{"id":4520,"date":"2021-10-04T08:00:00","date_gmt":"2021-10-04T06:00:00","guid":{"rendered":"https:\/\/xopero.com\/blog\/?p=4520"},"modified":"2021-10-01T15:57:53","modified_gmt":"2021-10-01T13:57:53","slug":"malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa","status":"publish","type":"post","link":"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/","title":{"rendered":"Malware GriftHorse \/ Nowy backdoor w domenach Windows \/ B\u0142\u0105d w iPhone Apple Pay i Visa"},"content":{"rendered":"\n<p>Witamy w&nbsp;<a href=\"https:\/\/xopero.com\/blog\/pl\/category\/centrum-bezpieczenstwa\/\" target=\"_blank\" rel=\"noreferrer noopener\">Centrum Bezpiecze\u0144stwa<\/a>! Naszym cotygodniowym przegl\u0105dzie precyzyjnie wyselekcjonowanych news\u00f3w o najbardziej niszczycielskich cyberatakach, krytycznych lukach i najg\u0142o\u015bniejszych wyciekach danych.&nbsp;<\/p>\n\n\n\n<p>Nie przegap tego i rozpocznij tydzie\u0144 cyber-bezpiecznie!&nbsp;<a href=\"https:\/\/xopero.com\/pl\/newsletter\/\" target=\"_blank\" rel=\"noreferrer noopener\">Zapisz si\u0119 na newsletter<\/a>, a w ka\u017cdy poniedzia\u0142ek dostarczymy go na Twoj\u0105 skrzynk\u0119 mailow\u0105. Dodatkowo otrzymasz porcj\u0119 najgor\u0119tszych wiadomo\u015bci firmowych oraz dost\u0119p do wybranych artyku\u0142\u00f3w technicznych przygotowanych przez naszych ekspert\u00f3w z poradami i trikami dla skutecznego zabezpieczenia Twojej infrastruktury IT.<\/p>\n\n\n\n<!--more-->\n\n\n\n<div style=\"height:25px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<a name=\"tekst-1\"><\/a>\n\n\n<h2 class=\"wp-block-heading\" id=\"malware-grifthorse-trafil-juz-na-10-milionow-urzadzen-z-systemem-android-w-70-krajach\"><strong>Malware GriftHorse trafi\u0142 ju\u017c na 10 milion\u00f3w urz\u0105dze\u0144 z systemem Android w 70 krajach<\/strong><\/h2>\n\n\n<p>Cyberprzest\u0119pcy wykorzystuj\u0105 zupe\u0142nie nowy trojan o nazwie GriftHorse. Jak przebiega atak? Po zainfekowaniu urz\u0105dzenia aplikacja bombarduje telefon alertami, oferuj\u0105c za ich pomoc\u0105 darmowy prezent. Je\u015bli u\u017cytkownik kliknie w jeden z nich, zostanie przekierowany na witryn\u0119 o okre\u015blonej geolokalizacji gdzie jest nast\u0119pnie proszony o podanie numeru telefonu w celu weryfikacji. W rzeczywisto\u015bci jednak zapisuje si\u0119 on do us\u0142ugi sms premium, kt\u00f3ra obci\u0105\u017cy jego rachunek telefoniczny na oko\u0142o $ 42, czyli mniej wi\u0119cej 160 z\u0142 miesi\u0119cznie.&nbsp;&nbsp;<\/p>\n\n\n\n<p>Oszu\u015bci stworzyli oko\u0142o 200 autentycznie wygl\u0105daj\u0105cych aplikacji dla r\u00f3\u017cnych grup odbiorc\u00f3w, m.in. aplikacje lifestyle\u2019owe, rozrywka, r\u00f3\u017cnego typu narz\u0119dzia (np. t\u0142umacz), apki randkowe lub takie kt\u00f3re s\u0142u\u017c\u0105 do personalizacji urz\u0105dzenia. Skala jest naprawd\u0119 ogromna, co czyni t\u0119 kampani\u0119 najwi\u0119kszym oszustwem finansowym 2021 roku.