Weekly Threat Briefing: New dark_nexus Botnet, Pegasus Spyware, SFO Airport Data Breach, and More


The various threat intelligence stories in this iteration of the Weekly Threat Briefing discuss the following topics: APT, Botnet, Data breach, Malware, and Vulnerabilities. The IOCs related to these stories are attached to the Weekly Threat Briefing and can be used to check your logs for potential malicious activity. Figure 1 - IOC Summary Charts. These charts summarize the IOCs attached to this magazine and provide a glimpse of the threats discussed.


Trending Cyber News and Threat Intelligence


San Francisco International Airport Discloses Data Breach After Hack


(published: April 11, 2020)


San Francisco International Airport has been the victim of a cyber attack in March 2020. The actors injected malicious code into the websites of SFOConnect[.]com and SFOConstruction[.]com. The attack will have impacted users connecting to these sites from outside the airport network. Attackers may have accessed usernames and passwords. The airport has forced a reset of all SFO related email and network passwords on the 23rd of March 2020, according to the "Notice of Data Breach" sent from the airport.Recommendation: The exposure of Personally Identifiable Information (PII) requires affected individuals to take precautionary measures to protect their identity and their finances. Identity theft services can assist in preventing illicit purchases, or applying for financial services from taking place by actors using stolen data. There are a number of ways to conduct login security maintenance to mitigate this risk. Users must make sure they are not reusing the same credentials across multiple sites. Criminals are likely to test this common mistake by taking a stolen credential and using it against another service to see if they can access it. To boost login security, users can implement two factor authentication, ..

Support the originator by clicking the read the rest link below.