TrickBot adds firmware tool that researchers say could lead to ‘bricking’ devices

The malicious software known as TrickBot has morphed again, this time with a module that probes booting process firmware for vulnerabilities, possibly setting the stage for attacks that could ultimately destroy devices, researchers say. Two cybersecurity companies, Eclypsium and Advanced Intelligence (Advintel), dubbed the TrickBot add-on module “TrickBoot,” since it targets the UEFI/BIOS firmware. Firmware is permanent code programmed into a hardware device, while UEFI and BIOS are two kinds of specifications that manage a device’s start-up. TrickBoot, then, is s a “significant step in the evolution of TrickBot,” the researchers say, that could make TrickBot especially pesty. “Since firmware is stored on the motherboard as opposed to the system drives, these threats can provide attackers with ongoing persistence even if a system is re-imaged or a hard drive is replaced,” they wrote.”Equally impactful, if firmware is used to brick a device, the recovery scenarios are markedly different (and more difficult) than recovery […]

The post TrickBot adds firmware tool that researchers say could lead to ‘bricking’ devices appeared first on CyberScoop.

Continue reading TrickBot adds firmware tool that researchers say could lead to ‘bricking’ devices

Cyber Security Roundup for December 2020

A roundup of UK focused Cyber and Information Security News, Blog Posts, Reports and general Threat Intelligence from the previous calendar month, November 2020.
Manchester United FC remains impacted by a seemly major cyber-attack, which I covered in a… Continue reading Cyber Security Roundup for December 2020

The Multi-Million Pound Manchester United Hack

Earlier this year I wrote a blog post about the Manchester City Billion Pound Hack, which explored cyberattacks within elite football. Now it is the turn of City big rivals Manchester United, after they reported their IT systems had been impacted by a … Continue reading The Multi-Million Pound Manchester United Hack

Sopra Steria records heavy financial loss after Ryuk ransomware attack

By Deeba Ahmed
The company stated that it ‘rapidly’ blocked the ransomware attack; however, it had to bear heavy financial losses post the attack.
This is a post from HackRead.com Read the original post: Sopra Steria records heavy financial loss after … Continue reading Sopra Steria records heavy financial loss after Ryuk ransomware attack

Encryption to Double Extortion: Ransomware’s Rapid Evolution

Threat actors are leveraging stolen data to enhance ransomware attacks.
Data leaks and ransomware – once considered two distinct threats – are overlapping into a hybrid tactic known as double extortion. While traditional ransomware attacks den… Continue reading Encryption to Double Extortion: Ransomware’s Rapid Evolution

Cyber Security Roundup for November 2020

A roundup of UK focused Cyber and Information Security News, Blog Posts, Reports and general Threat Intelligence from the previous calendar month, October 2020.
London’s Hackney Borough Council has been tight-lipped about “a serious cyber-attack” which… Continue reading Cyber Security Roundup for November 2020

Cyber Security Roundup for November 2020

A roundup of UK focused Cyber and Information Security News, Blog Posts, Reports and general Threat Intelligence from the previous calendar month, October 2020.
London’s Hackney Borough Council has been tight-lipped about “a serious cyber-attack” which… Continue reading Cyber Security Roundup for November 2020

Ransomware attacks grow more menacing during the pandemic, creating headaches in health sector

Steve Giles was having dinner in the Los Angeles area on Friday, Feb. 5, 2016, when he received an ominous phone call. The computer networks of Hollywood Presbyterian Medical Center, the 434-bed hospital where Giles was the chief information officer, were seizing up. “This created panic, to some degree, within the nursing and physician staff,” Giles told the California Senate weeks later. “We immediately reverted to downtime procedures.” His staff ended up running to an ATM across the street, twice, to withdraw $17,000 to convert to cryptocurrency and pay off the hackers who were holding his hospital’s computers hostage. There were no reports of patient harm from the incident. Giles’ team averted a serious medical crisis, but the attack exposed vulnerabilities in one of the first high-profile ransomware incidents at a hospital. Nearly five years on, numerous health care organizations have endured their own version of that jarring experience. “I equate Hollywood Presbyterian to […]

The post Ransomware attacks grow more menacing during the pandemic, creating headaches in health sector appeared first on CyberScoop.

Continue reading Ransomware attacks grow more menacing during the pandemic, creating headaches in health sector

Halloween News Wrap: The Election, Hospital Deaths and Other Scary Cyberattack Stories

Threatpost breaks down the scariest stories of the week ended Oct. 30 haunting the security industry — including bugs that just won’t die. Continue reading Halloween News Wrap: The Election, Hospital Deaths and Other Scary Cyberattack Stories