<\/p>\n\n\n\n<p><a href=\"https:\/\/www.hackread.com\/grifthorse-android-malware-70-countries\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Dowiedz si\u0119 wi\u0119cej<\/a><\/p>\n\n\n\n<div style=\"height:25px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<a name=\"tekst-2\"><\/a>\n\n\n<h2 class=\"wp-block-heading\" id=\"nobelium-wykorzystuje-customowy-malware-do-tworzenia-backdoorow-w-domenach-windows\"><strong>Nobelium wykorzystuje \u2018customowy\u2019 malware do tworzenia backdoor\u00f3w w domenach Windows<\/strong><\/h2>\n\n\n<p>Firma Microsoft odkry\u0142a nowy malware wykorzystywany przez grup\u0119 hakersk\u0105 Nobelium \u2013 t\u0119 sam\u0105, kt\u00f3ra stoi za zesz\u0142orocznym g\u0142o\u015bnym atakiem SolarWinds \u2013 do wdra\u017cania dodatkowych payloads i kradzie\u017cy poufnych danych z serwer\u00f3w Active Directory Federation Services (AD FS). Z\u0142o\u015bliwe oprogramowanie, nazwane FoggyWeb, jest pasywnym i wysoce ukierunkowanym backdoorem, kt\u00f3ry wykorzystuje token SAML (Security Assertion Markup Language). Malware zosta\u0142 zaprojektowany w taki spos\u00f3b, aby pom\u00f3c przest\u0119pcom w zdalnym eksfiltrowaniu poufnych informacji przez skonfigurowanie odbiornik\u00f3w HTTP dla identyfikator\u00f3w URI zdefiniowanych przez atakuj\u0105cych w celu przechwycenia \u017c\u0105da\u0144 GET\/POST wysy\u0142anych do serwera AD FS.<\/p>\n\n\n\n<p>Organizacjom, kt\u00f3re podejrzewaj\u0105, \u017ce mog\u0142y pa\u015b\u0107 ofiar\u0105 ataku zaleca si\u0119 przeprowadzenie audytu infrastruktury lokalnej i tej chmurowej. Administratorzy powinni zwr\u00f3ci\u0107 uwag\u0119 na konfiguracj\u0119 ustawie\u0144 u\u017cytkownika i aplikacji, regu\u0142 przekazywania i innych zmian wprowadzonych przez atakuj\u0105cych w celu zachowania dost\u0119pu do naruszonej infrastruktury. Zaleca si\u0119 r\u00f3wnie\u017c usuni\u0119cie dost\u0119p\u00f3w u\u017cytkownik\u00f3w i aplikacji, ich weryfikacj\u0119 i ponowne nadanie. Na koniec Microsoft proponuje r\u00f3wnie\u017c wdro\u017cenie w firmie hardware security mode (HSM).<\/p>\n\n\n\n<p><a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/microsoft-nobelium-uses-custom-malware-to-backdoor-windows-domains\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Dowiedz si\u0119 wi\u0119cej<\/a><\/p>\n\n\n\n<div style=\"height:25px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<a name=\"tekst-3\"><\/a>\n\n\n<h2 class=\"wp-block-heading\" id=\"blad-w-iphone-apple-pay-i-visa-pozwala-na-wykonywanie-platnosci-zblizeniowych-bez-wiedzy-uzytkownika\"><strong>B\u0142\u0105d w iPhone Apple Pay i Visa pozwala na wykonywanie p\u0142atno\u015bci zbli\u017ceniowych bez wiedzy u\u017cytkownika<\/strong><\/h2>\n\n\n<p>Z pomoc\u0105 wykrytej niedawno podatno\u015bci, atakuj\u0105cy s\u0105 w stanie omin\u0105\u0107 ekran blokady Apple iPhone, aby uzyska\u0107 dost\u0119p do us\u0142ug p\u0142atniczych i dokonywa\u0107 transakcji zbli\u017ceniowych. Luka wyst\u0119puje, gdy karta Visa zosta\u0142a skonfigurowana w trybie Express Transit w funkcji portfela iPhone&#8217;a. Tryb ekspresowy zosta\u0142 zaprojektowany z my\u015bl\u0105 o doje\u017cd\u017caj\u0105cych do pracy, kt\u00f3rzy mog\u0105 chcie\u0107 szybko skorzysta\u0107 z funkcji \u201edotknij i zap\u0142a\u0107\u201d, aby np. nie wstrzymywa\u0107 kolejki.<\/p>\n\n\n\n<p>B\u0142\u0105d w zabezpieczeniach to efekt wykorzystywania unikalnego kodu \u2013 nazywanego \u201emagicznymi bajtami\u201d \u2013 kt\u00f3ry jest nadawany przez bramki tranzytowe w celu odblokowania Apple Pay. Atak mo\u017ce zosta\u0107 wywo\u0142any przez przechwycenie i rozes\u0142anie wspomnianych \u201emagicznych bajt\u00f3w\u201d, a nast\u0119pnie zmodyfikowanie zestawu zmiennych.