Apr 19

P2P Weakness Exposes Millions of IoT Devices

RC4ZS1895 RC4WD Trail Finder 2 Lexan Body Mounting System

Apr 19

The owner of a Swedish company behind a popular remote administration tool (RAT) implicated in thousands of malware attacks shares the same name as a Swedish man who pleaded guilty in 2015 to co-creating the Blackshades RAT, a similar product that was used to infect more than half a million computers with malware, KrebsOnSecurity has learned.

An advertisement for RevCode WebMonitor.

At issue is a program called “WebMonitor,” which was designed to allow users to remotely control a computer (or multiple machines) via a Web browser. The makers of WebMonitor, a company in Sweden called “RevCode,” say their product is legal and legitimate software “that helps firms and personal users handle the security of owned devices.”

RC-Bauplan Messerschmitt Me 323 Gigant Modellbau Modellbauplan

But critics say WebMonitor is far more likely to be deployed on “pwned” devices, or those that are surreptitiously hacked. The software is broadly classified as malware by most antivirus companies, likely thanks to an advertised feature list that includes dumping the remote computer’s temporary memory; retrieving passwords from dozens of email programs; snarfing the target’s Wi-Fi credentials; and viewing the target’s Webcam.

RCEXL Mini Smoke Pump Gasoline Pump Smoking Pump Adjustable Flow AF IN US

In RC Screwz Stainless Steel Screw Kit for Traxxas Stampede XL-5 tra021, researchers from security firm Palo Alto Networks noted that the product has been primarily advertised on underground hacking forums, and that its developers promoted several qualities of the software likely to appeal to cybercriminals looking to secretly compromise PCs.

Rcgf 61cc rc airplane gas engineRCM telemetry system V2 for android device suit Axial YetiRCS Model 2855 5Y 1751KV 4 Poles RC Hobby Car Inrunner Brushless Motor IM608RCS Model Airplane KA63-28S 249KV R C Aircraft Outrunner Brushless Motor OM406

For example, RevCode’s website touted the software’s compatibility with all “crypters,” software that can encrypt, obfuscate and manipulate malware to make it harder to detect by antivirus programs. Palo Alto also noted WebMonitor includes the option to suppress any notification boxes that may pop up when the RAT is being installed on a computer.

A screenshot of the WebMonitor builder panel.

RevCode maintains it is a legitimate company officially registered in Sweden that obeys all applicable Swedish laws. A few hours of searching online turned up an interesting record at RC Screwz Stainless Steel Screw Kit for Traxxas TRX-4 Crawler tra081, a credit information service based in Sweden. That record indicates RevCode is owned by 28-year-old Swedish resident Alex Yücel.

RCScrewz Arrma RC Outcast 6s BLX Rubber Shielded Bearings (arrm015r)

In February 2015, a then 24-year-old Alex Yücel RC Screwz Stainless Steel Screw Kit for Venom Racing Creeper Crawler ven005 to computer hacking and to creating, marketing and selling RC Screwz Stainless Steel Screw Kit LOS 8 3.0, a RAT that was used to compromise and spy on hundreds of thousands of computers. Arrested in Moldova in 2013 as part of a large-scale, international takedown against Blackshades and hundreds of customers, Yücel became the first person ever to be extradited from Moldova to the United States. RC Screwz Stainless Steel Screw Set ARRMA OUTCAST 6S BLX RCZARA015

RCtown HD FPV Camera RC Drone Smartphone Controlled RC Quadcopter Altitude
Apr 19

Marcus “MalwareTech” Hutchins Pleads Guilty to Writing, Selling Banking Malware

Marcus Hutchins, a 24-year-old blogger and malware researcher arrested in 2017 for allegedly authoring and selling malware designed to steal online banking credentials, has pleaded guilty to criminal charges of conspiracy and to making, selling or advertising illegal wiretapping devices.

RD-10 Mechanical Speed Controller & Resister Set - Kyosho Raider Turbo Raider

Marcus Hutchins, just after he was revealed as the security expert who stopped the WannaCry worm. Image: twitter.com/malwaretechblog

Hutchins, who authors the popular blog RC Screwz Stainless Steel Screw Set Traxxas TRX-4 Bronco Ranger RCZTRA085, was virtually unknown to most in the security community until May 2017 when the U.K. media revealed him as the “accidental hero” who inadvertently halted the global spread of RC Screwz TEK014B Metal Shielded Bearing Kit SCT 410.3 RCZTEK014B, a ransomware contagion that had taken the world by storm just days before.

