dimitrisk, to random
@dimitrisk@floss.social avatar

According to the last draft compromise, dated 7 June 2023, of the European Media Freedom Act, there is an exception to the general ban on deploying spyware against journalists without guarantees for the protection of sources, for safeguarding national security.

In short, governments are free to put surveillance spyware on journalists' devices.

https://europeanjournalists.org/blog/2023/06/13/eu-member-states-should-not-use-national-security-as-a-pretext-to-weaken-the-media-freedom-act/

strypey, to aotearoa
@strypey@mastodon.nzoss.nz avatar

Cripes Otago Daily Times, do you really need to be serving JavaScript spyware to your readers from all these third-party domains?

jbaggs, to random

"Robert Simonds, a US financier whose credits include producing several Adam Sandler films, has been engaged in talks to acquire the blacklisted spyware company’s assets, according to multiple sources familiar with the matter.

A firm owned by Simonds’s friend, William “Beau” Wrigley – who was an heir to his family’s chewing gum fortune and has since become involved in the cannabis industry... "

https://www.theguardian.com/us-news/2023/jun/14/nso-group-spyware-pegasus-takeover

I'm so tired.

dsfgs, to Amazon

Dear Activists,

Please do not use .

It is 'reverse-proxied' by an service called *. Reverse-proxy means it unencrypts all traffic to "ensure quality of service". Back when encryption of sites was a basic priority this would be called , or a .

Consider to block the dot-'cons' and their spyware.

  • not to be confused with , which does the same and is equally bad.
Grutjes, to China Dutch
@Grutjes@mstdn.social avatar

Holy fuck. Minister Yeşilgöz wil verplicht op iedereen zijn telefoon & computer installeren.

Het gaat om 'client side scanning' (Css) die alles wat je doet zal scannen, en automatisch de autoriteiten waarschuwt als een tekst, plaatje of bestand volgens de software illegaal zou zijn.
Css zou om te beginnen kinderporno tegen moeten gaan.

Massa a la

Dit is dezelfde minister die 'woke' het 'grootste gevaar voor de rechtsstaat' noemde...
🧵

https://www.agconnect.nl/artikel/tweede-kamer-en-minister-de-clinch-over-client-side-scanning-voor-bestrijding-kinderporno

informapirata, to giornalismo Italian
@informapirata@mastodon.uno avatar

In che modo i giornalisti investigativi possono reagire contro nuove minacce di sorveglianza potenziate?

@giornalismo

Negli ultimi anni, numerosi scandali hanno rivelato che i giornalisti di tutto il mondo sono stati oggetto di sorveglianza, spesso tramite . Ma i giornalisti devono essere vigili su altre forme di sorveglianza sempre più diffuse come i sistmi di tracciamento COVID19.

https://gijn.org/2023/06/07/investigative-journalists-fight-new-enhanced-surveillance-threats/

lydiaschoch, to reddit
@lydiaschoch@mastodon.social avatar

With the Apollo app for Reddit shutting down soon, I’m going to need to start relying on Mastodon for all of my cute animal photo, gif, and story needs.

HistoPol,
@HistoPol@mastodon.social avatar

@stefan @feditips

(14/n)

...there is 's military-grade , which also worked jointly with

https://mastodon.social/@HistoPol/109738122813329666

Palantir is also being used for surveillance purposes in several countries, at least of the . I have seen cases on before from , and the

The ethics of the authors/owners DO matter greatly.

