FreshRSS

πŸ”’
❌ Secure Planet Training Courses Updated For 2019 - Click Here
There are new available articles, click to refresh the page.
☐ β˜† βœ‡ WIRED

Google Ad-Tech Users Can Target National Security β€˜Decision Makers’ and People With Chronic Diseases

By: Dell Cameron, Dhruv Mehrotra β€” February 20th 2025 at 12:21
Google enables marketers to target people with serious illnesses and crushing debtβ€”against its policiesβ€”as well as the makers of classified defense technology, a WIRED investigation has found.
☐ β˜† βœ‡ The Hacker News

Major Security Flaws Expose Keystrokes of Over 1 Billion Chinese Keyboard App Users

By: Newsroom β€” April 24th 2024 at 09:36
Security vulnerabilities uncovered in cloud-based pinyin keyboard apps could be exploited to reveal users' keystrokes to nefarious actors. The findings come from the Citizen Lab, which discovered weaknesses in eight of nine apps from vendors like Baidu, Honor, iFlytek, OPPO, Samsung, Tencent, Vivo, and Xiaomi. The only vendor whose keyboard app did not have any security
☐ β˜† βœ‡ The Hacker News

U.S. Imposes Visa Restrictions on 13 Linked to Commercial Spyware Misuse

By: Newsroom β€” April 23rd 2024 at 06:43
The U.S. Department of State on Monday said it's taking steps to impose visa restrictions on 13 individuals who are allegedly involved in the development and sale of commercial spyware or who are immediately family members of those involved in such businesses. "These individuals have facilitated or derived financial benefit from the misuse of this technology, which
☐ β˜† βœ‡ The Hacker News

Apple Updates Spyware Alert System to Warn Victims of Mercenary Attacks

By: Newsroom β€” April 11th 2024 at 06:44
Apple on Wednesday revised its documentation pertaining to its mercenary spyware threat notification system to mention that it alerts users when they may have been individually targeted by such attacks. It also specifically called out companies like NSO Group for developing commercial surveillance tools such as Pegasus that are used by state actors to pull off "individually targeted
☐ β˜† βœ‡ The Hacker News

Vultur Android Banking Trojan Returns with Upgraded Remote Control Capabilities

By: Newsroom β€” April 1st 2024 at 06:04
The Android banking trojan known as Vultur has resurfaced with a suite of new features and improved anti-analysis and detection evasion techniques, enabling its operators to remotely interact with a mobile device and harvest sensitive data. "Vultur has also started masquerading more of its malicious activity by encrypting its C2 communication, using multiple encrypted payloads that are decrypted
☐ β˜† βœ‡ WIRED

The UK’s GPS Tagging of Migrants Has Been Ruled Illegal

By: Morgan Meaker β€” March 1st 2024 at 00:01
The UK’s privacy regulator says the government did not take into account the intrusiveness of ankle tags that continuously monitor a person’s location.
☐ β˜† βœ‡ The Hacker News

President Biden Blocks Mass Transfer of Personal Data to High-Risk Nations

By: Newsroom β€” February 29th 2024 at 05:03
U.S. President Joe Biden has issued an Executive Order that prohibits the mass transfer of citizens' personal data to countries of concern. The Executive Order also "provides safeguards around other activities that can give those countries access to Americans' sensitive data," the White House said in a statement. This includes sensitive information such as genomic data, biometric data,
☐ β˜† βœ‡ The Hacker News

Meta Warns of 8 Spyware Firms Targeting iOS, Android, and Windows Devices

By: Newsroom β€” February 19th 2024 at 13:14
Meta Platforms said it took a series of steps to curtail malicious activity from eight different firms based in Italy, Spain, and the United Arab Emirates (U.A.E.) operating in the surveillance-for-hire industry. The findings are part of its Adversarial Threat Report for the fourth quarter of 2023. The spyware targeted iOS, Android, and Windows devices. "Their various malware included
☐ β˜† βœ‡ The Hacker News

Iranian Hackers Target Middle East Policy Experts with New BASICSTAR Backdoor

By: Newsroom β€” February 19th 2024 at 04:39
The Iranian-origin threat actor known as Charming Kitten has been linked to a new set of attacks aimed at Middle East policy experts with a new backdoor called BASICSTAR by creating a fake webinar portal. Charming Kitten, also called APT35, CharmingCypress, Mint Sandstorm, TA453, and Yellow Garuda, has a history of orchestrating a wide range of social engineering campaigns that cast a
☐ β˜† βœ‡ The Hacker News

