NoaBot targets SSH servers for crypto-mining

Sponsored by

Gone Phishing Banner

Welcome to Gone Phishing, your daily cybersecurity newsletter thatโ€™s knows more about cybersecurity than Joe Bidenโ€™s forgotten ๐Ÿ™ƒ

 Todayโ€™s hottest cybersecurity news stories:

  • ๐Ÿค– NoaBot targets SSH servers for crypto-mining โ›๏ธ

  • ๐Ÿ”Œ AI plugin flaw exposes 50k WordPress sites to RATs ๐Ÿ€

  • ๐Ÿ›๏ธ FTC bans data broker from selling Americansโ€™ location data ๐Ÿ“ 

What are they crypto mining for? Noaโ€™s Ark ๐Ÿ˜

๐Ÿšจ New Bot Steals Your Computer Power for Crypto ๐Ÿšจ

NoaBot, a sneaky bot based on the infamous Mirai, is hijacking computers to mine cryptocurrency! โ›๏ธ This means it uses your processing power to make money for someone else, slowing down your computer and wasting electricity.

Here's the lowdown ๐Ÿ“

  • Spreads like a virus: NoaBot scans for vulnerable computers and forces its way in, then spreads to other victims. ๏ธ

  • Hides from antivirus: This sneaky bot uses tricks to avoid detection, making it harder to stop.๏ธ

  • Mines secretly: NoaBot instals a hidden program that mines cryptocurrency, draining your resources for the attacker's profit.

  • Targets everyone: From homes to businesses, NoaBot is targeting computers worldwide.

How to stay safe ๐Ÿฐ

  • Lock down your SSH: Don't allow anyone to access your computer remotely unless you absolutely need to.

  • Strong passwords: Use unique, complex passwords for all your accounts. No more "123456"!

  • Keep software updated: Regularly update your operating system and other software to patch vulnerabilities. ๏ธ

  • Spread the word! Share this warning with your friends and family to help everyone stay safe from NoaBot and other crypto-mining threats.

Stay vigilant and stay secure! ๐Ÿ›ก๏ธ

Your SOC 2 Compliance Checklist from Vanta

Are you building a business? Achieving SOC 2 compliance can help you win bigger deals, enter new markets and deepen trust with your customers โ€” but it can also cost you real time and money.

Vanta automates up to 90% of the work for SOC 2 (along with other in-demand frameworks), getting you audit-ready in weeks instead of months. Save up to 400 hours and 85% of associated costs.

Download the free checklist to learn more about the SOC 2 compliance process and the road ahead. 

Time to unplug? ๐Ÿ”Œ๐Ÿ™ˆ๐Ÿ’€

๐Ÿšจ AI Engine Alert! Update Now to Fix Security Flaw ๐Ÿšจ

Have you heard about the big security issue with the AI Engine plugin? Over 50,000 sites with the free version are at risk (yikes!), and hackers could take control if you don't update.

What's the problem? ๐Ÿ‘€

A sneaky bug lets anyone upload anything they want to your site, even bad stuff like malware . This could give hackers complete control and steal your data or mess up your site .Don't worry, there's a fix!

The AI Engine team rolled out an update (yay!) in version 1.9.99 that patches the bug. So, just update your plugin, and you're good to go!

Here's how to stay safe ๐Ÿฐ

  • Update to version 1.9.99 ASAP! Seriously, don't wait (time is precious โณ).

  • Backup your site just in case. Better safe than sorry! ๏ธ

  • Keep an eye on WordPress security news. Stay informed to avoid future trouble .

  • Spread the word! Share this with your WordPress buddies so they can protect their sites too.

Remember, together we're stronger!

P.S. Check out these other helpful tips for keeping your WordPress site safe:

  • Use strong passwords and keep them secret

  • Update your software regularly (not just AI Engine!) ๏ธ

  • Be careful about what plugins you install ๏ธโ€

Let's keep our WordPress sites safe and sound! ๐Ÿ›ก๏ธ

๐ŸŽฃ Catch of the Day!! ๐ŸŒŠ๐ŸŸ๐Ÿฆž

๐Ÿƒ The Motley Fool: โ€œFool me once, shame on โ€” shame on you. Fool me โ€” you can't get fooled again.โ€ Good olโ€™ George Dubya ๐Ÿ˜‚ Let us tell whoโ€™s not fooling around though; thatโ€™s the Crรผe ๐Ÿ‘€ at Motley Fool. Youโ€™d be a fool (alright, enough already! ๐Ÿ™ˆ) not to check out their Share Tips from time to time so your savings can one day emerge from their cocoon as a beautiful butterfly! ๐Ÿ› Kidding aside, if you check out their website theyโ€™ve actually got a ton of great content with a wide variety of different investment ideas to suit most budgets ๐Ÿค‘ (LINK)

