A Little Sunshine

April 12, 2016

New Threat Can Auto-Brick Apple Devices

This post was originally published on this site If you use an Apple iPhone, iPad or other iDevice, now would be an excellent time to ensure that the machine is running the latest version of Apple’s mobile operating system — version 9.3.1. Failing to do so could expose your devices to automated threats capable of rendering them unresponsive and perhaps forever useless. Zach Straley demonstrating the fatal Jan. 1, 1970 bug. Don’t try this at home! On Feb. 11, 2016, researcher Zach Straley posted a Youtube video exposing his startling and bizarrely simple discovery: Manually setting the date of your iPhone or iPad all […]
April 14, 2016

‘Blackhole’ Exploit Kit Author Gets 8 Years

This post was originally published on this site A Moscow court this week convicted and sentenced seven hackers for breaking into countless online bank accounts — including “Paunch,” the nickname used by the author of the infamous “Blackhole” exploit kit.  Once an extremely popular crimeware-as-a-service offering, Blackhole was for several years responsible for a large percentage of malware infections and stolen banking credentials, and likely contributed to tens of millions of dollars stolen from small to mid-sized businesses over several years. Fedotov, the convicted creator of the Blackhole Exploit Kit, stands in front of his Porche Cayenne in an undated photo. According […]
April 20, 2016

Giant Food Sees Giant Card Fraud Spike

This post was originally published on this site Citing a recent and large increase in credit card fraud, Washington, DC-area grocer Giant Food says it will no longer allow customers to use credit cards when purchasing gift cards and reloadable or prepaid debit cards. A new warning sign at Giant Food checkout counters. Giant says the warning was prompted by a spike in credit card fraud. I had no idea this was a new thing at Landover, Md.-based Giant, which operates 169 supermarkets in the Washington, D.C. metro area.  That is, until I encountered a couple of large new “attention” stickers […]
April 26, 2016

All About Fraud: How Crooks Get the CVV

This post was originally published on this siteA longtime reader recently asked: “How do online fraudsters get the 3-digit card verification value (CVV or CVV2) code printed on the back of customer cards if merchants are forbidden from storing this information? The answer: If not via phishing, probably by installing a Web-based keylogger at an online merchant so that all data that customers submit to the site is copied and sent to the attacker’s server. Kenneth Labelle, a regional director at insurer Burns-Wilcox.com, wrote: “So, I am trying to figure out how card not present transactions are possible after a […]