Showing posts with label computer security. Show all posts
Showing posts with label computer security. Show all posts

Monday, October 28, 2019

Browser Update Warnings May Actually Be Malicious Hackers

Researchers at FireEye have recently unearthed a particularly nasty new campaign that is both multi-faceted and dangerous.

At the heart of the attack are hacked websites which display seemingly innocuous popup message informing the site visitor that their browser is out of date.

It will helpfully provide a one-touch solution to the non-existent problem via a button that promises to download the latest version of the browser in question.

Naturally, it does no such thing.  Instead, it uses a series of JavaScripts to gather information about the target computer and send the details back to the command and control server.

The server then responds to the findings reported by the initial script by uploading the initial payload.  This varies based on the details gleaned, but generally includes some type of banking trojan malware and a backdoor such as Dridex, NetSupport Manager RAT, or similar.  If the initial scan reveals that the target computer is part of a corporate network, then an additional payload is also injected onto the target machine, but we'll get to that in a moment.

The first part of the payload will busily ferret out login credentials and other sensitive information, exfiltrating any files of value back to the command and control server.

Only when this operation has been completed and if the computer is part of a corporate network will the second stage we referenced earlier trigger, which is a strain of ransomware, normally BitPaymer or DoppelPaymer. The ransomware spreads through the network as far as it is able, encrypting files network wide.

These two ransomware strains are known for their hefty ransom demands, which often run into the hundreds of thousands, or even millions of dollars.

This multi-stage approach is dreadfully effective.  It not only allows the hackers to squeeze a wide range of sensitive data from infected systems, but then, locks them down hard and demands a hefty payment.  Be sure your staff is aware.  This one's about as dangerous as they come.

Nowadays, whether you own a startup or established company, you need to be cautious, aware, and proactive when it comes to online security. Let SpartanTec Inc. in Greenville help you secure your computers and networks against various types of online threats. 


SpartanTec, Inc.
Greenville, SC  29601
(864) 326-5914


Cities Served
Greenville, Spartansburg, Mauldin, East Park, Overbrook, West Greenville, Greer

Tuesday, October 15, 2019

Google Adds Several New Password Features To Help Users

Google is taking additional steps to provide a safer and more secure environment for their massive user base.  Chrome is the most widely used browser in the world. In recent months, Google has made moves to provide better password security. Most recently, they released a Chrome Extension called Password Checkup that scans all of your stored login credentials to see if they've been found in data breaches. If they have been breached, it prompts you to change them.

As good and helpful as that is, the company has taken an additional step and has now integrated the Password Checkup tool directly into Google's Password Manager.

Here's how it works:
  • Open your Google Password Manager, which you can access via https://passwords.google.com.
  • When the page displays, you'll see a new link labelled "Check Passwords." Click that.
  • Google will then proceed to check your stored login credentials to see:
    • If any of your passwords have been exposed via a third-party data breach
    • If the password in question is being reused among multiple sites
    • Assess the relative strength of all of your stored passwords.
Once this check is complete, it will display the results in different categories that show you exactly which passwords are at risk, and why they were flagged.  From there, you'll be able to change any problematic passwords and re-run the check to give yourself a clean bill of health.

This is a fantastic move, but the company isn't stopping there.  Ultimately, the company plans to have Chrome automatically alert you when your saved passwords were discovered in a breach and allow you to act immediately to change them and keep your accounts safe.

When the plan is fully realized, Google's password security feature built into Chrome will rival the capabilities of many paid password management offerings, and that's a very good thing indeed.
Kudos to Google for raising the bar.

Online security is an integral part of any company these days. If Google is taking steps to help their users secure their passwords, you should also do you part. Call SpartanTec Inc. now if you want to know how to keep your personal or business information secure.

SpartanTec, Inc.
Greenville, SC  29601
(864) 326-5914


Friday, September 27, 2019

Your Google Calendar Settings May Be Sharing Your Info

Twelve years ago, Google introduced a new feature to Google Calendar that allowed users to share their calendars with others.  It's a great feature and invaluable in a corporate environment because it gives teams an easy way to collaborate.  Google itself even touted the "make it pubic" feature of their calendar as being a cool way to use their search engine to discover upcoming events.

