I.T.

Cyber ​​attack: what it is, how it works, objective and how to prevent it: example of malware that spies the inbox on gmail

Gmail users should keep an eye out for the new SHARPEXT malware, discovered by cybersecurity company Volexity.

A Malware cyber attack is definible as a hostile activity against a system, a tool, an application or an element that has a computer component. It is an activity that aims to obtain a benefit for the attacker at the expense of the attacked.

Today we report a real example of the spread of malware, a case that occurred in these days to users of Gmail and Google accounts.

SHARPEXT malware spies, targets Google account holders and can read / download their personal emails and attachments. The malicious software appears to work from Edge and Chrome browser extensions, suitably designed by the hacker group Kimsuky (North Koreans).

What is SHARPEXT

The malicious SHARPEXT software has been around for almost a year. The extension is able to maintain its presence, even after the attack has been launched.

Kimsuky's attack

Unlike other malicious browser extensions, SHARPEXT is not meant to steal user credentials. Conversely, the extension steals information from victims' email inboxes.

Hackers deploy the extension manually via a VBS script, which can replace browser favorites files.

  • To replace the file in the Preferences, the hackers acquire some details from the browser, and create a new file that will be executed when the browser is started;
  • Next, a script is used to hide some of the extension's functionality, and any other windows that might warn the user;
  • Finally, the extension uses a pair of listeners to make appropriate changes in the browser tab, to then activate appropriate actions for reading information from Gmail;

Malware Attack Prevention

To avoid such a Malware attack, We recommend that you refrain from granting unnecessary permissions to apps and verify its authenticity by checking developer information, reading reviews, and reviewing their privacy policies.

While Malware attacks are potentially very dangerous, you can do a lot to prevent them by minimizing risks and keeping your data, money and… dignity safe.

Get a good antivirus

You absolutely must get an effective and reliable antivirus software
If your budget is tight, you can find numerous free antivirus online

SECURITY ASSESSMENT

It is the fundamental process for measuring your company's current level of security.
To do this it is necessary to involve an adequately prepared Cyber ​​Team, able to carry out an analysis of the state in which the company finds itself with respect to IT security.
The analysis can be carried out synchronously, through an interview carried out by the Cyber ​​Team or
also asynchronous, by filling in a questionnaire online.

Innovation newsletter
Don't miss the most important news on innovation. Sign up to receive them by email.

We can help you, contact the HRC srl specialists by writing to rda@hrcsrl.it.

SECURITY AWARENESS: know the enemy

More than 90% of hacker attacks start with employee action.
Awareness is the first weapon to combat cyber risk.

This is how we create "Awareness", we can help you, contact the HRC srl specialists by writing to rda@hrcsrl.it.

MANAGED DETECTION & RESPONSE (MDR): proactive endpoint protection

Corporate data is of enormous value to cybercriminals, which is why endpoints and servers are targeted. It is difficult for traditional security solutions to counter emerging threats. Cybercriminals bypass antivirus defenses, taking advantage of corporate IT teams' inability to monitor and manage security events around the clock.

With our MDR we can help you, contact the HRC srl specialists by writing to rda@hrcsrl.it.

MDR is an intelligent system that monitors network traffic and performs behavioral analysis
operating system, identifying suspicious and unwanted activity.
This information is transmitted to a SOC (Security Operation Center), a laboratory manned by
cybersecurity analysts, in possession of the main cybersecurity certifications.
In the event of an anomaly, the SOC, with a 24/7 managed service, can intervene at different levels of severity, from sending a warning email to isolating the client from the network.
This will help block potential threats in the bud and avoid irreparable damage.

SECURITY WEB MONITORING: analysis of the DARK WEB

The dark web refers to the contents of the World Wide Web in darknets that can be reached via the Internet through specific software, configurations and accesses.
With our Security Web Monitoring we are able to prevent and contain cyber attacks, starting from the analysis of the company domain (e.g.: ilwebcreativo.it ) and individual e-mail addresses.

Contact us by writing to rda@hrcsrl.it, we can prepare a remediation plan to isolate the threat, prevent its spread, and defiwe take the necessary remediation actions. The service is provided 24/XNUMX from Italy

CYBERDRIVE: secure application for sharing and editing files

CyberDrive is a cloud file manager with high security standards thanks to the independent encryption of all files. Ensure the security of corporate data while working in the cloud and sharing and editing documents with other users. If the connection is lost, no data is stored on the user's PC. CyberDrive prevents files from being lost due to accidental damage or exfiltrated for theft, be it physical or digital.

«THE CUBE»: the revolutionary solution

The smallest and most powerful in-a-box datacenter offering computing power and protection from physical and logical damage. Designed for data management in edge and robo environments, retail environments, professional offices, remote offices and small businesses where space, cost and energy consumption are essential. It does not require data centers and rack cabinets. It can be positioned in any type of environment thanks to the impact aesthetics in harmony with the work spaces. «The Cube» puts enterprise software technology at the service of small and medium-sized businesses.

Contact us by writing to rda@hrcsrl.it.

You might be interested in our Man in the Middle post

Ercole Palmeri: Innovation addicted


All our articles on Cyber ​​Security

[ultimate_post_list id=”12982″]

  

Innovation newsletter
Don't miss the most important news on innovation. Sign up to receive them by email.

Latest Articles

Under the control of Artificial Intelligences

«I must return to complete my evolution: I will project myself inside the computer and become pure energy. Once settled in…

May 10, 2024

Google's new artificial intelligence can model DNA, RNA and "all the molecules of life"

Google DeepMind is introducing an improved version of its artificial intelligence model. The new improved model provides not only…

May 9, 2024

Exploring Laravel's Modular Architecture

Laravel, famous for its elegant syntax and powerful features, also provides a solid foundation for modular architecture. There…

May 9, 2024

Cisco Hypershield and acquisition of Splunk The new era of security begins

Cisco and Splunk are helping customers accelerate their journey to the Security Operations Center (SOC) of the future with…

May 8, 2024

Beyond the economic side: the unobvious cost of ransomware

Ransomware has dominated the news for the last two years. Most people are well aware that attacks…

May 6, 2024

Innovative intervention in Augmented Reality, with an Apple viewer at the Catania Polyclinic

An ophthalmoplasty operation using the Apple Vision Pro commercial viewer was performed at the Catania Polyclinic…

May 3, 2024

The Benefits of Coloring Pages for Children - a world of magic for all ages

Developing fine motor skills through coloring prepares children for more complex skills like writing. To color…

May 2, 2024

The Future is Here: How the Shipping Industry is Revolutionizing the Global Economy

The naval sector is a true global economic power, which has navigated towards a 150 billion market...

May 1, 2024