<\/p>\n\n\n\n<p><a href=\"https:\/\/www.zdnet.com\/article\/researchers-discover-bypass-bug-in-iphone-visa-apple-pay-to-make-contactless-payments\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Dowiedz si\u0119 wi\u0119cej<\/a><\/p>\n\n\n\n<div style=\"height:25px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<a name=\"tekst-4\"><\/a>\n\n\n<h2 class=\"wp-block-heading\" id=\"pozostale-newsy-ze-swiata-it\">Pozosta\u0142e newsy ze \u015bwiata IT<\/h2>\n\n\n<ol class=\"wp-block-list\" id=\"block-2b702560-5605-4f89-8d6a-87ed165dc2df\"><li>BloodyStealer: Advanced New Trojan Targets Accounts of Popular Online Gaming Platforms (<a href=\"https:\/\/www.darkreading.com\/attacks-breaches\/bloodystealer-advanced-new-trojan-targets-accounts-of-popular-online-gaming-platforms\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Dark Reading<\/a>)<\/li><li>Urgent Chrome security update released to patch widely exploited 0-day (<a href=\"https:\/\/www.hackread.com\/chrome-security-update-released-patch-0-day\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Hack Read<\/a>)<\/li><li>ERMAC, a new banking Trojan that borrows the code from Cerberus malware (<a href=\"https:\/\/securityaffairs.co\/wordpress\/122657\/malware\/ermac-banking-trojan.html\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Security Affairs<\/a>)<\/li><li>Scalper bots are now targeting graphics card vendors (<a href=\"https:\/\/www.zdnet.com\/article\/scalper-bots-are-now-targeting-graphics-card-vendors\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">ZDNet<\/a>)<\/li><li>A New Jupyter Malware Version is Being Distributed via MSI Installers (<a href=\"https:\/\/thehackernews.com\/2021\/09\/a-new-jupyter-malware-version-is-being.html\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">The Hacker News<\/a>)<\/li><li>New Tomiris Backdoor Found Linked to Hackers Behind SolarWinds Cyberattack (<a href=\"https:\/\/thehackernews.com\/2021\/09\/new-tomiris-backdoor-found-linked-to.html\" target=\"_blank\" rel=\"noreferrer noopener\">The Hacker News<\/a>)<\/li><li>Defend against zero-day exploits with Microsoft Defender Application Guard (<a href=\"https:\/\/www.microsoft.com\/security\/blog\/2021\/09\/29\/defend-against-zero-day-exploits-with-microsoft-defender-application-guard\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Microsoft Blog<\/a>)<\/li><li>Fortinet, Shopify and more report issues after root CA certificate from Lets Encrypt expires (<a href=\"https:\/\/www.zdnet.com\/article\/fortinet-shopify-others-report-issues-after-root-ca-certificate-from-lets-encrypt-expires\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">ZDNet<\/a>)<\/li><li>Update Google Chrome ASAP to Patch 2 New Actively Exploited Zero-Day Flaws (<a href=\"https:\/\/thehackernews.com\/2021\/09\/update-google-chrome-asap-to-patch-2.html\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">The Hacker News<\/a>)<\/li><li>QNAP fixes bug that let attackers run malicious commands remotely (<a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/qnap-fixes-bug-that-let-attackers-run-malicious-commands-remotely\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Bleeping Computer<\/a>)<\/li><\/ol>\n","protected":false},"excerpt":{"rendered":"<p>Witamy w&nbsp;Centrum Bezpiecze\u0144stwa! Naszym cotygodniowym przegl\u0105dzie precyzyjnie wyselekcjonowanych news\u00f3w o najbardziej niszczycielskich cyberatakach, krytycznych lukach i najg\u0142o\u015bniejszych wyciekach danych.&nbsp; Nie przegap tego i rozpocznij tydzie\u0144 cyber-bezpiecznie!