๐Ÿšต Wander: Find your happy place. Cue Happy Gilmore flashback ๐ŸŒ๏ธโ›ณ๐ŸŒˆ๐Ÿ•Š๏ธ Mmmm Happy Placeโ€ฆ ๐Ÿ˜‡ So, weโ€™ve noticed a lot of you guys are interested in travel. As are we! We stumbled upon this cool company that offers a range of breath-taking spots around the United States and, honestly, the website alone is worth a gander. When all you see about the Land of the free and the home of the brave is news of rioting, looting and school shootings, itโ€™s easy to forget how beautiful some parts of it are. The awe-inspiring locations along with the innovative architecture of the hotels sets Wander apart from your run of the mill American getaway ๐Ÿž๏ธ๐Ÿ˜ (LINK)

๐ŸŒŠ Digital Ocean: If you build it they will come. Nope, weโ€™re not talking about a baseball field for ghosts โšพ๐Ÿ‘ป๐Ÿฟ (Great movie, to be fair ๐Ÿ™ˆ). This is the Digital Ocean whoโ€™ve got a really cool platform for building and hosting pretty much anything you can think of. If you check out their website youโ€™ll find yourself catching the buzz even if you canโ€™t code (guilty ๐Ÿ˜‘). But if you can and youโ€™re looking for somewhere to test things out or launch something new or simply enhance what youโ€™ve got, weโ€™d recommend checking out their services foโ€™ sho ๐Ÿ˜‰ And how can you not love their slogan: Dream it. Build it. Grow it. Right on, brother! ๐ŸŒฟ (LINK)

FTC FTW! ๐ŸŽ‰๐ŸŽ‰๐ŸŽ‰

๐Ÿšจ Win for Privacy! FTC Bans Data Broker from Selling Location Data ๐Ÿšจ

Imagine someone knowing not just where you live, but where you go to the doctor, the church you attend, or even the bars you frequent. That's exactly what data broker Outlogic was doing by selling Americans' raw location data. The cheek of it!

But today, the U.S. Federal Trade Commission (FTC) stepped in and said enough is enough! They banned Outlogic from selling this sensitive data and ordered them to delete everything they've already collected.

What is this a big deal?

  • Our location data reveals a lot about our private lives, including our health, beliefs, and even political views. โ›ช๏ธ๏ธ

  • Outlogic didn't always get people's consent to sell their data, and even when they did, they often failed to respect opt-out requests.

  • This kind of unchecked data tracking can be used for everything from targeted advertising to stalking.

What does this mean for you? ๐Ÿง‘

This is a major victory for privacy rights!

It sends a message to other data brokers that they can't just collect and sell our personal information without our permission. โ€

It's a reminder to be careful about what apps you install and what permissions you give them.

Top Tips ๐Ÿ›ก๏ธ

  • Read app privacy policies carefully before you install them.

  • Only give apps access to the information they absolutely need.

  • Use apps that let you control your location sharing settings.

  • Consider using a VPN to encrypt your internet traffic. ๏ธ

Let's celebrate this win for privacy! But remember, the fight for our data isn't over. Stay informed and stay vigilant!

๐Ÿ—ž๏ธ Extra, Extra! Read all about it!

Every few weeks, we carefully select three hot newsletters to show you. Reputation is everything, so any links we share come from personal recommendation or carefully researched businesses at the time of posting. Enjoy!

  • The GeekAI: A daily 3 min newsletter on what matters in AI, with all the new AI things coming to market its good to stay ahead of the curve.

  • Wealthy Primate: Want to earn over $100k a year in IT or cybersecurity? 20 year veteran 'Wealthy Primate' might be able to help you climb that tree ๐Ÿ’๐ŸŒด with his stick and banana approach ๐ŸŒ๐Ÿ˜

  • Techspresso: Receive a daily summary of the most important AI and Tech news, selected from 50+ media outlets (The Verge, Wired, Tech Crunch etc)

Let us know what you think!

So long and thanks for reading all the phish!

Give us a rating?

Login or Subscribe to participate in polls.