Intelligent CISO Issue 14 | Page 24

threat updates GLOBAL WhatsApp users were urged to install an update after a vulnerability was found in the app that could have allowed users’ phones to have been compromised. In a security advisory, WhatsApp stated that a buffer overflow vulnerability in the WhatsApp VOIP stack had allowed remote code execution via a specially crafted series of SRTCP packets sent to a target phone number. Updates were made available and WhatsApp users were advised to install these as soon as possible. GLOBAL Sophos, a global leader in endpoint and network security, reported that MegaCortex – a relatively little-seen malware – suddenly spiked in volume on May 1. Sophos has seen MegaCortex detections in the US, Canada, Argentina, Italy, the Netherlands, France, Ireland, Hong Kong, Indonesia and Australia. The ransomware has manual components similar to Ryuk and BitPaymer, but the adversaries behind MegaCortex use more automated tools to carry out the attack – which is unique. 24 Issue 14 | www.intelligentciso.com