Thursday, September 21, 2023
LetsAskBinu.com
  • Home
  • Cybersecurity
  • Cyber Threats
  • Hacking
  • Protection
  • Networking
  • Malware
  • Fintech
  • Internet Of Things
No Result
View All Result
LetsAskBinu.com
No Result
View All Result
Home Fintech

Sextortion, digital usury and SQL brute-force

Researcher by Researcher
September 13, 2023
in Fintech
0
Sextortion, digital usury and SQL brute-force
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter


ESET Research

Closing intrusion vectors force cybercriminals to revisit old attack avenues, but also to look for new ways to attack their victims

ESET Research

12 Sep 2023

Sextortion emails and other text-based threats have been on a massive increase in H1 2023 and the question remains why. Are criminals just lazy? Are they trying to earn easy money during their days off? Or is this a part of something bigger, potentially involving generative AI?

And that’s just scratching the surface of the trends observed in the latest ESET Threat Report, the focus of this episode. Another intrusion vector that has seen increased attention from cybercriminals was MS SQL servers that had to withstand a renewed increase in brute force attacks.

Oh, and let’s not forget the criminal practice of usury, appearing in the form of malicious Android apps. Hunting for victims in the countries around the equator and in the southern hemisphere, cybercriminals try to pressure and threaten victims into paying exorbitant interest rates on short-term loans – which sometimes, they don’t even provide.

Yet, it wasn’t all bad in H1 2023. One piece of good news was that notorious Emotet botnet showed little activity, running only a few minor and surprisingly ineffective spam campaigns in March. After those were over, it went silent. What caught the attention of researchers was a new functionality resembling a debugging output. This feeds into the rumors that Emotet has been – at least partially – sold to another threat group that is unsure of how things work.

Another positive story came regarding Redline stealer. This notorious malware-as-a-service (MaaS) used by criminals to steal victim’s information and deliver other malware has been disrupted by ESET researchers and their friends at Flare systems. The disruption took down a chain of GitHub repositories necessary to run RedLine control panels for the affiliates. As there was no backup channel, operators behind the MaaS will have to find a different route to run their “service”.

For all those topics and more from ESET Threat Report, listen to the latest episode of ESET Research podcast, hosted by Aryeh Goretsky. This time, he directed his questions to one of the authors of the report, Security Awareness Specialist Ondrej Kubovič.

For the full report from H1 2023, including other topics such as changes in cryptocurrency threats, malicious OneNote files, the first double supply-chain attack – courtesy of Lazarus group – or the latest developments in the ransomware scene, click here.

Discussed:

  • Sextortion and text-based threats 1:46
  • Brute force attacks on MS SQL servers 7:10
  • Usury on Android apps 9:20
  • Emotet activity 13:25
  • RedLine Stealer disruption 16:45



Source link

Related articles

EBANX Furthers Expansion into Africa; Adding 8 new Countries to its Ecosystem

EBANX Furthers Expansion into Africa; Adding 8 new Countries to its Ecosystem

September 21, 2023
Dubai International Financial Centre Reveals Plans for Second Edition of Dubai FinTech Summit

Dubai Ready to Capitalise on Projected 17.2% Global Growth of Fintech Investment, Says DIFC

September 21, 2023
Tags: bruteforceDigitalSextortionSQLusury
Share76Tweet47

Related Posts

EBANX Furthers Expansion into Africa; Adding 8 new Countries to its Ecosystem

EBANX Furthers Expansion into Africa; Adding 8 new Countries to its Ecosystem

September 21, 2023
0

EBANX, the global tech company specialising in payments for rising markets, is expanding its operations to eight more countries across...

Dubai International Financial Centre Reveals Plans for Second Edition of Dubai FinTech Summit

Dubai Ready to Capitalise on Projected 17.2% Global Growth of Fintech Investment, Says DIFC

September 21, 2023
0

Investment in fintech is projected to grow by 17.2 per cent CAGR to $949billion from 2022 to 2030 and is...

UK Fintech News Round-Up: The Latest Stories 02/03

UK Fintech News Roundup: The Latest Stories 20/09

September 20, 2023
0

Every Wednesday, we delve into the latest fintech updates from across the UK. This week brings updates from HSBC, Vestd,...

