Security Leftovers
-
Microsoft Confirms Server Misconfiguration Led to 65,000+ Companies' Data Leak
Microsoft this week confirmed that it inadvertently exposed information related to thousands of customers following a security lapse that left an endpoint publicly accessible over the internet sans any authentication.
-
Researchers Say Microsoft Office 365 Uses Broken Email Encryption to Secure Messages [Ed: Microsoft puts back doors in everything for the FBI and NSA]
New research has disclosed what's being called a security vulnerability in Microsoft 365 that could be exploited to infer message contents due to the use of a broken cryptographic algorithm.
-
Emotet Botnet Distributing Self-Unlocking Password-Protected RAR Files to Drop [Windows] Malware [Ed: NET-based. Windows TCO.]
The one-click attack technique is also notable in that it effectively jumps past the password barrier, enabling malicious actors to carry out a wide range of actions such as cryptojacking, data exfiltration, and ransomware.
-
Multiple Campaigns Exploit VMware Vulnerability to Deploy Crypto Miners and Ransomware
The issue, tracked as CVE-2022-22954 (CVSS score: 9.8), concerns a remote code execution vulnerability that stems from a case of server-side template injection. Although the shortcoming was addressed by the virtualization services provider in April 2022, it has since come under active exploitation in the wild.
-
From RM3 to LDR4: URSNIF Leaves Banking Fraud Behind [Ed: Microsoft Windows TCO]
The unpacked core for the analyzed URSNIF LDR4 sample has the internal name LOADER.dll.