Gotham Security Daily Threat Alerts

By Nancy Rand
Posted in Security
On February 12, 2015

February 11, Softpedia – (International) Cyber Caliphate hackers take over Twitter account of Newsweek. The FBI is investigating a February 10 hijack of Newsweek’s Twitter feed in which attackers claiming to be Islamic State (ISIS)-affiliated hacker group Cyber Caliphate posted threats to the U.S. President’s family before the company regained control of the feed within 14 minutes. Newsweek confirmed that the Twitter accounts of International Business Times and Latin Times were also hijacked by the group. Source

February 11, Securityweek – (International) Researchers bypass all Windows protections by modifying a single bit. Microsoft released a patch for two vulnerabilities, including one that affected all versions of the Windows Operating System via Windows kernel-mode driver and allowed attackers to install software, view and change data, and create new accounts with full administrative rights. A patch addressing a critical remote code execution flaw was also released. Source

February 10, Securityweek – (International) Microsoft patches critical Windows, Internet Explorer vulnerabilities in Patch Tuesday update. Microsoft issued 9 security bulletins that fixed a total of 41 vulnerabilities as part of its Patch Tuesday updates that addresses issues for Windows, Office, and Server Software. Source

February 9, Softpedia – (International) Microsoft corporate clients targeted with volume license phishing email. A Cisco Threat Defense researcher reported that cyber-criminals were targeting Microsoft’s corporate users with phishing emails purporting to be from Microsoft’s Volume Licensing Service Center which contains a link that leads to a compromised WordPress server and downloads the Chanitor malware. Source

 

Nancy Rand

Nancy Rand

Nancy has more than 20 years’ experience in information technology and security, solving business issues and implementing best-practice solutions that support organizational objectives. Her expertise includes leveraging, optimizing, and implementing diverse technology platforms, and management of large-scale technology projects.