- The popularity and widespread use of Netflix has again made its subscribers the target of a phishing attack. The latest scam has been grabbing headlines due to the convincing nature of the attack, which includes a spoofed landing page designed to steal users’ login and credit card details. According to web and email security provider Mailguard, the fake page directs subscribers to a legitimate Netflix page once they “update” their payment details.
- A hacking outfit out of Russia that calls itself “Fancy Bear” is the topic of cybersecurity company Trend Micro’s recent blog post updating the criminal group’s efforts to target the US Senate and other political organizations worldwide. These same attackers have been linked to the 2016 Democratic National Committee (DNC) hack. Coverage in V3 outlines the attacks, which were fairly simple and relied on stolen credentials, social engineering, and other exploits.
- Upwards of 30,000 Florida Medicaid recipients have had their data compromised as a result of a phishing attack on the state’s Agency for Health Care Administration (AHCA). One of the agency’s employees reportedly fell for the attack in November 2017, giving attackers access to protected health information (PHI) such as patient names and addresses, medical conditions and diagnoses, and Medicaid ID numbers. According to the AHCA, there is no evidence (yet) that gold mine of information has been abused, but the breach has left many on high alert.
- Proofpoint researchers have unveiled a vulnerability in Google Apps Script that attackers could use to compromise machines by automatically downloading malware from Google Drive. A proof of concept outlines Proofpoint’s research methods and the ways cybercriminals could abuse certain Apps Script events. SC Magazine noted that “a SaaS application like Google Drive creates an entirely new attack surface that business and consumers need to guard,” so users must remain vigilant against new attack techniques.
- Cryptocurrency broker EtherDelta had their DNS hacked, and their website was replaced with a replica aimed at stealing users’ funds. Nearly $250,000 in ERC20 tokens were taken during the attack, which reportedly lasted about seven hours. According to EtherDelta, only those users who entered their private keys into the site during that window were compromised.
- Veterans in the state of Illinois were inconvenienced by a phishing attack that crashed the statewide CyberVet system, delaying a wide range of benefit claims for millions of residents. The breach — which occurred back in July 2017, but wasn’t revealed until December — reportedly happened because the Illinois Department of Veterans’ Affairs had not implemented a recommended cybersecurity upgrade. The Department says it has since corrected the problem, boosting cybersecurity measures across the organization. Investigations have yet to turn up any suspects.
Subscribe to the Proofpoint Blog