News

Latest news on the subject of B2B cyber security >>> PR agencies: Add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

Top malware in March
Top malware in March

Last month, security researchers uncovered a new malware campaign from the notorious Emotet Trojan. As reported earlier this year, since Microsoft announced it would block macros in Office files, Emotet attackers have been looking for alternative ways to proliferate malicious files. In the most recent campaign, the attackers have chosen a new strategy: they send spam emails that contain a malicious OneNote file. Once opened, a fake message appears, tricking the victim into clicking on the document, thereby downloading the Emotet infection. Once installed, the malware can steal email user credentials such as login credentials…

Read more

Top malware in Q1-2023: Qbot, Formbook, Emotet
Top malware in Q1-2023: Qbot, Formbook, Emotet

Check Point's Spring 2023 Global Threat Index shows Qbot, Formbook, and Emotet malware as the most threatening, HTTP Headers Remote Code Execution vulnerability on the rise, and retail as an industry most under attack. Check Point has published its Global Threat Index for January 2023. Qbot, a sophisticated Trojan that steals banking information and keystrokes, remains at the top. Emotet slips to third place in Germany. With regard to sectors and areas, retail was attacked in Germany in particular. Maya Horowitz, VP Research at...

Read more

Emotet on the move in a new dangerous variant
Emotet on the move in a new dangerous variant

After months of deceptive silence, a new dangerous variant of the Emotet Trojan has now been discovered. Hornetsecurity's Security Lab discovered it and warns against it. The new variant relies on large files that have been extremely packed to avoid fast scans. The dangerous Emotet malware is back. After almost three months of silence, the Security Lab, Hornetsecurity's in-house security laboratory, has discovered a new variant of the Trojan. The latest version of Emotet uses very large files to bypass security scans and infiltrate IT systems. Security software often only scans the…

Read more

EDR: Old service is a door opener for Emotet, REvil & Co
B2B Cyber ​​Security ShortNews

Check Point Research has discovered a software service that has been helping hackers bypass EDR (Endpoint Detection & Response) protection for over six years. The software service serves as a door opener for Emotet, REvil, Maze and other malware. Beneficiaries of the TrickGate service include well-known malware such as Cerber, Trickbot, Maze, Emotet, REvil, Cobalt Strike, AZORult, Formbook, AgentTesla - a colorful parade of top malware Check Point releases monthly. Old service levers out EDR TrickGate is transformative and changes regularly, which helped keep it…

Read more

Emotet campaign picks up steam again
B2B Cyber ​​Security ShortNews

TA542, a cybercriminal group that distributes Emotet malware, has ended its summer break and is launching more and more new campaigns. However, also with modified Emotet variants. Group TA542 was absent for almost four months and was last seen in action in the summer of July 13, 2022. Since November 2, Proofpoint's security specialists have been monitoring new activities by TA542 - especially in Germany. Key learnings about the Emotet campaigns TA542 uses customized Emotet variants in the new campaigns. The changes (see below) affect the payloads and lures used as well as changes to...

Read more

Malware: Emotet and FormBook at the top
Checkpoint News

Check Point Research (CPR), the research arm of Check Point Software Technologies Ltd., a global leader in cyber security solutions, has released its latest Global Threat Index for August 2022. CPR reports that FormBook is now the most prevalent malware, replacing Emotet, which has held that position since its January resurgence. FormBook is an infostealer that targets Windows operating systems. Once installed, it can intercept credentials, collect screenshots, monitor and log keystrokes, and download and execute (C&C) files according to its commands. Since its initial discovery in...

Read more

Report: GandCrab is the most active ransomware in DA-CH
Report: GandCrab is the most active ransomware in DA-CH

With the Threat Report, ESET regularly publishes results from its own detection systems and special incidents from the European IT security manufacturer's cybersecurity research. An important result in the second quarter of 2022: GandCrab is the most active ransomware in DA-CH. The latest edition for the second quarter of 2022 highlights the period from May to August. While the ransomware GandCrab plays a rather small role in a global comparison, the encryption Trojan dominates the ESET detection statistics in Germany, Austria and Switzerland. Almost one in four ransomware finds can be traced back to GandCrab. Another interesting change is that politically motivated ransomware is on the decline….

Read more

Encrypted malware and Office vulnerabilities are a cause for concern
Encrypted malware and Office vulnerabilities are a cause for concern

WatchGuard's current Internet Security Report also documents the Emotet comeback and increasing attacks on SCADA systems. Google Chrome and Microsoft Office-based threats are also on the rise. WatchGuard Technologies' Internet Security Report's latest findings on top malware trends and network threats are in, showing an overall decrease in malware for the second quarter of 2022 compared to peaks in the first half of last year. However, Google Chrome and Microsoft Office-based threats are on the rise. Internet Security Report for the second quarter of 2022 And also with regard to the potential danger...

Read more

Ransomware volume in Q1-2022 higher than in all of 2021!
Ransomware volume in Q1-2022 higher than in all of 2021!

WatchGuard releases its Internet Security Report. The most important result first: the ransomware volume in the first quarter of 2022 is already twice as high as in the whole of 2021! Analysis shows a tripling of attacks via Log4Shell, the return of the Emotet botnet, an increase in cryptomining activity, and Lapsus$ is coming. The threat of ransomware continues to grow inexorably: According to an analysis by the WatchGuard Threat Lab, there were already twice as many relevant attack attempts in the first quarter of 2022 as in the entire previous year. Corey Nachreiner, Chief Security Officer at WatchGuard: "Based on the extremely high level of...

Read more

Emotet vs. Microsoft: Botnets are changing their tactics
Eset_News

Those declared dead live longer: This also applies to Emotet. According to ESET researchers, the malware is back in full force, as the first four months of this year show. But even the good guys are fighting back: Microsoft is tightening the security of macros. Will Emotet survive this too? One of the key takeaways from the ESET Threat Report T1 2022 is that the Emotet botnet has risen like a phoenix from the ashes. Huge amounts of spam emerged in March and April 2022, 2022 times more in the first four months of XNUMX compared to…

Read more