Start your day with intelligence. Get The OODA Daily Pulse.

Home > OODA Analysis and Briefs

Analysis

Briefs

  • EnemyBot Malware Targets Web Servers, CMS Tools and Android OS

    Cybersecurity researchers have released new warnings about the EnemyBot malware, which reportedly borrows code from botnets such as Mirai, Qbot, and Zbot. The rapidly evolving tool functions as IoT malware and targets content management systems (CMS) web servers and Android devices. Security researchers believe that the bot might be the work of a threat actor…

  • Microsoft Releases Workaround for ‘One-Click’ 0Day Under Active Attack

    Microsoft has released a workaround for a critical zero-day flaw that is reportedly being actively exploited by threat actors. Dubbed ‘Follina,’ the vulnerability was originally identified in April and has been leveraged by attackers to target organizations in Russia and Tibet. The flaw is tracked as CVE-2022-3019 and is a remote control execution (RCE) vulnerability…

  • US to send longer-range rockets in latest aid package to Ukraine

    US President Biden announced that the US will be sending more advanced rocket systems to Ukraine following repeated requests. The long-range rockets allow Ukraine to strike enemy forces from larger distances. The US had previously refused to send these additional weapons to Ukraine due to fears that the weapons would be used against targets in…

  • Serbia’s gas deal with Putin has created a fresh headache for Europe

    Serbia’s President Aleksandar Vucic announced on Sunday that Serbia has agreed to a three year gas supply deal with Gazprom, Russia’s state energy provider. In doing so, Vucic could upset the Western anti-Putin alliance and the European Union (EU). The EU has recently announced the final deal for a sixth package of sanctions against Russia…

  • Study Warns That Shadow Code on External JavaScript Libraries Pose a Serious Supply Chain Risk

    Israeli cybersecurity firm Source Defense analyzed the supply chain risk posed by shadow code on third- and fourth-party scripts on major businesses’ websites. Third-party scripts and open source JavaScript libraries assist development teams in adding advanced functionality to web applications without writing or maintaining code. They allow developers to improve user interaction, implement social media sharing, tracking…

  • A $90 million DeFi exploit on Terra went unnoticed for seven months

    Mirror Protocol appears to be under attack and may have already lost as much as $2 million. The frequency of DeFi hacks has made them almost commonplace in the cryptoverse. However, what is certainly unusual is DeFi protocol exploits worth $90 million going unnoticed for seven months – and yet, that is the story of Mirror…

  • Russia’s War in Ukraine: The War in Cyberspace

    Dmytro Dubov, Head of the Information Security and Cyber Security Department of the National Institute for Strategic Studies in Kyiv, examines Russia’s methods of cyberattack against Ukraine’s critical infrastructure facilities, and their impact. He discusses the close coordination between Russia’s cyber and propaganda activities and highlights future challenges for Russia in the IT realm that, if…

  • Cyber Defense Confidence Ebbs as Ransomware Attacks Multiply

    Despite Washington’s recent attempts to expand cybersecurity rules and disrupt hacking gangs, ransomware continues to proliferate and executives report unease about their companies’ ability to ward off the threat. The number of ransomware attacks against U.S. businesses has continued to increase this year, cybersecurity experts say, while some lawmakers warn the government has limited visibility of…

  • Bitcoin vs Ethereum

    Bitcoin and Ethereum are the Coca-Cola and Pepsi of the cryptocurrency space. As the number one and two biggest names in the market, they’re often compared against one another. From premise to prices, the two concepts are very different. However, there are many similarities to be found. Here’s a look at how the two systems compare. Bitcoin…

  • US Academic Credentials Displayed in Public and Dark Web Forums

    The Federal Bureau of Investigation (FBI) has warned the public of a new threat via a Private Industry Notification. The warning targets universities, colleges, and higher education institutions that credentials have been advertised for same on dark web criminal marketplaces. According to the FBI, the credentials were discovered in January of this year for sale…

  • ChromeLoader Browser Hijacker Provides Gateway to Bigger Threats

    Security researchers have warned that the ChromeLoader browser hijacker could provide a gateway into bigger threats, such as the capability to spread ransomware, spyware, and steal data from browser sessions. Researchers state that the malware’s use of PowerShell could further this malicious activity, transforming it from a run-of-the-mill browser hijacker to a far more advanced…

  • Turkish Airline Exposes Flight and Crew Info in 6.5TB Leak

    Low-cost Turkish airline Pegasus Airlines has accidentally leaded the personal information of its flight crew, source code, and flight data due to a misconfigured AWS bucket. SafetyDetectives, a research team, discovered the unsecured database on February 28 and was able to trace the leaked information to the Electronic Flight Bag software developed by the airline…