Unfortunately, as with most things, there's a potential downside.  Recently, a security researcher named Avinash Jain discovered more than 8,000 publicly accessible Google Calendars, searchable via Google's own search engine.  Many of these calendars contain sensitive information (which is bad enough), but worse, they allow any user to add new events that can cause real harm to the system hosting the calendar. This is done via maliciously crafted events or poisoned links.

As Avinash Jain reports:

"I was able to access public calendars of various organizations leaking out sensitive details like their email IDs, their event name, event details, location, meeting links, zoom meeting links, google hangout links, and much, much more.

This is more of an intended setting by the users and intended behavior of the service. The main issue however, is that anyone can view anyone's public calendar, add anything on it - just by a single search query without being shared the calendar link.

Jain goes onto say that several calendars belonging to many of the top 500 Alexa company's employees were made public, which is certainly cause for concern.

This most recent finding adds to the chorus already warning of the dangers of calendar sharing.  Just a few months ago, researchers from Kaspersky Lab discovered scammers abusing Google Calendar in a variety of ways. For example, there were phishing scams that contained poisoned links masquerading as google calendar event links.

Stay vigilant and be sure you have all employees check their Google Calendar security settings so you're not revealing more than you intended to.

It is also crucial to make sure that your computers or the entire business network is not in any way at risk of any kind of online breach. Call SpartanTec, Inc. in Greenville now and let our team set up and efficient strategy to protect your business.

SpartanTec, Inc.
Greenville, SC  29601
(864) 326-5914


Cities Served
Greenville, Spartansburg, Mauldin, East Park, Overbrook, West Greenville, Greer

Friday, August 16, 2019

How Can You Secure Your Computer From Hackers?


Back in the 1990’s, computer users have started to notice the disadvantages of the internet and many of them didn’t like what they saw. Email accounts were bombarded with tons of spam while business networks were plagued with various computer viruses. A scary criminal component came about that widened the definition of robbery to a whole new level. It now includes infiltrating the computer, stealing personal details, duping you to revealing personal details, as well as using that information to extort and steal everything from your bank account, identity, and down to your business secrets.

Despite all that, small and large businesses depend on the internet to monitor their orders, financials, and their inventory as well as perform PR campaigns and marketing, connect with clients, participate in social media, and conduct other important business operations. However, there’s been a lot of reports about computer breaches in different companies including those that are already at the top of the ladder. Small companies are responsible when it comes to the prevention of such crimes so that company property is not harmed and consumer information is not stolen. A few steps to ensure computersecurity and protect your integrity are listed below.

Use a Firewall

Two of the biggest computer operating systems come with built in firewalls, software that were made to develop a barrier between the outside world and your information. They prevent unauthorized access to your company’s network and notify you of any attempt of intrusion.

Install Anti-Virus

Trojans, keyloggers, and computer viruses are all around. Anti-virus programs like Avast and Malwarebytes work by immunizing your computer against any software that will threaten the operating system or any unauthorized code. Viruses can have different effects that might be quite easy to identify. They may slow down your computer or in some cases delete or halt key files.

Install Anti-Spyware Package

Spyware is a specialized type of software that will collect and monitor your organizational or personal information secretly. It is designed to be difficult to detect and remove. It also tends to serve up undesired adverts or search results that will direct you to malicious websites.

Use Complex Passwords

One important way of preventing illegal intrusions onto your computer and your network is to use secure and complex passwords. It will be harder for a hacker to invade your computer if you use more secure passwords. It is not a good idea to use obvious combinations or words that will represent common things like your birthday or any basic information that could be easily connected to you.

Update Your OS, Browser, and Apps

You should always install updates to your computer’s operating system. The majority of updates include security patches that will stop hackers from gaining access and exploiting your personal or business information. This also applies to your favorite apps.

Ignore Spam

You should be careful of emails that come from unknown parties and don’t click on the links or even open attachments that on the email. Over the years, spam catchers have upped their game and have become extremely effective at catching spam. But you still need to be very careful.

The threats to your computer, personal and business information are everywhere. Never let your guard down and always make sure that effective security measures are in place to protect your network and company in general. Call SpartanTec, Inc. now and let our team determine if your network is at risk and what measures can be taken to protect your company.