There should be a ...

jbzfn, to random
@jbzfn@mastodon.social avatar

⎧ Enigma software group has won a crucial case in the U.S. Court of Appeals for the Ninth Circuit, allowing it to proceed with its lawsuit against Malwarebytes for flagging its anti-spyware software as a 'potentially unwanted program.' The lawsuit alleges that Malwarebytes has engaged in anti-competitive conduct under the Lanham Act and tortious interference with Enigma's business ⎭ ➥ @techspot


https://www.techspot.com/news/98976-malwarebytes-faces-lawsuit-classifying-rival-anti-spyware-program.html

0x58, to infosec

📨 Latest issue of my curated and list of resources for week /2023 is out! It includes, but not only:

➝ 🇺🇸 🪖 Air Force denies running simulation where AI drone “killed” its operator
➝ 🇺🇸 🏂 Snowboards discloses after February attack
➝ 🇺🇸 🧪 Enzo Biochem Attack Exposes Information of 2.5M Individuals
➝ 🧠 🤖 Introducing Charlotte AI, ’s Generative AI Security Analyst
➝ 🐍 🦠 Malicious Packages Using Compiled Code to Bypass Detection
➝ 🇰🇵 🎠 N. Korean ScarCruft Hackers Exploit LNK Files to Spread
➝ 🦠 📱 New Zero-Click Hack Targets Users with Stealthy Root-Privilege
➝ 🇷🇺 🇺🇸 says U.S. accessed thousands of phones in spy plot
➝ 🇯🇵 🚗 Discloses New Data Breach Involving Vehicle, Customer Information
➝ ☁️ 👻 Organizations Warned of ‘Ghost Sites’ Exposing Sensitive Information
➝ 🔐 👀 faces $30 million fine over Ring, Alexa violations
➝ 🔐 🧱 Active Mirai Botnet Variant Exploiting Devices for Attacks
➝ 🇷🇺 🇺🇦 Russia’s ‘Silicon Valley’ hit by cyberattack; Ukrainian group claims deep access
➝ 🦠 🤖 Found in Apps With Over 420 Million Downloads
➝ 🦠 🚪 malware spread via Google Ads for , GIMP, more
➝ 👛 Southeast Asian hacking crew racks up victims, rapidly expands criminal campaign
➝ 🍏 finds bug that lets hackers bypass SIP root restrictions
➝ 🦠 🚪 zero-day abused since 2022 to drop new malware, steal data
➝ 🇬🇷 Worst cyberattack in disrupts high school exams, causes political spat
➝ 🇮🇳 🎠 Sneaky DogeRAT Trojan Poses as Popular Apps, Targets Indian Users
➝ 🇺🇸 U.S. Department of Defense releases 2023 Cyber Strategy
➝ 📱☝🏻 New BrutePrint Attack Lets Attackers Unlock Smartphones with Fingerprint Brute-Force
➝ 🇯🇵 🎠 New GobRAT Remote Access Targeting Routers in
➝ 🦠 📂 Clever ‘File Archiver In The Browser’ phishing trick uses domains

📚 This week's recommended reading is: "Fancy Bear Goes Phishing: The Dark History of the Information Age, in Five Extraordinary Hacks" by Scott J. Shapiro

Subscribe to the to have it piping hot in your inbox every Sunday ⬇️

https://0x58.substack.com/p/infosec-mashup-week-222023

malwaretech, to tech

Podcast Ep4 Video just uploaded! We discuss a potential Android supply-chain attack, crazy spying techniques, and are advertisers listening to you.


https://youtu.be/wc8T_RcwOkY

jsrailton, to random
@jsrailton@mastodon.social avatar

NEW: heard about ? Something about ?

Or the waxing paranoid about ?

What does it all mean?

Well, my @citizenlab colleague Bill Marczak has an deliciously spicy take on the unfolding saga.

Plus some tips for defenders.

https://medium.com/@billmarczak/triangulation-did-the-nsa-fail-to-learn-the-lessons-of-nso-5f36d251d02e

avoidthehack, to infosec

More malicious extensions in Web Store

At least 18 different malicious extensions (as of 30 MAY and this post) identified by @WPalant

Remember extensions have privileged access to the browser (and data in the browser). Choose your extensions wisely... they could be or in disguise.

https://palant.info/2023/05/31/more-malicious-extensions-in-chrome-web-store/

itnewsbot, to random
@itnewsbot@schleuss.online avatar

“Clickless” iOS exploits infect Kaspersky iPhones with never-before-seen malware - Enlarge

Moscow-based security firm Kaspersky has been hit by ... - https://arstechnica.com/?p=1943622

kubikpixel, to random German
@kubikpixel@chaos.social avatar

Wenn wir ehrlich sind, sehr viele & nutzen die nächstes aufzufindente um es nicht selber zu aufzusetzen und merken erst später was die für die witklich anpreisen oder sehe ich da was ?

