Cyware Weekly Threat Intelligence, April 20 - 24, 2020

Weekly Threat Briefing • April 24, 2020
Weekly Threat Briefing • April 24, 2020
The Good
While the whole world continues to fight against the COVID-19 outbreak, here’s some good news from cyberspace to cheer you up. Researchers have successfully disrupted the operations of the notorious VictoryGate botnet that was primarily used by cybercriminals to mine Monero cryptocurrency. The botnet had infected more than 35,000 computers worldwide. On the other hand, the US Department of Justice (DoJ) has notified that hundreds of online domains related to COVID-19 scams were disrupted in an ongoing joint effort between law enforcement agencies and private companies.
The Bad
Talking about the bad, Cognizant made headlines this week for being attacked by Maze ransomware operators. Just like the previous weeks, there were also reports of credentials and personal data dumping on dark web forums. These credentials belonged to users of Facebook, Webkinz World, and the Aptoide app.
New threats
Among the new threats discovered, FPGA chips were found to be affected by two flaws that could expose several critical systems to attack. One of these flaws is a new Starbleed vulnerability that affects Xilinx FPGA chips. Meanwhile, researchers also uncovered that a dozen state-backed hacking groups are using COVID-19 themes as a lure to target US government employees and healthcare organizations.