Cyware Weekly Cyber Threat Intelligence April 23- 27, 2018

Weekly Threat Briefing • April 27, 2018
Weekly Threat Briefing • April 27, 2018
The week witnessed some high points in cybersecurity with government agencies and firms making good strides towards addressing cyber threats. The Europol succeeded in dismantling the ‘Webstresser’ which it claimed to be a hotspot for the sale of DDoS attacks. Microsoft has launched 'Windows Defender System Guard' to mitigate attacks in software. On the other hand, researchers at New Zealand have invented the first ever quantum blockchain.
Europol has successfully dismantled the Webstresser website. As per claims by the police, the website sold Distributed Denial of Service (DDoS) attacks and helped launch up to 6 million of them for as many as 136,000 registered users. The investigation was led by the Dutch National High Tech Crime Unit and the UK National Crime Agency (NCA), and assisted by Europol. Four alleged administrators of the site were arrested, the site was shut down and its infrastructure was seized.
A new Windows platform security technology, meant to mitigate attacks in software, has been released by Microsoft. The company announced Windows Defender System Guard runtime attestation that can provide signals for Endpoint Detection and Response (EDR) and antivirus vendors. The security technology is also capable of detecting kernel tampering, rootkits, and exploits.
A study by researchers in New Zealand found out that the newly proposed quantum blockchain can result in blockchain systems that are unaffected by quantum-computer hacking. This is considered to be the first ever fully quantum blockchain. This new quantum blockchain functions by interpreting its mistakes and influencing its own past.
Along with the favorable news, the week noticed some disappointing breaches and attacks. While Dubai-based ‘Careem’ app was affected by a data breach which resulted in data theft of 14 million users; ‘MyEtherWallet’, a web-based Ether wallet service suffered from the loss of cryptocurrencies due to DNS hijack. An unsecured Mongo database led to the data leak of 25,000 Bezop’s investors and 2 million UK bank customer faced trouble due to a faulty IT upgrade.
Talking about threats, researchers found Operation GhostSecret targeting global facilities and Rubella Macro Builder crimeware kit being used for campaign attacks. In other news, researchers unearthed Crossrider Variant and a new botnet family known as SquirtDanger was discovered.