«Android-Spyware SpinOk kommt auf mehr als 421 Millionen Installationen»

😶‍🌫️ https://www.heise.de/news/Android-Spyware-SpinOk-kommt-auf-mehr-als-421-Millionen-Installationen-9069832.html

--

0x58, to infosec

📨 Latest issue of my curated and list of resources for week /2023 is out! It includes, but not only:

‣ 🇬🇧 🇺🇸 data breach: trusts shared patient details with without consent
‣ ☁️ Severe Flaw in Cloud's Cloud Service Exposed Confidential Data
‣ 🇨🇭 💰 US govt contractor confirms attack, data theft
‣ 🦠 🤖 : Looking under the hood of Intellexa’s spyware
‣ 🇦🇿 🇦🇲 Hacking in a war zone: in the Azerbaijan-Armenia conflict
‣ 🦠 🎮 Dark Frost Launches Devastating Attacks on Gaming Industry
‣ 🇷🇺 🦠 Mysterious designed to cripple industrial systems linked to
‣ 🇧🇷 🇵🇹 ‘Operation Magalenha’ targets credentials of 30 Portuguese
‣ 🩹 'strongly recommends' patching max severity flaw ASAP
‣ 🇮🇷 🇮🇱 Iranian hackers use new ransomware to attack Israeli orgs
‣ 🇺🇦 Cyber Attacks Strike 's State Bodies in Espionage Operation
‣ 🇨🇳 🇺🇸 Chinese state hackers infect critical infrastructure throughout the US and Guam
‣ 🐍 👨🏻‍⚖️ was subpoenaed
‣ 🇰🇵 🦠 N. Korean Group Targets IIS Servers to Deploy Espionage Malware
‣ 🦠 🤖 Data Stealing Malware Discovered in Popular Android Screen Recorder App
‣ 🇩🇪 Arms maker Rheinmetall confirms ransomware attack
‣ 🦠 New ‘GoldenJackal’ APT Targets Middle East, South Asia Governments
‣ 🇺🇸 🇰🇵 Treasury Department sanctions entities tied to North Korean IT scams, hacking
‣ 🇺🇸 📰 Cuba ransomware claims on Philadelphia Inquirer
‣ 🇺🇸 🏥 After ransomware attack, state’s second-largest health insurer says patient data stolen
‣ 🇯🇵 🇮🇳 🏍️ motorcycle plant shut down by cyber attack
‣ 🇺🇸 🪖 explosion hoax goes viral after verified accounts push
‣ 🇺🇸 🇪🇺 Fined Record $1.3 Billion and Ordered to Stop Sending European User Data to US
‣ 🦠 🎬 Cloned websites push information stealing malware
‣ 🇰🇷 🇺🇸 Warning: Devices Under Attack! New Security Flaw Exposed
‣ 🍏 fixes three new zero-days exploited to hack iPhones, Macs

📚 This week's recommended reading is: "Cyber Defense Matrix: The Essential Guide to Navigating the Cybersecurity Landscape" by Sounil Yu

Subscribe to the to have it piping hot in your inbox every Sunday ⬇️

https://0x58.substack.com/p/infosec-mashup-week-212023

securityaffairs, to random Italian
jsrailton, to random
@jsrailton@mastodon.social avatar

Whenever I see
I wonder: anybody check that phone for etc. lately?

image/png

nielsprovos, to random
@nielsprovos@ioc.exchange avatar
jsrailton, to random
@jsrailton@mastodon.social avatar

They just made it up.

The industry is a scourge.

Not content with tricking people into paying for security talismans by misrepresenting what VPNs do..., they are SEO-optimizing fake advice to drive signups.

