---
title: "Cyber Security News Update, Week 40 of 2019 | DuoCircle"
description: "This week’s scams exploit people’s greed, desire to go on vacation and desire to be entertained. This first one is greed."
image: "https://www.duocircle.com/images/og-default.png"
canonical: "https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-40-of-2019/"
---

Quick Answer

Week 40 of 2019 covered active scams and two breaches. A travel-booking phishing campaign used cloned Booking.com and Airbnb pages to steal payment details from holiday shoppers. A Netflix scam email warned of a billing problem and routed victims to a fake login page that captured account credentials. The Phishing Phrontier highlighted attackers using legitimate file-sharing services like Google Drive and OneDrive to host malicious documents and bypass URL filtering. On the breach side, DoorDash disclosed unauthorized access affecting 4.9 million customers, drivers, and merchants, exposing names, email addresses, hashed passwords, partial card numbers, and driver license numbers for some Dashers. Several large YouTube creators reported coordinated account takeovers tied to phishing pages that bypassed two-factor authentication, with hijacked channels rebranded for cryptocurrency scam streams.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-40-of-2019%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Cyber%20Security%20News%20Update%2C%20Week%2040%20of%202019&url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-40-of-2019%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-40-of-2019%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-40-of-2019%2F&title=Cyber%20Security%20News%20Update%2C%20Week%2040%20of%202019 "Share on Reddit") [ ](mailto:?subject=Cyber%20Security%20News%20Update%2C%20Week%2040%20of%202019&body=Check out this article: undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-40-of-2019%2F "Share via Email") 

![Cyber Security](https://media.mailhop.org/duocircle/images/2019/10/spf-record-7939.jpg) 

This week’s scams exploit people’s greed, desire to go on vacation and desire to be entertained. This first one is greed. If you have an account with Yahoo, and most people do, then you probably received an email from them this week regarding their Security Breach Proposal Settlement. Or did you?

If there’s money to be had, you know the bad guys will jump on it. According to the security training firm [KnowBe4](https://blog.knowbe4.com/scam-of-the-week-yahoo-massive-data-breach-settlement-phishing-attacks), “_The bad guys are going to use the ‘urgency’ trick_. The settlement is a set amount, meaning there’s only so much cash to go around. If too many people sign up for the cash option, they will have to split the pool. If someone had to spend time or money dealing with identity theft or other problems they believe stemmed from the Yahoo hacks, they can file a claim for up to $25,000 in out-of-pocket losses. _All in all, enough bait to trick people._”

## Travel Booking Sites Phishing Scam

The next exploit uses fake online travel booking sites to trap travelers in **phishing attacks**. According to [iZOOlogic](https://www.izoologic.com/2019/09/27/fake-online-travel-booking-sites-trapping-travelers-to-phishing-attacks/), “Researchers were able to uncover multiple operations during the month of May while tracking the activity of malicious spammers and phishers. They found out that more than **8,000 phishing attacks** masquerades as offers from popular lodging platforms. It includes several email blasts appearing to come from a legitimate travel brand that signs up victims to paid mobile services.”

[![ phishing attacks](https://media.mailhop.org/duocircle/images/2019/10/spf-record-8145.jpg)](https://media.mailhop.org/duocircle/images/2019/10/spf-record-8145.jpg)

## Netflix Scam

Finally, it wouldn’t be a week if some hacker somewhere wasn’t trying to use Netflix to scam people. This time it’s the threat of having your Netflix subscription cancelled. Afterall, how long can most people go with their Netflix fix?

According to Hoax Slayer, the **phishing email** reads, “Netflix has never been able to solve the payment problem and pay your subscription. The email goes on to say that you can easily get your account back by clicking a ‘Reactivate the Subscription’ button.” This, of course, does not reactive your subscription but rather gets you phished. People with [email security service](/) are not affected by it.

## Phishing Phrontier

Often times compromising a computer requires a malicious file, which is usually an executable file type. Now, hackers have discovered an advanced malware **“fileless”** delivery technique making it more difficult to identify.

