TOP-3 cybersecurity events of the week according to Jet CSIRT

The outgoing week will be remembered for a new error in Windows 10 that causes a blue screen of death, attacks on Linux devices using the new malware FreakOut and a phishing campaign, as a result of which cybercriminals managed to steal several thousand Microsoft Office 365 accounts. We will tell you the details under the cut.







Blue Screen of Death vulnerability found in Windows 10



Researcher Jonas Lykkegaard reported a bug in Windows 10 that can cause the operating system to crash and display a blue screen of death (BSOD). To exploit this vulnerability, any user just needs to enter a specific path in the address bar of the browser and execute several commands. The specialist does not confirm whether the vulnerability was used by cybercriminals, while it is known that with its help cybercriminals can conduct a DoS attack.



Attackers attack Linux devices with FreakOut malware



Check Point Research has discovered a malicious campaign on Linux devices in which cybercriminals use the new FreakOut malware. To spread the backdoor, attackers exploit vulnerabilities in the Laminas Project and Liferay Portal, as well as unpatched vulnerabilities in TerraMaster. Infecting a device with FreakOut malware allows attackers to scan ports, collect confidential information, and conduct DDoS attacks.



Cybercriminals have stolen thousands of Microsoft Office 365 accounts



Researchers at Check Point Research and Otorio studied a phishing campaign that resulted in theft of several thousand Microsoft Office 365 user credentials. The cybercriminals targeted employees of various companies in the fields of construction, energy and information technology. Cybercriminals sent victims personalized phishing emails with the subject line of the employee's name and an attachment containing a scanned HTML notification.



All Articles