Forwarded from The Hacker News
🛡️ FBI: Hackers are hijacking IoT devices (web cameras, DVRs) using old vulnerabilities and weak passwords.
🛡️ CISA: Actively exploited flaws in Adobe ColdFusion and Windows Kernel. Public exploits exist.
🛡️ Routers: Over 20,000 DrayTek routers hit by ransomware via a zero-day exploit.
🔒 What’s the pattern? Unpatched systems + edge devices = easy targets for attackers.
—Patch critical systems immediately.
—Audit IoT, routers, and edge devices.
Enforce strong passwords and proactive monitoring.
🔗 Full analysis: https://thehackernews.com/2024/12/cisa-and-fbi-raise-alerts-on-exploited.html
🛡️ CISA: Actively exploited flaws in Adobe ColdFusion and Windows Kernel. Public exploits exist.
🛡️ Routers: Over 20,000 DrayTek routers hit by ransomware via a zero-day exploit.
🔒 What’s the pattern? Unpatched systems + edge devices = easy targets for attackers.
—Patch critical systems immediately.
—Audit IoT, routers, and edge devices.
Enforce strong passwords and proactive monitoring.
🔗 Full analysis: https://thehackernews.com/2024/12/cisa-and-fbi-raise-alerts-on-exploited.html
Forwarded from The Hacker News
🛑 The Mask APT is back—this time, they’re smarter.
A decade-old espionage group is exploiting trusted tools like MDaemon WorldClient and HitmanPro drivers to bypass your defenses—undetected.
—They infect Windows, macOS, Android, and iOS seamlessly.
—New attacks spotted in 2019, 2022, and 2024 prove their persistence.
—Goreto malware uses Google Drive to fetch commands, leveraging tools we all rely on.
🔗 Full analysis reveals how this group operates: https://thehackernews.com/2024/12/the-mask-apt-resurfaces-with.html
A decade-old espionage group is exploiting trusted tools like MDaemon WorldClient and HitmanPro drivers to bypass your defenses—undetected.
—They infect Windows, macOS, Android, and iOS seamlessly.
—New attacks spotted in 2019, 2022, and 2024 prove their persistence.
—Goreto malware uses Google Drive to fetch commands, leveraging tools we all rely on.
🔗 Full analysis reveals how this group operates: https://thehackernews.com/2024/12/the-mask-apt-resurfaces-with.html
Forwarded from The Hacker News
⚠️ Would you trust “UpdateMe.exe” or “SecurityPatch.exe”?
Cybercriminals are disguising malware as software updates to deliver CoinLurker, a stealer targeting cryptocurrency wallets.
❓ Did you know:
• Evades detection using stolen EV certificates and advanced obfuscation
• Steals data from crypto wallets (Bitcoin, Ledger Live, Exodus)
• Harvests credentials from tools like Telegram, Discord, FileZilla
🛡️ Protect Your Team:
• Use ad-blocking tools to filter suspicious links
• Train employees to spot fake software updates
• Monitor downloads for anomalies
👉 Read details here: https://thehackernews.com/2024/12/hackers-exploit-webview2-to-deploy.html
Cybercriminals are disguising malware as software updates to deliver CoinLurker, a stealer targeting cryptocurrency wallets.
❓ Did you know:
• Evades detection using stolen EV certificates and advanced obfuscation
• Steals data from crypto wallets (Bitcoin, Ledger Live, Exodus)
• Harvests credentials from tools like Telegram, Discord, FileZilla
🛡️ Protect Your Team:
• Use ad-blocking tools to filter suspicious links
• Train employees to spot fake software updates
• Monitor downloads for anomalies
👉 Read details here: https://thehackernews.com/2024/12/hackers-exploit-webview2-to-deploy.html
Forwarded from The Hacker News
⚠️ Imagine this: Your team downloads what looks like a regular PDF. Behind the scenes? Malware that steals data, controls devices, and watches everything.
This isn’t fiction. The Bitter APT group is targeting high-value Turkish defense firm using:
• Fake World Bank PDFs as lures.
• NTFS Alternate Data Streams (ADS) to hide PowerShell malware inside harmless files.
• WmRAT & MiyaRAT to steal data, take screenshots, and run remote commands.
