Latest News Articles

#######################################################
				
##### CSIRT-IE End of Week Report ####

########################################################


Date   : Friday 17-05-2019 10:00 ; Friday 24-05-2019 10:00


=====================================

= News =

=====================================


		
− Google begins to cut ties with Huawei
US internet giant Google, whose Android mobile operating system powers most
of the world's smartphones, has said it is beginning to cut ties with 
China's Huawei, which Washington considers a national security threat.
https://www.rte.ie/news/business/2019/0520/1050492-google-huawei/



− MuddyWater APT Group Upgrades Tactics to Avoid Detection
MuddyWater, a relatively new advanced persistent threat group that is 
targeting organizations in the Middle East, has changed some of its 
tactics to avoid detection while continuing to plant backdoors within 
targeted networks....
https://www.healthcareinfosecurity.com/muddywater-apt-group-upgrades
-tactics-to-avoid-detection-a-12504



− Special report - Hobbling Huawei: Inside the U.S. war on China's... 
The operatives – agents of the Australian Signals Directorate, the nation’s 
top-secret eavesdropping agency – had been given a challenge. With all the 
offensive cyber tools at their disposal, what harm could they inflict 
if they had access to equipment installed in the 5G network, the....
https://www.reuters.com/article/us-huawei-usa-5g-specialreport/special-
report-hobbling-huawei-inside-the-u-s-war-on-chinas-tech-giant-idUSKCN1SR1EU



− One year later: The VPNFilter catastrophe that wasn't
Cisco Talos first disclosed the existence of VPNFilter on May 23, 2018. 
The malware made headlines across the globe, as it was a sophisticated 
piece of malware developed by a nation state..... 
https://blog.talosintelligence.com/2019/05/one-year-later-vpnfilter-
catastrophe.html

 

− Data protection watchdog to probe Google's Ad Exchange
The Data Protection Commission has begun a statutory inquiry into the 
processing of personal data by Google Ireland's Ad Exchange business. 
https://www.rte.ie/news/business/2019/0522/1051099-data-protection-
watchdog-to-probe-googles-ad-exchange/



=====================================

= Vulnerabilities =

=====================================

 

− New Trickbot Variant Uses URL Redirection to Spread
Switch in tactic is the latest attempt by operators of the prolific banking
Trojan to slip past detection mechanisms. The authors of the Trickbot 
banking Trojan have once again begun using URL redirection instead of 
malicious email attachments to spread their malware.
https://www.darkreading.com/attacks-breaches/new-trickbot-variant-uses
-url-redirection-to-spread/d/d-id/1334767

 

− Two More Windows 10 Zero-Day PoC Exploits Released, Brings Total to 4
After releasing exploit code for two zero-day vulnerabilities in Windows 
10 over the past 48 hours, security researcher and exploit developer 
SandboxEscaper today has published two more; a bypass for the CVE-2019-
0841 patch and LPE PoC exploit dubbed InstallerBypass. 
https://www.bleepingcomputer.com/news/security/two-more-windows-10-zero-
day-poc-exploits-released-brings-total-to-4//



=====================================
= Community News =
=====================================



− TeamViewer Confirms It Was Hacked in 2016
Remote control and support solutions provider TeamViewer has confirmed 
that hackers likely operating out of China breached its systems back in 
2016, but the company decided not to disclose the incident at the time 
as it found no evidence that it affected customers.
https://www.securityweek.com/teamviewer-confirms-it-was-hacked-2016



− Faulty Database Script Exposed Salesforce Data to Wrong Users
Salesforce Shuts Down Instances After Database Script Erroneously 
Enabled All Permissions on User Profiles read more.
https://www.securityweek.com/faulty-database-script-exposed-salesforce-
data-wrong-users



− Huawei Vows to Deliver Android Security Updates After Google Cut-Off
Huawei has promised to continue delivering security updates to existing 
Android phones and tablets after news broke that Google has suspended 
business with the Chinese telecommunications giant.
https://www.securityweek.com/huawei-vows-deliver-android-security-updates
-after-google-cut



− Irish Cyber Security Cluster officially launched in Cork
CORK, Ireland - Monday marked the official launch of the Irish Cyber 
Security Cluster, Cyber Ireland. 
https://www.bignewsnetwork.com/news/261107782/irish-cyber-security-
cluster-officially-launched-in-cork