Elizabeth Hernandez

Photo of author
Elizabeth Hernandez is a news writer on Defensorum. Elizabeth is an experienced journalist who has worked on many publications for several years. Elizabeth writers about compliance and the related areas of IT security breaches. Elizabeth's has focus on data privacy and secure handling of personal information. Elizabeth has a postgraduate degree in journalism. Elizabeth Hernandez is the editor of HIPAAZone. https://twitter.com/ElizabethHzone

Cerber Ransomware Sending out Blank Slate Spam

The SANS Internet Storm Center has released a statement that says the Blank Slate spam campaign which was first discovered in July last year is now being employed to spread Cerber ransomware, rather than previous favorites Locky and Sage 2.0. … Read more

Safari Scareware Used to Extort Money from Porn Viewers

A flaw in the mobile Safari browser has been exploited by cybercriminals and used to extort money from individuals who have previously used their mobile device to view pornography or other illegal content. The Safari scareware prevents the user from … Read more

1.37 Billion Email Addresses Identified as Largest Spam Operation Exposed

The world’s biggest spam operation has been exposed including a gigantic database of email addresses. Over 1.37 billion email addresses, names, addresses, and IP addresses were included in the database, which was exposed due to an error made during a … Read more

MajikPOS Malware Used in Targeted Attacks on PoS Systems of U.S. Businesses

A new form of PoS malware – called MajikPOS malware – has recently been discovered by security researchers at Trend Micro. The new malware has been used in targeted attacks on businesses in the United States, Canada, and Australia. The … Read more

PetrWrap Ransomware: An Old Threat Has Been Hijacked by a Rival Gang

There is a new ransomware threat that businesses should be aware of, but PetrWrap ransomware is not exactly anything new. It is actually a form of ransomware that was first discovered in May last year. PetrWarp ransomware is, to all … Read more

W-2 Form Phishing Scam Targets Schools

A W-2 Form phishing scam that has been widely used to trick businesses out of the tax information of their staff is now being used on educational institutions. School districts should be on high alert as cybercriminals are focusing on … Read more

Final New York Department of Financial Services Cybersecurity Rules Issued

The final New York Department of Financial Services cybersecurity rules have now been issued. Covered entities – banks, Insurance companies, and financial service firms operating in the state of New York must now comply with new rules.  The financial services … Read more

Phishing Emails and Web Attacks Discovered in UConn

Complex phishing emails and elaborate web-based scams are being used to attack students at the University of Connecticut. The range to which students have been focused on with these scams has lead toUConn Chief Information Officer and Provost for Information … Read more

University Cyberattack Involved Campus Vending Machines and 5,000 IoT Devices

A recent university cyberattack in the United States resulted in more than 5,000 systems being taken out of action. The university cyberattack only became apparent after the IT department was flooded with complaints from staff and students that the Internet … Read more

Phishing Attacks on Law Firms Are Soaring

The past few months have seen an increase in phishing attacks on law firms. Cybercriminals are attacking law firms to gain access to the highly confidential data held by attorneys and solicitors. Healthcare industry attacks are often conducted to obtain … Read more

Law Firm Phone Hacking Results in $65,000 Phone Bill

A law firm phone hacking incident has resulted in an Alexandria, VA attorney being sent a staggering $65,000 phone bill. The attorney’s phone system was hacked and used to make a slew of international phone calls in the middle of … Read more

Restaurant Malware Attack Results in Theft of More Than 355,000 Credit and Debit Cards

A restaurant malware attack has resulted in the theft of the credit and debit card numbers of more than 355,000 customers, according to Krebs on Security. A breach was suspected to have occurred when credit unions and banks started to … Read more

2016 Malware Report Shows Changes in Malware Trends Over the Past 12 Months

If your organization was hit with a malware or ransomware infection last year, the 2016 malware report from Malwarebytes may serve as an unpleasant reminder of 12 months best forgotten. Malware infections rose in 2016 and ransomware infections soared. In … Read more

Is Your Organization Protected Against Printer Hacking?