RDLogics TYPE-X 1 Pc Twin Exhaust Tuned Pipe for Revo B

In August 2017, Hutchins was arrested by FBI agents in Las Vegas on suspicion of authoring and/or selling “Kronos,” a strain of malware designed to steal online banking credentials. A British citizen, Hutchins has been barred from leaving the United States since his arrest.

Many of Hutchins’ supporters and readers had trouble believing the charges against him, and in response KrebsOnSecurity RC Screwz TRA033B Traxxas Slash 2WD Metal Shielded Bearing Kit into activities tied to his various online personas over the years.

Re Life in a different world from zero Emilia FigureREAL Great Eastern GE-52959 Dragon Ball Z Plush Doll - Large 18 Kid GokuReal type GOUF HGUC 1 144 GUFF 21stCENTURY REAL TYPE Ver. Gunpla From Japan F SRealFlight Add-Ons Volume 4 A-GPMZ4104Really RAD Robots MiBro Interactive Robot RRR

As I wrote in summary of that story, the clues suggested “Hutchins began developing and selling malware in his mid-teens — only to later develop a change of heart and earnestly endeavor to leave that part of his life squarely in the rearview mirror.” Nevertheless, there were a number of indications that Hutchins’ alleged malware activity continued into his adulthood.

Rear Extended +4mm Chassis R (RC-WillPower) HOBAO Hyper 8.5

In RC Screwz TRA047R Traxxas XO-1 Rubber Shielded Bearings Kit posted to RC Screwz TRA064R Traxxas Bandit VXL TSM Rubber Shielded Bearings Kit and to malwaretech.com, Hutchins said today he had pleaded guilty to two charges related to writing malware in the years prior to his career in security. Continue reading →

Apr 19

Apr 19
Rebuildable Super Punisher Shaft 100 118 3.94 4.65 TRX4 TF2 Beast RC4WD Z-S1261

Apr 19

Experts: Breach at IT Outsourcing Giant Wipro

Indian information technology (IT) outsourcing and consulting giant Wipro Ltd. [RC Tamiya Decal 58160 Dirt Drasher 1995 NEU NIB] is investigating reports that its own IT systems have been hacked and are being used to launch attacks against some of the company’s customers, multiple sources tell KrebsOnSecurity. Wipro has refused to respond to questions about the alleged incident.

Red Army Soviet Soldier 1923 Year 1 32 Tin Miniature Painted Toy Soldiers 54mm

Earlier this month, KrebsOnSecurity heard independently from two trusted sources that Wipro — India’s third-largest IT outsourcing company — was dealing with a multi-month intrusion from an assumed state-sponsored attacker.

Both sources, who spoke on condition of anonymity, said Wipro’s systems were seen being used as jumping-off points for digital fishing expeditions targeting at least a dozen Wipro customer systems.

Red White bluee 13 Playskool Music Box Row Row Row Your Boat Pull ToyRedcat HX-580030C-NoCon Hexfly 5800 LIPO Battery - 7.4V 2S 30C with No ConnectorRedcat Racing 12201 1 10 Road Car Body Green and YellowRedcat Racing Aluminum Kit for Volcano-18

The security experts said Wipro’s customers traced malicious and suspicious network reconnaissance activity back to partner systems that were communicating directly with Wipro’s network.

Redcat Racing Everest-10 4x4 , Elec. Brushed, 2.4 GHz, Water proof electronics.

On Friday, Apr. 12, Nair sent a statement that acknowledged none of the questions Wipro was asked about an alleged security incident involving attacks against its own customers.

Redcat Racing Lightning EPX Drift 1 10 Scale On Road Car Remote Control Red RC

Wipro has not responded to multiple additional requests for comment. Since then, two more sources with knowledge of the investigation have come forward to confirm the outlines of the incident described above.

RC Tamiya Decal Ferrari F-40 58098 NEU NIB 1991

Redcat Racing Rampage MT TT parts lot RER 07406 50004 86720

Redcat Racing Tremor 18e for parts o repair
Apr 19
REDSPCS0009 REDS Z8 Z-LINE LCD 1 8 ESC Program Box
Reedy Sonic 540 Mach 2 6.0T Modified Motor ASC241

Apr 19


Reely Deathwatcher EVO Brushed 110 RC Modellauto Elektro Straßenmodell
Apr 19


A Year Later, Cybercrime Groups Still Rampant on Facebook

Remote Control Battery Operated Transformer Action Figure Robot Bugatti Toy Car