brume, to android French
@brume@piaille.fr avatar

via @techbot

Un logiciel malveillant distribué via le PlayStore

Les auteurs distribuent le logiciel malveillant Anatsa via le PlayStore en le déguisant en applications telles que des lecteurs de PDF et des scanners de QRcode. Une fois installé, Anatsa télécharge sa charge utile et vole des infos bancaires sensibles à l'aide de superpositions. Anatsa a ciblé des applications bancaires en Europe et s'est étendu aux US, à la Corée et à Singapour.

Pulse ID : 6655bb0af84356806f384f5a
Lien Pulse : https://otx.alienvault.com/pulse/6655bb0af84356806f384f5a
Pulse Author : AlienVault
Créé : 2024-05-28

aarbrk, to Help Spanish
@aarbrk@mstdn.mx avatar

Hi folks, I need with a possible infection in on . After accidentally visiting a spammy website I am getting suspicious and short-lived windows with a grey border in the corner of the screen. Their text seems to always starts with (A). The first one was ostensibly about Norton, this one McAfee. Tough to verify any fix since they only appear once in a while; I did get a photo of one:

Please advise me!

jsrailton, to poland
@jsrailton@mastodon.social avatar

NEW: second judge in reportedly confirmed as spyware victim.

Appeals court judge told reporter her responsibilities included classified cases where wiretapping was used.

Poland's spyware reckoning continues.

[PL, machine trans.]
Story: https://oko.press/wiemy-o-drugim-polskim-sedzi-inwigilowanym-pegasusem-to-sedzia-apelacyjna-z-krakowa-news-oko-press

gtbarry, to Canada
@gtbarry@mastodon.social avatar

LockBit says they stole data in London Drugs ransomware attack

the LockBit ransomware gang claimed they were behind the April cyberattack on Canadian pharmacy chain London Drugs and is now threatening to publish stolen data online after allegedly failed negotiations

#LondonDrugs #canada #databreach #LockBit #ransomware #malware #security #cybersecurity #infosec #hackers #hacking #hacked

https://www.bleepingcomputer.com/news/security/lockbit-says-they-stole-data-in-london-drugs-ransomware-attack/

helma, to random
@helma@mastodon.social avatar

Heaven for domestic abuse: a new spywaretool just up for grabs. It's like having Pegasus at home. What could possibly go wrong? Microsoft knows most families share their accounts or at least can easily log into eachothers accounts. They just choose to ignore it.

.

https://arstechnica.com/gadgets/2024/05/microsofts-new-recall-feature-will-record-everything-you-do-on-your-pc/

nschont, to linux French
@nschont@mastodon.mim-libre.fr avatar
gcluley, to Cybersecurity
@gcluley@mastodon.green avatar

Black Basta ransomware group's techniques evolve, as FBI issues new warning in wake of hospital attack.

Read more in my article on the Exponential-e blog: https://www.exponential-e.com/blog/black-basta-ransomware-groups-techniques-evolve-as-fbi-issues-new-warning-in-wake-of-hospital-attack

#cybersecurity #databreach #ransomware #socialengineering #malware

gtbarry, to microsoft
@gtbarry@mastodon.social avatar

Windows vulnerability reported by the NSA exploited to install Russian malware

Kremlin-backed hackers have been exploiting a critical Microsoft vulnerability for four years in attacks that targeted a vast array of organizations with a previously undocumented tool, the software maker disclosed

https://arstechnica.com/security/2024/04/kremlin-backed-hackers-exploit-critical-windows-vulnerability-reported-by-the-nsa/

gtbarry, to security
@gtbarry@mastodon.social avatar

Boeing confirms attempted $200 million ransomware extortion attempt

The cybercriminals who targeted Boeing using the LockBit ransomware platform in October 2023 demanded a $200 million extortion payment.

Boeing reportedly did not pay any ransom to LockBit after roughly 43 gigabytes of company data was posted to LockBit’s website in early November.

https://cyberscoop.com/boeing-confirms-attempted-200-million-ransomware-extortion-attempt/

Mensh123, to Minecraft
@Mensh123@cyberplace.social avatar

Low severity [ incident] A mod called "Windows Borderless" on was taken down yesterday. It contained wich stole credentials from Chrome and Chromium-Based browsers. Only Windows users were affected. The mod was not found in any modpacks and was not uploaded to other platforms. A detection tool can be found in the official blog post. According to @modrinth, ~372 IPs downloaded the mod.
https://blog.modrinth.com/p/windows-borderless-malware-disclosure

parigotmanchot, to wordpress French
@parigotmanchot@mastodon.social avatar

: WPCode keeps reappearing as a malware after deleting | WordPress.org - Options à insérer dans le fichier wp-config (racine d'une installation de WordPress) pour empêcher la modification des fichiers via l'éditeur interne et désactiver l'ajout d'extensions.

Contexte : un hackeur a réussit à faire en sorte que l'extension WP Code s'installe automatiquement même si on efface ladite extens… : https://wordpress.org/support/topic/wpcode-keeps-reappearing-as-a-malware-after-deleting/#post-17115537

jsrailton, (edited ) to infosec
@jsrailton@mastodon.social avatar

Big companies are churning out bullshit "security advice" on an industrial scale.

