Adobe released an updated security advisory yesterday regarding a critical vulnerability (CVE-2016-1019) that exists in Adobe Flash Player 21.0.0.197 and earlier versions. Though an emergency update may be released tomorrow, all Flash users are advised to immediately upgrade to the latest version.
The Rokku Ransomware has been discovered that encrypts each file with its own individual encryption key. Another interesting feature of Rokku is its use of the uncommon encryption algorithm called Salsa20, which has greater speeds than AES and supposedly greater security.
Web sites running the Magento eCommerce platform are currently being targeted by an attacker who infects them with a new ransomware called KimcilWare. This ransomware will encrypt all the data on the web site and demand $140 to $415 USD in order to get the data back.
Today the FBI dropped legal actions against Apple as they were able to gain access to the iPhone used by Syed Farook. Though this case, and its related privacy and security issues, have been put on hold, the knowledge that this vulnerability exists is going to spur more people, and probably the wrong ones, into discovering it.
Due to an undisclosed vulnerability in Flash player versions prior to 21.0.0.182 and 18.0.0.333, Apple has blocked access to Flash when using Safari in OS X. When visiting sites that require Flash you will now be greeted with a warning that it has been blocked and instructions on how to update it.
A new family of ransomware called Coverton was released last week that due to poor design is leaving people who payed the ransom without a working decryptor. For those who may be affected by the Coverton Ransomware, you should strongly reconsider if you plan on paying the ransom.
Instead of targeting your files, the Petya ransomware goes for it all by encrypting the Master File Table on a victim's drive. This prevents any files, including Windows, from being accessible until a victim pays the ransom.
A new ransomware called Maktub Locker has been discovered that has the nicest ransomware payment site that I have seen to date. A fancy web page, though, does not diminish the fact that this ransomware effectively encrypts a victim's data and requires them to pay 1.4 bitcoins to get the files back.
The Nemucod Trojan Downloader has started including a ransomware component that encrypts a victim's data using XOR encryption and renames the files to have the .CRYPTED extension. Fabian Wosar, of Emsisoft, was able to analyze this infection and release a free decryptor so that victim's can get their files back.
Ransomware is one of the most prolific malware types being developed. Due to this, new distribution techniques are constantly being developed to install this type of malware and avoid antivirus detection The Surprise ransomware utilizes two new techniques, such as TeamViewer distribution and launching the ransomware from memory.
Hospitals have been having a tough time with ransomware lately. Starting last month, when Hollywood Presbyterian Medical Center paid close to 17k for a ransomware decryption key, more news has been released about other hospitals being affected by ransomware..
Today Apple has released security updates today for OS X Server, Safari, OS X El Capitan, Xcode, tvOS, watchOS, and iOS that resolve critical vulnerabilities that could lead to remote code execution. All of these updates are available now and should be installed immediately.
A ransomware family that is built using a easy-to-use builder has started being spotted in our forums. Thankfully, Fabian Wosar of Emsisoft was able to discover the builder and create a decryptor for those affected by this ransomware.
TeslaCrypt 4.0 has been released with some minor modifications. These modifications include fixing a bug that corrupted files with sizes greater than 4GB, new ransom note names, and no longer appending an extension for encrypted files.
A new ransomware was released yesterday that was based off of the open-source EDA2 ransomware. This ransomware encrypt files using AES encryption, appends the Locked extension, and then demand .5 bitcoins to get tin the decryption key. What makes this story different is how this ransomware developer is such a pompous ass.
Today Adobe issued Security Bulletin APSB16-08, which is an Adobe Flash update that fixes 23 reported vulnerabilities. These vulnerabilities are all critical as they could allow an attacker to take control of an affected system. Adobe is also aware of a report that an exploit CVE-2016-101 is being used in limited attacks.
Today Microsoft, and Adobe all released security updates for security vulnerabilities in their products. Some of these vulnerabilities were labeled as Critical, which would allow an attacker to execute commands on the affected computer without the user's permission.
KeRanger is the first ransomware to actively target Mac OS X operating systems. This article will provide technical information about how KeRanger works, what files are created, and how to remove it from a Mac.
The scourge of ransomware has finally come to OS X! Researchers at the security firm Palo Alto Networks have announced that version 2.90 of the Transmission bittorrent client for Mac OS X has been adulterated with a new ransomware variant they have named KeRanger.
The Cerber ransomware is a new RaaS that encrypts your data and then demands 1.24 bitcoins to get the data back. This is also the first ransomware that utilizes the first VBS script that causes your computer speak to you about your encrypted files.