&nbsp;Zapisz si\u0119 na newsletter, a w ka\u017cdy poniedzia\u0142ek dostarczymy go na Twoj\u0105 skrzynk\u0119 mailow\u0105. Dodatkowo otrzymasz porcj\u0119 najgor\u0119tszych wiadomo\u015bci firmowych oraz dost\u0119p do wybranych artyku\u0142\u00f3w technicznych przygotowanych przez naszych ekspert\u00f3w z poradami i trikami dla skutecznego zabezpieczenia Twojej infrastruktury IT.<\/p>\n","protected":false},"author":1,"featured_media":1597,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[436],"tags":[],"class_list":["post-4520","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersec-news-pl","post--single"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Malware GriftHorse \/ Nowy backdoor w domenach Windows \/ B\u0142\u0105d w iPhone Apple Pay i Visa - Xopero Blog<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/\" \/>\n<meta property=\"og:locale\" content=\"pl_PL\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Malware GriftHorse \/ Nowy backdoor w domenach Windows \/ B\u0142\u0105d w iPhone Apple Pay i Visa - Xopero Blog\" \/>\n<meta property=\"og:description\" content=\"Witamy w&nbsp;Centrum Bezpiecze\u0144stwa! Naszym cotygodniowym przegl\u0105dzie precyzyjnie wyselekcjonowanych news\u00f3w o najbardziej niszczycielskich cyberatakach, krytycznych lukach i najg\u0142o\u015bniejszych wyciekach danych.&nbsp; Nie przegap tego i rozpocznij tydzie\u0144 cyber-bezpiecznie!&nbsp;Zapisz si\u0119 na newsletter, a w ka\u017cdy poniedzia\u0142ek dostarczymy go na Twoj\u0105 skrzynk\u0119 mailow\u0105. Dodatkowo otrzymasz porcj\u0119 najgor\u0119tszych wiadomo\u015bci firmowych oraz dost\u0119p do wybranych artyku\u0142\u00f3w technicznych przygotowanych przez naszych ekspert\u00f3w z poradami i trikami dla skutecznego zabezpieczenia Twojej infrastruktury IT.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/\" \/>\n<meta property=\"og:site_name\" content=\"Xopero Blog\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/XoperoSoftware\/\" \/>\n<meta property=\"article:published_time\" content=\"2021-10-04T06:00:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/xopero.com\/blog\/wp-content\/uploads\/2019\/07\/blogg2.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1843\" \/>\n\t<meta property=\"og:image:height\" content=\"481\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"xopero_blogger\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@xoperobackup\" \/>\n<meta name=\"twitter:site\" content=\"@xoperobackup\" \/>\n<meta name=\"twitter:label1\" content=\"Napisane przez\" \/>\n\t<meta name=\"twitter:data1\" content=\"xopero_blogger\" \/>\n\t<meta name=\"twitter:label2\" content=\"Szacowany czas czytania\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minuty\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/pl\\\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/pl\\\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\\\/\"},\"author\":{\"name\":\"xopero_blogger\",\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/#\\\/schema\\\/person\\\/cab3d3cda6e8a1aecfa8abea8827b17c\"},\"headline\":\"Malware GriftHorse \\\/ Nowy backdoor w domenach Windows \\\/ B\u0142\u0105d w iPhone Apple Pay i Visa\",\"datePublished\":\"2021-10-04T06:00:00+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/pl\\\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\\\/\"},\"wordCount\":740,\"publisher\":{\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/pl\\\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/xopero.com\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/07\\\/blogg2.png\",\"articleSection\":[\"Cybersec