The perverse thing is that the high risk people like dissidents & journalists that need to get safer from Predator not only won't be.helped, but real advice is getting drowned out.

Glad to see @maldr0id call it out.

jsrailton, to random
@jsrailton@mastodon.social avatar

NSO Group sharing password tips is like a landmine manufacturer posting first aid advice for papecuts.

ruialves, to ai

ChatGPT-4 has been granted access to the Internet! Are we one step closer to the AI Apocalypse?

https://medium.com/the-generator/bot-or-the-beast-openai-unleashes-chatgpt-on-the-internet-69e975d82b56

HistoPol,
@HistoPol@mastodon.social avatar

@ruialves

(10/n)

..., who thinks we will have an military "general" productized soon enough as , 's Artificial Intelligence Platform:

https://mastodon.social/@HistoPol/110323739545391429.

And let's not forget, the many feats has already accomplished with the military-grade , , from...

Bellingcat, to random
@Bellingcat@mstdn.social avatar

When trying to geolocate an image, knowing where to start looking can be hard. Bellingcat has developed a new tool to make that easier, enabling you to narrow down your search area based on objects or structures identified in an image. https://www.bellingcat.com/resources/how-tos/2023/05/08/finding-geolocation-leads-with-bellingcats-openstreetmap-search-tool/

dekkzz76,
@dekkzz76@emacs.ch avatar
catileptic, to random
@catileptic@chaos.social avatar

The Committee report is a slap on the wrist of EU member states elbow-deep in scandals. The recommendations that have surfaced thus far are a farce. There are no repercussions to member states abusing spyware, only recommendation that they play nice and involve Europol. @edri has written an article summarizing the outcome of the report: https://edri.org/our-work/pega-committee-does-not-go-all-the-way-on-spyware-regulation/

EPPGroup, to random

🕵️ Member States must possess effective tools to protect national security and fight serious crime.

But, the legal use of must be in line with the law and within clearly defined borders!

Read @vladobilcik’s view: https://epp.group/8pfrkg

🐦🔗: https://n.respublicae.eu/EPPGroup/status/1655550707586543618

digitalcourage, to random German
@digitalcourage@digitalcourage.social avatar

Das waren die … Wie versprochen haben wir eine Woche nach den eine kleine Presseschau gemacht und über einige der vielen Publikums-Kommentare gesprochen.

https://digitalcourage.video/w/n1iAswCTB5dcPCvCVbFae4

chpietsch,
@chpietsch@digitalcourage.social avatar

@burningTyger

Die A1-Version ist . Die anderen Versionen sind kaum besser.

Dazu schrieb @digitalcourage:

»Die geplante A3-Version von Microsoft 365 wird als datenschutzsichere Lösung verkauft. Das ist sie nicht. Sie lässt mehr Einstellungsmöglichkeiten zur Unterbindung von Datenflüssen zu als die „niedrigere“ A1-Version, doch die „wesentlichen Dienste“, wie Microsoft sie nennt (und das sind ziemlich viele) können nicht abgestellt werden. Dies zu ändern ist nicht im Interesse des Geschäftsmodells von Microsoft, denn unsere Daten sind eine große Einnahmequelle für das Unternehmen.«

https://digitalcourage.de/kinder-und-jugendliche/finger-weg-von-microsoft-an-Schulen

  • All
  • Subscribed
  • Moderated
  • Favorites
  • megavids
  • thenastyranch
  • magazineikmin
  • everett
  • ethstaker
  • khanakhh
  • InstantRegret
  • Youngstown
  • ngwrru68w68
  • slotface
  • rosin
  • tacticalgear
  • kavyap
  • mdbf
  • JUstTest
  • DreamBathrooms
  • Durango
  • cubers
  • modclub
  • tester
  • cisconetworking
  • GTA5RPClips
  • anitta
  • osvaldo12
  • Leos
  • normalnudes
  • provamag3
  • lostlight
  • All magazines