gcluley, to Cybersecurity
@gcluley@mastodon.green avatar

The White House is apparently considering a full ban of Kaspersky software throughout the United States, citing national security concerns.

https://edition.cnn.com/2024/04/09/politics/biden-administration-americans-russian-software/index.html

nono2357, to DarkWeb French
__Knut_, to iPhone German
@__Knut_@mastodon.online avatar
H3liumb0y, to Cybersecurity

"🔍 Kaspersky Unveils Scripts for Detecting Pegasus Spyware on iPhones 📱"

Kaspersky has developed scripts to detect Pegasus, Reign, and Predator spyware on iPhones. These scripts, written in Python (100% Python according to GitHub), analyze the Shutdown.log file in the iPhone's sysdiagnose archive for forensic artifacts indicative of these spywares. Infections leave traces in Shutdown.log, especially in the path "/private/var/db/". These scripts, available for macOS, Windows, and Linux, simplify spyware detection by extracting, analyzing, and parsing Shutdown.log. Open-source and under an MIT license, you can find them on GitHub.

Source: Security.NL, GitHub

Tags: 🕵️‍♂️🔐📲

violetblue, to Cybersecurity
@violetblue@mastodon.social avatar

New Cybersecurity Roundup:

Someone tried to hack Kaspersky via a complex iPhone attack (“Operation Triangulation”); Jake Appelbaum got (reluctantly) kicked out of CCC; NASA launched a cybersecurity guide for the space industry; India’s Prime Minister Narendra Modi tried to strongarm and retaliate against Apple over hacking warnings, plus early Pandemic Roundup items.

Link: https://www.patreon.com/posts/cybersecurity-2-95718700

dantemercurio, to apple
@dantemercurio@ioc.exchange avatar

Kaspersky has released details regarding the Apple iMessage attack. Apparently it involved four, yes four 0-day exploits in the 0-click exploit chain. I often say if you have to jump up and down, rub your belly, and tap your head for the exploit to work, it’s low risk as most exploits are opportunistic. This definitely looks like an exception.

https://9to5mac.com/2023/12/27/most-sophisticated-iphone-attack-chain-ever-seen/

byakushin, to iPhone Finnish

VERY elaborate reported by security researchers who apparently were as a bonus targeted by it. Video includes indicators of compromise. This must have been an expensive operation to burn.
https://media.ccc.de/v/37c3-11859-operation_triangulation_what_you_get_when_attack_iphones_of_researchers

troed, to random
@troed@ioc.exchange avatar

That was absolutely nuts.

(The talk at )

My view: That was pants pulling on as large a state organization as they come.

Wow. That hash.

https://fahrplan.events.ccc.de/congress/2023/fahrplan/events/11859.html

evawolfangel, to Cybersecurity German
@evawolfangel@chaos.social avatar

Hello everyone, I am researching about Operation and I heard that there are victims outside of . I would really love to know more and ideally hear from them. Could you help me spread the word? People can contact me via Signal, Threema or Matrix (-> bio). I promise of course confidentiality. I don't mention their names, if they don't want me to etc. Right now for me it is about getting an idea of the target and scope of the attack.
Thanks for your support!

pirati, to informatica Italian
@pirati@sociale.network avatar

Il malware in Google Play supera i 600 milioni di download nel 2023

Un’analisi di su alcuni casi recenti di malware per Android che è riuscito a infiltrarsi nel più ufficiale degli app store ufficiali: Google Play.

https://www.kaspersky.it/blog/malware-in-google-play-2023/28186/

@informatica

heisec, to security German

Malware: Mehr als 600 Millionen Downloads 2023 in Google Play

Kaspersky hat in diesem Jahr bereits mehr als 600 Millionen Malware-Downloads aus dem Google-Play-Store gezählt. Der bleibt aber sicherste Paketquelle.

https://www.heise.de/news/Malware-Mehr-als-600-Millionen-Downloads-2023-in-Google-Play-9358247.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege

0x58, to Cybersecurity

📨 Latest issue of my curated and list of resources for week /2023 is out! It includes the following and much more:

➝ 🔓 hit by another , this one stealing employee data from 3rd-party vendor
➝ 🔓 💸 breach linked to theft of $4.4 million in crypto
➝ 🇮🇳 's Biggest Data Leak So Far? Covid-19 Test Info of 81.5Cr Citizens With ICMR Up for Sale
➝ 🔓 ✈️ ransomware group claims to have hacked
➝ 🇳🇱 ⚖️ Dutch hacker jailed for extortion, selling stolen data on RaidForums
➝ 🇷🇺 🇺🇸 Russian Reshipping Service ‘SWAT USA Drop’ Exposed
➝ 🇮🇷 🦠 Iranian Cyber Spies Use ‘’ Malware in Latest Attacks
➝ 📉 Security researchers observed ‘deliberate’ takedown of notorious
➝ 🇮🇳 📱 Apple warns Indian opposition leaders of state-sponsored attacks
➝ 🌍 Four dozen countries declare they won’t pay ransoms
➝ 🇷🇺 How , an Automated Social Media Accounts Creation Service, Can Facilitate
➝ 🇪🇺 EU digital ID reforms should be ‘actively resisted’, say experts
➝ 🇷🇺 🇺🇦 arrests Russian hackers working for Ukrainian cyber forces
➝ 🇺🇸 FTC orders non-bank financial firms to report breaches in 30 days
➝ 🇨🇦 📱 Bans and Apps On Government Devices
➝ 🇺🇸 Charges and Its With Fraud and Cybersecurity Failures
➝ 🇺🇸 🤖 Wants to Move Fast on AI Safeguards and Will Sign an Executive Order to Address His Concerns
➝ 🦠 📱 confirms it tagged Google app as on Android phones
➝ 🦠 🇰🇵 North Korean Hackers Targeting Crypto Experts with Malware
➝ 👥 💸 EleKtra-Leak Attacks Exploit IAM Credentials Exposed on
➝ 🦠 🐍 Trojanized Software Version Delivered via Search Ads
➝ ✅ 🤖 adds security audit badges for Android apps
➝ 🔐 Microsoft pledges to bolster security as part of ‘Secure Future’ initiative
➝ 🆕 FIRST Releases 4.0 Vuln Scoring Standard
➝ 🆕 Releases ATT&CK v14 With Improvements to Detections, ICS, Mobile
➝ ⛔️ 🦠 Galaxy gets new Auto Blocker anti-malware feature
➝ 🍏 🔐 Improves Security With Contact Key Verification
➝ 🔓 Researchers Find 34 Drivers Vulnerable to Full Device Takeover
➝ 🔓 🪶 3,000 servers vulnerable to RCE attacks exposed online
➝ 🗣️ CISO Urges Quick Action to Protect Instances From Critical
➝ 🔓 🩸 “This vulnerability is now under mass exploitation.” bug bites hard
➝ 🐛 💰 HackerOne paid ethical hackers over $300 million in

