{"id":18703,"date":"2016-03-11T11:31:36","date_gmt":"2016-03-11T18:31:36","guid":{"rendered":"https://www.webroot.com/blog/?p=18703"},"modified":"2018-01-30T10:13:06","modified_gmt":"2018-01-30T17:13:06","slug":"threat-recap-week-march-11th","status":"publish","type":"post","link":"https://www.webroot.com/blog/2016\/03\/11\/threat-recap-week-march-11th\/","title":{"rendered":"Threat Recap Week of March 11th"},"content":{"rendered":"<p>&nbsp;<\/p>\n<p>A lot happens in the security world, and many stories get lost in the mix. In an effort to keep our readers informed and updated, we present the Webroot Threat Recap, highlighting 5 major security news stories of the week.<\/p>\n<p><strong>Tax Season Leads to Rise in Phishing Attacks<\/strong><\/p>\n<p>As we&#8217;ve seen in the past, corporations preparing their taxes for the April deadline are a lucrative target for phishing attacks. Most recently, Seagate Technologies had such a breach in which all current and former employees&#8217; W-2 information was compromised. This incident follows a trend\u00a0of attacks that target employees by spoofing the CEO&#8217;s email address and asking for highly sensitive information.<\/p>\n<p><a href=\"http:\/\/www.csoonline.com\/article\/3040626\/security\/three-more-firms-hit-by-targeted-phishing-attacks-seeking-w2-data.html#tk.rss_news\">http:\/\/www.csoonline.com\/article\/3040626\/security\/three-more-firms-hit-by-targeted-phishing-attacks-seeking-w2-data.html#tk.rss_news<\/a><\/p>\n<p><strong>Ransomware Targets Mac OS X<\/strong><\/p>\n<p>In the past week, it was brought to light that a new form of ransomware had hit the market and was aimed specifically at Mac users. KeRanger comes bundled with the Transmission Bittorrent client and remains dormant for three days to avoid quick detection or suspicion of the torrenting app itself. After that time period, it gathers sensitive information about the Mac and uploads to a Command &amp; Control server, thus starting the process of encryption.<\/p>\n<p><a href=\"https://www.webroot.com/blog/2016\/03\/07\/18611\/\">https://www.webroot.com/blog/2016\/03\/07\/18611\/<\/a><\/p>\n<p><strong>Android Users Hit with Banking Malware<\/strong><\/p>\n<p>Recently, a new form of banking malware, labeled as Spy.Agent.SI, has been targeting\u00a0Android mobile banking users. The program will lock the device until the user enters their bank login information from one of the targeted bank apps. Currently, it appears to be focused on several large banks in Australia and New Zealand, and only impacts users who downloaded the fake Adobe Flash Player app from a third-party app store.<\/p>\n<p><a href=\"http:\/\/www.csmonitor.com\/World\/Passcode\/2016\/0307\/Sophisticated-banking-malware-targets-Android-users?mc_cid=db5948860e&amp;mc_eid=aa7c64b687\">http:\/\/www.csmonitor.com\/World\/Passcode\/2016\/0307\/Sophisticated-banking-malware-targets-Android-users?mc_cid=db5948860e&amp;mc_eid=aa7c64b687<\/a><\/p>\n<p><strong>Facebook Password Reset Vulnerability Found<\/strong><\/p>\n<p>A vulnerability was discovered this past week in Facebook&#8217;s password reset functionality. While a brute-force attack would be impossible on the facebook.com main website, due to a lock-out feature that triggers after a certain number of failed password tries, several of their other domains do not have this capability. This lack of security in the less trafficked sites within the facebook.com domain allowed the researcher to perform a brute-force attack on his own account, and successfully gain access to the account.<\/p>\n<p><a href=\"https:\/\/nakedsecurity.sophos.com\/2016\/03\/08\/how-one-man-could-have-broken-into-any-facebook-account\/?utm_source=Naked+Security+-+Sophos+List&amp;utm_campaign=53667cdbdd-naked%252Bsecurity&amp;utm_medium=email&amp;utm_term=0_31623bb782-53667cdbdd-454898153\">https:\/\/nakedsecurity.sophos.com\/2016\/03\/08\/how-one-man-could-have-broken-into-any-facebook-account\/?<\/a><\/p>\n<p><strong>Hotel Chain Major Target for PoS Malware Attack<\/strong><\/p>\n<p>This week, Rosen Hotels &amp; Resorts Inc. announced that they had fallen\u00a0victim to\u00a0a PoS malware infection on their credit card processing systems, which had first been discovered over a year earlier. The company is still unsure how many customers or locations were affected by the attack, which focused primarily on cardholder information, but have begun notifying customers whose information may be compromised.<\/p>\n<p><a href=\"http:\/\/news.softpedia.com\/news\/rosen-hotel-chain-had-a-pos-malware-infection-for-17-months-501530.shtml?utm_content=buffer51ea4&amp;utm_medium=social&amp;utm_source=linkedin.com&amp;utm_campaign=buffer\">http:\/\/news.softpedia.com\/news\/rosen-hotel-chain-had-a-pos-malware-infection-for-17-months-501530.shtml?<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>&nbsp; A lot happens in the security world, and many stories get lost in the mix. In an effort to keep our readers informed and updated, we present the Webroot Threat Recap, highlighting 5 major security news stories of the week. Tax Season Leads to Rise in Phishing Attacks As we&#8217;ve seen in the past, [&hellip;]<\/p>\n","protected":false},"author":47,"featured_media":18385,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[3005],"tags":[],"yst_prominent_words":[3775,3563,3565,6423,19603,19607,3557,3521,3477,19611,4933,19605,3543,19609,3479,5101,19181,4145,3529,3471],"acf":[],"_links":{"self":[{"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/posts\/18703"}],"collection":[{"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/users\/47"}],"replies":[{"embeddable":true,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/comments?post=18703"}],"version-history":[{"count":7,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/posts\/18703\/revisions"}],"predecessor-version":[{"id":18717,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/posts\/18703\/revisions\/18717"}],"wp:featuredmedia":[{"embeddable":true,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/media\/18385"}],"wp:attachment":[{"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/media?parent=18703"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/categories?post=18703"},{"taxonomy":"post_tag","embeddable":true,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/tags?post=18703"},{"taxonomy":"yst_prominent_words","embeddable":true,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/yst_prominent_words?post=18703"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}