  • Singapore ups investment in quantum computing to stay ahead of security threats

    Singapore announced last week that it plans to set aside $17.09 million to support national platforms under the Quantum Engineering Programme for up to 3.5 years. The program is part of the country’s Research, Innovation, and Enterprise plan set forth in 2020 that aims to ensure encryption technologies remain diligent in security efforts and able…

  • China sends 30 warplanes into Taiwan air defense zone

    Taiwan deployed fighters jets to warn off 30 Chinese warplanes from its air defense zone on Monday. This was the biggest incursion by China in Taiwan’s air defense zone since January. The incident occurred only days after US President Joe Biden warned China against invading Taiwan. On Monday, a US official had also visited the…

  • Violence erupts around Jerusalem during controversial flag march

    A controversial flag-waving procession was held in east Jerusalem on Sunday by thousands of Israelis who marched from Damascus Gate dancing and chanting. Damascus gate is the main entry to the Muslim Quarter of Jerusalem’s Old City and the chanting included phrases such as “the nation of Israel lives” and “death to Arabs.”  Israeli police…

  • AMD-Powered Frontier Supercomputer Breaks the Exascale Barrier, Now Fastest in the World

    The AMD-powered Frontier supercomputer is now the first officially recognized exascale supercomputer in the world, topping 1.102 ExaFlop/s during a sustained Linpack run. That ranks first on the newly-released Top500 list of the world’s fastest supercomputers as the number of AMD-powered systems on the list has expanded significantly this year. Frontier not only overtakes the…

  • Will Russia Launch a New Cyber Attack on America?

    Policy circles in Washington are now debating how Vladimir Putin might respond to a major contraction of the Russian economy and clear signs that Moscow is losing the war in Ukraine. Some posit that a cornered president, furious and facing a near defeat, might indeed respond brutally—moving the proxy confrontation of a new Cold War…

  • How To Safely Self-Custody Your Bitcoin

    Bitcoin gives one sovereignty, but the responsibility of safe storage is the cost of continuing to enjoy such sovereignty. The promise of permissionless money that is tamper-proof and sensor-proof is only realistic if the Bitcoin is held in self custody. There are risks to storing one’s Bitcoin on a centralized exchange, including counterparty risk, the risk…

  • Procurement, early warning systems, and the next disruption

    For procurement leaders at industrial companies, the past 18 months have been difficult. Resurgent economic activity has collided with supply disruptions that have seemingly come one after another. Procurement executives know they need to respond but are unsure how. Most of them have not had a chance to anticipate the next set of problems—let alone…

  • The Future is DeFi: Going Beyond the Traditional Norm

    The idea of decentralized finance was born around 2017, a few years after the launch of the Ethereum Blockchain. Since then, the DeFi space has increasingly attracted attention from many different key opinion leaders, influencers and investors. The general idea is to decentralize financial activities and bring financial control to individuals. DeFi has been reshaping the…

  • Making the Metaverse Safe For Everyone

    Unlike any other time in history, the past decade has shown us the power of technology to transform our working and personal lives. Technology-enabled shopping, banking and working from any location made the restrictions from COVID-19 more manageable. We are also getting a hint of the power that big data, AI and machine learning will…

  • Microsoft continues to iterate on an Xbox cloud streaming device codenamed ‘Keystone’

    For a few years, rumors have persisted that Microsoft was exploring building some form of streaming stick to offer Xbox Cloud Gaming via a more affordable dongle, similarly to Chromecast and Google Stadia. The first hint was Project Hobart. More recently, a code name “Keystone” appeared in an Xbox OS list, lending fire to rumors…

  • How We Might Overcome DeFi’s Pitfalls

    Satoshi Nakamoto imagined a trustless, transparent financial system without the need for intermediaries like banks mediating everyday transactions. Nakamoto’s philosophy reached its zenith with the emergence of smart contracts and decentralized finance (DeFi). The DeFi sector grew significantly, and its total volume locked (TVL) surpassed $250 billion in 2021. Despite turbulent market conditions, DeFi’s TVL hovered…

  • NSA: Sanctions on Russia Having a Positive Effect on Ransomware Attacks, Attempts Down Due to Difficulty Collecting Ransom Payments

    National Security Agency (NSA) director of cybersecurity Rob Joyce told attendees of a recent UK security conference that ransomware attacks are down in roughly the last two months, and that trend can be traced directly to sanctions placed on Russia. Criminals that operate out of the country are struggling to find ways to cash out…