According to [Security Week](https://www.securityweek.com/malware-delivery-campaign-employs-advanced-fileless-techniques), “_The attack starts with the delivery of an HTML Application (HTA), most likely through compromised advertisements_. The file attempts to connect to a randomly named domain to download additional JavaScript code that attempts to retrieve content from the command and control (C&C) server.”

“_Over the past several weeks, thousands of machines were impacted by the campaign, most of them located in the United States and Europe_. Around 3% of the infected systems are within organizations, but the attack has mainly targeted consumers.”

## Body Count

This isn’t the first time [ransomware has closed a medical facility](/phishing-protection/how-one-successful-phishing-attack-lead-to-forced-early-retirement/#more-13780) and unfortunately, it probably won’t be the last. [News](https://www.securityweek.com/medical-practice-closing-permanently-after-ransomware-attack) this week that “Wood Ranch Medical, a small medical provider located in Simi Valley, CA, is closing after a **ransomware attack**. A statement explaining the incident and announcing the closure is all that is left on the firm’s website.**“**

“Very little information about the attack is provided in the statement on the website. It says the firm was the victim of a ransomware attack that resulted in its patients’ personal healthcare information being encrypted.**“**

## DoorDash Breach

Ever have your food delivered? By DoorDash? If the answers is yes, your data has probably been compromised. From [SC Magazine](https://www.scmagazine.com/home/security-news/data-breach/door-dash-data-breach-hits-4-9-million-customers-merchants-and-drivers/?utm%5Fsource=newsletter&utm%5Fmedium=email&utm%5Fcampaign=SCUS%5FNewswire%5F20190930&hmSubId=01xQvtS0ero1&email%5Fhash=0da939dab246e8101d6090def505f6f5&mpweb=1325-10455-1896988), “Food delivery service DoorDash confirmed a data breach affecting **4.9 million customers** and merchants took place in May and included general PII and partial payment card information.”

“The company learned in early September that a third-party vendor had been accessed on May 4, 2019 and was able to gain access to information including names, email addresses, delivery addresses, order history, phone numbers and hashed, salted passwords. Additionally, the driver’s license numbers of at least 100,000 Dashers were accessed and _the last four digits of some customer credit cards were also exposed, but not the full number or CVV_.”

[![Data breach](https://media.mailhop.org/duocircle/images/2019/10/spf-record-2631.jpg)](https://media.mailhop.org/duocircle/images/2019/10/spf-record-2631.jpg)

## YouTube Compromised

Have an account on YouTube? If the answers is yes, your may have been compromised. According to [SC Magazine](https://www.scmagazine.com/home/security-news/millions-of-youtube-accounts-hijacked-through-phishing-and-compromised-2fa/?utm%5Fsource=newsletter&utm%5Fmedium=email&utm%5Fcampaign=SCUS%5FNewswire%5F20190930&hmSubId=01xQvtS0ero1&email%5Fhash=0da939dab246e8101d6090def505f6f5&mpweb=1325-10350-1896988), “Millions of YouTube accounts \[were\] hijacked through phishing and compromised 2FA. Cybersecurity executives blamed YouTube’s continued use of multifactor authentication and relying on user credentials instead of more advanced forms authentication as the reason behind why **millions of accounts** were hijacked over the last few days.”

“The attackers used phishing attacks that convinced account owners to give up their Google account login credentials, used that information to enter the accounts and then re-assigned them to new owners. _Next the malicious actors changed the channel’s vanity URL so the legitimate owners never realized their account was hijacked_.”

And that’s the week that was.

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

Brad Slavin 

General Manager

General Manager at DuoCircle. Product strategy and commercial lead across the email security portfolio.

## Secure your email infrastructure

Protect, authenticate, and deliver. Contact our team to find the right solution.