SpartanTec, Inc.
Greenville, SC  29601
(864) 326-5914


Cities Served
Greenville, Spartansburg, Mauldin, East Park, Overbrook, West Greenville, Greer

Wednesday, August 7, 2019

Equifax Breach Victims Could Be Entitled To Settlement Claims

Equifax is one of the three credit reporting firms in the US that suffered a massive data breach in 2017 that exposed the personal and financial state of literally half the country (more than 150 million people). As a result, Equifax was ordered to pay a hefty $700 million fine to settle a series of Federal and State investigations. While the size of the fine sounds impressive, digging a bit deeper reveals it to be a bit underwhelming.

Only $425 million of that fine will go into a fund designed to actually reimburse impacted customers. However, Equifax will be allowed to earmark an unspecified portion of that to provide free credit monitoring services to anyone who was impacted by the breach.

Here's the problem:  Free Credit Monitoring is actually a money-maker for Equifax because of the way the "free" service is offered.  It's free for a year, and then automatically converts to a paid service.  Given that most people don't pay close attention to that sort of thing, a significant percentage of customers will continue paying Equifax for their credit monitoring service, which essentially sees the company profiting from their own data breach.

In any case, impacted customers will be eligible for a small amount of money from Equifax if their data was compromised. The company is on the hook for paying some $300 million in fines and civil penalties across 50 states and to the Consumer Financial Protection Bureau.

On top of that, the company has been ordered to provide all American consumers, (whether they were impacted by the breach or not), six free credit reports each for the next seven years. This is in addition to the one free annual credit report they already get beginning in January 2020.

It's a decent settlement, but it lets Equifax off the hook too easily. That is especially true given that they can turn one of the largest data breaches in American history into a profit center.  The CFPB could have and should have demanded more.

Call SpartanTec, Inc. if you want to make sure that your network is secured against potential online breach.

SpartanTec, Inc.
Greenville, SC  29601
(864) 326-5914

Cities Served
Greenville, Spartansburg, Mauldin, East Park, Overbrook, West Greenville, Greer

Tuesday, July 30, 2019

Android Malware Can Replace Real Apps With Fake Apps

Security researchers at Check Point have discovered a disturbing new strain of Android malware that's as ingenious as it is disturbing. It is effective because it is designed to replace a rapidly expanding number of apps with poisoned copies.

The app copies still retain their core functionality, making the malware notoriously difficult to detect.

After all, if you downloaded JioTV, a photo editing app of some kind, or a game, and the app works as you expect it to, why would you even suspect that it was malware?  Unfortunately, that's exactly what this new malware strain does.

Dubbed 'Agent Smith,' the malware takes advantage of different android vulnerabilities and injects malicious code into the APK files of targeted apps defined by a list inside the code. They then automatically update and re-install them without the device owner's knowledge or consent.

The Check Point researchers had this to say about the new strain:

"It's not enough for this malware family to swap just one innocent application with an infected double.  It does so for each and every app on the device, as long as the package names are on its prey list.

Over time, this campaign will also infect the same device repeatedly, with the latest malicious patches.  This leads us to estimate there are to be over 2.8 billion infections in total, on around 25 million unique devices, meaning that on average, each victim would have suffered roughly 112 swaps of innocent applications."

Of course, the last thing the malware's creators want is for the app to be legitimately updated. So part of the strain's design is to disable that functionality from inside the app so the hackers can control the updates.

If there's a silver lining, it is that to date, the malware doesn't contain any data siphoning or data destroying code.  All it does is display ads.  Unfortunately, the malware strain's owners can easily shift gears any time they want to.

Call SpartanTec, Inc. for details on how to keep your information safe.

SpartanTec, Inc.
Greenville, SC  29601
(864) 326-5914

Cities Served
Greenville, Spartansburg, Mauldin, East Park, Overbrook, West Greenville, Greer

Friday, July 26, 2019

How To Protect the Data Of Your Clients and Company


Having sensitive information regarding customers and clients is crucial, however ensuring that private details stays secure may be just as important to the health of a small business. Several small businesses aren’t that ready for the tricks hackers use to get data from information units or to handle the fallout from such as event. As a matter of fact, hackers consider small businesses as attractive targets compared to bigger companies since they do not invest as many resources in their information security. This holds true for those companies that provide services to bigger firms. So how do you protect the data of your clients, employees, and company as well?

Data protection Tips For Better Information Security


In case you collect it, you should protect it.

