News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

REvil: Record of a gang of cyber extortionists
REvil: Record of a gang of cyber extortionists

REvil has been one of the most prolific ransomware-as-a-service campaigns in recent memory. Thousands of technology companies, managed service providers, and organizations from a wide variety of industries worldwide have been among their victims. Bitdefender draws the preliminary balance sheet of an extortion enterprise. The cooperation between security authorities and IT experts led to great success in the second half of 2021. Joint efforts were necessary because the cyber criminals also cooperated successfully. The experts at Bitdefender Labs take stock of the – perhaps only temporary – failure of a successful wave of ransomware-as-a-service. International strikes against REvil backers Most recently, international investigators struck heavy blows against the criminal REvil backers: In…

Read more

Banking Trojan FluBot targets smartphones in Germany

Current banking Trojan campaign hides attack methods behind new supposed content. Bitdefender experts are investigating the new variants of the banking Trojans FluBot and TeaBot, which target smartphones in Germany. Bitdefender Labs experts have been monitoring new variants of the FluBot and TeaBot banking Trojans since December 2021. Over 100.000 malicious SMS were registered in Bitdefender telemetry alone during this period. An important focus of the attacks in December 2021 was Germany with 32,23%. Only Australia was hit harder. The criminal actors have now adapted their campaigns and are now luring with supposedly new content....

Read more

Expensive spam: False request for entry in the EU company register
Expensive spam: False request for entry in the EU company register

Fraudsters are currently again spreading spam e-mails with the supposed offer of the already well-known EU Business Register to be entered in a commercial register. Bitdefender Antispam Lab is currently monitoring a global campaign in North America, Asia and Europe. There is danger in the small print: it says that companies who fill out and sign the form undertake to pay an annual fee of 995 euros for three years. For its part, the European Business Registry Association (EBRA), which is responsible for the European company register – a network of commercial registers in Europe that has existed since 1992…

Read more

Crypto Wallet Stealer BHUNT

Information on cryptocurrencies and access data for online identities can be read out. Bitdefender warns of new crypto wallet stealer BHUNT. The focus is on users worldwide. Bitdefender Labs experts have identified a new family of crypto wallet stealing malware: BHUNT, on the one hand, can steal cryptocurrency information from a victim's digital wallet. Ultimately, this allows the attackers to freely and irrevocably transfer cryptocurrency to wallets they control. On the other hand, private access data, such as passwords, passphrases or login information from the web browser are also being targeted: both for online banking and…

Read more

IT security in medium-sized companies needs helping hands
IT security in medium-sized companies needs helping hands

IT security in medium-sized companies needs helping hands. More protection thanks to external experts from the Security Operation Center - SOC, as cyber attacks are becoming increasingly complex and require security specialists. A comment from Bitdefender. There is no such thing as XNUMX% security in IT. There will always be vulnerabilities such as unpatched software, leaked passwords or shadow IT that resourceful hackers can use to penetrate corporate networks. And as long as the attackers are human, they must be met by competent flesh-and-blood defenders. These experts are available through external MDR (Managed Detection and Response) services and Security Operation Center (SOC)…

Read more

Bitdefender: Five cybersecurity arenas
Bitdefender: Five cybersecurity arenas

2021 will probably be remembered negatively in many ways in terms of cyber security. Unsurprisingly, the year ended with a thunderclap for the IT security industry: the Java Log4j vulnerability created the perfect framework for hackers. Log4j, ransomware, supply chain attacks are all coming in 2022. Jen Easterly, head of the US federal government's Cybersecurity and Infrastructure Security Agency (CISA), called the Log4j vulnerability the most serious flaw she has seen in her decade-long career . The effects of Log4j will be significant for IT, business and society in the coming months and possibly also in the…

Read more

Container security also offers attack surfaces
Container security also offers attack surfaces

Risk awareness, classic cyber security principles and specific countermeasures increase the security of data and processes. IT managers use their own container security or those provided by cloud service providers in order to set up agile and flexible applications and operate processes. Ultimately, however, containers are also executable applications and can be dangerous. Container host servers and registries extend the attack surface. Classic principles of IT security and an increased sensitivity to threats help to close emerging gaps. Containers in the cloud or on-premise containers - whether kept privately or provided via a cloud provider - offer hackers ...

Read more

Log4j alarm: Bitdefender Labs with first Log4Shell balance
Log4j Log4shell

The experts at Bitdefender Labs report an initial assessment of Log4j and Log4Shell: Hackers are intensively looking for vulnerabilities. A Tor concealment of the accesses to real endpoints makes Germany the seemingly number one country of origin of the attacks. Bitdefender counted 36.000 hits on honeypots in seven days. The Log4Shell vulnerability has been actively exploited by Apache as CVE-9-2021 since it was disclosed on December 2021, 44228. The results are amazing. Most of the attack attempts seem to come from western industrialized countries such as Germany, the USA and the Netherlands, but apparently some of them hide their origin behind exit nodes of the Tor network. That puts ...

Read more

Log4j alert: Bitdefender detects ongoing attacks
Bitdefender_News

Bitdefender Labs experts observe numerous current attacks that exploit the Log4j vulnerability. Successful attacks to embed Kryptominern as well as attempted ransomware attacks can be confirmed. The most important results of an initial inventory by Bitdefender at a glance: The cyber criminals are trying to embed a new ransomware family, Khonsari. They are now also attacking Microsoft Windows systems after the hackers initially targeted Linux servers. Attackers also try to implement the remote access Trojan (RAT) Orcus via the vulnerability. You are trying to download shellcode from hxxp: //test.verble.rocks/dorflersaladreviews.bin.encrypted and inject it into the memory of the conhost.exe process. This shellcode decrypts and downloads other malicious ...

Read more

REvil decryptor saved over $ 500 million
Bitdefender_News

Bitdefender released the REvil decryptor back in September, which was able to restore data encrypted by REvil ransomware. The security provider Bitdefender not only developed the tool, but also helped a lot in breaking up the organization. Romanian authorities have also made arrests as part of the REvil investigation. These are some of the results of Operation GoldDust, a coordinated action involving 19 law enforcement agencies in Australia, Belgium, Canada, France, Germany, the Netherlands, Luxembourg, Norway, Poland, Romania, South Korea, Sweden, Switzerland, Kuwait, the United United Kingdom and the United States as well as Europol, Interpol and Eurojust involved ...

Read more