surveillance companies.

Impersonator Group Apprehended in Spain

Introduction On the 10th of February police in Cataluña, Spain reported the apprehension of a criminal group that robbed bank accounts by impersonating individuals in order to duplicate their phone numbers, allowing them to bypass two-factor authentication and successfully authorize money transfers out of the accounts. Eight arrests were made and twelve bank accounts throughout …

A close look at Bill S-210 and the issues surrounding Website Blocking

Behind the curtains of the Senate is a piece of legislation that, if passed, could potentially ruin the internet for everyone. Bill S-210 is not too dissimilar to the infamous Bill C-11 or Online Streaming Act, which grants the Canadian Radio-television and Telecommunications Commission (or CRTC for short) power to regulate almost every online audio/visual …