You need set in place and adhere to security measures to make sure that the personal information of employees and customers are protection from unauthorized and inappropriate access.

Set up a strong privacy policy.

Clients have to know that you are doing your best to protect their information. Be sure that you have a privacy policy set in place so they have something to refer to if they want to know how you are keeping their personal details safe and secure. Don’t forget to be straightforward with clients regarding their consumer data that you collect and whatever it is that you are doing with their information. By being honest, you will be able to build trust and you will show your clients that their data is important to you and that you are doing all that you can to protect it.

You need to know what you are trying to protect.

You have to know what information you have, where it is stored, how it is used, and who can access it. Know the type of assets you may have and the reasons hackers may have to want to get them.
Never underestimate the threat.

Most small business owners think that only larger enterprises are at risk. But the truth is, there have been instances when small businesses lost thousands because of cyber criminals.

Don’t keep what you don’t need.

The more sensitive information you keep, the more at risk your company will be. Don’t use social security numbers as well as other crucial information to identify your clients. Instead of using these info, why don’t you go for log in identifications as well as passwords? You can prevent attackers from simulating users if you have several layers of identification. Delete any other information that you don’t need.

Keep your machine clean.

Be sure that you have installed the latest anti-virus program, web browser, as well as operating system. These are among the most effective defences against malware, viruses, and other kinds of online threats. Several software will connect and update automatically to protect your system against known risks. Switch on automatic updates if ever you have that option.

Install multiple security layers.

Spam filters and email protection can weed out phishing scams and malware, which are mostly aimed directly at companies, regardless of the size.

Do you want to know if your information, computers, and networks are at risk? Let our team at SpartanTec, Inc. help you. Call us now for more details. 

SpartanTec, Inc.
Greenville, SC  29601
(864) 326-5914


Cities Served
Greenville, Spartansburg, Mauldin, East Park, Overbrook, West Greenville, Greer

Wednesday, July 17, 2019

Stop Ransomware Attacks With Network Segregation, Segmentation


There has been lots of ransomware attacks against organizations in the healthcare industry over the past years. In some cases, there have been devastating consequences. Fortunately, network segmentation and segregation can help.

From patient data that have been compromised to EHR downtime, such cyberattacks could disrupt the facility’s operation significantly. Network segmentation and network segregation are measures that can assist in mitigating the risks from such typical attacks. The separation of important networks from internal network, less sensitive networks, or from the internet is referred to as network segregation. Meanwhile, network segmentation, involves dividing the bigger network to smaller ones. This can be achieved through virtual local area networks, firewalls, as well as other separation methods.

Both of these approaches can stop ransomware attacks that will encrypt files on your network, restrict access to those files, and bring the victim to a web page and given instructions on how they can pay a ransom using bitcoin so they can unlock their files. How can healthcare firms and organizations create and implement such measures to protect their data and infrastructure from such attacks?

Network Segregation and Network Segregation

One effective way of prevent ransomware attacks is air gapping, which involves separating the network from internal networks that may be unsecured and from the internet. This measure could create usability problems within the firm.

Network segmentation is another solution that is network based. It involves dividing bigger networks into smaller segments using separation techniques such as VLANs or virtual local area networks. Function can be used as a basis when segmenting networks like splitting human resources from finance. It can also be done by data like separating non regulated data from PHI. Segmentation will lay down the ground work for controls that offer protection from lateral movement on the network by hackers or ransomware, thus preventing compromise or infection from being spread across your organization’s network.

Organizations have to make sure that they perform patches to lessen their vulnerability, install antivirus software, and follow only the best practices when it comes to cybersecurity hygiene. They should also train their workforce, use email protection, and updated antivirus software. Ransomware will continue to be a threat to the healthcare industry into the near future. There are things organizations can take to prevent ransomware from infecting their network and decrease the damage in case a ransomware attack succeeds at first. Network segmentation and network segregation are two methods that healthcare organizations can take to mitigate the risk of encountering ransomware. They may be costly or complex but they can save organizations from the damage in their system, finances, and reputation as well as patient risk that a ransomware attack will result in.

Call SpartanTec, Inc. if you need help in making sure that your organization and network is safe against ransomware attacks.

