The aftermath of a data breach: A personal story

Criminals used my account to launder credit card transactions into cash, at least where the company transacted with was willing to refund. Last week I received a notification from Bank of America advising that my credit card may have been part of a compromise at an undisclosed merchant. The email does mention that there may … More The aftermath of a data breach: A personal story

Where are we now? The state of play two years on from the 2017 WannaCry attacks

Two years ago on the 12th of May 2017, the now infamous WannaCry ransomware attack struck IT systems in 150 countries around the world. Affecting around 200,000 computers across a diverse range of sectors, from Spain’s telecoms sector to commercial websites and schools, the malware encrypted users’ files and then demanded a ransom, causing unprecedented havoc. While … More Where are we now? The state of play two years on from the 2017 WannaCry attacks

Buhtrap backdoor and ransomware distributed via major advertising platform

Criminal activities against accountants on the rise – Buhtrap and RTM still active. What better way to target accountants than to target them as they search the web, looking for documents pertinent to their job? This is just what has been happening for the past few months, where a group using two well-known backdoors — Buhtrap and RTM — … More Buhtrap backdoor and ransomware distributed via major advertising platform

Russia hit by new wave of ransomware spam

January 2019 has seen a dramatic uptick in detections of malicious JavaScript email attachments, an attack vector that mostly lay dormant throughout 2018.  Among the “New Year edition” of malicious spam campaigns relying on this vector, we have detected a new wave of Russian-language spam that distributes ransomware known as Shade or Troldesh, and detected … More Russia hit by new wave of ransomware spam

ESET releases new decryptor for Syrian victims of GandCrab ransomware

ESET has published a new decryption tool for Syrian victims of the GandCrab ransomware. The developers of this infamous malware family released the keys on an underground forum following a tweet from a Syrian victim who had lost pictures of his deceased children to the encrypting malicious code. They want 600 dollars to give me back … More ESET releases new decryptor for Syrian victims of GandCrab ransomware