news\"],\"inLanguage\":\"pl-PL\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/pl\\\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\\\/\",\"url\":\"https:\\\/\\\/xopero.com\\\/blog\\\/pl\\\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\\\/\",\"name\":\"Malware GriftHorse \\\/ Nowy backdoor w domenach Windows \\\/ B\u0142\u0105d w iPhone Apple Pay i Visa - Xopero Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/pl\\\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/pl\\\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/xopero.com\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/07\\\/blogg2.png\",\"datePublished\":\"2021-10-04T06:00:00+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/pl\\\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\\\/#breadcrumb\"},\"inLanguage\":\"pl-PL\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/xopero.com\\\/blog\\\/pl\\\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"pl-PL\",\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/pl\\\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\\\/#primaryimage\",\"url\":\"https:\\\/\\\/xopero.com\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/07\\\/blogg2.png\",\"contentUrl\":\"https:\\\/\\\/xopero.com\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/07\\\/blogg2.png\",\"width\":1843,\"height\":481},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/pl\\\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Strona g\u0142\u00f3wna\",\"item\":\"https:\\\/\\\/xopero.com\\\/blog\\\/pl\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Malware GriftHorse \\\/ Nowy backdoor w domenach Windows \\\/ B\u0142\u0105d w iPhone Apple Pay i Visa\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/xopero.com\\\/blog\\\/\",\"name\":\"Xopero Blog\",\"description\":\"Backup &amp; Recovery\",\"publisher\":{\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/xopero.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"pl-PL\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/#organization\",\"name\":\"Xopero Software\",\"url\":\"https:\\\/\\\/xopero.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"pl-PL\",\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/xopero.com\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/03\\\/xopero-niebieskie.png\",\"contentUrl\":\"https:\\\/\\\/xopero.com\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/03\\\/xopero-niebieskie.png\",\"width\":500,\"height\":132,\"caption\":\"Xopero Software\"},\"image\":{\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/XoperoSoftware\\\/\",\"https:\\\/\\\/x.com\\\/xoperobackup\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/opero-sp-z-o-o-\\\/?viewAsMember=true\",\"https:\\\/\\\/www.youtube.com\\\/channel\\\/UCRPWyeo1apjSgkDW3hZpB9g?reload=9\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/xopero.com\\\/blog\\\/#\\\/schema\\\/person\\\/cab3d3cda6e8a1aecfa8abea8827b17c\",\"name\":\"xopero_blogger\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"pl-PL\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/49b4a2bbd1b6df951fc556f7478f5fb20bb41aeebf08473e459b28c5da9947f7?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/49b4a2bbd1b6df951fc556f7478f5fb20bb41aeebf08473e459b28c5da9947f7?