SpartanTec, Inc.
Greenville, SC  29601
(864) 326-5914


Cities Served
Greenville, Spartansburg, Mauldin, East Park, Overbrook, West Greenville, Greer

Tuesday, July 9, 2019

Tips To Avoid The Most Common Computer Security Threats


Computer security threats constantly evolve. These threats are masters of manipulation and disguise will always try to find brand new methods not just to annoy online users but also to steal and even harm them. You should arm yourself with resources and information for protection against the growing and complex computer security threats and improve your computer security as well as information security.

Common Cybersecurity Threats


Computer Viruses


Maybe the most popular computer security threat is a computer virus. It is a program that is written to change how a computer works, without the knowledge or permission of the user. A virus will replicate and execute itself, which leads to computer damage during the process. Be sure to evaluate free software carefully, download that come from peer to peer file sharing websites, as well as emails from unknown sources. All these re crucial in avoiding computer viruses. The majority of web browsers these days have security settings that can be improved for the best defence against various online threats. However, the single most efficient method of avoiding viruses is to install and keep your anti-virus software updated.

Spyware Threats


Another serious security threat is spyware. It is a program that will monitor your online activities. It can also install programs without your permission either to get personal information or for profit. Today, there are several ways to help you fight spyware threats and stay safe online. Although several users don’t want to hear about it, reading terms and conditions is important and a good practice as it will give you the knowledge you need to understand how your online activities are being tracked. Of course, when a firm that you don’t recognize is advertising a deal that is too good to be true then it probably is. You need to have an internet security solution set up right away and be careful when go online.

Hackers and Predators


People create these malware and computer threats. Predators and hackers are programmers who victimize others for their personal interest by breaking into computers to change, steal, or destroy pertinent details as a kind of cyber terrorism. These online predators will compromise your credit cart information, steal your identity, and won’t let you use your data. As you may have known, online security tools that comes with identity theft protection are among the best methods to protect yourself from this kind of cybercriminal.

Phishing


Phishers pretend as trustworthy business or person so they can steal personal or sensitive details through instant messages or fraudulent emails. Phishing attacks are among the most successful ways for cybercriminals to conduct a data breach Anti-virus programs with identity theft protection could be taught to identify phishing threats.

Do you want to know if your computer or network is at risk? Call SpartanTec, Inc. now.


SpartanTec, Inc.
Greenville, SC  29601
(864) 326-5914


Cities Served
Greenville, Spartansburg, Mauldin, East Park, Overbrook, West Greenville, Greer


Thursday, June 6, 2019

New Security Vulnerabilities Found In Intel Processors

Remember the Spectre and Meltdown CPU vulnerabilities discovered early last year?  Well, hold onto your hat, because they've got company.

Recently, researchers discovered a new class of side-channel vulnerabilities in Intel processors that impact every modern chipset the company makes, including those used in Apple devices.

The new vulnerabilities exploit weaknesses in something called 'speculative execution' which is a core design feature of modern processors. This feature allows them to speculatively execute instructions based on conditions the system has 'learned' are likely to be true.  If those assumptions are proved to be valid, then the execution continues.  If not, it is discarded. The net effect of this design is to increase overall system performance speed, but it also opens up the door for additional risk.

The researchers had this to say about their latest discoveries:

"The new vulnerabilities can be used by motivated hackers to lead privileged information data from an area of the memory that hardware safeguards deem off-limits.  It can be weaponized in highly targeted attacks that would normally require system-wide privileges or deep subversion of the operating system."

Collectively, these new vulnerabilities are being referred to as 'MDS speculative execution' flaws, and have been identified as follows:
  • CVE-2019-11091 - Microarchitectural Data Sampling Uncacheable Memory (MDSUM), part of the RIDL class of attacks.
  • CVE-2018-12127 - Microarchitectural Load Port Data Sampling (MLPDS), also part of the RIDL class of attacks.
  • CVE-2018-12130 - Microarchitectural Fill Buffer Data Sampling (MFBDS), also called 'Zombieload' or RIDL (Rogue In-Flight Data Load).
  • CVE-2018-12126 - Microarchitectural Store Buffer Data Sampling (MSBDS), also known as a Fallout
Of these, the ZombieLoad attacks seem to be the most worrisome of the lot.  They impact the largest number of chips, encompassing everything Intel has produced from 2011 onwards, but all of these are considered serious security flaws.  Worse, there are no fixes yet, and no word yet on when a fix might be forthcoming.