[Contact Sales](/contact/) [Explore Products](/products/) 

Share this article

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-40-of-2019%2F) [ ](https://twitter.com/intent/tweet?text=Cyber%20Security%20News%20Update%2C%20Week%2040%20of%202019&url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-40-of-2019%2F) [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-40-of-2019%2F) Copy 

Related Articles

- [ ![spam](https://media.mailhop.org/duocircle/images/2021/07/sender-policy-framework-7535.jpg)  Alert: Fix SPF & DKIM Settings For Your Email Forwarding Set Up Through Microsoft o365 SMTP Server Or Your Emails May End Up In Spam News ](/blog/announcements/alert-fix-spf-dkim-settings-for-your-email-forwarding-set-up-through-microsoft-o365-smtp-server-or-your-emails-may-end-up-in-spam/)
- [ ![Spam](https://media.mailhop.org/duocircle/images/2016/05/spf-permerror-3256.jpg)  April Spam Filtering Uptime Report News ](/blog/announcements/april-spam-filtering-uptime-report/)
- [ ![Spam Filtering](https://media.mailhop.org/duocircle/images/2023/02/spf-record-tester-7226.jpg)  Changes to Spam Filtering Technology News ](/blog/announcements/changes-to-spam-filtering-technology/)
- [ ![Cyber Security](https://media.mailhop.org/duocircle/images/2020/01/spf-permerror-7312.jpg)  Cyber Security News Update, Week 1 of 2020 News ](/blog/announcements/cyber-security-news-update-week-1-of-2020/)

## Related Articles

[  News 3m  Alert: Fix SPF & DKIM Settings For Your Email Forwarding Set Up Through Microsoft o365 SMTP Server Or Your Emails May End Up In Spam  Jul 20, 2021 ](/blog/announcements/alert-fix-spf-dkim-settings-for-your-email-forwarding-set-up-through-microsoft-o365-smtp-server-or-your-emails-may-end-up-in-spam/)[  News 1m  April Spam Filtering Uptime Report  May 4, 2016 ](/blog/announcements/april-spam-filtering-uptime-report/)[  News 2m  Changes to Spam Filtering Technology  Feb 8, 2023 ](/blog/announcements/changes-to-spam-filtering-technology/)[  News 4m  Cyber Security News Update, Week 1 of 2020  Jan 3, 2020 ](/blog/announcements/cyber-security-news-update-week-1-of-2020/)

```json
{"@context":"https://schema.org","@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}],"sameAs":["https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.facebook.com/duocirclellc","https://www.g2.com/products/phish-protection-by-duocircle/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://support.duocircle.com"},"knowsAbout":["Email Security","Email Authentication","SPF","DKIM","DMARC","Phishing Protection","Spam Filtering","SMTP Relay","Email Deliverability","Email Forwarding"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DuoCircle LLC","url":"https://www.duocircle.com","description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cyber Security News Update, Week 40 of 2019","description":"This week’s scams exploit people’s greed, desire to go on vacation and desire to be entertained. This first one is greed.","url":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-40-of-2019/","datePublished":"2019-10-03T21:03:18.000Z","dateModified":"2025-05-16T11:19:16.000Z","dateCreated":"2019-10-03T21:03:18.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-40-of-2019/"},"articleSection":"announcements","keywords":"","wordCount":806,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2019/10/spf-record-7939.jpg","caption":"Cyber Security","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":2,"name":"News"},{"@type":"ListItem","position":3,"name":"Cyber Security News Update, Week 40 of 2019","item":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-40-of-2019/"}]}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://www.duocircle.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":3,"name":"News","item":"https://www.duocircle.comundefined"},{"@type":"ListItem","position":4,"name":"Cyber Security News Update, Week 40 of 2019","item":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-40-of-2019/"}]}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cyber Security News Update, Week 40 of 2019","description":"This week’s scams exploit people’s greed, desire to go on vacation and desire to be entertained. This first one is greed.","url":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-40-of-2019/","datePublished":"2019-10-03T21:03:18.000Z","dateModified":"2025-05-16T11:19:16.000Z","dateCreated":"2019-10-03T21:03:18.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-40-of-2019/"},"articleSection":"announcements","keywords":"","wordCount":806,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2019/10/spf-record-7939.jpg","caption":"Cyber Security","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```