You have secured your servers, you have end point protection, but have you ensured your organization is protected against printer hacking? According to one hacker, as many as 300,000 organizations have left a gaping hole in their security defenses as … Read more

Hotel Ransomware Attack Affects Key Card and Reservation System

A hotel ransomware attack in Austria hit the headlines in the past couple of days. The cyberattack affected the Romantik Seehotel Jägerwirt. The hotel’s computer system was infiltrated by the attacker who installed ransomware. A range of files were encrypted, … Read more

US Ransomware Attacks Quadrupled in 2016

According to a new report from data breach insurance provider Beazley, US ransomware attacks on enterprises quadrupled in 2016. There is no sign that these attacks will slow, in fact they are likely to continue to increase in 2017. Beazley … Read more

Children Targets by AdultSwine Malware

More than 60 apps have now been permanently deleted from Google Play Store that were full of AdultSwine Malware – a malware variant that shows pornographic adverts on users’ technological devices. Many of the apps that included the malware were … Read more

Sharp Increase Gmail Phishing Attacks Recorded

A large number of Gmail phishing attacks was reported in the media this week. While the phishing scam is not previously unseen – it was first identified around 12 months ago – cybercriminals have activated the campaign once more. The … Read more

Credential Stuffing Attacks on Enterprises Soar Following Major Data Breaches

Credential stuffing attacks on enterprises are soaring according to a recent study conducted by Shape Security. The massive data breaches at the likes of LinkedIn, Yahoo, MySpace have provided cybercriminals with passwords aplenty and those passwords are used in these … Read more

Two U.S. States Propose Stricter Internet Censorship Laws

Internet censorship laws in two U.S. states may be augmented, forcing Internet service providers and device manufacturers to implement technology that blocks obscene material from being viewed on Internet-connected devices. North Dakota has recently joined South Carolina in proposing stricter … Read more

New Highly Professional Ransomware Variant Spora Ransomware Detected

Spora ransomware, a new ransomware variant, has been discovered by Emisoft. This ransomware included a new tactic which involves victims having a wide range of their files encrypted as with other forms of file-encrypting malware before being offered the option of … Read more

59% of Companies Increased Cybersecurity Spending in 2016

Cybersecurity spending in 2016 was increased by 59% of businesses according to PwC. Cybersecurity is now increasingly being viewed as essential for business growth, not just an IT cost. As more companies digitize their data and take advantage of the … Read more

Doxware – A New Ransomware Threat to Deal with in 2017

Companies must now deal with a new ransomware threat: 2017 is likely to see a proliferation of doxware attacks. 2016 was the year when cybercriminals fully embraced ransomware and used it to devastating effect on many organizations. As 2016 started, … Read more

Preventing Ransomware Attacks

Hackers have embraced ransomware and have been  more and more targeting businesses, yet many business leaders are unsure how to stop ransomware attacks. Due to this, the risk from ransomware is not being effectively managed, and that may prove very … Read more

MailChimp Account Hack Leads to Sending of Malicious Spam Emails

Despite email marketing service MailChimp having security controls in place to ensure that its account holders do not use the service to share spam; yet, this week malicious spam emails were broadcast from multiple accounts after a MailChimp account hack. … Read more

Reducing the Data Footprint of your Company

The importance of reducing your company’s data footprint is paramount in today’s climate. If your company is subjected to an attack and hackers gain control of your servers, they will not be able to obtain access to data that are … Read more

Do Hackers Get Penalised when they are Caught?

There have been many new reports recently detailing how hackers have managed to obtain tens of thousands of confidential records, or in some instances, tens of millions or more. However, it is rare that a hacker is caught and brought … Read more

Holiday Email Spam Season is Nigh

Holiday email scamming campaigns are conducted at this point every year due to the fact that they are often successful. Dangerous malicious programs are disguised as Christmas screensavers, phishing campaigns will look like festive quizzes, and you can expect an … Read more

Surge in Malicious Spam Email Volume

Spam email volume has dropped a lot over the past few years after the takedown of key botnets – and individuals – behind some of the largest spamming attacks. It was beginning to look like the super-spamming days of the … Read more

Black Friday Onset Sees New Holiday Season Scams Emerge

Thanksgiving weekend sees millions of people begin online Christmas shopping and this year the holiday season scams have already kicked off. Black Friday and Cyber Monday are the busiest online shopping days, but some retailers are getting their promotions underway early … Read more

Are You Prepared for a Ransomware Attack?

It doesn’t matter which security report you read; one thing is clear. The ransomware problem is becoming worse and the threat greater than ever. While ransomware attacks in 2015 were few and far between, 2016 has seen an explosion of … Read more

Spanish Sweepstake Lottery Spam

Over the past few weeks reports of emails and letters being sent advising the recipients they have almost become a Euro millionaire have been witnessed. Email user are told that their numbers have been drawn and a prize of €915,810 … Read more

Russian Snake Virus: 8 Years of Data Stoel by Uroboros

It has been discovered that a Russian Snake Virus, Uroboros has been stealing data for 8 years. Despite being disvoered virus will be present on many systems, and will go on stealingas it is incredibly difficult to detect. Where did … Read more