Safeguard your network and information by working only with the best IT consultants. Call SpartanTec, Inc. now


SpartanTec, Inc.
Greenville, SC 29601
(864) 326-5914
https://spartantec-greenville.business.site/

Cities Served
Greenville, Spartansburg, Mauldin, East Park, Overbrook, West Greenville, Greer

Monday, April 22, 2019

New Malware Hidden In Emails About Flu Protection




Fear is a fantastic way to spread malware, which is why hackers around the world are using the fear of a flu pandemic as a hook to install a nasty strain of ransomware. It is one of the many reasons why companies employ managed IT services to prevent such malicious software from taking over.


Researchers at MyOnlineSecurity have detected a cunning email campaign which spoofs the Centers for Disease Control and bears headlines warning of a Flu Pandemic.

The message is short and to the point, explaining that a flu pandemic has been detected and urges recipients to read the attached document for further instructions to protect their families and help keep it from spreading.  The instructions also helpfully include the note that in order to view the document properly you'll need to click the 'Enable Editing' button.

The attachment bears the name "Flu Pandemic Warning," which reinforces the message itself. It's an excellent choice from the perspective of the hackers, because they know that a relatively high percentage of those who receive this message from what appears to be a trusted agency will open it. This tactic will likely have a higher victim count and could affect businesses severely, which is why it is important to have managed IT services Greenville in place.

Unfortunately, the moment they open the file and click to enable editing, they doom themselves.  The word document is poisoned and contains scripts that will install the GrandCrab v5.2 ransomware on the victim's machine, which will promptly lock their files and demand a hefty payment.

While this is a nasty and especially effective campaign, it's not the only one that the creators of Grand Crab are engaged in.  Recently, the Chinese government issued their own alert, stating that beginning on March 11, various government departments were bombarded with phishing-style emails intent on installing ransomware on their servers. The incident highlights the need for a more comprehensive computer security system that prevents such cases from happening.

All that to say, vigilance is more important now than ever.  There's no telling how long this campaign will run, or what may come after it, but one thing you can be sure of.  They're not going to stop.

Does your company need a complete technology solution provider? Call SpartanTec, Inc. today.


SpartanTec, Inc.
Greenville, SC 29601
(864) 326-5914
https://spartantec-greenville.business.site/

Cities Served
Greenville, Spartansburg, Mauldin, East Park, Overbrook, West Greenville, Greer


Thursday, March 7, 2019

Software Similar To MS Office May Include Hacking Vulnerabilities


A small but increasing number of individuals have switched to Apache’s OpenOffice as well as LibreOffice, which are clones of MS Office. These people believe that they can enjoy all of the functionality offered by the real thing but without having to pay the price as well as avoid the bugs, weaknesses, as well as the flaws that this particular product of Microsoft has been facing. The case is often observed as a low-hanging fruit by many hackers in different parts of the world, because of its huge user base. What they don't know is that they are compromising their computer security.

The problem is that this specific strategy has its own limitation. With the many similarities in terms of the functionality that are shared by these programs, they are bound to have codes that are similar in several ways. This is, as a matter of fact, what a lot of security researchers have been discovering.  

Alex Infuhr, an independent researcher from Austria, recently uncovered a vulnerability in both of the programs mentioned earlier that let hackers to co-opt the programs through what they refer to as path transversal. That lets the code to go beyond its existing directory and into another one. This could be achieved by sending infected files to unsuspecting users. They sole interaction that was needed was for the target to put their mouse over an invisible hyperlink, which is really easy to do. If you don't know how to keep your network secure, talk to an IT consultant.

When the word got out, John Lambert, who is also a researchers, offered more evidence of concept samples of the exact same problem. LibreOffice immediately offered a patch for the bug however, Apache’s Open Office continues to be vulnerable.

The main issue is that if you are using a clone of MS office believing that you can avoid most of the attacks on the real thing, you are not as safe as you think you are. Worse, the individuals who supposed to manage the code bases of these clones might not deal with the threats as fast or as decisively as those like MS Office.

That does not mean you should no longer use the alternatives for MS Office especially if you have already installed them in your network. You just have to remember that what you are using is just as vulnerable as the MS Office.

