Stories
Slash Boxes
Comments

SoylentNews is people

posted by chromas on Friday July 13 2018, @01:23AM   Printer-friendly
from the yoink dept.

Submitted via IRC for Fnord666

Hackers have breached the website of VSDC, a popular company that provides free audio and video conversion and editing software.

Three different incidents have been recorded during which hackers changed the download links on the VSDC website with links that initiated downloads from servers operated by the attackers.

[...Chinese security firm] Qihoo experts said the first and third hijacks were the ones at a larger scale and affected the most users.

Users who downloaded VSDC software on those days have been infected with three different malware strains. Qihoo says victims received a JavaScript file disguised as VSDC software. This file would download a PowerShell script, which, in turn, would download three other files —an infostealer, a keylogger, and a remote access trojan (RAT).

[...] To its credit and unlike many companies nowadays, VSDC admitted to the hacks in an email to Bleeping Computer.

"Unfortunately, we did have hacker attacks, but they have already been stopped and all the vulnerabilities detected and removed," Alexander Galkin, a VSDC Project Manager told us.

Source: https://www.bleepingcomputer.com/news/security/popular-software-site-hacked-to-redirect-users-to-keylogger-infostealer-more/


Original Submission

This discussion has been archived. No new comments can be posted.
Display Options Threshold/Breakthrough Mark All as Read Mark All as Unread
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
(1)
  • (Score: 1) by Ethanol-fueled on Friday July 13 2018, @02:23AM (6 children)

    by Ethanol-fueled (2792) on Friday July 13 2018, @02:23AM (#706467) Homepage

    Tell your Facebook people: Watch out for those Russian Hackers!

    The way of American life depends on it.

    • (Score: 2) by Runaway1956 on Friday July 13 2018, @02:39AM (5 children)

      by Runaway1956 (2926) on Friday July 13 2018, @02:39AM (#706471) Homepage Journal

      Something ran across the road ahead of me last night, and was hidden in the underbrush before I could get a good look. I just know it was a Russian hacker!

      --
      Abortion is the number one killed of children in the United States.
      • (Score: 1, Offtopic) by Ethanol-fueled on Friday July 13 2018, @02:44AM (4 children)

        by Ethanol-fueled (2792) on Friday July 13 2018, @02:44AM (#706472) Homepage

        Report it to your local Hillary or Bernie.

        • (Score: 1, Offtopic) by Runaway1956 on Friday July 13 2018, @02:50AM (3 children)

          by Runaway1956 (2926) on Friday July 13 2018, @02:50AM (#706477) Homepage Journal

          Our local Hillary has suffered a fatal stroke after reading the news. https://soylentnews.org/article.pl?sid=18/07/12/1758225 [soylentnews.org] And, the last time anyone saw our Bernie, he was chasing some sheep into a ravine.

          --
          Abortion is the number one killed of children in the United States.
          • (Score: 0, Offtopic) by Ethanol-fueled on Friday July 13 2018, @02:56AM (1 child)

            by Ethanol-fueled (2792) on Friday July 13 2018, @02:56AM (#706478) Homepage

            Hillary will RISE AGAIN. You must do something! Stop Them! Americans are counting on you!

            • (Score: -1, Offtopic) by Anonymous Coward on Friday July 13 2018, @03:22AM

              by Anonymous Coward on Friday July 13 2018, @03:22AM (#706489)

              Well, if the D team is so far out of touch and so bewilderingly stupid that they run her again, the Democratic Socialists of America (DSA) might do to the D team what the alt-right did to the R team.

          • (Score: 0) by Anonymous Coward on Friday July 13 2018, @12:36PM

            by Anonymous Coward on Friday July 13 2018, @12:36PM (#706591)

            How do you know? Were you with the sheep?

  • (Score: 2) by Runaway1956 on Friday July 13 2018, @02:38AM

    by Runaway1956 (2926) on Friday July 13 2018, @02:38AM (#706470) Homepage Journal

    This is why I only download stuff from places like Arch.

    Oh - wait . . . https://soylentnews.org/article.pl?sid=18/07/12/0155217 [soylentnews.org]

    --
    Abortion is the number one killed of children in the United States.
  • (Score: 1) by anubi on Friday July 13 2018, @02:48AM (5 children)

    by anubi (2828) on Friday July 13 2018, @02:48AM (#706475) Journal

    On mixing code and data....

    If there were a breed of people who dressed in a shirt with a little cup of coffee printed on it... and they had a rather annoying attribute that they would obey other people calling them on the phone, and do whatever the caller instructed them to do, behind your back, would you place them in any position of trust?

    So, if there is a breed of software that also has this annoying attribute of obeying someone else and is often commanded to do things behind your back, do you want it in your business?

