Home > Milena Dimitrova

Author Archive: Milena Dimitrova - Page 144

An inspired writer and content manager who has been with SensorsTechForum since the project started. A professional with 10+ years of experience in creating engaging content. Focused on user privacy and malware development, she strongly believes in a world where cybersecurity plays a central role. If common sense makes no sense, she will be there to take notes. Those notes may later turn into articles! Follow Milena @Milenyim

CYBER NEWS

Social Engineered Forum Data Breach Compromises 55,000 Members

Social Engineered, a platform which promotes “the art of human hacking” has been hacked. As a result, its users’ data was leaked on a competitor’s website. 89,000 unique email addresses linked to 55,000 members of the platform were compromised, as…

CYBER NEWS

Malicious Bash Script Downloads Cryptominer on Linux Hosts

Sucuri researchers just reported that someone got in touch with them regarding “a malicious process they had discovered running on their web server”. The process in question was quite heavy on the CPU, pointing to a cryptominer process running in…

CYBER NEWS

Ryuk Ransomware Updated with IP Address Blacklisting

We haven’t heard any news about Ryuk ransomware for some time but it seems its operators are back on track as the ransomware has been updated. The new variant is adding an IP address and computer blacklisting to skip the…

CYBER NEWS

Youtube Queue Chrome Extension Hijacked Users’ Search Queries

A Chrome extension was just removed from the browser’s official Web Store because it was covertly hijacking search engine queries and taking users to suspicious search results. The extension in question is Youtube Queue, and it has been installed by…

CYBER NEWS

CVE-2019-11707: Critical Bug in Firefox Needs Immediate Patching

Did you notice your Firefox browser prompting you to update it? It’s because Mozilla just released an emergency patch addressing CVE-2019-11707, an actively exploited critical security vulnerability. This means that your Firefox browser needs to be patched immediately so that…

CYBER NEWS

Here’s How Easy It Is to Hack and Exploit a Smart Coffee Maker

Avast researchers hacked a smart coffee maker “in all kinds of ways”. They even turned it into a ransomware tool and a gateway to a home network. The idea of this hacking project was to see how deep IoT vulnerabilities…

CYBER NEWS

CVE-2019-7406 in TP-Link Wi-Fi Extenders Can Be Exploited without Authentication

IBM researchers just discovered another serious zero-day vulnerability, this time impacting TP-Link Wi-Fi Extenders. The vulnerability (known as to CVE-2019-7406) could lead to remote code execution attacks and affects TP-Link Wi-Fi Extender models RE365, RE650, RE350 and RE500 running firmware…

CYBER NEWS

CVE-2019-11477: Linux Flaw Discovered by Netflix Researcher

A number of Linux and FreeBSD servers and systems are vulnerable to a denial of service vulnerability dubbed SACK Panic, as well as other forms of attacks. Four security vulnerabilities affecting a range of Linux and FreeBSD servers were unearthed…

CYBER NEWS

Phishing Attacks Are Spreading WSH RAT, Houdini’s New Version

The dangerous Houdini worm has been transformed into a new variant dubbed WSH Remote Access Tool (RAT). More specifically, the new malware is an iteration of the VBS-based Houdini also known as H-Worm, which first appeared back in 2013. The…

CYBER NEWS

Android.FakeApp.174 Trojan Tricks You with Push Notifications

Security researchers discovered yet another Android Trojan that uses push notifications to trick users into subscribing to dubious sites. The Trojan is known under the Android.FakeApp.174 detection name. Android.FakeApp.174 In Detail Android.FakeApp.174 uses Google Chrome to load questionable websites that…

CYBER NEWS

Microsoft Fails to Patch Zero-Day Bug in Windows SymCrypt

Tavis Ormandy, security researcher at Google’s Project Zero, has “noticed a bug in SymCrypt, the core library that handles all crypto on Windows.” The bug is a zero-day of the DoS (denial-of-service) type. The bug means that “basically anything that…

CYBER NEWS

Critical CVE-2019-10959 in AGW Medical Equipment

It is a known fact that vulnerabilities in medical devices can endanger the physical security of patients. Security researchers have discovered two new such vulnerabilities, one of which is critical and could allow full control of the medical device. The…

CYBER NEWS

CVE-2019-0174: RAMBleed Attack Allows Attackers to Read Secret Key Bits

A new side-channel exploit against dynamic random-access memory (DRAM) has been discovered. The attack, which is dubbed RAMBleed allows malicious programs to read sensitive memory data from other processes running on the same hardware. RAMBleed has been identified as CVE-2019-0174.…

THREAT REMOVAL

How to Remove .gerosan Ransomware Virus (STOP Version)

What is .gerosan ransomware virus? Can .gerosan encrypted files be restored? The so-called .gerosan ransomware virus is another iteration of the infamous STOP ransomware family. This quickly growing ransomware family has affected a great number of victims. However, the good…

CYBER NEWS

Severe CVE-2019-0888 Patched in June 2019 Patch Tuesday

A total of 88 vulnerabilities were fixed in Microsoft’s June Patch Tuesday. 22 of the flaws are rated critical, and four of the fixes addressed previously announced elevation of privileges zero-days. None of the flaws in this month’s share of…

CYBER NEWS

8.4TB of Email Metadata Exposed by ElasticSearch Database

A database containing 8.4 TB of email metadata was left exposed to the internet. The database belonged to a major Chinese research university. The good news is that it is now secured. While searching Shodan, security researcher Justin Paine, who…

CYBER NEWS

Malboard Attack Uses AI to Mimic Users and Evade Detection

Malboard is a new sophisticated attack developed by security researchers at Israeli Ben-Gurion University of the Negev (BGU). The attack involves a compromised USB keyboard to generate and send malicious keystrokes that mimic user behavior. What makes this attack sophisticated…

THREAT REMOVAL

Remove wtfsupport@airmail.cc Ransomware Virus

What is wtfsupport@airmail.cc ransomware? We received several reports regarding a new ransomware virus currently infecting users worldwide. The ransomware is most likely spread in malicious spam campaigns. We named it wtfsupport@airmail.cc ransomware virus (or wtfsupport@airmail.cc files virus) after one of…

CYBER NEWS

CVE-2017-11882 Exploited in Email Attacks Against European Users

Emails delivering malware is not news but this campaign deserves attention because it uses a previously patched exploit and requires zero interaction. An active malware campaign which is using emails in European languages distributes RTF files that carry the CVE-2017-11882…

CYBER NEWS

SandboxEscaper Publishes Bypass for Patched CVE-2019-0841

Security researcher SandboxEscaper has released the details of CVE-2019-0841, another zero-day affecting Windows 10 and Windows Server 2019. The details have been published on GitHUb and are now available in the same account with the previously disclosed eight zero-days. The…

This website uses cookies to improve user experience. By using our website you consent to all cookies in accordance with our Privacy Policy.
I Agree