Security Alerts & News
by Tymoteusz A. Góral

History
#2116 MajikPOS combines PoS malware and RATs to pull off its malicious tricks
We’ve uncovered a new breed of point-of-sale (PoS) malware currently affecting businesses across North America and Canada: MajikPOS (detected by Trend Micro as TSPY_MAJIKPOS.A). Like a lot of other PoS malware, MajikPOS is designed to steal information, but its modular approach in execution makes it distinct. We estimate that MajikPOS’s initial infection started around January 28, 2017.

While other PoS malware FastPOS (its updated version), Gorynych and ModPOS also feature multiple components with entirely different functions like keylogging, MajikPOS’s modular tack is different. MajikPOS needs only another component from the server to conduct its RAM scraping routine.

MajikPOS is named after its command and control (C&C) panel that receives commands and sends exfiltrated data. MajikPOS’s operators use a combination of PoS malware and remote access Trojan (RAT) to attack their targets, to daunting effects. MajikPOS is a reflection of the increasing complexity that bad guys are predicted to employ in their malware to neuter traditional defenses.
Read more
#2119 US-CERT warns HTTPS inspection may degrade TLS security
#2118 Another years-old flaw fixed in the Linux kernel
#2117 Intel, Microsoft launch new bug bounty programs
#2116 MajikPOS combines PoS malware and RATs to pull off its malicious tricks
#2115 Revenge ransomware, a CryptoMix variant, being distributed by RIG exploit kit
#2114 This laptop-bricking USB stick just got even more dangerous
#2113 New smartphone threat: Now attackers can use sound to hack your device
#2112 Hack brief: High-profile Twitter accounts overrun with swastikas
#2111 Check Point discloses vulnerability that allowed hackers to take over hundreds of millions of WhatsApp & Telegram accounts
#2110 Russian hacker "Kolypto" who worked on Citadel trojan extradited to the US
#2109 US charges two Russian agents with ordering hack of 500m Yahoo accounts
History
2017: 01 02 03 04 05
2016: 01 02 03 04 05 06 07 08 09 10 11 12