Hacker Public Radio

HPR3743: HPR News


Listen Later

HPR NEWS
News for the community,
by the community.
TAGS: Ransomware, Malware, Phishing, Security
Breach
Microsoft
Confirms Server Misconfiguration Led to 65,000+ Companies' Data
Leak
Microsoft “misconfigured” an Azure
Blob Storage server causing a security breach. Attackers were able
to access unauthorized customer data; business transactions and other
interactions between Microsoft and its customers. SOCRadar, a cyber security company, is
calling the security breach “BlueBleed”. SOCRadar discovered the breach
on September 24, 2022 Microsoft is downplaying the security breach but
security researcher Kevin Beaumont isn't buying it. Mr. Beaumont suggest
Microsoft dropped the ball on informing its customers, and federal
regulators, of the security breach in a timely manner.
HiddenAds
malware affects 1M+ Android users
McAfee’s Mobile Research Team identified multiple apps containing
malware on the Google Play Store. After install, the malicious android
apps automatically run services without the user knowing or interacting
with the app. That’s right, they auto run after install. These malicious
apps then disguise themselves by changing their icon to the “Google
Play” icon and renaming to themselves to “Google Play” or “Settings”.
The malicious apps quickly create permanent malicious services. McAfee’s
Mobile Research Team demonstrates the resilience of the malware by using
kill
-9 on the service processes. More malicious processes generate
immediately as if nothing happened.
Fully
undetectable PowerShell backdoor disguised as part of a Windows
update
Director of security research at SafeBreach, Tomer Bar stated, "The
covert self-developed tool and the associated C2 commands seem to be the
work of a sophisticated, unknown threat actor who has targeted
approximately 100 victims."
Based on the metadata found within a malicious document, this seems
to be a LinkedIn-based spear-phishing attack, which ultimately leads to
the execution of a PowerShell script via a piece of embedded macro
code.
"The Macro drops 'updater.vbs' creates a scheduled task pretending
to be part of a Windows update, which will execute the updater.vbs
script from a fake update folder under
'%appdata%localMicrosoftWindows,'"said Tomar.
Currently 32 security vendors and 18 anti-malware engines have
flagged the decoy document and the PowerShell scripts as malicious.
The findings come as Microsoft has taken
steps to block Excel 4.0 (XLM or XL4) and Visual Basic for
Applications (VBA) macros by default across Office apps, prompting
threat actors to pivot to alternative
delivery methods.
Millions of
patients compromised in hospital data leak.
Nearly 3 million Illinois & Wisconsin patients are caught in a
hospital data breach. Advocate Aurora Health, which operates 27
hospitals, said in a statement, “the breach may have exposed information
including
...more
View all episodesView all episodes
Download on the App Store

Hacker Public RadioBy Hacker Public Radio

  • 4.2
  • 4.2
  • 4.2
  • 4.2
  • 4.2

4.2

34 ratings


More shows like Hacker Public Radio

View all
The Changelog: Software Development, Open Source by Changelog Media

The Changelog: Software Development, Open Source

290 Listeners

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

372 Listeners

LINUX Unplugged by Jupiter Broadcasting

LINUX Unplugged

268 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

652 Listeners

Curious Cases by BBC Radio 4

Curious Cases

825 Listeners

The Strong Towns Podcast by Strong Towns

The Strong Towns Podcast

422 Listeners

Late Night Linux by The Late Night Linux Family

Late Night Linux

164 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,052 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

181 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

189 Listeners

TechCrunch Daily Crunch by TechCrunch

TechCrunch Daily Crunch

42 Listeners

Strict Scrutiny by Crooked Media

Strict Scrutiny

5,811 Listeners

2.5 Admins by The Late Night Linux Family

2.5 Admins

98 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

140 Listeners

What the Hack? by DeleteMe

What the Hack?

228 Listeners