Skip to main content

Posts

Showing posts from October 7, 2019

Hackers Drop Spyware and Steal the Password, Credit card and Browers Data Using Telegram as a C2 Server

Researchers discovered a new trojan Masad Stealer to deliver the powerful spyware on the targeted systems and exfiltrate the stolen data via Telegram. Masad Stealer using Telegram as a command and control channel to maintain the anonymity and hide the malware communication traffic. Recent pas, several hacking groups are abusing the Telegram and used it as a part of their attack in different categories of a malicious campaign. Malware developers who behind the Masad Stealer advertised in the underground hacking forums as it is capable of steals browser data, which might contain usernames, passwords, and credit card information. Also, it automatically replaces the own cryptocurrency wallets from the clipboard with the help of the Telegram bot that controlled by the attacker behind the scene. Researchers believe that Masad Stealer is currently an ongoing campaign and actively attacking the thousands of victims around the world. also, the command and control bot still alive a

Microsoft Blocked 38 File Types in Outlook to Prevent User’s From Downloading Malware

Microsoft blocked 38 file extensions in Outlook web to prevent user’s from downloading attachments with those files extensions. Outlook contains a built-in spam mail filter which prevents the junk mail from getting into the inbox. Now Microsoft added 38 file extensions to  BlockedFileTypes  property of existing  OwaMailboxPolicy  objects. Previously outlook blocked  104 file types , now Microsoft expanded it by adding additional 38 File types to enhance the security. If these file types are added to outlook blocked extensions, then users are blocked from downloading the attachments with those file types. Microsoft  said  that the “newly blocked file types are rarely used, so most organizations will not be affected by the change. However, if your users are sending and receiving affected attachments, they will report that they are no longer able to download them.” Securing your email address  is vital, in the digital world, the email address related to all activities that y