Showing posts with label latest. Show all posts
Showing posts with label latest. Show all posts

Tuesday, 9 February 2016

 Russian Hackers Manipulate Ruble-Dollar Exchange Rate with Malware

Russian Hackers Manipulate Ruble-Dollar Exchange Rate with Malware

Dc itech Newshttp://computerguruslodge.blogspot.com/

Russian Group of Hackers reportedly cracked into the Kazan-based Energobank and messed up with the Ruble-Dollar exchange rates.

In Feb 2015, a hacking group, known by the name METEL, successfully breached into the Russian Regional Bank for just 14 minutes and caused the exchange rate to fluctuate between 55 and 66 rubles per dollar, which finally resulted in the increment of Ruble’s value.

Here's how they did it:


According to Russian security firm, Group-IB, who investigated the incident, the Metel Hacking group infected Kazan-based Energobank with a virus known as the Corkow Trojan and placed more than $500 million in orders at non-market rates.

    “This is the first documented attack using this virus, and it has the potential to do much more damage,” Dmitry Volkov, the head of Group-IB’s cyber intelligence department, told Bloomberg.

The hackers had taken the advantage of Spear Phishing Technique, which appears to come from a legit source. A single click on the link in the malicious mail took over the access to the system followed by ultimate exploitation.

After gaining the access to a local system, the trojan was able to cause a havoc deepening the attack to its Intranet. This way, the malware named Corkow found the isolated system which handles the money transaction exclusively to the outer world.

Corkow malware, initially discovered in 2011, regularly updates itself to evade detection by antivirus programs, and has infiltrated more than 250,000 computers worldwide and infected at least 100 financial institutions.

Bank lost 244 Million Rubles ($3.2 million)

The Energobank claimed losses of 244 million rubles ($3.2 million) due to the trades.

But, the Moscow Exchange had denied the allegations of any hacking attempt by the fact that; the changes in the Stock Market would be an output of Trader’s mistakes. They also not found any hint of currency manipulation.

The attack was earlier ported to target ATMs of Russia, affecting Russian bank card system that resulted in hundreds of millions of rubles being stolen via ATMs in August. Another attack with the same malware also facilitated hackers to use credit card limitlessly.

Metel is only known to be active in Russia (affected 73% Russian Banks), although it may present a threat to financial institutions across the globe.

Authority has not yet handcuffed any of its criminals who are raising a global bank threat.
 Hacker Leaks Info of 30,000 FBI and DHS Employees

Hacker Leaks Info of 30,000 FBI and DHS Employees

Dc itech News

 An unknown hacker who promised to release the personal information on government employees has dump online a list of nearly 20,000 Federal Bureau of Investigation (FBI) agents and 9,000 Department of Homeland Security (DHS) officers.

Though the authenticity of the information has not been verified, at least, some of the leaked data appears to be legitimate.

Here's What the Hacker Leaked:

The hacker leaked first round of data belonging to roughly 9,000 DHS employees on Sunday, which was followed by the release of 20,000 FBI agents information on Monday.


The hacker, who goes on Twitter by the username of @DotGovs, published the supposed data on an encrypted text-sharing website, including:
  •     Names
  •     Job titles
  •     Phone numbers
  •     Email addresses

The Reason Behind the Hack

The message at the top of the data dump includes the hashtag "#FreePalestine" and reads "Long Live Palestine, Long Live Gaza: This is for Palestine, Ramallah, West Bank, Gaza, This is for the child that is searching for an answer."

The above message shows the support to Palestine, which could be the motivation behind the hack.

Although it's unclear how much of the hacked data may have been publicly available, the hacker told Motherboard that he had downloaded 200GB of data, out of 1TB total available to him.

If this comes true, the information that has been leaked so far would just be a small percentage of what the hacker has in its box.

How the Hacker did it?

The hacker claimed to have compromised US Department of Justice (DoJ) email account and gained access to the department's Intranet. Then he allegedly downloaded the information of over 20,000 FBI officers, roughly 9,000 DHS employees and an undisclosed number of DoJ staffers.

The hacker also claimed to have some military emails and credit card numbers belonging to federal employees but provided neither proof nor indication that he intended to release them too.

In October, a teenage hacker who goes by "Cracka" carried out a similar hack and targeted several high-profile government employees, including the CIA director John Brennan, the US spy chief James Clapper, the FBI Deputy Director Mark Giuliano, and others.

However, not all hacks are as vast and serious as that of the US Office of Personnel Management (OPM), in which over 21.5 Million government employees were exposed.

DoJ Downplayed the Impact of Hacking

    "This unauthorized access is still under investigation; however, there is no indication at this time that there is any breach of sensitive personally identifiable information," a DOJ spokesman said in a statement to the Guardian.

The hacked data posted anonymously on an encrypted Cryptobin website was reviewed by the Guardian, which found that some of the data from the DHS list are outdated, and some listed individuals have not worked for DHS in years.

Others are criticizing the US government for its failure to protect its sensitive data, especially after the embarrassing and damaging OPM hack that exposed personal details on millions of government employees.

Source: thehackersnews
Update:  Hackers behind Dyre Malware Busted in Police Raid

Update: Hackers behind Dyre Malware Busted in Police Raid

Hacker News

The world's most notorious financial hacking operation disrupted by Russian authorities in November, when they raided the offices associated with a Moscow-based film and production company named 25th Floor.

According to the Russian authorities, 25th Floor was allegedly involved in distributing the notorious password-stealing malware known as Dyre Banking Trojan.

Malware Costs Hundreds of $$$ Millions in Losses

The Dyre banking Trojan was typically distributed via spam campaigns and was responsible for over hundreds of millions of dollars in losses at banking and financial institutions, including Bank of America Corp, PayPal, and JPMorgan Chase & Co.

