Welcome to our

Cyber Security News Aggregator

.

Cyber Tzar

provide a

cyber security risk management

platform; including automated penetration tests and risk assesments culminating in a "cyber risk score" out of 1,000, just like a credit score.

Nameless Malware Discovered by NordLocker is Now in Have I Been Pwned

published on 2021-06-09 10:29:53 UTC by Troy Hunt
Content:

Presently sponsored by: Guarantee peace of mind from credential stuffing attacks. Learn how at Arkose Labs’ webinar with Troy July 27 at 10 am PT. Save your seat!

Nameless Malware Discovered by NordLocker is Now in Have I Been Pwned

I've had a couple of cases to date where email addresses compromised by malware then discovered in the course of investigations have been provided to Have I Been Pwned (HIBP). Firstly by the Estonian Central Criminal Police a few years ago, then by the FBI and global counterparts this April and now, in the third such case, by NordLocker. (Full disclosure: I'm a strategic advisor for NordVPN who shares the same parent company.) NordLocker has written about the nameless malware that stole 1.2 TB of private data and the first sentence sets the scene:

Between 2018 and 2020, a custom Trojan-type malware infiltrated over 3 million Windows-based computers and stole 1.2 terabytes (TB) of personal information

NordLocker goes into a lot more detail in the link above so I won't repeat it all here, but what's important to understand as far as HIBP is concerned is that they're in the same position as the Estonian Police and the FBI: they're sitting on a bunch of compromised personal info, now what? As with the two law enforcement agencies, NordLocker's goal is to inform impacted parties which is where HIBP comes in so as of now, all 1,121,484 compromised email addresses are searchable.

As with the data provided by the FBI and co, this incident has been flagged as "sensitive" so it's not publicly searchable. For individuals, verifying your email address by the notification service will show if it was in this data set. For organisations, the domain search feature will allow you to search across the breadth of any domains you can verify control of. For guidance on how protecting against malware, read NordLocker's report on the incident.

Article: Nameless Malware Discovered by NordLocker is Now in Have I Been Pwned - published almost 3 years ago.

https://www.troyhunt.com/nameless-malware-discovered-by-nordlocker-is-now-in-have-i-been-pwned/   
Published: 2021 06 09 10:29:53
Received: 2021 06 09 11:04:50
Feed: Troy Hunt's Blog
Source: Troy Hunt's Blog
Category: Cyber Security
Topic: Cyber Security
Views: 3

Custom HTML Block

Click to Open Code Editor