article thumbnail

Even North Korea has an antivirus program—but it’s used for spying

The Parallax

Malware and antivirus software usually go together like tacos and pickles. Pretty much any software can be targeted to be ripped off,” says Mark Lechtik, a security researcher on the Check Point Malware Research Team who led the investigation into SiliVaccine. Leave it to North Korea to combine them like peanut butter and jelly.

Spyware 187
article thumbnail

Sandworm APT Deploys New SwiftSlicer Wiper Using Active Directory Group Policy

Tenable

Sandworm APT Deploys New SwiftSlicer Wiper Using Active Directory Group Policy Sandworm, the Russian-backed APT responsible for NotPetya in 2017, has recently attacked an Ukrainian organization using a new wiper, SwiftSlicer. The #SwiftSlicer wiper is written in Go programing language. We attribute this attack to #Sandworm.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Cybersecurity Snapshot: Critical Infrastructure Orgs Cautioned About Chinese Drones, While Water Plants Advised To Boost Incident Response

Tenable

In addition, the latest on the Androxgh0st malware. 6 - CISA and FBI issue warning about Androxgh0st malware Is the Androxgh0st malware on your radar screen? Find out why Uncle Sam is warning critical infrastructure facilities about drones made in China, while urging water treatment plants to beef up incident response plans.

article thumbnail

What’s what with WebAssembly?

Xebia

The use of virtualization allows a WebAssembly program to be portable across operating systems and different processor without modification. Many popular programming languages can be compiled into WebAssembly and run on the web. We want to create an interactive program that displays a message box to the end user when executed.

Azure 130
article thumbnail

Daily Crunch: Elon Musk sets sights on Twitter with unsolicited $43B takeover bid

TechCrunch

PenguinFaceplant.gif : Club Penguin was shut down in 2017 , but fans rebooted it — without authorization from Disney. TechCrunch+ is our membership program, which helps founders and startup teams get ahead. Yesterday, it all came crashing down when the City of London police pulled the plug on the site. You can sign up here.).

Malware 253
article thumbnail

How to address Apple’s severe High Sierra ‘root’ flaw

The Parallax

To unlock and gain unrestricted access to programs, files, and settings on a Mac running High Sierra prior to patching, someone could simply enter the word “root” as the username. (No cstone (@unsynchronized) November 28, 2017. Malware writers love this because it’s so stable.”. No password necessary.). macos 10.13

How To 169
article thumbnail

South Korean and American Agencies Release Joint Advisory on North Korean Ransomware

Tenable

The actors have also used trojan versions of X-Popup, a messenger application used in several smaller hospitals in South Korea and have spread malware using 2 malicious domains, xpopup.pe[.]kr Three members of the group have been indicted in the US on charges relating to attacks where more than $1.3 billion has been stolen or extorted.