SecurityAffairs: UNRAVELING EternalBlue: inside the WannaCry’s enabler https://securityaffairs.com/150220/hacking/unraveling-eternalblue-exploit.html #informationsecuritynews #ITInformationSecurity #PierluigiPaganini #SecurityAffairs #BreakingNews #ETERNALBLUE #hackingnews #WannaCry #Hacking #Malware #NSA
#informationsecuritynews #itinformationsecurity #pierluigipaganini #securityaffairs #breakingnews #eternalblue #hackingnews #wannacry #hacking #malware #nsa
Unraveling #EternalBlue: inside the #WannaCry’s enabler #cybersecurity #infosec https://securityaffairs.com/150220/hacking/unraveling-eternalblue-exploit.html @securityaffairs
#infosec #cybersecurity #wannacry #eternalblue
SecurityAffairs: UNRAVELING EternalBlue: inside the WannaCry’s enabler https://securityaffairs.com/150220/hacking/unraveling-eternalblue-exploit.html #informationsecuritynews #ITInformationSecurity #PierluigiPaganini #SecurityAffairs #BreakingNews #ETERNALBLUE #hackingnews #WannaCry #Hacking #Malware #NSA
#informationsecuritynews #itinformationsecurity #pierluigipaganini #securityaffairs #breakingnews #eternalblue #hackingnews #wannacry #hacking #malware #nsa
Vietnamese-Origin #Ransomware Operation Mimics #WannaCry Traits #cybersecurity #infosec https://www.infosecurity-magazine.com/news/vietnamese-ransomware-mimics/
#infosec #cybersecurity #wannacry #ransomware
Damit wird das ramponierte Ansehen des BSI nach der Schönbohm-Affäre weiter beschädigt. Damit Unternehmen und Bürger:innen dem BSI vertrauen, muss unbedingt der Eindruck vermieden werden, dass Sicherheitslücken auf Bitten der Sicherheitsbehörden offengehalten werden. Beispiele wie #WannaCry und #Pegasus zeigen, dass diese eine Gefahr für die Demokratie sind. 4/4
Damit wird das ramponierte Ansehen des BSI nach der Schönbohm-Affäre weiter beschädigt. Damit Unternehmen und Bürger:innen dem BSI vertrauen, muss unbedingt der Eindruck vermieden werden, dass Sicherheitslücken auf Bitten der Sicherheitsbehörden offengehalten werden. Beispiele wie #WannaCry und #Pegasus zeigen, dass diese eine Gefahr für die Demokratie sind. 4/4
Proof of Concept: #Malware Delivery via #appx/#msix packages.
In our test case we needed administrative permissions to install the package with putty.exe as our test payload.
We did test it first with a #Wannacry #Ransomware binary, but Windows Defender caught the payload and that didn't look so nice on a screenshot 😅
Our .appx demo package is based off of a in-the-wild sample of #Magniber #Ransomware that was signed with a stolen signature (Jan 2022). With this change in Windows 11 it is now possible to install unsigned appx packages (given required perms).
https://twitter.com/f0wlsec/status/1481338661824307204
Detection opportunities:
- Execution out of C:\Program Files\WindowsApps\
- Looking for the special OID documented by Microsoft here: https://learn.microsoft.com/en-us/windows/msix/package/unsigned-package
We are going to publish our #Yara rules for this tomorrow, stay tuned.
#malware #appx #wannacry #ransomware #Magniber #yara
Una nuova RCE su Windows rivaleggia con il vecchio Eternalblue
Una ricercatrice di sicurezza ha recentemente scoperto una nuova #RCE su #Windows che ha il potenziale per rivaleggiare con il vecchio #EternalBlue, il nome di un altro difetto di sicurezza sempre di Windows utilizzato per diffondere #WannaCry, il #ransomware che ha bloccato le reti di computer in tutto il mondo nel 2017.
Come EternalBlue, la CVE-2022-37958 è una RCE su Windows e consente agli aggressori di eseguire #codice #dannoso senza richiedere l’#autenticazione.
#redhotcyber #informationsecurity #ethicalhacking #dataprotection #hacking #cybersecurity #cybercrime #cybersecurityawareness #cybersecuritytraining #cybersecuritynews #privacy #infosecurity
#infosecurity #privacy #CyberSecurityNews #cybersecuritytraining #CyberSecurityAwareness #cybercrime #cybersecurity #hacking #dataprotection #ethicalhacking #informationsecurity #redhotcyber #autenticazione #dannoso #codice #ransomware #wannacry #eternalblue #windows #rce
The book even mentions @malwaretech's part in the #WannaCry pandemic! Along with gangsters laundering money for #DPRK etc.. Geoff White made the effort of a good recollection of the events back then... Congrats!
The Australian federal police said that the threat actors behind the #medibank breach are in #Russia. This was the Russian response. That's rich coming from the government that was calling the shots on #wannacry and #notpetya .
