Have some tips? Write it down and share it to your friends!
Click Login Now button to start!
News
Cyber Security Related News
A U.S. judge has mandated that NSO Group relinquish its source code for Pegasus and other remote access trojans to Meta as part of Meta's ongoing legal dispute with the Israeli spyware vendor.
This decision represents a significant legal triumph for Meta, which initiated the lawsuit in October 2019, accusing NSO Group of exploiting its infrastructure to distribute spyware to roughly 1,400...
March 4, 2024 22:13 (on 3/5/24) | 0 |
2 minutes read
Meta Platforms has disclosed a comprehensive set of measures aimed at curtailing the activities of eight companies operating within the surveillance industry across Italy, Spain, and the United Arab Emirates. These actions were detailed in Meta's Adversarial Threat Report for the fourth quarter of 2023 and were specifically designed to address the proliferation of spyware targeting devices running iOS, Android, and Windows operating systems. The...
February 19, 2024 19:47 (on 2/20/24) | 2 |
3 minutes read
Since early 2023, a clandestine threat group known as ResumeLooters has been systematically targeting employment agencies and retail companies, predominantly located within the Asia-Pacific (APAC) region. This group's nefarious activities, previously undocumented, have caught the attention of cybersecurity experts at Singapore-based Group-IB. Their analysis reveals a sophisticated operation aimed at stealing sensitive data for financial...
February 12, 2024 20:50 (on 2/13/24) | 0 |
2 minutes read
Google has launched a new pilot program in Singapore aimed at bolstering security measures against the installation of certain Android apps that exploit permissions to gain unauthorized access to sensitive data and one-time passwords. This initiative, integrated into Google Play Protect, seeks to automatically block the installation of such apps when users attempt to download them from external sources like web browsers, messaging apps, or file...
February 8, 2024 19:27 (on 2/9/24) | 0 |
2 minutes read
Chinese users face a targeted malvertising campaign through malicious Google ads promoting restricted messaging apps like Telegram. Malwarebytes' Jérôme Segura revealed that threat actors exploit Google advertiser accounts to create these deceptive ads, leading users to download Remote Administration Trojans (RATs). The ongoing campaign, known as FakeAPP, is a continuation of a prior assault that initially targeted Hong Kong users searching for...
January 29, 2024 20:18 (on 1/30/24) | 0 |
2 minutes read
On Friday, Microsoft publicly disclosed that it had fallen victim to a sophisticated nation-state attack targeting its corporate systems. This breach resulted in the unauthorized access and theft of emails and attachments belonging to senior executives, as well as individuals within the company's cybersecurity and legal departments. The orchestrator of this attack was identified as the Russian advanced persistent threat group Midnight Blizzard,...
January 22, 2024 20:42 (on 1/23/24) | 0 |
2 minutes read
Thousands of WordPress websites, utilizing an insecure version of the Popup Builder plugin, have fallen victim to a malware named Balada Injector. Discovered by Doctor Web in January 2023, the attack operates through periodic waves exploiting vulnerabilities in WordPress plugins. These attacks insert backdoors designed to redirect visitors to deceptive tech support pages, fake lottery winnings, and push notification scams. Sucuri's subsequent...
January 15, 2024 19:56 (on 1/16/24) | 1 |
2 minutes read
Cybersecurity researchers have recently brought to light a newly discovered threat to Apple macOS, identified as SpectralBlur. This backdoor shares a connection with a known malware family attributed to North Korean threat actors. SpectralBlur, described as a moderately capable backdoor, exhibits functionalities such as file uploads and downloads, shell execution, configuration updates, file deletion, hibernation, and sleep, all of which are...
January 8, 2024 21:08 (on 1/9/24) | 0 |
2 minutes read
Google has agreed to settle a class-action lawsuit, filed in June 2020, accusing the company of deceiving users who believed their internet activity remained private while using the "incognito" or "private" mode on web browsers. The lawsuit sought a minimum of $5 billion in damages, and the settlement terms have not been disclosed.
The plaintiffs claimed that Google violated federal wiretap...
January 2, 2024 19:35 (on 1/3/24) | 0 |
1 minute read
On December 13, 2023, MongoDB detected unauthorized access to certain corporate systems, leading to the exposure of customer account metadata and contact information. The company initiated an immediate investigation and activated incident response efforts. The unauthorized access had been ongoing for some time before discovery, but MongoDB stated it was not aware of any exposure to data stored in MongoDB Atlas.