Malicious Android apps get an update to avoid detection

Legitimate software vendors update and patch their products to combat threat actors, so it is no surprise to see that threat actors update and patch their malicious products to evade updated defences: Hacking group updates Furball Android spyware to evade detection (bleepingcomputer.com) Just make sure you manage those Android devices …

User’s not understanding what secure configurations are, is the first step towards a cyber security incident. UPDATED

code

This original post was made on 23 August 2022 Update 21 October 2022 There has been another “mis-configuration story this week – Microsoft exposed thousands of client records when they mis-configured a server. Following a report in the summer of patient information leaking from a health care company because of …

Ransomware targets home users – with some advice for you – UPDATED

This post was first made on 14 October 2022 Original Post Threat actors do not care who they infect as long as they pay up. Now fake anti-virus and security updates for Windows 10 have been circulating and deploying Magniber ransomware – the zip files contain JavaScript that initiates the …

Mis-configuration – a common mistake many organisations make when setting up their cyber security – including Microsoft!

We often find problems with client configurations when we take over jobs, particularly when less-technically-able client try to do-it-themselves. If anyone needs an example as to why getting things set up correctly is difficult, Microsoft made a mistake with a server config and exposed some of their client’s information: Microsoft …