Go to listing page

Cyware Daily Threat Intelligence May 09, 2018

Cyware Daily Threat Intelligence May 09, 2018

Share Blog Post

Top Malware Reported in the Last 24 Hours
Maikspy spyware
A new variant of Maikspy spyware has been discovered by security researchers stealing users' private data. The malware is spreading in the form of an online game, named Virtual Girlfriend. Hackers lure victims towards clicking on malicious shortened URLs. The game was found promoted by various Twitter handles.

Fake antivirus
A fake antivirus (AV) called Android’s Antivirus has been discovered by researchers, stealing the detections of other well-known AVs. The fake antivirus successfully duped Google Play and is available for download. Users are advised to be extra cautious while choosing an antivirus for their mobiles.

Top Vulnerabilities Reported in the Last 24 Hours
Vulnerability in Device Guard
Cumulative updates have been released for all versions of Windows 10 and Windows Server, which included the fix for a bypass vulnerability found in Device Guard. The vulnerability notably affects devices in Windows 10 S locked-down mode. To stay safe, users are advised to serve only specific and defined file types, and grant access only to trusted and accountable users.

New Kernel update
A Kernel update has been released for Red Hat Enterprise Linux 6 that fixed several denial of service and use-after-free vulnerabilities traced as CVE-2017-1000410, CVE-2017-13166, CVE-2017-18017, CVE-2017-7645, CVE-2017-8824, and CVE-2018-8897. Users are advised to update their Kernel packages and reboot their systems to stay safe.

Adobe patches critical flaws
Several critical vulnerabilities have been fixed by Adobe as part of its May Security Bulletin. Out of the flaws, five important ones span Creative Cloud, Adobe Flash Player, and Adobe Connect. None of these flaws have been exploited in the wild.


 Tags

Posted on: May 09, 2018


More from Cyware

Stay updated on the security threat landscape and technology innovations at Cyware with our threat intelligence briefings and blogs.

The Virtual Cyber Fusion Suite