Media and Entertainment
More Than 70 South Korean Reporters Receive Suspicious Emails
31 December - 8 January 2019
South Korea’s Ministry of Unification said that 77 reporters of the ministry’s press corps that cover relations with North Korea received an email with a compressed file attachment, which contained two malicious executable files disguised as PDF and HWP files.

South Korea’s Ministry of Unification said that 77 reporters of the ministry’s press corps that cover relations with North Korea received an email with a compressed file attachment, which contained two malicious executable files disguised as PDF and HWP files. The incident has been handed over to the relevant agencies for further investigation. Days before this incident, the ministry said that they are investigating a phishing email that came attached with a ministry-generated document analysing the North Korean leader’s New Year’s speech.
References:
[1] Email suspected to have malicious code sent to reporters at govt. agency handling inter-Korean affairs
[2] APT attack against the reporters of the Unification Ministry, 'Operation Cobra Venom' Attention
References:
[1] Email suspected to have malicious code sent to reporters at govt. agency handling inter-Korean affairs
[2] APT attack against the reporters of the Unification Ministry, 'Operation Cobra Venom' Attention
More Weekly Cyber Newsanalysis and insights

Weekly Comments
Hackers had a blast in 2018. How about cybersecurity providers and other companies?

Chaplaincy Health Care Suffers Breach After Employee’s Email Account Hacked
Chaplaincy Health Care, a hospice in Washington, United States, suffered a breach in late November after an employee fell prey to a phishing attack in which attackers stole his or her email login credentials.

Wichita State University Employees Lose Paychecks In Phishing Attack
At least three employees of Wichita State University in Kansas, United States, lost their paychecks after falling prey to a phishing email with a malicious link.

SIA’s Website Glitch Exposes Personal Details of 285 KrisFlyer Members
The personal details of 285 KrisFlyer members were exposed due to a software glitch affecting Singapore Airlines’ (SIA) website. The breach happened when any two KrisFlyer members accessed transactions displaying their membership information at the same time, while also being assigned the same server by the system.

Unknown Attackers Published German Politicians’ Personal Data On Twitter
Unknown attackers had been publishing stolen personal data from approximately 1,000 German politicians, including Chancellor Angela Merkel, on Twitter since December.

Hacker Group TA554 Pairs SLoad And Ramnit Banking Trojan In UK and Italy Attacks
Hacker group TA554 has been using the sLoad dropper to distribute the Ramnit banking trojan in attacks targeted at financial institutions in the UK and Italy.
Media and Entertainment
More Than 70 South Korean Reporters Receive Suspicious Emails
31 December - 8 January 2019
South Korea’s Ministry of Unification said that 77 reporters of the ministry’s press corps that cover relations with North Korea received an email with a compressed file attachment, which contained two malicious executable files disguised as PDF and HWP files.

South Korea’s Ministry of Unification said that 77 reporters of the ministry’s press corps that cover relations with North Korea received an email with a compressed file attachment, which contained two malicious executable files disguised as PDF and HWP files. The incident has been handed over to the relevant agencies for further investigation. Days before this incident, the ministry said that they are investigating a phishing email that came attached with a ministry-generated document analysing the North Korean leader’s New Year’s speech.
References:
[1] Email suspected to have malicious code sent to reporters at govt. agency handling inter-Korean affairs
[2] APT attack against the reporters of the Unification Ministry, 'Operation Cobra Venom' Attention
References:
[1] Email suspected to have malicious code sent to reporters at govt. agency handling inter-Korean affairs
[2] APT attack against the reporters of the Unification Ministry, 'Operation Cobra Venom' Attention
More Weekly Cyber Newsanalysis and insights

Weekly Comments
Hackers had a blast in 2018. How about cybersecurity providers and other companies?

Chaplaincy Health Care Suffers Breach After Employee’s Email Account Hacked
Chaplaincy Health Care, a hospice in Washington, United States, suffered a breach in late November after an employee fell prey to a phishing attack in which attackers stole his or her email login credentials.

Wichita State University Employees Lose Paychecks In Phishing Attack
At least three employees of Wichita State University in Kansas, United States, lost their paychecks after falling prey to a phishing email with a malicious link.

SIA’s Website Glitch Exposes Personal Details of 285 KrisFlyer Members
The personal details of 285 KrisFlyer members were exposed due to a software glitch affecting Singapore Airlines’ (SIA) website. The breach happened when any two KrisFlyer members accessed transactions displaying their membership information at the same time, while also being assigned the same server by the system.

Unknown Attackers Published German Politicians’ Personal Data On Twitter
Unknown attackers had been publishing stolen personal data from approximately 1,000 German politicians, including Chancellor Angela Merkel, on Twitter since December.

Hacker Group TA554 Pairs SLoad And Ramnit Banking Trojan In UK and Italy Attacks
Hacker group TA554 has been using the sLoad dropper to distribute the Ramnit banking trojan in attacks targeted at financial institutions in the UK and Italy.