RAT called PlugX (Korplug) used to target users in Afghanistan, Russia, Tajikistan, Kazakhstan and Kyrgyzstan.

It was used most recently to target users in Afghanistan, Russia, Tajikistan, Kazakhstan and Kyrgyzstan. it has also surfaced in attacks from the Chinese Advanced Persistent Threat Actors (APT). Researchers have identified other RATs, keyloggers and file stealers as well. The campaign has been active since at least June 2014. The trojan, is being delivered by email spear phishing. The aim of this malware is to utilize vulnerabilities in Microsoft Word to install itself onto the target system....

November 14, 2014 · 1 min · 119 words · Peter Ford

RedHack hacks into Turkey’s Electric Distribution company website, delete bills worth 1.5 trillion Turkish Lira

RedHack the Turkeys number one hacker collective today hacked into the website of the Turkey Electricity Transmission Company. They have claimed that they have deleted the pending bill of Turkish citizens amounting to Turkish Lira 1.5 trillion. This amounts to 668523705000.00 US Dollar at current market rate. They follow the MarxistLeninist ideology and were founded in 1997. It runs many hacktivism projects such as the mass protest against the Turkeys Internet Censorship laws etc....

November 14, 2014 · 1 min · 86 words · Timothy Trujillo

Two Tennessee blokes use default ATM codes to steal over $400,000

He re-programmed the ATMs to dispense $20 dollar bills instead of $1 ones. Actually, according to federal prosecutors, he went to a lot of them. Most ATMs secure this mode by using a secret passcode. Fattah, being a former bank employee, knew this code and abused it to hack into the machines. Once withdrawn, they programmed the machine back so that their little exercise wasnt detected. The hack shows how little details can be misused....

November 14, 2014 · 2 min · 232 words · Anthony Riddle

US using fake cell phone towers in airplanes to snoop on American citizens

Table Of Contents US using fake cell phone towers in airplanes to snoop on American citizens. The program run by the U.S. The towers above the Cessna tricked the mobile phones to automatically switch over to it for signals. It works on the simple equation of mobiles catching the strongest signals to attach themselves to networks. There are reports that the US agency usedStingRay technologybut it is unconfirmed as of now....

November 14, 2014 · 1 min · 106 words · Michelle Lopez

Critical Schannel flaw in Windows exposed, Microsoft issues patch

The flaw, found during a proactive audit is located in the secure channel or Schannel technology. The flaw can be exploited by an attacker to remotely attack a machine. Microsoft received information about this vulnerability through coordinated vulnerability disclosure. We say potential as no attacks have yet been reported using this vulnerability. Also, Microsoft has released a patch for the flaw, which means the loophole has been plugged. Microsoft has also said that there is no other workaround against this flaw other than the patch....

November 13, 2014 · 1 min · 133 words · Kevin Smith

MrBitcoin injects virtual wallet into your wrist!

Table Of Contents A company puts your money into your hands, literally ! After programming the chips, this entrepreneur can use them to make wireless payments via his smartphone. These chips are programmed to work alongside your smartphones. All data transfer happens through your mobile rig, with the exception that the money remains on the chips. He also advises against using this as a replacement credit card. He had gotten them inserted along with a few other people on the 3rd of November....

November 13, 2014 · 1 min · 111 words · Brandon Davis

NFC is the new security threat, iPhone 5s, Galaxy S5 pwned in Mobile Pwn2Own

The competition Heres how the contest works. Security researchers choose the equipment they would like to try and hack into at the time of registration. They have to carry out the hack in a 30 minute time frame. As always, the initial vulnerability used in the attack must be in the registered category, Gorenc explained. The contestant must demonstrate remote code execution by bypassing sandboxes (if applicable) and exfiltrating sensitive information....

November 13, 2014 · 1 min · 156 words · Carrie Gonzales

50 percent of USB devices world wide susceptible to BadUSB

The results: Roughly half of the chips were immune to the attack. But predicting which chip a unit uses is practically impossible for the average consumer. What is BadUSB If you have read theBadUSB articleyou did already know it. The demo showed that similar hacks could work against Android phones when attached to targeted computers. The result were very unpredictable for Nohl and his associates to make a conclusive report....

November 12, 2014 · 1 min · 202 words · Eric Ramos

Chinese Hackers Hacked the US Weather Systems and Allied Satellite Networks

They did not even bother to inform the concerned authorities, making it a full fledged cover up. In a statement released Wednesday, NOAA spokesman Scott Smullen acknowledged the hacks and said incident response began immediately. He said all systems were working again and that forecasts were accurately delivered to the public. Smullen declined to answer questions beyond his statement, citing an investigation into the attack. Wolf has a long-standing interest in cyber security and asked NOAA about the incident....

November 12, 2014 · 1 min · 157 words · Brandon Griffin

Father of 10 year old impersonates her on Facebook to get a child abuser arrested

When the reason is just, any means to get it done will justify it. Further messages only confirmed to the girls father that Wayne was trying to groom his little girl for abuse. Inspite of making it clear to Wayne that his daughter was only 10 years old the pedophile persisted. Thankfully these conversation records helped get Wayne locked away for a long time. Past history Wayne has a colourful past pedophilia history....

November 12, 2014 · 1 min · 103 words · Joseph Jones

HSBC Turkey hacked and 2.7 million customers credit card data compromised

The bank stated that it had notice the attack in the last week through its internal security control mechanism. The bank also said that, Only the linked account number was compromised. The content of the account was not compromised. It is not possible to commit fraud with the linked account number. No other information was compromised, including account numbers of term deposit accounts or other deposit accounts. Our customers may continue to perform all banking transactions with HSBC as usual....

November 12, 2014 · 1 min · 82 words · Joseph Blair

Non Delivery of messages for ex-iMessage users lands Apple a lawsuit

Apple concedes server-side bug The flaw apparently, is in the way iMessage works. But it fails to do so in most cases. The sender is under the impression that the receiver has received his message. This peculiar problem creates lots of problems for users. Apple has accepted that there is a server-side bug on their side which is the cause of this problem. The Case Moore filed the lawsuit in May earlier this year....

November 12, 2014 · 1 min · 122 words · Chelsey Farley

20 year old South Korean hacked 104 websites & collected 280,000 private records before being arrested

This spree of hacking began in November of last year and went on till the past August. Jang also looked to exploit his evil deeds financially. The authorities have evidence that Jang trying to make purchases with the credit card information he had stolen. A simple way of doing this is using an SQL injection. It is a very known trick and can easily be protected against. But most websites do not care to bother about this basic measure....

November 11, 2014 · 1 min · 81 words · David Jenkins