Secure your computer network. Call SpartanTec, Inc. now. 


SpartanTec, Inc.
Greenville, SC 29601
(864) 326-5914
https://spartantec-greenville.business.site/

Cities Served
Greenville, Spartansburg, Mauldin, East Park, Overbrook, West Greenville, Greer

Wednesday, February 27, 2019

Hackers Are Hiding Code In Images To Fool Mac Users


According to an expert ITconsultant, one of the hardest methodologies to detect when it comes to the hacking arena is steganography. For those who are unfamiliar with the word, steganography refers to the practice of inserting executable codes on images, making it difficult if not impossible to find.

The reason is pretty simple and basic. Virus scanners are made around the concept of finding text strings that comes with identifiable malicious markers and characteristics, however, images are not like that at all. However, if they are carefully made, they can provide similar infected payloads.

Lately, Apple users have come across this problem firsthand, thanks to a group that call themselves “VeryMal”. This group are focusing on Apple users. They use codes that are embedded in ad images that will redirect users surfing the web away from safe sites and onto unsafe websites, which are places where different kinds of malware thrive.

A Quick Overview Of How It Works?

  • Hackers will buy an ad space on a safe website
  • The will embed a code on an ad image
  • The code that was embedded will run on a JavaScript, which will check if Apple fonts are being supported, and will determine is the device is an Apple of some sort
  •  If the query yields positive result, the script will take the remaining code from the image, which will force the browser of the user to navigate to another URL as determined by the command code
  •  The user will then go to a page that displays pop up ads, generally encouraging the installation of a certain update for some kind of update, which is most cases is for Adobe Flash Player.


Obviously, it is not a Flash update at all. It contains something that the hackers have set in place. It is a kind of trickery that has hijacked over five million web sessions, redirecting them away from safe sites. This is according to the newest research into the activities of the group, and what’s worse, there is no way to safeguard your computer against it but to be careful and monitor your web browser’s behavior closely. You can also hire a professional to improve your computer security.

In case your company is using Apple equipment, you need to make sure that your employees are aware. You should also get in touch with an IT consultant Myrtle Beach who can help you secure your computer against various kinds of threats.

Call SpartanTec, Inc. if you are looking for an expert firm that can help you secure your network and your business information. 


SpartanTec, Inc.
Greenville, SC 29601
(864) 326-5914
https://spartantec-greenville.business.site/

Cities Served
Greenville, Spartansburg, Mauldin, East Park, Overbrook, West Greenville, Greer


Friday, February 22, 2019

Ransomware Can Make Installing Illegal Software More Risky



Several established companies do not deal in unlicensed copies of commercial software, however, there have been some reported cases. There is also a huge probability that a person who is on a tight budget who is willing to do more work from the comfort of their home to install a cracked free copy of a specific program. The problem is, all those who choose to go that route are more at risk than before.

Hackers have started to embed different kinds of ransomware and malware into cracked free copies of a variety of programs. There are security researches from the web who have reported ransomware, like the strain called STOP, is becoming more prevalent in software cracks. These include programs like Photoshop, Windows activation kids, and even anti-virus programs. Just like other kinds of ransomware, by the time you notice signs that your computer has become infected, it is already too late. Through the installation of what you may have thought of as a free version, you will end up having your files locked and encrypted. You will then get a ransom page asking you to pay a large amount of cash if you want to get your files back.

If you are looking for a silver lining in all of these, it’s the fact that the STOP ransomware is not as good as other known malware. There is a chance that you can decrypt your files by yourself and without the help of an IT support but it will surely take some time and a lot of effort. But, it has been accomplished in some cases.

Regardless, STOP is becoming more widespread through crackedsoftware. To make sure that you don’t have to face this kind of problem, it is better if you totally avoid using cracks. Yes, there are instances when you feel that there are certain companies that are overcharging for their product. The problem is that if you opt to use an illegal copy instead of the legitimate one, you are putting all of your personal and company data at risk.

Keep your computers safe and secure with the help of IT professionals from SpartanTec, Inc.


SpartanTec, Inc.
Greenville, SC 29601
(864) 326-5914
https://spartantec-greenville.business.site/

Cities Served
Greenville, Spartansburg, Mauldin, East Park, Overbrook, West Greenville, Greer