Global Coalition and Tech Giants Unite Against Commercial Spyware Abuse

By: Newsroom β€” February 7th 2024 at 09:45
A coalition of dozens of countries, including France, the U.K., and the U.S., along with tech companies such as Google, MDSec, Meta, and Microsoft, have signed a joint agreement to curb the abuse of commercial spyware to commit human rights abuses. The initiative, dubbed the Pall Mall Process, aims to tackle the proliferation and irresponsible use of commercial cyber intrusion tools by
☐ β˜† βœ‡ The Hacker News

U.S. Imposes Visa Restrictions on those Involved in Illegal Spyware Surveillance

By: Newsroom β€” February 6th 2024 at 05:00
The U.S. State Department said it's implementing a new policy that imposes visa restrictions on individuals who are linked to the illegal use of commercial spyware to surveil civil society members. "The misuse of commercial spyware threatens privacy and freedoms of expression, peaceful assembly, and association," Secretary of State Antony Blinken said. "Such targeting has been
☐ β˜† βœ‡ The Hacker News

Pegasus Spyware Targeted iPhones of Journalists and Activists in Jordan

By: Newsroom β€” February 5th 2024 at 07:37
The iPhones belonging to nearly three dozen journalists, activists, human rights lawyers, and civil society members in Jordan have been targeted with NSO Group's Pegasus spyware, according to joint findings from Access Now and the Citizen Lab. Nine of the 35 individuals have been publicly confirmed as targeted, out of whom six had their devices compromised with the mercenary
☐ β˜† βœ‡ The Hacker News

NSA Admits Secretly Buying Your Internet Browsing Data without Warrants

By: Newsroom β€” January 29th 2024 at 06:59
The U.S. National Security Agency (NSA) has admitted to buying internet browsing records from data brokers to identify the websites and apps Americans use that would otherwise require a court order, U.S. Senator Ron Wyden said last week. "The U.S. government should not be funding and legitimizing a shady industry whose flagrant violations of Americans' privacy are not just unethical, but illegal
☐ β˜† βœ‡ The Hacker News

Experts Detail Multi-Million Dollar Licensing Model of Predator Spyware

By: Newsroom β€” December 21st 2023 at 16:48
A new analysis of the sophisticated commercial spyware called Predator has revealed that its ability to persist between reboots is offered as an "add-on feature" and that it depends on the licensing options opted by a customer. "In 2021, Predator spyware couldn't survive a reboot on the infected Android system (it had it on iOS)," Cisco Talos researchers Mike Gentile, Asheer Malhotra, and Vitor
☐ β˜† βœ‡ The Hacker News

Indian Hack-for-Hire Group Targeted U.S., China, and More for Over 10 Years

By: Newsroom β€” November 20th 2023 at 06:42
An Indian hack-for-hire group targeted the U.S., China, Myanmar, Pakistan, Kuwait, and other countries as part of a wide-ranging espionage, surveillance, and disruptive operation for over a decade. TheΒ Appin Software SecurityΒ (aka Appin Security Group), according to an in-depth analysis from SentinelOne, began as an educational startup offering offensive security training programs, while
☐ β˜† βœ‡ The Hacker News

Researchers Link DragonEgg Android Spyware to LightSpy iOS Surveillanceware

By: Newsroom β€” October 4th 2023 at 15:09
New findings have identified connections between an Android spyware called DragonEgg and another sophisticated modular iOS surveillanceware tool named LightSpy. DragonEgg, alongside WyrmSpy (aka AndroidControl), wasΒ first disclosedΒ by Lookout in July 2023 as a strain of malware capable of gathering sensitive data from Android devices. It was attributed to the Chinese nation-state group APT41. On
☐ β˜† βœ‡ Naked Security

S3 Ep147: What if you type in your password during a meeting?

By: Paul Ducklin β€” August 10th 2023 at 13:34
Latest episode - listen now! (Full transcript inside.)

☐ β˜† βœ‡ Naked Security

Serious Security: Why learning to touch-type could protect you from audio snooping

By: Paul Ducklin β€” August 8th 2023 at 18:51
Fast, quiet, smooth, consistent and low impact... why true hacker-grade touch-typing might keep you more secure.

