darthcamaro writes: Apparently YouTube isn’t the only site that is draining CPU power with unauthorized cryptocurrency miners. A water utility provider in Europe is literally being drained of its CPU power via an cryptojacking attack that was undetected for three weeks. eWeek reports: “At this point, Radiflow’s (the security firm that discovered the cryptocurrency mining malware) investigation indicates that the cryptocurrency mining malware was likely downloaded from a malicious advertising site. As such, the theory that Radiflow CTO Yehonatan Kfir has is that an operator at the water utility was able to open a web browser and clicked on an advertising link that led the mining code being installed on the system. The actual system that first got infected is what is known as a Human Machine Interface (HMI) to the SCADA network and it was running the Microsoft Windows XP operating system. Radiflow’s CEO, Ilan Barda, noted that many SCADA environments still have Windows XP systems deployed as operators tend to be very slow to update their operating systems.” Radiflow doesn’t know how much Monero (XMR) cryptocurrency was mined by the malware, but a recent report from Cisco’s Talos research group revealed that some of the top un-authorized cryptocurrency campaigns generate over a million dollars per year. The average system would generate nearly $200, 000 per year. Read more of this story at Slashdot.
Follow this link:
Attackers Drain CPU Power From Water Utility Plant In Cryptojacking Attack
Long-time Slashdot reader brentlaminack writes: One of the first and best social bookmarking platforms, Del.icio.us has changed hands about four times, one was to Yahoo for > $15M. Its most recent relaunch was over a year back, which was their last blog entry. Now images are broken, little “advertisement” blocks show up with no advertisements, things seem moribund. What’s the deal? The Next Web reports: It’s the end of the road for social bookmarking website del.icio.us. After almost fifteen years, the site has been acquired by rival Pinboard, and will be shuttered on June 15, when it goes into read-only mode. While the site will continue to be viewable, users won’t be able to save any new bookmarks. Del.icio.us pioneered the social bookmarking paradigm. Its influence can be seen everywhere, from Reddit to Twitter… After del.icio.us was acquired by AVOS Systems in 2011, users fled to Pinboard in droves over complaints AVOS was fundamentally changing the makeup of the site. By purchasing del.icio.us, Pinboard is able to coax the few remaining del.icio.us users to jump ship. Depending on how much Pinboard paid for the site, how many users remain, and how many users Pinboard is able to convert, this could be a financially lucrative move. A Pinboard subscription costs $11 per annum. A late update to the article includes a quote from Pinboard founder Maciej Ceglowski. “In a statement, he said ‘I am the greatest.’ Ceglowski also confirmed the purchase price for del.icio.us, which was $35, 000.” Read more of this story at Slashdot.
Bruce66423 brings word that a terrorist’s WhatsApp message has been decrypted “using techniques that ‘cannot be disclosed for security reasons’, though ‘sources said they now have the technical expertise to repeat the process in future.'” The Economic Times reports: U.K. security services have managed to decode the last message sent out by Khalid Masood before he rammed his high-speed car into pedestrians on Westminster Bridge and stabbed to death a police officer at the gates of Parliament on March 22. The access to Masood’s message was achieved by what has been described by security sources as a use of “human and technical intelligence”… The issue of WhatsApp’s encrypted service, which is closed to anyone besides the sender and recipient, had come under criticism soon after the attack. “It’s completely unacceptable. There should be no place for terrorists to hide. We need to make sure that organisations like WhatsApp, and there are plenty of others like that, don’t provide a secret place for terrorists to communicate with each other, ” U.K. home secretary Amber Rudd had said. Security sources say the message showed the victim’s motive was military action in Muslim countries, while the article adds that though ISIS claimed responsibility for the attack, “no evidence has emerged to back this up.” Read more of this story at Slashdot.