  • What Leaders Need To Know About Blockchain

    If you’re anywhere near the tech or financial space, you’ve likely been hearing terms like DeFi, blockchain, and smart contracts more and more frequently. Ever since cryptocurrencies and other decentralized technologies came on the scene, they’ve been the subject of much speculation and debate among engineers and business leaders. Some tech thinkers suggest that blockchain is…

  • India’s SpiceJet Strands Planes After Being Hit By Ransomware Attack

    SpiceJet, an India-based airline, was forced to delay numerous flights on Wednesday after being hit by a ransomware attack that occurred on Tuesday. The company released a post to Twitter confirming that its operations had been impacted by the cybersecurity incident. On Thursday, morning flight departures were still suffering from the effects of the cyberattack,…

  • Cybergang Claims REvil is Back, Executes DDoS Attacks

    According to researchers at Akamai, actors claiming to be the REvil ransomware group is targeting one of its customers with a Layer 7 attack. The group has also demanded an extortion payment in Bitcoin from Akami’s client. The defunct REvil ransomware gang went dark in July 2021 after several law enforcement operations agains cybercrime syndicates.…

  • Latest DRC violence has displaced more than 72,000 people

    The eastern Democratic Republic of the Congo has seen fighting between the army and M23 rebels this past week. The conflict in this week alone has forced over 72,000 people to flee their homes, according to the United Nations.  The rebels, M23, claim to represent ethnic Tutsis in the region of the eastern DRC and…

  • China and Russia veto new UN sanctions on North Korea for first time since 2006

    In a move that was referred to as dangerous and disappointing, Russia and China vetoed a United Nations Security council resolution to increase sanctions on North Korea that was drafted by the United States. The vote is concerning because it could fuel Pyongyang’s nuclear program to develop nuclear missile systems.  North Korea has completed more…

  • Critical Flaws in Popular ICS Platform Can Trigger RCE

    Cisco Talos has reportedly uncovered eight vulnerabilities in the Open Automation Software, a popular industrial control system (ICS) platform. Two of the flaws are categorized as critical, meaning that they pose a risk for infrastructure networks and should be addressed immediately. Exploiting the flaws could lead to remote code execution or denial of service and…

  • Ed tech wrongfully tracked school children during pandemic says Human Rights Watch

    According to Human Rights Watch (HRW), students who were required to use government-endorsed education technology, also referred to as ed tech, during the Covid-19 pandemic may have been subject to a variety of harmful cyber practices, such as keystroke monitoring and data collection. In addition, the HRW alleges that the data collected from the students’…

  • A lesson from the Ukraine war: Secure our semiconductor supply chains

    There are many lessons emerging from Russia’s invasion of Ukraine, and others yet to be discerned. One insight that the war has reinforced concerns the tremendous strategic value of semiconductors. These tiny silicon chips offer a huge warfighting advantage for the Ukrainians — but also should remind the United States of the urgent need to…

  • Everything You Need to Know About Crypto Insurance

    Cryptocurrency is the most exciting and unpredictable financial frontier in today’s world. The opportunities for crypto-based businesses are enormous, but so are the attendant risks. Protecting you from these downfalls is what crypto insurance is all about. Although it will safeguard your business from cybercriminals, it will also give your customers valuable peace of mind.…

  • ‘More Systemic Risk’—The Stablecoin Fallout Could Be Just Starting As The Price Of Bitcoin, Ethereum, Terra’s Luna, Solana, Cardano, XRP Sink

    The crypto market is covered in red again. This week the price of bitcoin price fell 2.4% and Ethereum’s price is down 5.0%. Cardano ADA fell 9.8%, XRP XRP lost 6.14%, and Solana slumped 12.4%. Meanwhile, the price of BNB BNB rose 7.4%. The waters are still murky after the mid-month roiling of the crypto…

  • Could quantum computing bring down Bitcoin and end the age of crypto?

