Wednesday, August 15, 2018
Search
  
Submit your own News for
inclusion in our Site.
Click here...
Breaking News
Samsung Exynos Modem 5100 Is the First 5G Modem Fully Compliant with 3GPP Standards
Samsung and Harman Kardon Provide Sound in New Premium Soundbar Lineup
Intel Discloses New Chip Security Flaws
Trendforce Confirms New iPhone Launch This Fall, Including a Budget Version
NVIDIA Unveils Turing Architecture, Quadro RTX Ray-Tracing GPU
AMD Says New 2nd Generation, 32-core AMD Ryzen Threadripper Processors Break Boundaries of High-End Desktop Market
HyperX Announces the HyperX Gaming microSD Cards
Fraunhofer Scientists Find Dangerous Security Holes in Tracker Apps
Active Discussions
Which of these DVD media are the best, most durable?
How to back up a PS2 DL game
Copy a protected DVD?
roxio issues with xp pro
Help make DVDInfoPro better with dvdinfomantis!!!
menu making
Optiarc AD-7260S review
cdrw trouble
 Home > News > General Computing > Fake Sp...
Last 7 Days News : SU MO TU WE TH FR SA All News

Monday, January 15, 2018
Fake Spectre and Meltdown Patch Pushes Malware


The Meltdown and Spectre bugs have generated a lot of media attention, but some patches have created more issues than they fixed.

While users have been urged to update their machines with fixes made available by various vendors, MalwareBytes came across a particular patch targeted at German users that actually is malware.

In fact, German authorities recently warned about phishing emails trying to take advantage of those infamous bugs.

The web security firm identified a recently registered domain that is offering an information page with various links to external resources about Meltdown and Spectre and how it affects processors. While it appears to come from the German Federal Office for Information Security (BSI), this SSL-enabled phishing site is not affiliated with any legitimate or official government entity.

Moreover, the same fraudulent domain has a link to a ZIP archive (Intel-AMD-SecurityPatch-11-01bsi.zip) containing the so-called patch (Intel-AMD-SecurityPatch-10-1-v1.exe), which really is a piece of malware.

Upon running it, users will infect themselves with Smoke Loader, a piece of malware that can retrieve additional payloads.

Malwarebytes contacted Comodo and CloudFlare to report on this abuse and within minutes the site did not resolve anymore thanks to CloudFlare's quick response.

It's always important to be cautious, especially when urged to perform an action (i.e. calling Microsoft on a toll-free number, or updating a piece of software) because there's a chance that such requests are fake and intended to either scam you or infect your computer. There are very few legitimate cases when vendors will directly contact you to apply updates. If that is the case, it's always good to verify this information via other online resources or friends first.

Also, remember that sites using HTTPS aren't necessarily trustworthy. The presence of a certificate simply implies that the data that transits between your computer and the site is secure, but that has nothing to do with the intentions or content offered, which could be a total scam.



Previous
Next
Google's Map to Return to China: report        All News        HTC U11 Eyes Comes With Dual front Cameras and Large Battery
Google's Map to Return to China: report     General Computing News      IBM Researchers Bring Memory Disaggregation to Data Centers

Get RSS feed Easy Print E-Mail this Message

Related News
FBI Says Reboot Your Router to Stop Malware Infecting 500k Devices
Roaming Mantis Malware Infects Smartphones Through Wi-fi Routers
ZooPark Android Malware Tracks all Your Phone Activities
Microsoft Launches $250,000 Security Bounty
Peer-to-peer App Kicked off Dofoil Coin Miner Outbreak
Telegram Messenger Vulnerability Spread Multipurpose Malware
Google Removed 700,000 Apps From Google Play in 2017
Malware Spread Through PornHub
Cloak and Dagger Security Hole in Android Discovered
Alleged NSA Malware Does Not Affect Microsoft Users
Preinstalled Malware May Be Targeting Your Android Phone
New Mac OS X Malware Steal Passwords, And iPhone Backups

Most Popular News
 
Home | News | All News | Reviews | Articles | Guides | Download | Expert Area | Forum | Site Info
Site best viewed at 1024x768+ - CDRINFO.COM 1998-2018 - All rights reserved -
Privacy policy - Contact Us .