Cyware Weekly Threat Intelligence, October 12 - 16, 2020

Weekly Threat Briefing • October 16, 2020
Weekly Threat Briefing • October 16, 2020
The Good
The network router is an easy target for cybercriminals who are looking for ways to breach home networks. Following the rise in cybersecurity incidents due to vulnerable routers, the Singapore government has published a list of new security protocols for new home routers. The new mandate will come into action from April 13, 2021. Meanwhile, North Carolina has launched a cybercrime hotline owing to the rise in losses due to COVID-19 scams.
The Bad
Several large data leak incidents made headlines this week, out of which a major portion of the data was leaked by Broadvoice VoIP provider. The firm had leaked more than 350 million customer records due to a misconfigured Elasticsearch database. In another incident, cybercriminals made away with over $22 million funds from the Electrum wallet app after tricking users into a fake wallet update message.
New Threats
The week grabbed the attention of security experts due to the rise of the TrickBot trojan from ashes. Despite the takedown of its backend infrastructure, the trojan made its comeback in a new form by replacing the affected domains with fresh ones. That’s not all, the gang also enhanced the capabilities of BazarLoader backdoor to distribute Ryuk ransomware onto victims’ machines.