    Quantum computers will eventually break much of today’s encryption, and that includes the signing algorithm of Bitcoin and other cryptocurrencies. Approximately one-quarter of the Bitcoin ($168bn) in circulation in 2022 is vulnerable to quantum attack, according to a study by Deloitte. Cybersecurity specialist Itan Barmes led the vulnerability study of the Bitcoin blockchain. He found the…

  • Sen. Gary Peters Issues Report on Use of Cryptocurrency in Ransomware Attacks

    Sen. Gary Peters, D-Mich., chairman of the Senate Homeland Security and Governmental Affairs Committee, has released a report saying the federal government lacks sufficient information on ransomware attacks and the use of cryptocurrency in ransom payments. The report also found that current reporting of such attacks is fragmented across federal agencies and that lack of comprehensive…

  • U.S. Cybersecurity Agency ‘Strongly Urges’ You Patch These 75 Actively Exploited Flaws

    The US Cybersecurity and Infrastructure Security Agency (CISA) has identified 75 security vulnerabilities that pose a significant risk to its list of flaws that should be patched immediately. All of the vulnerabilities are known to be actively exploited, heightening the risk of an attack. For organizations, there are risks of attack exposure from the vulnerabilities…

  • Multi-Continental Operation Leads to Arrest of Cybercrime Gang Leader

    Interpol has announced that the organization was able to track down and apprehend the suspected leader of a transnational cybercrime syndicate. The 37-year-old individual was arrested in Nigeria and is believed to have lead major phishing campaigns, business email compromise schemes, and other malicious behavior that targeted companies and individuals. The operation was conducted by…

  • World Bank boss warns over global recession due to Ukraine War: What To Do About it

    There were already multiple reports of slowing economies due to Covid then the war in Ukraine caused more disruption. Here is an overview of a world bank view by BBC: The head of the World Bank has warned that the increase in price of food, energy, and fertilizer as a result of Russia’s invasion of…

  • Google Chrome 102 arrives with 32 security fixes, one critical

    Google has released a new version of Chrome, Chrome 102, that contains 32 security fixes applying to Windows, Mac, and Linux devices. The vulnerabilities were allegedly reported to Google by external researchers and consist of one critical flaw, eight high severity, nine medium severity, and seven low severity. In addition to these flaws, Google has…

  • China plays for influence in South Pacific with security proposal and diplomatic tour

    China has proposed a regional security deal with some Pacific Island nations. This move is occurring amid United States concern about Beijing expanding its reach in the region. The draft calls for an increase in cooperation in policing, cybersecurity, security, and economic development.  The deal is expected to be discussed at the China-Pacific Island Countries…

  • IBM Develops AI-Powered z16 to Help Thwart Quantum Cyber Attacks

    On April 5, IBM unveiled IBM z16, the company’s next-generation system with an integrated on-chip artificial intelligence (AI) accelerator to deliver latency-optimized inferencing. With this innovation, clients will be able to analyze real-time transactions at scale. IBM z16 is even more valuable for mission-critical workloads such as credit card, health care and financial transactions. Inference is…

  • Do Kwon’s plan to rebirth the Terra blockchain gets approved

    The governance vote on Do Kwon’s proposal to relaunch the Terra blockchain and create LUNA 2.0 tokens has passed. This will result in the creation of a new blockchain that will airdrop tokens proportionally to those affected, following the sudden collapse of the TerraUSD (UST) algorithmic stablecoin. In total, 65.5% of the total votes supported Kwon’s…

  • How to build an economically viable, inclusive and safe metaverse

    During the COVID-19 pandemic, an increasing number of people have relied on media and technology to inform, entertain and educate themselves, do business, and socialize. But the shift in usage patterns does not automatically mean that everyone understands what the metaverse is. Fewer than one in five (16%) of Americans can define the term: some…

  • OECD releases public consultation document on crypto tax reporting in effort to increase transparency

    The Organisation for Economic Co-operation and Development (OECD) has released a public consultation document, Crypto-Asset Reporting Framework and Amendments to the Common Reporting Standard. The document responds to a request from the G20 to develop a framework to assist in the automatic exchange of information related to cryptoassets, arising from concerns about the rapid adoption…

  • Crypto Hacks Aren’t a Niche Concern; They Impact Wider Society

    The attack against the Ronin Network in March was quickly speculated to be one of the largest cryptocurrency hacks of all time. Approximately $540 million was stolen from the cryptocurrency and NFT games company in a combination of USDC and Etherium, with $400 million of the stolen funds owned by customers playing the game Axie…

  • JPMorgan Says Bitcoin Is Undervalued By 28%, Says Cryptocurrencies Are Now A ‘Preferred Alternative Asset’

    Despite the crypto slump, banking giant JPMorgan says bitcoin is massively undervalued. Maintaining its estimate of bitcoin’s fair value at $38,000, the bank today reiterated the assessment it gave the asset in February when the cryptocurrency was trading around $43,400. This price is approximately 28% higher than its current level of $29,757. In a note to…

