A recent Defcon talk by Tom Van Goethem and Mathy Vanhoef, "Timeless Timing Attacks" made significant progress on ways to create timing attacks over a network. Timing attacks work by extracting data form devices based on how long it takes to respond. To successfully run a timing attack, the attacker usually must be directly connected to the computer since the smallest … [Read more...]
REvil Hasn’t Gone Anywhere (Probably)
Many of the recent high-profile ransomware attacks like those against Acer, JBS and more recently, customers of Kaseya, have been the work of the ransomware as a service group REvil. After the most recent attack that exploited multiple zero-day vulnerabilities in Kaseya’s VSA software and left thousands of organizations encrypted, REvil appears to have gone dark. The ransomware … [Read more...]
Python Modules: Not As Safe As You Think
We normally think of malware and threats coming from executables, packages, and scripts. Researchers recently found a supply chain attack using a different method. Programs use Python scripts to manage and run services. You especially see this in Unix-based operating systems. When it comes to security many professionals use Python to automate tasks. Because of the … [Read more...]
FIFA 21 Source Code Leak From Member of Reemerging Hacking Group
A KickAss hacking group member (not the Torrent group) who goes by Leakbook claims to have the full FIFA 21 source code, which they have listed for sale on a popular hacking forum. In addition to the FIFA 21 source code they also claim to have access to the matchmaking servers, Frostbite source code, private API keys, and other development tools. Leakbook directs users to the … [Read more...]
“The Biggest Cyber Attack In New Zealand’s History”
A large cyber attack has caused chaos in the New Zealand healthcare system over the past few weeks. Multiple hospitals in New Zealand became crippled due to locked phone lines and computers from a large ransomware attack. Though the ransom note didn’t contain a dollar amount the note indicates a "ransomware event" according to the head of Waikato's district health board Kevin … [Read more...]