It's a marketing funnel that targets those seeking help.

And then misinforms them.

I wish it stopped there

The nonsense makes its way to victims of spyware, where misinformation can have life, death and liberty impacting consequences.

jsrailton, (edited ) to hacking
@jsrailton@mastodon.social avatar

BREAKING: private investigator arrested for cyberespionage on behalf of American PR firm.

Caught by UK under from 🇺🇸US while boarding a flight.

BIG TWIST in a wild case that began w/our @citizenlab investigation into indian hack-for-hire group

Sound familiar?

Because Amit Forlit is the second PI from arrested in similar way for this case.

First = convicted.

https://www.reuters.com/world/israeli-private-eye-arrested-uk-over-alleged-hacking-us-pr-firm-2024-05-02/

mima, to security

Permission-based systems are bad. See getting replaced by for example. It didn't stop from getting into the or the extension store. On the contrary, the malware problem only got worse after the complete replacement of XUL extensions, which is often disparaged as "insecure" because it allowed users to pretty much change how their browser fundamentally works.

Who knew that distrusting your users and not giving them control leads to more malicious software and user being broken more often. ​:seija_coffee:​

RE: https://mamot.fr/users/gnomelibre/statuses/112371181710549606

SomeGadgetGuy, to tech
@SomeGadgetGuy@techhub.social avatar

Premiering now! Had a great conversation with Shannon Morse about my issues reviewing some mini PCs that came pre-loaded with malware. https://www.youtube.com/watch?v=oH2R3o-EbTA
She offers some GREAT tips and tricks for folks interested in keeping their home networks secure and their data safe!

techhelpkb, to random
@techhelpkb@mastodon.social avatar

A new malware named 'Cuttlefish' has been spotted infecting enterprise-grade and small office/home office (SOHO) routers to monitor data that passes through them and steal authentication information.


https://tchlp.com/3woKabl

whydoesnothingwork, to linux
@whydoesnothingwork@mastodon.social avatar
estherschindler, to random
@estherschindler@hachyderm.io avatar

attacks against millions of repositories have been discovered. Assume all the content you host on a publicly accessible repository might be compromised.
https://cloudnativenow.com/topics/cloudnativedevelopment/docker/jfrog-reveals-docker-hub-compromise-spanning-millions-of-repositories/

kagan, to security
@kagan@wandering.shop avatar

Oh, great. Computer security researchers have developed a proof-of-concept for a type of ransomware that would act when you try to upload a file. It would be able to encrypt any files in the folder you uploaded from, and any subfolders of it.

This is a proof-of-concept; the researchers have not seen any such attacks in the wild. But stay careful out there, okay?

Affects Chrome and Edge, but not Firefox or Safari!

https://theconversation.com/cybersecurity-researchers-spotlight-a-new-ransomware-threat-be-careful-where-you-upload-files-219560

gcluley, to Cybersecurity
@gcluley@mastodon.green avatar

"Junk gun" ransomware: the cheap new threat to small businesses.

Read more in my article on the Tripwire blog: https://www.tripwire.com/state-of-security/junk-gun-ransomware-cheap-new-threat-small-businesses

deflockcom, to ads
@deflockcom@mastodon.social avatar
eugenialoli, to GNOME
@eugenialoli@mastodon.social avatar

WTF? Is on the store ? Apparently it was running in the bg AS IF it was an invincible extension so SystemMonitor/htop would NOT see it as a process. But (also from flatpak store) saw it as it is: an app running on startup! Killing it killed Gnome session! It was also spiking wifi, and was leaking the Gnome gjs service from 4MB RAM to 120MB. Uninstalling fixed the prob

Third party flatpak/snaps should be vetted.

mattotcha, to Ukraine
@mattotcha@mastodon.social avatar

Ukrainian soldiers’ apps increasingly targeted for spying, cyber agency warns
https://therecord.media/ukraine-military-personnel-cyber-espionage-uac-0184

nikita, to random German
@nikita@social.tchncs.de avatar

Angebliches Word-Add-in: Russische für Windows entdeckt

Russland rüstet immer weiter für Cyberangriffe gegen den Westen auf. Nun haben finnische Experten eine neue gefährliche Hintertür für Windows-Systeme entdeckt, die offenbar vom russischen Geheimdienst gesteuert wird.

Mit der Aufdeckung fehlt dem russischen Geheimdienst nun eine wichtige Hintertür, denn die jetzt eingerichteten Schlupflöcher werden nun in kurzer Zeit gefunden und geschlossen.

https://www.tagesschau.de/ausland/europa/cyberangriffe-windows-russland-100.html

bsi, to random German
@bsi@social.bund.de avatar
  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • GTA5RPClips
  • thenastyranch
  • khanakhh
  • cisconetworking
  • Durango
  • rosin
  • ngwrru68w68
  • DreamBathrooms
  • magazineikmin
  • Youngstown
  • ethstaker
  • slotface
  • InstantRegret
  • megavids
  • kavyap
  • everett
  • Leos
  • tester
  • mdbf
  • osvaldo12
  • tacticalgear
  • cubers
  • modclub
  • provamag3
  • normalnudes
  • anitta
  • lostlight
  • All magazines