  • Iran Used Secret U.N. Records to Evade Nuclear Probes

    A new report alleges that Iran secured access to secret UN atomic agency reports and used them to evade nuclear probes by circulating the documents among top officials, who were then able to prepare cover stories and falsify records. Middle East Intelligence officials and documents reviewed by the Wall Street Journal support the theory that…

  • Four missing miners found dead in Burkina Faso

    Four missing miners in Burkina Faso have been found dead, according to the country’s government officials. After 39 days of intense search on behalf of rescue workers in the region, the bodies of the miners were recovered. The individuals went missing after floodwaters filled a Canadian-owned mine in Perkoa. Perkoa is located in the Sanguie…

  • Senate Report says US Government Lacks Comprehensive Data on Ransomware

    According to a new Senate report by the US Senate Committee on Homeland Security and Governmental Affairs, the US lacks comprehensive data regarding ransomware attacks. This includes details such as financial losses both in ransom payments and to companies while suffering from the attack and attempting to remedy the effects. The report presented findings that…

  • North Korea fires missiles hours after Biden leaves Asia

    Three ballistic missiles were fired by North Korea early Wednesday morning according to South Korea’s military. The three missiles were fired in the  course of an hour from the Sunan area in Pyongyang. The incident occurred only one day after US President Joe Biden left the region after vowing to deter North Korea.  North Korea…

  • Fronton IOT Botnet Packs Disinformation Punch

    Cybersecurity researchers claim that the Fronton botnet boasts a far larger arsenal of abilities than just launching a DDoS attack. Researchers allege that the botnet can track social media trends and launch suitable propaganda in addition to its cyberattack skills. A new look at the botnet reveals that the criminal tool may have been using…

  • At least five killed after a building collapses in Iran, leaving 80 people trapped

    When a 10-story building collapsed in the city of Abadan in the Iranian province of Khuzestan on Monday, 27 people were injured and five people were killed.80 people remain trapped under the rubble of the collapsed building according to the Red Crescent. The cause of the collapse is under investigation and the owner of the…

  • Zoom patches XMPP vulnerability chain that could lead to remote code execution

    Zoom users have been advised to update their software to the latest version, 5.10.0, to fix a number of flaws detected by Google Project Zero researchers. According to the researcher who discovered the holes, Ivan Fratric, user interaction is not required for an attacker to successfully leverage the flaws. The only ability the attacher needs…

  • Conti Ransomware Operation Shut Down After Brand Becomes Toxic

    The Conti ransomware operation has undergone some significant organizational structure changes in the past months after the brand became toxic due to its affiliation with the Russian government. The Conti operation has been highly successful, helping cybercriminals make billions of dollars after breaching the systems of hundreds of major organizations. While it appeared to be very…

  • Whistleblower claims DoKwon, Kanav Kariya and Sam Bankman-Fried were involved in Terra’s LUNA and UST collapse

    Whistleblowers from the Terra community have made allegations that some of the most prominent figures in the cryptocurrency industry, like FTX CEO Samuel Bankman-Fried and Jump Crypto CEO Kanav Kariya, were responsible for TerraUSD’s (UST) colossal crash and de-peg. Whistleblowers in the Terra community have come forward with details of an insider deal that destroyed stablecoin…

  • These are the flaws that let hackers attack blockchain and DeFi projects

    The number of decentralized finance (DeFi) and blockchain projects grew massively during the past year, but their increased popularity has also piqued the interest of cyberattackers – who managed to steal at least an estimated $1.8 billion in 2021. The blockchain is a digital ledger that records transactions in a way that is difficult to…

  • The Great Reassessment: The Supply Chain Edition

    The logistics landscape is changing. Like the employment market in the pandemic, the need to unexpectedly adjust creates the opportunity to re-think. Sometimes the change is tactical – a reversible reaction – and things return to normal. Other times it leads to be a more structural change. Anticipating the forward shape of the supply chain means…

  • 6 Things You Need To Know About Crypto

    Despite being around for roughly 13 years and currently in the midst of a market crash, crypto feels like it’s still in a goldrush phase. As hopeful investors pile in with dreams of making big money, many still lack any real knowledge about what they’re getting into. A survey by software developer Oxford Risk last year…

  • US Car Giant General Motors Hit by Cyber-Attack Exposing Car Owners’ Personal Info

    General Motors, a US based automobile manufacturer, has announced that it suffered from a credential stuffing attack last month that ultimately exposed customer information. In addition, the attack allowed hackers to redeem rewards points and gain gift cards. General Motors stated that they detected the malicious activity between April 11 and 29 of this year,…