<img src="https://secure.ruth8badb.com/159098.png" alt="" style="display:none;">

IT Security Newsletter - 4/19/2022

SHARE

Hacking

US warns of Lazarus hackers using malicious cryptocurrency apps

CISA, the FBI, and the US Treasury Department warned today that the North Korean Lazarus hacking group is targeting organizations in the cryptocurrency and blockchain industries with trojanized cryptocurrency applications. The attackers use social engineering to trick employees of cryptocurrency companies into downloading and running malicious Windows and macOS cryptocurrency apps. READ MORE...

Malware

New stealthy BotenaGo malware variant targets DVR devices

Threat analysts have spotted a new variant of the BotenaGo botnet malware, and it's the stealthiest seen so far, running undetected by any anti-virus engine. BotenaGo is a relatively new malware written in Golang, Google's open-source programming language. The source code for the botnet has been publicly available for about half a year, since it was leaked in October 2021. READ MORE...


Conti's Ransomware Toll on the Healthcare Industry

Conti - one of the most ruthless and successful Russian ransomware groups - publicly declared during the height of the COVID-19 pandemic that it would refrain from targeting healthcare providers. But new information confirms this pledge was always a lie, and that Conti has launched more than 200 attacks against hospitals and other healthcare facilities since first surfacing in 2018 under its earlier name, "Ryuk." READ MORE...

Information Security

Your iOS app may still be covertly tracking you, despite what Apple says

Last year, Apple enacted App Tracking Transparency, a mandatory policy that forbids app makers from tracking user activity across other apps without first receiving those users' explicit permission. Privacy advocates praised the initiative, and Facebook warned it would spell certain doom for companies that rely on targeted advertising. However, research published last week suggests that it doesn't always curb the surreptitious collection of personal data or the fingerprinting of users. READ MORE...

Exploits/Vulnerabilities

81% of codebases contain known open source vulnerabilities

Synopsys released a report which examines the results of more than 2,400 audits of commercial and proprietary codebases from merger and acquisition transactions, and highlights trends in open source usage within commercial and proprietary applications and provides insights to help developers better understand the interconnected software ecosystem. READ MORE...

On This Date

  • ...in 1764, the British Parliament bans the American colonies from printing paper money, to limit inflation for British merchants.
  • ...in 1946, actor Tim Curry ("The Rocky Horror Picture Show", Stephen King's "It") is born in Cheshire, England.
  • ...in 1971, the Soviet Union launches Salyut 1, the first space station to be placed in Earth orbit.
  • ...in 1987, "The Simpsons" first appears as a series of animated shorts shown on "The Tracey Ullman Show."