Report calls for web pre-screening to end UK’s child abuse ‘explosion’

Credit to Author: Lisa Vaas| Date: Mon, 16 Mar 2020 11:57:40 +0000

The IICSA report cited “unprecedented levels of depravity” and said that encryption is getting in the way of current screening.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/ELFeXrr3UeQ” height=”1″ width=”1″ alt=””/>

Read more

EARN IT Act threatens end-to-end encryption

Credit to Author: Lisa Vaas| Date: Fri, 13 Mar 2020 13:12:27 +0000

The bill, which would undercut Section 230 protections for online publishing, presents itself as a way to stop online child abuse.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/SqOImXCXz8A” height=”1″ width=”1″ alt=””/>

Read more

Ouroboros: Following A New Trend In Ransomware League

Credit to Author: Manisha Prajapati| Date: Tue, 18 Feb 2020 09:45:17 +0000

Ransomware authors keep exploring new ways to test their strengths against various malware evasion techniques. The ransomware known as “Ouroboros” is intensifying its footprint in the field by bringing more and more advancements in its behavior as it updates its version. This analysis provides the behaviour of version 6, few…

Read more

Suspect who refused to decrypt hard drives released after four years

Credit to Author: John E Dunn| Date: Fri, 14 Feb 2020 12:12:52 +0000

The US Court of Appeals ruled that he couldn’t continue to be held for refusing to give up his passcodes.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/-PcVPhz2bC0″ height=”1″ width=”1″ alt=””/>

Read more

A Deep Dive Into Wakeup On Lan (WoL) Implementation of Ryuk

Credit to Author: Goutam Tripathy| Date: Thu, 13 Feb 2020 09:57:14 +0000

Quick Heal Security Labs recently came across a variant of Ryuk Ransomware which contains an additional feature of identifying and encrypting systems in a Local Area Network (LAN). This sample targets the systems which are present in sleep as well as the online state in the LAN. This sample is packed with…

Read more

Facebook encrypted messaging will ‘create hiding places for child abuse’

Credit to Author: Lisa Vaas| Date: Mon, 10 Feb 2020 11:44:10 +0000

Child safety groups penned an open letter to Facebook, urging a delay on encrypted messaging until sufficient safeguards are in place.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/ns3LDtnKrEc” height=”1″ width=”1″ alt=””/>

Read more

HorseDeal Riding on The Curveball!

Credit to Author: Jayesh kulkarni| Date: Wed, 05 Feb 2020 06:17:49 +0000

It’s surprising to see how quickly attackers make use of new vulnerabilities in malware campaigns. Microsoft recently patched a very interesting vulnerability in their monthly Patch Tuesday update for January 2020. It’s a spoofing vulnerability in Windows CryptoAPI (Crypt32.dll) validation mechanism for Elliptic Curve Cryptography (ECC) certificates. An attacker could…

Read more

Ako Ransomware targeting businesses using RaaS

Credit to Author: Shriram Munde| Date: Fri, 24 Jan 2020 11:00:51 +0000

Ako Ransomware targeting businesses using RaaS Quick Heal security researchers recently observed ransomware that uses RaaS (Ransomware as a Service) which is a subpart of MaaS (Malware as a Service). Before delving into the AKO ransomware or RaaS, one must understand what Malware as a Service means, as it is…

Read more

Apple allegedly made nice with FBI by dropping iCloud encryption plan

Credit to Author: Lisa Vaas| Date: Thu, 23 Jan 2020 11:05:12 +0000

Sources told Reuters that Apple may have been convinced by arguments made during the legal fight over cracking the San Bernardino iPhone.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/qyltSL5-IRc” height=”1″ width=”1″ alt=””/>

Read more

First Node.js-based Ransomware : Nodera

Credit to Author: Ravi Gidwani| Date: Wed, 22 Jan 2020 11:12:25 +0000

Recently while threat hunting, Quick Heal Security Labs came across an unusual Node.js framework based Nodera ransomware. The use of Node.js framework is not seen commonly across malware families. Latest development by threat actors reveal a nasty and one-of-its-kind ransomware being created; one that uses Node.js framework, which enables it to infect Windows…

Read more