Learn about Zero Trust Architecture
Impenetrable cybersecurity without sacrificing usability
Gain detailed visibility into all your endpoints activities
Harden applications and hardware environments
Immediate and continuous response to incidents
Close the window of time your data could be exposed
Get your Comodo solutions setup, deployed or optimized
Control access to malicious websites
Defend from any internet based threats
Stop email threats before it enters your inbox
Preserve and protect your sensitive data
Keep your website running fast and malware free
Add encryption to your websites
Automated certificate mgmt. platform
Secure private intranet environments
Digital signature solutions for cloud apps
Encrypt emails for senders and recipients
Stay compliant with PCI DSS
Trusted authentication for IoT devices
Francisco Partners a leading technology-focused private equity fund, has acquired a majority stake in Comodo’s certificate authority business. Newly renamed from Comodo CA Limited to Sectigo Limited. Privacy Policies, Trademarks, Patents and Terms & Conditions are available on Sectigo Limited’s web site.
Meet the people behind the direction for Comodo
Get the latest news about Comodo
People are the key to achievement and prosperity
Stay up to date with our on-demand webinars
Worldwide: Sales, Support and General Inquiries
Schedule a live demonstration of our solutions
Need immediate help? Call 1-888-551-1531
Instantly removes viruses to keep your PC virus free
Experience true mobile security on your mobile apple devices
Secure Internet Browser based on Chrome
Chrome browser internet security extension
Submit a ticket to our support team
Share any product bugs or security flaws
Collaborate with research experts on data sets
Valkyrie Threat Intelligence Plugins
Valkyrie Threat Intelligence APIs
A cyber criminal collective known as the Cobalt Group is suspected to be behind the ATM malware “touchless jackpotting” attacks across 14 countries in Europe, including Netherlands, Russia, Britain, Poland, Romania and Spain. The group gets its name from their infamous penetration tool – “Cobalt Strike – Advanced Threat Tactics for Penetration Testers.” Infected ATMs spewed out cash without even being physically touched!!!
How the Attackers Infected the ATM Machines
The hackers typically initiated the malware infection through phishing and spearphishing attacks. They sent malware laced emails to employees working at the banks. If some how a cyber security naive-employee clicked on a malicious link in an email or opened an attachment then their system would get infected. Once the malware got a foot hold on a single system on the banking network, the perpetrators were successfully able to spread the infection to the banking server that controlled the ATMs, and that helped them attack the ATM machines and compromise ATM security.
In this attack, the cyber criminals themselves did not have to go to the individual ATM machines to plant the malware. Everything was done by remote. No physical attack at all. From the server, they spread the malware to specific ATM machines across Europe. This Cobalt Strike malware infected the hard drives of the ATM machines.
And at a desired time, the cyber criminal team sent a command to specific ATMs to spit out cash inside the machine. This money was collected by “money mules” who get a share of the whole amount collected.
The malware is so potent that once it just enters the financial network of any bank it can spread to the server. Group-IB, a Russian security firm, has linked the Touchless Jackpotting attacks to the Cobalt group. However, not much is presently known about this group. But, the cyber tools used suggest that there could possibly be some link between Cobalt and “Buhtrap”, another cyber criminal group that works on the similar kinds of attacks.
These kinds of attacks are dangerous as the complete attack happens logically; physical presence is not involved. When cybercriminals infected the banking servers they have also been able to compromise the SWIFT (a secure messaging provider) system to issue fraudulent money transfers through the SWIFT system. Some time back, hackers had purportedly transferred a huge amount money from the central bank of Bangladesh by compromising the SWIFT system. This is a warning to even highly secure fund transfer systems, as hackers seem to be able to get in any system.
Precautionary Measures to Ensure ATM Security
Tags: ATM security,cybersecurity
Reading Time: 2 minutes Ransomware is a dilemma that we have been facing for quite some time now. However, in 2020, we have seen a significant rise in the total number and variety of ransomware attacks. This latest ransomware boom is most probably the outcome of organized cyber-criminal networks recognizing the revenue-generating potential of this ‘business model’—amounting to over…
Reading Time: 3 minutes Celebrate National Cybersecurity Awareness Month By Learning to Protect Against Ransomware Attacks It’s the season for pumpkin picking, leaves changing color, getting ready for Halloween parties and trick-or-treating. But ghosts and ghouls aren’t the only scary things you’ll be seeing this month: October is also National Cybersecurity Awareness Month, a time when business leaders and…
Reading Time: 2 minutes Incidents of user data theft skyrockets day by day. This time a massive data leak hit the customers of Tanzhishuju.com, a Chinese financial company developed by Shanghai Bochi Information Technology Co., Ltd. The company provides customers with a diversity of finance-related services: Small loans, online P2P credit, banking, leasing industry, and third-party payments. It…
Sign up to our cyber security newsletter
Comodo Cybersecurity would like to keep in touch with you about cybersecurity issues, as well as products and services available. Please sign up to receive occasional communications. As a cybersecurity company, we take your privacy and security very seriously and have strong safeguards in place to protect your information.
See how your organization scores against cybersecurity threats