Rogue Chrome extension pushes tech support scam

Google Chrome may be one of the more secure browsers but an increasing number of malicious extensions are being forced onto users. The one we analyze can hide itself and receive commands from a remote server in order to hijack the browser with incessan… Continue reading Rogue Chrome extension pushes tech support scam

A look back at the Zyns iframer campaign

Behind compromised sites or malvertising, you will often find trails that can take you back years and see how infection chains evolved, or didn’t, over time.Categories: Exploits
Threat analysisTags: campaigneitestexploit kitsiframemalvertisingmalwarer… Continue reading A look back at the Zyns iframer campaign

Vetting your vendors: money isn’t everything

Vetting vendors doesn’t have to be painful – if you know your risk tolerance posture, and have a mature communication channel with your own security team.Categories: Business
Security world
TechnologyTags: cyber threatscybersecurityinfosecmalvertisin… Continue reading Vetting your vendors: money isn’t everything

DNSChanger Malware is Back! Hijacking Routers to Target Every Connected Device

Next time when you see an advertisement of your favorite pair of shoes on any website, even if it is legitimate, just DO NOT CLICK ON IT.

…Because that advertising could infect you in such a way that not just your system, but every device connected to your network would get affected.

A few days ago, we reported about a new exploit kit, dubbed Stegano, that hides malicious code in the pixels

Continue reading DNSChanger Malware is Back! Hijacking Routers to Target Every Connected Device

Malvertising campaign compromises routers instead of computers

The DNSChanger exploit kit is back and more effective than ever, and is being used in a widespread malvertising attack whose goal is to compromise small/home office routers. According to Proofpoint researchers, the attacker’s current main goal is to change DNS records on the target router, so that it queries the attacker’s rogue DNS servers, and the users are served with ads that will earn the attackers money. But, “when attackers control the DNS server … More Continue reading Malvertising campaign compromises routers instead of computers

A week in security (Dec 04 – Dec 10)

A compilation of notable security news and blog posts from the 4th of December to the 10th. This week, we talked about DGA, a rootkit, another malvertising campaign, and a fake news about “smart drugs”.Categories: Security world
Week in securityTags: … Continue reading A week in security (Dec 04 – Dec 10)