Stealthy in-browser cryptomining continues even after you close window

In-browser cryptocurrency mining is, in theory, a neat idea: make users’ computers “mine” Monero for website owners so they don’t have to bombard users with ads in order to earn money. Unfortunately, in this far-from-ideal world… Continue reading Stealthy in-browser cryptomining continues even after you close window

Quarantine Flaw in Antivirus Products Allows Privilege Escalation

The malware quarantine feature in several antivirus products could have been abused by local attackers to gain administrative privileges on computers. The issue, dubbed AVGater, was discovered by Florian Bogner, a researcher with security firm Kapsch. It exploits a user’s ability to restore suspicious files that antivirus programs have moved to quarantine. Bogner found a..

The post Quarantine Flaw in Antivirus Products Allows Privilege Escalation appeared first on Security Boulevard.

Continue reading Quarantine Flaw in Antivirus Products Allows Privilege Escalation

The Wild West of drive-by cryptocurrency mining

As more and more Coinhive clones continue popping up, chances of users’ CPU power being hijacked for cryptocurrency mining are rising. According to Malwarebytes’ latest figures, their AV solution blocked an average of 8 million cryptojacking attempts per day from late September to late October. And that’s just the attempts tied to Coinhive domains and proxies! Censys’s search engine reveals that nearly 900 of the top one million most visited sites runs the Coinhive script. … More Continue reading The Wild West of drive-by cryptocurrency mining

Why is Malwarebytes blocking CoinHive?

Since September 19, the number two most frequently blocked website for our customers has been coinhive.com. This post will describe what CoinHive is, what it is doing, and why we are blocking it.
Categories:

Security world
Technology

Tags: ada… Continue reading Why is Malwarebytes blocking CoinHive?

Exhibition: it-sa Nuremberg

Malwarebytes attends it-sa in Germany—Europe’s largest expo for IT security. Post written in English and German.

Categories:

Tags:

(Read more…)

The post Exhibition: it-sa Nuremberg appeared first on Malwarebytes Labs.

The post Exhibition: it-sa Nuremberg appeared first on Security Boulevard.

Continue reading Exhibition: it-sa Nuremberg

Spoofed IRS notice delivers RAT through link updating trick

The malware delivery trick involving updating links in Word documents is apparently gaining some traction: the latest campaign to use it likely takes the form of fake emails from the Internal Revenue Service (IRS). The fake email includes an attachment, supposedly a CP2000 notice, which is sent by the IRS when the income and/or payment information they have on file doesn’t match the information the person reported on his or her tax return. This mismatch … More Continue reading Spoofed IRS notice delivers RAT through link updating trick

Malware vaccination tricks: blue pills or red pills

Malware vaccination tricks are offered for various sorts and families of malware, but can and should we use them? What are the pros and cons? Read all about it.
Categories:
Cybercrime
Malware
Tags: canary filekeyboardlanguagemalwareMalwarebytesPieter… Continue reading Malware vaccination tricks: blue pills or red pills

New infosec products of the week​: August 25, 2017

Malwarebytes for Android features proprietary anti-ransomware technology Malwarebytes released Malwarebytes for Android, featuring targeted defense against mobile malware, ransomware, adware, infected applications and unauthorized surveillance. To optimize the mobility of these features, Malwarebytes for Android can be easily managed from a desktop widget. The app can also be controlled using SMS to remotely lock a device, remediate a device if it is being held ransom, and reset device pin codes. Elcomsoft Phone Breaker 7.0 extracts … More Continue reading New infosec products of the week​: August 25, 2017