📚 This week's recommended reading is: "Permanent Record" by Edward Snowden

Subscribe to the newsletter to have it piping hot in your inbox every week-end ⬇️

https://infosec-mashup.santolaria.net/p/infosec-mashup-week-442023

geekymalcolm, to random
@geekymalcolm@ioc.exchange avatar
YourAnonRiots, to Cybersecurity Japanese
@YourAnonRiots@mstdn.social avatar

exposes ToddyCat's secret arsenal. Uncover their new set of malicious tools for data exfiltration and espionage activities.

https://thehackernews.com/2023/10/researchers-unveil-toddycats-new-set-of.html

simontsui, to apple

Kaspersky elaborates on Operation Triangulation in which domestic subscribers, diplomatic missions, and embassies were targeted with Apple iOS zero-days (Russia’s FSB accused the USA for Operation Triangulation). The threat actors introduced two validators in the infection chain in order to ensure that the exploits and the implant do not get delivered to security researchers. Additionally, microphone recording could be tuned in such a way that it stopped when the screen was being used. They used private undocumented APIs in the course of the attack, indicating a great understanding of iOS internals. They additionally implemented in some modules support for iOS versions prior to 8.0, suggesting access for years.
Link: https://securelist.com/triangulation-validators-modules/110847/

Freemind, to Cybersecurity
@Freemind@mastodon.online avatar

Neither the FBI nor Kaspersky has publicly attributed this campaign to any specific cyber threat group.

https://cybersec84.wordpress.com/2023/10/22/evolving-malware-threat-targets-businesses-with-diverse-arsenal/

heiseonline, to Amazon German

Kurz informiert: Phishing-Masche, Betrugs-Apps, Project Kuiper, Apple und KI

Unser werktäglicher News-Überblick fasst die wichtigsten Nachrichten des Tages kurz und knapp zusammen.

https://www.heise.de/news/Kurz-informiert-Phishing-Masche-Betrugs-Apps-Project-Kuiper-Apple-und-KI-9325866.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege

Linux_Is_Best, to linux
@Linux_Is_Best@mastodon.social avatar

If you used the download manager:

"Free Download Manager"

Between 2020 - 2022 (perhaps even early 2023), you may have unknowingly installed a TROJAN targeting Linux.

This is concerning to me, since I used the program myself, last month. -- All reports seem to suggest the issue was resolved, before I used the program, but it still gives me pause.

I wish there was a working download manager that integrated with Mozilla Firefox, that was still being actively developed.

Linux_Is_Best,
@Linux_Is_Best@mastodon.social avatar

@salixlucida

I know there were viruses targeting Linux, 20 years ago.

But as Linux has grown, oddly, the security firms that develop anti-virus programs have abandon Linux users.

I find that odd, at a time that Linux is growing, they pulled away.

gcluley, to Cybersecurity
@gcluley@mastodon.green avatar
jsrailton, to random
@jsrailton@mastodon.social avatar

NEW: heard about ? Something about ?

Or the waxing paranoid about ?

What does it all mean?

Well, my @citizenlab colleague Bill Marczak has an deliciously spicy take on the unfolding saga.

Plus some tips for defenders.

https://medium.com/@billmarczak/triangulation-did-the-nsa-fail-to-learn-the-lessons-of-nso-5f36d251d02e

happygeek, to infosec
itnewsbot, to random
@itnewsbot@schleuss.online avatar

“Clickless” iOS exploits infect Kaspersky iPhones with never-before-seen malware - Enlarge

Moscow-based security firm Kaspersky has been hit by ... - https://arstechnica.com/?p=1943622

  • All
  • Subscribed
  • Moderated
  • Favorites
  • megavids
  • rosin
  • thenastyranch
  • GTA5RPClips
  • tester
  • InstantRegret
  • DreamBathrooms
  • ngwrru68w68
  • magazineikmin
  • everett
  • Youngstown
  • mdbf
  • slotface
  • kavyap
  • JUstTest
  • cisconetworking
  • khanakhh
  • normalnudes
  • osvaldo12
  • cubers
  • tacticalgear
  • Durango
  • ethstaker
  • modclub
  • anitta
  • provamag3
  • Leos
  • lostlight
  • All magazines