Skip to main content

Massive Data Hack At Monster.com

Massive Data Hack At Monster.comIf you’ve got your resume posted at Monster.com and it contains a lot of personal details, you might want to worry right now.   The job site wasattacked and the personal details of hundreds of thousands of users were stolen, according to security firm Symantec.   How was it done? The hackers usedstolen log-in credentials to access the employers’ section of the site, then harvested names, addresses, phone numbers and e-mail addresses and other information, which were all uploaded to aremote server. They used a new Trojan called Infostealer.Monstres and stole more than 1.6 million records belonging to several hundred thousand people. The Trojan reportedly ran automated searchesfor resumes of candidates located in certain countries or working in certain fields.   That data is then used to send spam of phishing e-mails, and some have already been seen, containing plentyof personal information about the recipient.   “The attackers first gather e-mail address and other personal information from resumes posted to Monster.com withInfostealer.Monstres,” said Symantec security analyst Amado Hidalgo. “Next, they will try to infect the computers of those candidates by sending targeted Monster.com phishing mails whichinstall [Banker.c or Gpcoder.e].”   Banker.c is a Trojan that monitors the infected PC for log-ons to online banking accounts. It then records the username and password and transmits thedata back to hacker HQ. Gpcoder.e, though, is what’s known as ransomware, a Trojan that encrypts files on the hacked computer, then hold those files hostage until the user pays a fee tounlock the data.   The nasty part is how Gpcoder.e ends up on your computer. An e-mail, purportedy from Monster, asks you to download the Monster Job Seeker Tool. Such an item doesn’texist – but you’ve just loaded Gpcoder.e on your machine.

Digital Trends Staff
Digital Trends has a simple mission: to help readers easily understand how tech affects the way they live. We are your…
Bluetooth hack compromises Teslas, digital locks, and more
Tesla Model 3 keycard.

A group of security researchers has found a way to circumvent digital locks and other security systems that rely on the proximity of a Bluetooth fob or smartphone for authentication.

Using what’s known as a “link layer relay attack,” security consulting firm NCC Group was able to unlock, start, and drive vehicles and unlock and open certain residential smart locks without the Bluetooth-based key anywhere in the vicinity.

Read more
This massive air fryer oven is $70 off at Best Buy today
bella pro series toaster oven air fryer deal best buy february 2021 plus

 

Not everybody has a kitchen big enough to have a full-blown oven, which can sometimes be problematic if they like to bake pastries, heat food, or even cook a whole meal. This is where air fryers come to the rescue, and while not being the same thing as a full oven, they can achieve pretty similar results. If you've been looking for a good deal on an air fryer, Best Buy has you covered with $70 off the Bella Pro Series 12.6-quart Digital Air Fryer Oven, bringing it down to a pretty reasonable $80 from its normal price of $150.

Read more
This South Korean smart home hack is one more reason you should secure your home
Alexa listening indicator.

While most Americans were trying to take advantage of Black Friday sales last weekend, hackers in South Korea pulled off what is perhaps the most damaging hack in smart home history. The as-yet-unidentified hackers recorded photo and video from more than 700 different apartment complexes and held it ransom or sold it outright for Bitcoin.

The entire incident is the stuff of nightmares -- the realization of fears about the smart home industry and what it means to allow cameras and other recording devices into the home without sufficient safeguards in place.

Read more