Trump Hotels Fined By NY Attorney General for POS Data Breach

Trump Hotels and Management LLC has paid the price for failing to implement robust security controls to secure its POS system from cybercriminals. The hotel chain, which is headed by Donald Trump and run by three of his children, has … Read more

Russian Snake Virus: 8 Years of Data Theft by Uroboros

It has been discovered that the Russian Snake Virus, Uroboros has been stealing data for 8 years. This virus will be present on many systems, and will continue to steal data as it is incredibly difficult to identify. The virus … Read more

Scammers Use Fake LinkedIn Contacts to Develop Spear Phishing Campaigns

recently, LinkedIn spear phishing scams have been discovered. Efforts are being made to gather information from LinkedIN that an be used against peoples – or organizations – to carry outhighly convincing spear phishing campaigns. Spear phishing on the other hand … Read more

Enterprise Patch Management is Still Causing Confusion

The Tripwire survey was completed on 480 IT security experts and asked questions about enterprise patch management policies at their groups. The results indicate that IT staff are struggling to ensure that all systems are kept in a fully patched … Read more

Game of Thrones Phishing Scam Uncovered

A new, complex Game of Thrones phishing scam has been discovered which is targeting individuals who illegally obtain pirated copies of the HBO series. Game of Thrones is the most pirated TV show on record, with many individuals choosing to … Read more

Scam Uncovered Involving Illegal Game of Thrones Downloads

A new authentic-looking Game of Thrones-styled phishing campaign has been identified which is targeting people who illegally download pirated copies of the HBO series. Game of Thrones is, to date, the most pirated TV show in history, with many people … Read more

How to Prevent Drive-By Malware Downloads

Malvertising – A Major Security Risk that Should be Managed Malvertising is the term used for the practice of displaying malicious adverts to website visitors. The malicious adverts are displayed via third party advertising networks which are present on a … Read more

Rise in Extortion Email Schemes Leads to FBI Warning

The Federal Bureau of Investigation (FBI) has released a new security alert warning of a new extortion email campaign. The alert was released after its Internet Crime Complaint Center (IC3) started receiving multiple reports from individuals who had been threatened … Read more

Dangerous New Mac Backdoor Program Discovered

Security researchers at ESET have discovered a dangerous new Mac backdoor program which allows attackers to gain full control of a Mac computer. Mac malware may be relatively rare compared to malware used to infect PCs, but the latest discovery … Read more

CryptXXX Crypto-Ransomware Receives an Update

The developers of CryptXXX ransomware have made some updates to the malicious software recently. A new campaign has also been launched which is seeing an increasing number of Joomla and WordPress websites compromised with malicious code that directs visitors to … Read more

Ransomware Study Published by Kaspersky Lab

Kaspersky Lab has published a new ransomware study that clearly shows the rise in use of the malicious file encrypting software over the past two years. The research shows that companies are firmly in attackers’ sights, with attacks on companies … Read more

Warning Issued for Brexit-related Phishing Attacks

The EU referendum that took place in the United Kingdom in 2016 has resulted Brexit phishing attacks. Brexit – the UK exit from the European Union – has inflicted major economic turmoil in the UK and a great deal of … Read more

Symantec Antivirus Flaws Put Enterprise Users At Risk of Cyberattack

A researcher from Google’s Project Zero has blasted Symantec for a long list of security flaws that have placed enterprise users at risk of experiencing cyberattacks. The Symantec antivirus flaws were described as “as bad as it gets”. Symantec Antivirus … Read more

Hospital Legacy System Security Vulnerabilities Being Exploited to Gain Access to Health Data

Cybercriminals are taking advantage of hospital legacy system security vulnerabilities and are installing malware on medical devices such as blood gas infusers. The malware is used to steal data or launch attacks on other parts of healthcare networks. Specialist devices … Read more

Flaws Fixed and Widespread Attacks Expected due to DMA Locker Ransomware

After the recent reports that TeslaCrypt has been decommissioned comes a new highly dangerous threat: DMA Locker ransomware. Malwarebytes has recently revealed that DMA Locker ransomware, which is now in its 4th incarnation – could represent a major threat to … Read more

Acer Cyberattack: 34,500 Customers Impacted: Credit Card Numbers Stolen

The Acer cyberattack recently reported to the California attorney general was due to an unspecified “security issue” on the company’s online store. Acer recently discovered that an unauthorized third party had gained access to its server and had stolen the … Read more

75% of Companies Face High Risk of Cyber Incidents

Organizations can use the NIST Cybersecurity Framework to assess their cybersecurity programs, but many may discover they have not done nearly enough to reduce the risk of cyber incidents. Recent research conducted by RSA suggests that three quarters of companies … Read more