The Importance of SEO in Fintech

The Importance of SEO in Fintech

September 19, 2023
0

The fintech industry is worth a staggering £141billion, and more than 64 per cent of all consumers have used a...

This Week in Fintech: TFT Bi-Weekly News Roundup 08/02

This Week in Fintech: TFT Bi-Weekly News Roundup 19/09

September 19, 2023
0

The Fintech Times Bi-Weekly News Roundup on Tuesday 19 September 2023 AppointmentsNovatus Global, a risk and regulation consultancy and technology solution...

Load More
  • Trending
  • Comments
  • Latest
This Week in Fintech: TFT Bi-Weekly News Roundup 08/02

This Week in Fintech: TFT Bi-Weekly News Roundup 15/03

March 15, 2022
Supply chain efficiency starts with securing port operations

Supply chain efficiency starts with securing port operations

March 15, 2022
Microsoft to Block Macros by Default in Office Apps

Qakbot Email Thread Hijacking Attacks Drop Multiple Payloads

March 15, 2022
QNAP Escalation Vulnerability Let Attackers Gain Administrator Privileges

QNAP Escalation Vulnerability Let Attackers Gain Administrator Privileges

March 15, 2022
Beware! Facebook accounts being hijacked via Messenger prize phishing chats

Beware! Facebook accounts being hijacked via Messenger prize phishing chats

0
Shoulder surfing: Watch out for eagle‑eyed snoopers peeking at your phone

Shoulder surfing: Watch out for eagle‑eyed snoopers peeking at your phone

0
Remote work causing security issues for system and IT administrators

Remote work causing security issues for system and IT administrators

0
Elementor WordPress plugin has a gaping security hole – update now – Naked Security

Elementor WordPress plugin has a gaping security hole – update now – Naked Security

0
LUCR-3 Attacking Fortune 2000 Companies Using Victims’ Own Tools

LUCR-3 Attacking Fortune 2000 Companies Using Victims’ Own Tools

September 21, 2023
EBANX Furthers Expansion into Africa; Adding 8 new Countries to its Ecosystem

EBANX Furthers Expansion into Africa; Adding 8 new Countries to its Ecosystem

September 21, 2023
Trend Micro Zero-day Vulnerability Let Attackers Run Arbitrary Code

Trend Micro Zero-day Vulnerability Let Attackers Run Arbitrary Code

September 21, 2023
Intel Reveals New 288-Core Sierra Forest CPU, Core Ultra Processors at Intel Innovation 2023

Intel Reveals New 288-Core Sierra Forest CPU, Core Ultra Processors at Intel Innovation 2023

September 21, 2023

Recent Posts

LUCR-3 Attacking Fortune 2000 Companies Using Victims’ Own Tools

LUCR-3 Attacking Fortune 2000 Companies Using Victims’ Own Tools

September 21, 2023
EBANX Furthers Expansion into Africa; Adding 8 new Countries to its Ecosystem

EBANX Furthers Expansion into Africa; Adding 8 new Countries to its Ecosystem

September 21, 2023
Trend Micro Zero-day Vulnerability Let Attackers Run Arbitrary Code

Trend Micro Zero-day Vulnerability Let Attackers Run Arbitrary Code

September 21, 2023

Categories

  • Cyber Threats
  • Cybersecurity
  • Fintech
  • Hacking
  • Internet Of Things
  • LetsAskBinuBlogs
  • Malware
  • Networking
  • Protection

Tags

Access attack Attacks banking BiWeekly bug Cisco cloud code critical Cyber Cybersecurity Data Digital exploited financial Fintech Flaw flaws Google Group Hackers Krebs Latest launches malware Microsoft million Network News open patches platform Ransomware RoundUp security Software Stories TFT Threat Top vulnerabilities vulnerability warns Week

© 2022 Lets Ask Binu All Rights Reserved

No Result
View All Result
  • Home
  • Cybersecurity
  • Cyber Threats
  • Hacking
  • Protection
  • Networking
  • Malware
  • Fintech
  • Internet Of Things

© 2022 Lets Ask Binu All Rights Reserved