Dyre, also known as Dyreza, first appeared in July 2014 and updated to target Windows 10 systems and its newest Edge browser.

However, Dyre has not been in use since the November raid, according to cyber security experts, who said the raid represents Russia's biggest effort up to date in cracking down on cyber crime.

It is yet not known whether the Russian authorities anyone has arrested or charged anyone linked to the raid.

However, the sources familiar with the matter told Reuters that the Dyre investigation was aided by security firm Kaspersky Lab that would reveal details about the case at its annual conference for security experts starting Sunday.

The malware authors used a variety of techniques to deliver Dyre malware onto victim's web browser in an effort to alter the communication between customers and over 400 financial institutions.

They Producing Cyber-Crime Thriller Movie — BOTNET

The name came out from the November raid: 25th Floor that distributes movies and Television shows in Russia and other East European and near-east countries.

The company is currently busy in the production of a film called BOTNET – a cyber crime thriller based on a 2010 case in which 37 people from the United States and other countries were charged for a $3 Million scam.

25th Floor hired Moscow-based computer security company Group-IB to advise the Botnet director and writers on the detailed aspects of cybercrime, said Group-IB CEO Ilya Sachkov. He said he was initially approached by Nikolay Volchkov, the CEO of 25th Floor.

Then Sachkov got an urgent call from Volchkov last November, saying he needed to meet.

source: thehackersnews

Monday, 8 February 2016

LATEST MALWARE ATTACK Over 60+ Android Games Infected With Malware

LATEST MALWARE ATTACK Over 60+ Android Games Infected With Malware



Security researchers discovered over 60 Android games on Google’s official Play Store are infected with malware.

According to Dr.Web’s security researchers these Android games are containing a malicious trojan named Android.Xiny.

30 different developers were responsible for uploading these 60+ games which is infected with Malware. By downloading any one of these Games personal information of users who download are collected and sent to a remote C&C (command and control) server.


Once this data is collected and sent to the C&C server, based on the user’s phone specifications, the malware operator would tell the trojan to display ads on the user’s screen. It also downloads other malicious apps and infect the device.

It collects very reliable information including IMEI and IMSI identifiers, mobile operator information, country and language settings. It further collected the information of the OS version, MAC address of the phone, kind of memory card inserted into the device and the app from where the Trojan was getting all the information.

Thursday, 28 January 2016

Microsoft to Introduce Windows keyboard to iPhone with one-hand typing mode

Microsoft to Introduce Windows keyboard to iPhone with one-hand typing mode

ode

Microsoft to Introduce Windows keyboard to iPhone with one-hand typing mode
Microsoft to Introduce Windows keyboard to iPhone with one-hand typing mode

Microsoft to Introduce Windows keyboard to iPhone with one-hand typing mode

Microsoft has started conducting tests on Windows Phone Keyboard for iOS devices. The Verge also posted the image of the iPhone keyboard with one hand typing mode and also disclosed its features like one hand typing mode for larger iPhones like 6S and 6S Plus.
Microsoft
Microsoft one hand typing mode
It is somewhat different from the company’s World Flow Keyboard where the keys just shift to one side. The Word Flow for iOS is look alike of Windows Phone Version. According to report, “You can access word suggestions, emoji and swipe letters to wrote out words.

Windows “World Flow” keyboard for iOS is estimated to be launched within some months and in the android version after the end of this year. This feature will not go down well with those users who are using Windows 10 Mobile. Microsoft user’s might be upset, because it is willing to introduce this version to iOS instead.
Reports on Microsoft’s work on iOS one hand typing keyboard made rounds earlier this month after Microsoft began releasing out beta invites to choose people for testing purpose. It is not clearly known when this feature will be launched publicly. According to The Verge, this feature will be rolled out within few months.

iOS devices earlier not used third party keyboards due to the issues of slowness and crashing and other bugs. It shows Microsoft’s win over providing its one handed typing keyboards to iOS users.
So, this was all about the  third party keyboard introduced by Microsoft to iOS devices. This feature will be really helpful to those users who wished to type using one hand. This is the most awaited feature for iOS users. Earlier iOS devices, were not using third party keyboards due to various security issues, now it seems Microsoft made it possible to achieve this feat.
Internet May Soon Handle Traffic At Speed of Light

Internet May Soon Handle Traffic At Speed of Light

Internet May Soon Handle Traffic At Speed of Light
Internet May Soon Handle Traffic At Speed of Light

A new research has discovered a solution that would make internet open and programmable and will carry its traffic at the speed of light by developing new idea of open source optical Internet.

Internet May Soon Handle Traffic At Speed of Light

The research also stated that “The problem of present  internet infrastructure’s insufficiency to support independent development and renovation at physical and network layer functionalities and bearing the rising bandwidth demands of changing and various applications constantly.
According to Researcher, Reza Nejabati, “Hardware as well as software technologies can probably revolutionize optical network infrastructure in the similar manner that Google’s Android and Apple’s iOS did for their mobile devices respectively.
Reza Nejabati is reader in optical networks of the HPN which is abbreviated as high performance networks Group of Bristols’s Department of Electrical and Electronic Engineering.
Researcher Nejabati further said that “These technologies will disguise problem of optical networks and will unfurl for programmers and app developers that will influence them to create new type of internet applications that would take benefits of speed of light.
Note: This Research was posted in Journal philosophical Transactions of the Royal Society. 
So, this was all about “Internet May Soon Handle Traffic At Speed of Light”, and it will make internet open and programmable. We hope that you liked this article, feel free to share this with your friends