Absolutely shameless.
#Medibank #russia #wannacry #notpetya
#Wannacry, the hybrid #malware that brought the world to its knees...
https://securityaffairs.co/wordpress/137894/cyber-crime/wannacry-hybrid-malware.html
WannaCry continua a far piangere la cybersecurity mondiale - Matrice Digitale #cybersecurity #evidenza #nordcorea #Ransomware #wannacry #23maggio https://parliamodi.news/article/aHR0cHM6Ly93d3cubWF0cmljZWRpZ2l0YWxlLml0L25vdGl6aWUvd2FubmFjcnktY29udGludWEtYS1mYXItcGlhbmdlcmUtbGEtY3liZXJzZWN1cml0eS1tb25kaWFsZS8=
#23maggio #wannacry #ransomware #nordcorea #evidenza #cybersecurity
RT @BSI_Bund@twitter.com
Heute vor fünf Jahren startete ein Cyber-Angriff mit der #Ransomware #WannaCry, der weltweit IT-Sicherheitsvorfälle auslöste. Erinnert ihr euch noch? Zum Jahrestag haben wir unsere Pressemitteilung von damals herausgesucht: ➡http://web.archive.org/web/20170704074712/https://www.bsi.bund.de/DE/Presse/Pressemitteilungen/Presse2017/PM_WannaCry_13052017.html #DeutschlandDigitalSicherBSI
#ransomware #wannacry #DeutschlandDigitalSicherBSI
📸 Learn the art of detecting hidden cameras in an #Airbnb or a hotel room from the #infosec researcher who saved the world from WannaCry #ransomware.
#wannacry #Surveillance #Privacy #Ransomware #InfoSec #airbnb
U.S. Indicts North Korean Hackers in Theft of $200 Million - The U.S. Justice Department today unsealed indictments against three men accused of working with the... https://krebsonsecurity.com/2021/02/u-s-indicts-north-korean-hackers-in-theft-of-200-million/ #cybersecurityandinfrastructureagency #departmentofhomelandsecurity #neer-do-wellnews #marinechaintoken #ghalebalaumary #jonchanghyok #lazarusgroup #sonypictures #hiddencobra #parkjinhyok #applejeus #wannacry #apt38 #kimil #fbi
#fbi #kimil #apt38 #wannacry #applejeus #parkjinhyok #hiddencobra #sonypictures #lazarusgroup #jonchanghyok #ghalebalaumary #marinechaintoken #neer #departmentofhomelandsecurity #cybersecurityandinfrastructureagency
US charges North Korean hackers in relation to WannaCry, Sony Pictures attack, and an attempt to steal more than a billion dollars from banks https://www.tripwire.com/state-of-security/featured/us-charges-north-korean-hackers-wannacry-sony-pictures-attack/ #Securitythreats #cryptocurrency #SonyPictures #Ransomware #NorthKorea #ransomware #Guestblog #Law&order #WannaCry #Malware #SWIFT
#Securitythreats #cryptocurrency #SonyPictures #ransomware #northkorea #Guestblog #law #wannacry #malware #swift
U.S. Indicts North Korean Hackers in Theft of $200 Million https://krebsonsecurity.com/2021/02/u-s-indicts-north-korean-hackers-in-theft-of-200-million/ #CybersecurityandInfrastructureAgency #DepartmentofHomelandSecurity #Ne'er-Do-WellNews #MarineChainToken #GhalebAlaumary #JonChangHyok #LazarusGroup #SonyPictures #HiddenCobra #ParkJinHyok #AppleJeus #WannaCry #APT38 #KimIl #fbi
#CybersecurityandInfrastructureAgency #DepartmentofHomelandSecurity #ne #MarineChainToken #GhalebAlaumary #JonChangHyok #lazarusgroup #SonyPictures #hiddencobra #ParkJinHyok #AppleJeus #wannacry #APT38 #KimIl #fbi
The Confessions of Marcus Hutchins, the Hacker Who Saved the Internet
https://www.wired.com/story/confessions-marcus-hutchins-hacker-who-saved-the-internet/
A long read of an untold story. From black hat to white hat, before his past caught up with him. Lots of nuance in this portrait.
The Confessions of Marcus Hutchins, the Hacker Who Saved the Internet
https://www.wired.com/story/confessions-marcus-hutchins-hacker-who-saved-the-internet/
A long read of an untold story. From black hat to white hat, before his past caught up with him. Lots of nuance in this portrait.
#wired #story "The Confessions of Marcus Hutchins, the Hacker Who Saved the Internet" #WannaCry #Hacker #MarcusHutchins ... https://www.wired.com/story/confessions-marcus-hutchins-hacker-who-saved-the-internet/
#wired #story #wannacry #hacker #marcushutchins