    Many of us here are wise to it, but I really wonder just what its gonna take for business people to wise up to it? I have heard it said that wealth is the greatest enemy of understanding... so is it these people are paid so much that understanding concepts like this are beneath them?

    --
    "Prove all things; hold fast that which is good." [KJV: I Thessalonians 5:21]
    • (Score: 2) by Arik on Friday July 13 2018, @02:58AM

      by Arik (4543) on Friday July 13 2018, @02:58AM (#706480) Journal
      Computers are too complex for most people to understand. And markets don't work when the buyer not only doesn't but cannot understand the product.
      --
      If laughter is the best medicine, who are the best doctors?
    • (Score: 1, Informative) by Anonymous Coward on Friday July 13 2018, @03:40AM (3 children)

      by Anonymous Coward on Friday July 13 2018, @03:40AM (#706495)

      so is it these people are paid so much that understanding concepts like this are beneath them?

      Yes. In fact, they blame the techies they've hired for the inconveniences, business expenses, and lost clients this causes despite the fact that their techies can do nothing to prevent those things when given a mandate of proprietary closed-source software and users that will go on strike if they're forced to learn a new way of doing things, such as using LibreOffice, because Linux nerd incel shit. Of course, Windows and Office versions these days.... They have to learn new things anyway, and it's all the fault of those tech dorks they'd never personally fuck in a million years. (Deconstruction for both genders of managers below.)

      (Because heterosexual female managers have no other way to relate to men than through sexual objectification and have no conception of sexuality except though the peephole of their own personally experienced sexuality, and homosexual men incels are about as attractive to them as a butch lesbian, especially one who is interested in radical (not reactionary) feminism, is to a heterosexual man. The attitude of a heterosexual male manager to a tech dork can be deconstructed in term of patriarchy: the tech dork is a beta cuck who's a loser and has never even slipped a rape drug into a girl's drink to get pussy, and he can't believe he has to rely on a loser like that.)

      • (Score: 0) by Anonymous Coward on Friday July 13 2018, @04:10AM

        by Anonymous Coward on Friday July 13 2018, @04:10AM (#706509)

        users that will go on strike

        Should clarify. Those same users also believe that unions are parasites, but not because they regularly read World Socialist Website.

      • (Score: 0) by Anonymous Coward on Friday July 13 2018, @04:16AM (1 child)

        by Anonymous Coward on Friday July 13 2018, @04:16AM (#706511)

        Yes. In fact, they blame the techies they've hired for the inconveniences,

        Sounds to me like the executive "delegate" thing. The executives, flush with cash, lacking in knowledge, think they are delegating the problem to an expert.

        When in reality, what they are doing is delegating this responsibility to the hungriest liar cleverest presenter.

        Many of us know computers well enough to know they follow procedures to the letter of the program, having no loyalty to anyone - its just a state machine, and I believe that concept may be quite foreign to businesspeople who are used to purchasing loyalty and holding people accountable. If one of us points out how different from us the machine is, and where its loyalties really lie, the businessfolk will do what they are trained to do, and find someone else who will "do as they are told"... and take the person who tells them what they want to hear, regardless of the concept being non-implementable.

        • (Score: 2) by Arik on Friday July 13 2018, @04:39AM

          by Arik (4543) on Friday July 13 2018, @04:39AM (#706519) Journal
          "Sounds to me like the executive "delegate" thing. The executives, flush with cash, lacking in knowledge, think they are delegating the problem to an expert.

          When in reality, what they are doing is delegating this responsibility to the hungriest liar cleverest presenter."

          Sometimes. But not always.

          I refuse to lie to clients. Nonetheless, I can't force them to evolve a neocortex. People stare at you like you're speaking a foreign language. And when you're done patiently explaining exactly why they should NOT do X they say 'ok, so we have to do x, right?"

          Even more frustrating, some do get it, at least at the overview layer. Reasonably smart folks, who realize that following "industry standards" gives them a pretty good liability shield. No one's penalized for moving with the herd, and even when it moves in a catastrophically wrong direction, these folks figure the rest of the herd will be slower and give them enough cover to run anyway.
          --
          If laughter is the best medicine, who are the best doctors?
  • (Score: 2) by bitstream on Saturday July 14 2018, @06:31PM

    by bitstream (6144) on Saturday July 14 2018, @06:31PM (#707252) Journal

    "This file would download a PowerShell script, which, in turn,"
    Second time in a week? ;)

    Let's see http://www.videosoftdev.com/ [videosoftdev.com]
      * No https crypto
      * Uses Server: Microsoft-IIS/7.5

    Luser gets p0wned. Questions?

(1)