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/49b4a2bbd1b6df951fc556f7478f5fb20bb41aeebf08473e459b28c5da9947f7?s=96&d=mm&r=g\",\"caption\":\"xopero_blogger\"},\"sameAs\":[\"https:\\\/\\\/xopero.com\"],\"url\":\"https:\\\/\\\/xopero.com\\\/blog\\\/author\\\/xopero_blogger\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Malware GriftHorse \/ Nowy backdoor w domenach Windows \/ B\u0142\u0105d w iPhone Apple Pay i Visa - Xopero Blog","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/","og_locale":"pl_PL","og_type":"article","og_title":"Malware GriftHorse \/ Nowy backdoor w domenach Windows \/ B\u0142\u0105d w iPhone Apple Pay i Visa - Xopero Blog","og_description":"Witamy w&nbsp;Centrum Bezpiecze\u0144stwa! Naszym cotygodniowym przegl\u0105dzie precyzyjnie wyselekcjonowanych news\u00f3w o najbardziej niszczycielskich cyberatakach, krytycznych lukach i najg\u0142o\u015bniejszych wyciekach danych.&nbsp; Nie przegap tego i rozpocznij tydzie\u0144 cyber-bezpiecznie!&nbsp;Zapisz si\u0119 na newsletter, a w ka\u017cdy poniedzia\u0142ek dostarczymy go na Twoj\u0105 skrzynk\u0119 mailow\u0105. Dodatkowo otrzymasz porcj\u0119 najgor\u0119tszych wiadomo\u015bci firmowych oraz dost\u0119p do wybranych artyku\u0142\u00f3w technicznych przygotowanych przez naszych ekspert\u00f3w z poradami i trikami dla skutecznego zabezpieczenia Twojej infrastruktury IT.","og_url":"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/","og_site_name":"Xopero Blog","article_publisher":"https:\/\/www.facebook.com\/XoperoSoftware\/","article_published_time":"2021-10-04T06:00:00+00:00","og_image":[{"width":1843,"height":481,"url":"https:\/\/xopero.com\/blog\/wp-content\/uploads\/2019\/07\/blogg2.png","type":"image\/png"}],"author":"xopero_blogger","twitter_card":"summary_large_image","twitter_creator":"@xoperobackup","twitter_site":"@xoperobackup","twitter_misc":{"Napisane przez":"xopero_blogger","Szacowany czas czytania":"3 minuty"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/#article","isPartOf":{"@id":"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/"},"author":{"name":"xopero_blogger","@id":"https:\/\/xopero.com\/blog\/#\/schema\/person\/cab3d3cda6e8a1aecfa8abea8827b17c"},"headline":"Malware GriftHorse \/ Nowy backdoor w domenach Windows \/ B\u0142\u0105d w iPhone Apple Pay i Visa","datePublished":"2021-10-04T06:00:00+00:00","mainEntityOfPage":{"@id":"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/"},"wordCount":740,"publisher":{"@id":"https:\/\/xopero.com\/blog\/#organization"},"image":{"@id":"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/#primaryimage"},"thumbnailUrl":"https:\/\/xopero.com\/blog\/wp-content\/uploads\/2019\/07\/blogg2.png","articleSection":["Cybersec news"],"inLanguage":"pl-PL"},{"@type":"WebPage","@id":"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/","url":"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/","name":"Malware GriftHorse \/ Nowy backdoor w domenach Windows \/ B\u0142\u0105d w iPhone Apple Pay i Visa - Xopero Blog","isPartOf":{"@id":"https:\/\/xopero.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/#primaryimage"},"image":{"@id":"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/#primaryimage"},"thumbnailUrl":"https:\/\/xopero.com\/blog\/wp-content\/uploads\/2019\/07\/blogg2.png","datePublished":"2021-10-04T06:00:00+00:00","breadcrumb":{"@id":"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/#breadcrumb"},"inLanguage":"pl-PL","potentialAction":[{"@type":"ReadAction","target":["https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/"]}]},{"@type":"ImageObject","inLanguage":"pl-PL","@id":"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/#primaryimage","url":"https:\/\/xopero.com\/blog\/wp-content\/uploads\/2019\/07\/blogg2.png","contentUrl":"https:\/\/xopero.com\/blog\/wp-content\/uploads\/2019\/07\/blogg2.png","width":1843,"height":481},{"@type":"BreadcrumbList","@id":"https:\/\/xopero.com\/blog\/pl\/malware-grifthorse-nowy-backdoor-w-domenach-windows-blad-w-iphone-apple-pay-i-visa\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Strona