☐ β˜† βœ‡ The Hacker News

Apple Threatens to Pull iMessage and FaceTime from U.K. Amid Surveillance Demands

By: THN β€” July 22nd 2023 at 05:36
Apple has warned that it would rather stop offering iMessage and FaceTime services in the U.K. than bowing down to government pressure in response to new proposals that seek to expand digital surveillance powers available to state intelligence agencies. The development, firstΒ reportedΒ by BBC News, makes the iPhone maker the latest to join the chorus of voices protesting against forthcoming
☐ β˜† βœ‡ WIRED

The US Is Openly Stockpiling Dirt on All Its Citizens

By: Dell Cameron β€” June 12th 2023 at 19:23
A newly declassified report from the Office of the Director of National Intelligence reveals that the federal government is buying troves of data about Americans.
☐ β˜† βœ‡ The Hacker News

GoldenJackal: New Threat Group Targeting Middle Eastern and South Asian Governments

By: Ravie Lakshmanan β€” May 23rd 2023 at 15:30
Government and diplomatic entities in the Middle East and South Asia are the target of a new advanced persistent threat actor namedΒ GoldenJackal. Russian cybersecurity firm Kaspersky, which has beenΒ keeping tabsΒ on the group's activities since mid-2020, characterized the adversary as both capable and stealthy. The targeting scope of the campaign is focused on Afghanistan, Azerbaijan, Iran, Iraq,
☐ β˜† βœ‡ The Hacker News

Hackers Exploiting 5-year-old Unpatched Vulnerability in TBK DVR Devices

By: Ravie Lakshmanan β€” May 3rd 2023 at 07:30
Threat actors are actively exploiting an unpatched five-year-old flaw impacting TBK digital video recording (DVR) devices, according to an advisory issued by Fortinet FortiGuard Labs. The vulnerability in question isΒ CVE-2018-9995Β (CVSS score: 9.8), a critical authentication bypass issue that could be exploited by remote actors to gain elevated permissions. "The 5-year-old vulnerability (CVE-
☐ β˜† βœ‡ The Hacker News

BouldSpy Android Spyware: Iranian Government's Alleged Tool for Spying on Minority Groups

By: Ravie Lakshmanan β€” May 2nd 2023 at 11:56
A new Android surveillanceware possibly used by the Iranian government has been used to spy on over 300 individuals belonging to minority groups. The malware, dubbedΒ BouldSpy, has been attributed with moderate confidence to the Law Enforcement Command of the Islamic Republic of Iran (FARAJA). Targeted victims include Iranian Kurds, Baluchis, Azeris, and Armenian Christian groups. "The spyware
☐ β˜† βœ‡ The Hacker News

Israel-based Spyware Firm QuaDream Targets High-Risk iPhones with Zero-Click Exploit

By: Ravie Lakshmanan β€” April 12th 2023 at 11:58
Threat actors using hacking tools from an Israeli surveillanceware vendor named QuaDream targeted at least five members of civil society in North America, Central Asia, Southeast Asia, Europe, and the Middle East. According to findings from a group of researchers from the Citizen Lab, the spyware campaign was directed against journalists, political opposition figures, and an NGO worker in 2021.
☐ β˜† βœ‡ The Hacker News

President Biden Signs Executive Order Restricting Use of Commercial Spyware

By: Ravie Lakshmanan β€” March 28th 2023 at 08:55
U.S. President Joe Biden on MondayΒ signed an executive orderΒ that restricts the use of commercial spyware by federal government agencies. The order said the spyware ecosystem "poses significant counterintelligence or security risks to the United States Government or significant risks of improper use by a foreign government or foreign person." It also seeks to ensure that the government's use of
☐ β˜† βœ‡ WIRED

They Posted Porn on Twitter. German Authorities Called the Cops

By: Matt Burgess β€” March 27th 2023 at 06:00
Regulators are using an AI system to scan websites and messaging apps to find pornography. Creators face fines and potential prison sentences.
☐ β˜† βœ‡ Naked Security

7 cybersecurity tips for your summer vacation!

By: Paul Ducklin β€” July 15th 2022 at 16:23
Here you go - seven thoughtful cybersecurity tips to help you travel safely...

☐ β˜† βœ‡ Naked Security

Murder suspect admits she tracked cheating partner with hidden AirTag

By: Paul Ducklin β€” June 14th 2022 at 16:49
O! What a tangled web we weave, when first we practise to deceive.

☐ β˜† βœ‡ Naked Security

Clearview AI face-matching service set to be fined over $20m

By: Paul Ducklin β€” November 30th 2021 at 19:13
Scraping data for a facial recognition service? "That's unlawful", concluded both the British and the Australians.

❌