The TeslaCrypt developers release version 3.0 of their ransomware infection, which includes a modified encryption algorithm and the .XXX extension for encrypted files.
A security update has been released for QuickTime that resolves numerous remote code execution and application termination vulnerabilities. QuickTime 7.7.9 has been released to fix these updates and all users are advised to install it immediately.
A security advisory has been released by VMware for a Windows-based guest privilege escalation vulnerability that affects VMware ESXi, Fusion, Player, and Workstation. It is suggested that all users of these products upgrade to the latest patch immediately.
A new ransomware has been spotted called CryptoJoker that encrypts your data with AES-256 encryption and then demands a ransom to recover your files.
A new ransomware called Ransom32 has been discovered that is created entirely out of Javascript, HTML, and CSS. This ransomware is part of a new Ransomware as a Service that allows anyone with a bitcoin address to create their own ransomware and distribute it.
With file-encrypting ransomware on the rise, everyone needs to learn tips and tricks on how to protect yourself of mitigate the damages done by these infections. In this article we discuss a tip where Windows alerts you in a not so obvious way that something is not right.
The developer of the Radamant Ransomware Kit does not appear to be happy with Fabian Wosar and Emsisoft for the releases of decrypters that allow the victim's to recover their files for free. This displeasure is being shown in the names of their C2 servers and strings in the malware executable.
A new Adobe Flash update has been released that fixes 19 reported vulnerabilities. All of these vulnerabilities are labeled critical as they could allow an attacker to take control of an affected system.
It has been discovered that The Radamant Ransomware Kit has been for sale on underground malware and exploit sites for almost three weeks. This kit is a full turn-key solution that allows any budding criminal to distribute their own ransomware.
On Christmas Day, due to configuration on Steam's servers, visitors were able to view cached pages of other user's accounts. This allowed them to see account details such as email addresses, mailing addresses, and other private information.
The latest release of TeslaCrypt still refers to itself as version 2.2.0, but there are still some minor changes compared to the last release. These changes include minor differences in the ransom note and differ file header for the encrypted files.
Microsoft announced Monday that they will no longer tolerate adware that utilizes man-in-the-middle attacks to inject advertisements into web browsers. These techniques do not use the browser's normal extensibility model and thus remove the choice from the end user.
Last week we wrote about a new ransomware called the Ramadant Ransomware Kit that was encrypting files and adding the .RDM extension. Fabian Wosar, of Emsisoft, further analyzed the infection and was able to find a weakness in the encryption algorithm so that victim's can recover their files for free.
A new ransomware is in the wild that has been dubbed Gomasom (GOogle MAil ranSOM) by Fabian Wosar of Emsisoft due to its use of gmail email addresses in the encrypted file names. This ransomware is particularly destructive as it will not only encrypt data files but will also encrypt executables.
A new ransomware has been discovered called the Radamant Ransomware Kit that encrypts your data using AES-256 encryption and requires you to pay .5 Bitcoins, or approximately $230.88 USD, to get your files back. Any files encrypted by this ransomware will have the RDM extension added to them.
A new zero-day vulnerability was discovered for the Grub bootloader that allows attackers to bypass Grub password authentication. A security notice released by researchers Hector Marco & Ismael Ripoll states that Grub versions 1.98 (December, 2009) through 2.02 (December, 2015) are affected by this bug.
A new ransomware called the XRTN Ransomware is in the wild that encrypts your data with RSA-1024 encryption using the open source Gnu Privacy Guard (GnuPG) encryption software. This ransomware is part of the same family as the VaultCrypt ransomware that we reported on in March.
A man has been arrested by officers from the South East Regional Organised Crime Unit as part of the investigation into the hack on VTech servers. As reported earlier this month, the personal information of close to 5 million parents and 200,000 children was accessed by a hacker who broke into VTech's servers.
Google has released version 47.0.2526.106 of Google Chrome today to resolve two Google discovered security vulnerabilities. These vulnerabilities are identified as CVE-2015-6792 and these private security issues from internal audits and fuzzing and are mentioned in issue 569486.
Sophos has announced the purchase of Netherlands based security software company SurfRight for $31.8 million. HitmanPro has a history of developing innovative malware removal, APT remediation, and zero-day exploit protection solutions that will be used to strengthen the end point protection in Sophos' products.