g\u0142\u00f3wna","item":"https:\/\/xopero.com\/blog\/pl\/"},{"@type":"ListItem","position":2,"name":"Malware GriftHorse \/ Nowy backdoor w domenach Windows \/ B\u0142\u0105d w iPhone Apple Pay i Visa"}]},{"@type":"WebSite","@id":"https:\/\/xopero.com\/blog\/#website","url":"https:\/\/xopero.com\/blog\/","name":"Xopero Blog","description":"Backup &amp; Recovery","publisher":{"@id":"https:\/\/xopero.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/xopero.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"pl-PL"},{"@type":"Organization","@id":"https:\/\/xopero.com\/blog\/#organization","name":"Xopero Software","url":"https:\/\/xopero.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"pl-PL","@id":"https:\/\/xopero.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/xopero.com\/blog\/wp-content\/uploads\/2019\/03\/xopero-niebieskie.png","contentUrl":"https:\/\/xopero.com\/blog\/wp-content\/uploads\/2019\/03\/xopero-niebieskie.png","width":500,"height":132,"caption":"Xopero Software"},"image":{"@id":"https:\/\/xopero.com\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/XoperoSoftware\/","https:\/\/x.com\/xoperobackup","https:\/\/www.linkedin.com\/company\/opero-sp-z-o-o-\/?viewAsMember=true","https:\/\/www.youtube.com\/channel\/UCRPWyeo1apjSgkDW3hZpB9g?reload=9"]},{"@type":"Person","@id":"https:\/\/xopero.com\/blog\/#\/schema\/person\/cab3d3cda6e8a1aecfa8abea8827b17c","name":"xopero_blogger","image":{"@type":"ImageObject","inLanguage":"pl-PL","@id":"https:\/\/secure.gravatar.com\/avatar\/49b4a2bbd1b6df951fc556f7478f5fb20bb41aeebf08473e459b28c5da9947f7?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/49b4a2bbd1b6df951fc556f7478f5fb20bb41aeebf08473e459b28c5da9947f7?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/49b4a2bbd1b6df951fc556f7478f5fb20bb41aeebf08473e459b28c5da9947f7?s=96&d=mm&r=g","caption":"xopero_blogger"},"sameAs":["https:\/\/xopero.com"],"url":"https:\/\/xopero.com\/blog\/author\/xopero_blogger\/"}]}},"post_mailing_queue_ids":[],"_links":{"self":[{"href":"https:\/\/xopero.com\/blog\/wp-json\/wp\/v2\/posts\/4520","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/xopero.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/xopero.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/xopero.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/xopero.com\/blog\/wp-json\/wp\/v2\/comments?post=4520"}],"version-history":[{"count":1,"href":"https:\/\/xopero.com\/blog\/wp-json\/wp\/v2\/posts\/4520\/revisions"}],"predecessor-version":[{"id":4521,"href":"https:\/\/xopero.com\/blog\/wp-json\/wp\/v2\/posts\/4520\/revisions\/4521"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/xopero.com\/blog\/wp-json\/wp\/v2\/media\/1597"}],"wp:attachment":[{"href":"https:\/\/xopero.com\/blog\/wp-json\/wp\/v2\/media?parent=4520"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/xopero.com\/blog\/wp-json\/wp\/v2\/categories?post=4520"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/xopero.com\/blog\/wp-json\/wp\/v2\/tags?post=4520"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}