Publicerad
CERT-SE:s veckobrev v.24
Cyberregnmoln på cyberhimlen ger Veckobrevet en välfylld källa att ösa nyheter ur.
Trevlig helg önskar CERT-SE!
Nyheter i veckan
For two hours, a large chunk of European mobile traffic was rerouted through China
https://www.zdnet.com/article/for-two-hours-a-large-chunk-of-european-mobile-traffic-was-rerouted-through-china/
Project Svalbard: The Future of Have I Been Pwned
https://www.troyhunt.com/project-svalbard-the-future-of-have-i-been-pwned/
Internetstiftelsen - Projekt vi stöttar
https://internetstiftelsen.se/kunskap/for-samhallet/internetstiftelsen-stottar/projekt-vi-stottar/
Cybercriminals Use Smartphone Calendars to Distribute Scam Offers
https://usa.kaspersky.com/about/press-releases/2019_cybercriminals-use-smartphone-calendars-to-distribute-scam-offers
Cryptocurrency hackers sneak malware into Oracle servers to mine Monero
https://thenextweb.com/hardfork/2019/06/11/malware-oracle-cryptocurrency-miner/
Messaging service Telegram hit by DDoS cyber attack
https://www.reuters.com/article/telegram-cyber/messaging-service-telegram-hit-by-ddos-cyber-attack-idUSL4N23J2QX?rpc=401&
CERT-SE Ser molnen på cyberhimlen
http://www.tjugofyra7.se/artiklar/Nyhet/ser-molnen-pa-cyberhimlen/
The InterPlanetary Storm: New Malware in Wild Using InterPlanetary File System’s (IPFS) p2p network
https://www.anomali.com/blog/the-interplanetary-storm-new-malware-in-wild-using-interplanetary-file-systems-ipfs-p2p-network
Evernote security flaw could have exposed data of millions of users
https://www.techradar.com/news/evernote-security-flaw-could-have-exposed-data-of-millions-of-users
It looks like another DNS compromise hack happening
https://myonlinesecurity.co.uk/it-looks-like-another-dns-compromise-hack-happening/
Yubico recalls government-grade security keys due to bug
https://www.engadget.com/2019/06/13/yubico-recalls-government-grade-security-keys-due-to-bug/
RAMBleed (CVE-2019-0174)-special
RAMBleed picks up Rowhammer, smashes DRAM until it leaks apps' crypto-keys, passwords, other secrets
https://www.theregister.co.uk/2019/06/11/rambleed_rowhammer_attack/
RAMBleed Attack Can Not Just Alter But Steal Sensitive Data
https://rootdaemon.com/2019/06/12/rambleed-attack-can-not-just-alter-but-steal-sensitive-data/
RAMBleed: Reading Bits in Memory WithoutAccessing Them (PDF)
https://rambleed.com/docs/20190603-rambleed-web.pdf
CERT-SE i veckan
Microsofts månatliga säkerhetsuppdateringar för juni 2019