Frame-14

Privacy Ninja

        • DATA PROTECTION

        • CYBERSECURITY

        • Secure your network against various threat points. VA starts at only S$1,000, while VAPT starts at S$4,000. With Price Beat Guarantee!

        • API Penetration Testing
        • Enhance your digital security posture with our approach that identifies and addresses vulnerabilities within your API framework, ensuring robust protection against cyber threats targeting your digital interfaces.

        • On-Prem & Cloud Network Penetration Testing
        • Boost your network’s resilience with our assessment that uncovers security gaps, so you can strengthen your defences against sophisticated cyber threats targeting your network

        • Web Penetration Testing
        • Fortify your web presence with our specialised web app penetration testing service, designed to uncover and address vulnerabilities, ensuring your website stands resilient against online threats

        • Mobile Penetration Testing
        • Strengthen your mobile ecosystem’s resilience with our in-depth penetration testing service. From applications to underlying systems, we meticulously probe for vulnerabilities

        • Cyber Hygiene Training
        • Empower your team with essential cybersecurity knowledge, covering the latest vulnerabilities, best practices, and proactive defence strategies

        • Thick Client Penetration Testing
        • Elevate your application’s security with our thorough thick client penetration testing service. From standalone desktop applications to complex client-server systems, we meticulously probe for vulnerabilities to fortify your software against potential cyber threats.

        • Source Code Review
        • Ensure the integrity and security of your codebase with our comprehensive service, meticulously analysing code quality, identifying vulnerabilities, and optimising performance for various types of applications, scripts, plugins, and more

        • Email Spoofing Prevention
        • Check if your organisation’s email is vulnerable to hackers and put a stop to it. Receive your free test today!

        • Email Phishing Excercise
        • Strengthen your defense against email threats via simulated attacks that test and educate your team on spotting malicious emails, reducing breach risks and boosting security.

        • Cyber Essentials Bundle
        • Equip your organisation with essential cyber protection through our packages, featuring quarterly breached accounts monitoring, email phishing campaigns, cyber hygiene training, and more. LAUNCHING SOON.

QNAP Warns Users To Secure NAS Devices Against Dovecat Malware

QNAP Warns Users To Secure NAS Devices Against Dovecat Malware

QNAP urges customers to secure their network-attached storage (NAS) devices against an ongoing malware campaign that infects and exploits them to mine bitcoin without their knowledge.

“According to analysis, QNAP NAS can become infected when they are connected to the Internet with weak user passwords,” QNAP says.

User reports of this malware campaign have been surfacing for at least three months [123], with customers saying that affected NAS devices are almost unusable due to the Bitcoin miner hogging up almost all CPU and memory resources.

QNAP also published a knowledgebase article in November explaining that NAS devices with dovecat and dedpma running processes are compromised and running a Bitcoin miner malware.

While Taiwanese NAS maker Synology has not yet issued an advisory related to this cryptojacking campaign, customer reports [1, 2] say that Synology devices have also been infected with this malware.

Also Read: What Do 4 Messaging Apps Get From You? Read The iOS Privacy App Labels

How to protect your NAS from attacks

The company urges users to take the following measures to defend against infections:

  • Update QTS to the latest version.
  • Install the latest version of Malware Remover.
  • Install Security Counselor and run with Intermediate Security Policy (or above).
  • Install a firewall.
  • Enable Network Access Protection to protect accounts from brute force attacks.
  • Use stronger admin passwords.
  • Use stronger passwords for database administrators.
  • Disable SSH and Telnet services if not in use.
  • Disable unused services and apps.
  • Avoid using default port numbers (80, 443, 8080, and 8081).

Customers are also advised to follow best practices for enhancing their NAS device’s security as detailed QNAP’s support website.

To block future attacks or malware infections affecting their devices, users should also remove all unknown or suspicious accounts and applications from their NAS systems.

They should also toggle off auto-router configuration and configure device access controls using myQNAPcloud.

Changing passwords for all accounts, as well as updating QTS and all QTS apps to the latest versions should also help prevent attacks.

Malware removal tool in development

“These actions can further enhance NAS security and make it harder for dovecat to enter your QNAP NAS,” the advisory adds.

The QNAP PSIRT has made it a priority to develop a solution that will remove dovecat from infected devices.”

QNAP’s NAS devices have been under siege before, with the company warning of QSnatch malware and Muhstik Ransomware infections in September and October 2019.

An eCh0raix Ransomware (also known as QNAPCrypt) campaign targeted QNAP NAS devices with outdated QTS firmware and weak passwords in August 2019.

More recently, in September 2020, QNAP also alerted customers of a recent wave of ransomware attacks AgeLocker Ransomware attacks targeting publicly exposed NAS devices.

Also Read: Key PDPA Amendments 2019/2020 You Should Know

AgeLocker targets older unpatched versions of Photo Station, encrypts the device’s data, and in some cases, steal files from the victim as BleepingComputer found.

0 Comments

KEEP IN TOUCH

Subscribe to our mailing list to get free tips on Data Protection and Data Privacy updates weekly!

Personal Data Protection

REPORTING DATA BREACH TO PDPC?

We have assisted numerous companies to prepare proper and accurate reports to PDPC to minimise financial penalties.
×

Hello!

Click one of our contacts below to chat on WhatsApp

× Chat with us