java

Tier3 Cyber Alerts
Blog & News

Remote Work Guide – Pakistan

In response to the recent viral outbreak in Pakistan, many organizations are asking their employees to work remotely. This, though, brings new challenges to the workplace as workers and companies in Pakistan are adapting to ...
Read More

Remote Work & Telecommuting – 5 Step Cyber Security Guide

The work-from-home culture or remote work is already adopted by almost one in five workers from around the world, and these numbers are expected to only increase further both internationally or locally here in Pakistan ...
Read More

GALLIUM – TELCO companies attacked around world

A team of researchers from the Microsoft Threat Intelligence Center (MSTIC) has warned of an ongoing attacks by the GALLIUM cybercriminal group targeting telecommunication providers in Southeast Asia, Europe and Africa. Attackers exploit vulnerabilities in the WildFly open ...
Read More

PPRA.ORG.PK – Hacked Cyber Alert

Tier3 monitoring teams have detected that Public Procurement Regulatory Authority (PPRA) official website ppra.org.pk was earlier this morning by a hacker group "The Crash Rulers" . It is the same group that supposedly hacked Pakistan ...
Read More

US – launched cyberattacks on Iran’s Systems

US officials say their attacks on Iranian military computers disabled systems that control missile and rocket launchers. The United States military launched cyberattacks against Iranian missile control systems and a spy network on Thursday after ...
Read More

Hackers attack Pakistani Govt’s passport application tracking site

Scanbox framework used to hack Pakistani Govt’s passport application tracking site http://tracking.dgip.gov.pk Experts uncovered a watering hole attack against the Pakistani Govt’s passport application tracking site, hackers used the Scanbox Framework to steal visitors’ data ...
Read More

WhatsApp Hacked – Vulnerable App used for Surveillance

Hackers were able to use the vulnerability and install other malware on phones. After 2 Weeks WhatsApp confirms its 1.5 Billion users need an upgrade. WhatsApp the most popular messenger app, is also owned by ...
Read More

Fileless Malware Attacks -The Growing threat to Pakistani Enterprises

Fileless malware attacks are increasing every day.They can nowadays be seen as the perfect crime of opportunity. The initial vector of these attack can be a seemingly innocuous business email with a link to an ...
Read More

Authorities Issue Alert Warning of Potential for Cyber Attacks

In a latest security alert email sent by PKNIC (registrar of all .PK domains ) to its customers, it is reported that there has been an increase in cyber attacks on Pakistani IT installations in ...
Read More

Worst passwords for 2018?

Even if security experts continue to make awareness campaign, people continue to use bad passwords exposing their data to the risk of hack. Bad habits are hard to die, 123456 is the most used password ...
Read More
February 2, 2017

Microsoft Power Point 2016, Java Code Execution

If the user have JAVA (or python or similar interpreters) an attacker can insert jar file or py file into the presentation and trigger it when mouse moves, for easier exploitation the attacker can use ppsx file which will load automatically in presentation mode and once the user opens the file and moves mouse it will trigger the payload.