🔗 Learn more: https://thehackernews.com/2024/12/bitter-apt-targets-turkish-defense.html
This isn’t fiction. The Bitter APT group is targeting high-value Turkish defense firm using:
• Fake World Bank PDFs as lures.
• NTFS Alternate Data Streams (ADS) to hide PowerShell malware inside harmless files.
• WmRAT & MiyaRAT to steal data, take screenshots, and run remote commands.
🔗 Learn more: https://thehackernews.com/2024/12/bitter-apt-targets-turkish-defense.html
Forwarded from The Hacker News
🔒 Is your team hunting threats... or drowning in data?
Cyber attackers don’t wait. Neither should you. 5 expert techniques from @anyrun_app can help you:
• Spot threats targeting your region
• Validate suspicious IPs & scripts fast
• Track evolving TTPs to stay ahead of attackers
• Build real-time threat intel for proactive defense
⏱️ Early detection = less damage, fewer disruptions, and smarter resource allocation.
👉 Start preventing attacks. Learn the techniques here: https://thehackernews.com/2024/12/5-practical-techniques-for-effective.html
Cyber attackers don’t wait. Neither should you. 5 expert techniques from @anyrun_app can help you:
• Spot threats targeting your region
• Validate suspicious IPs & scripts fast
• Track evolving TTPs to stay ahead of attackers
• Build real-time threat intel for proactive defense
⏱️ Early detection = less damage, fewer disruptions, and smarter resource allocation.
👉 Start preventing attacks. Learn the techniques here: https://thehackernews.com/2024/12/5-practical-techniques-for-effective.html
Forwarded from The Hacker News
💣 From LNK to MSC — Tax-themed phishing lures are delivering stealthy backdoors using MSC files disguised as PDFs to target Pakistan.
» MSC files mimic legit Windows Management tools, making detection harder.
» The attack combines stealthy delivery and scheduled tasks for persistence.
🔗 Details here: https://thehackernews.com/2024/12/hackers-use-microsoft-msc-files-to.html
» MSC files mimic legit Windows Management tools, making detection harder.
» The attack combines stealthy delivery and scheduled tasks for persistence.
🔗 Details here: https://thehackernews.com/2024/12/hackers-use-microsoft-msc-files-to.html
Forwarded from Gizchina.com
POCO X7 Series Gears Up for India Launch – Detailed Renders Appear Online
https://www.gizchina.com/2024/12/13/poco-x7-series-gears-up-for-india-launch-detailed-renders-appear-online/
https://www.gizchina.com/2024/12/13/poco-x7-series-gears-up-for-india-launch-detailed-renders-appear-online/
Forwarded from Gizchina.com
Xiaomi’s affordable phone : POCO F7 Pro Details Revealed
https://www.gizchina.com/2024/12/14/xiaomis-affordable-phone-poco-f7-pro-details-revealed/
https://www.gizchina.com/2024/12/14/xiaomis-affordable-phone-poco-f7-pro-details-revealed/
Forwarded from Gizchina.com
Chuwi Hi10 X1 Review: Small Tablet, Big Potential!
https://www.gizchina.com/2024/12/14/chuwi-hi10-x1-review-small-tablet-big-potential/
https://www.gizchina.com/2024/12/14/chuwi-hi10-x1-review-small-tablet-big-potential/
Forwarded from Gizchina.com
Realme 14x’s Processor has Been Confirmed as Dimensity 6300
https://www.gizchina.com/2024/12/14/realme-14xs-processor-has-been-confirmed-as-dimensity-6300/
https://www.gizchina.com/2024/12/14/realme-14xs-processor-has-been-confirmed-as-dimensity-6300/
Forwarded from Gizchina.com
Features of the Flagship Killer OnePlus Ace 5 Revealed
https://www.gizchina.com/2024/12/16/features-of-the-flagship-killer-oneplus-ace-5-revealed/
https://www.gizchina.com/2024/12/16/features-of-the-flagship-killer-oneplus-ace-5-revealed/
Forwarded from Gizchina.com
Vivo Y300 Has Been Unveiled in China With Dimensity 6300
https://www.gizchina.com/2024/12/17/vivo-y300-has-been-unveiled-in-china-with-dimensity-6300/
https://www.gizchina.com/2024/12/17/vivo-y300-has-been-unveiled-in-china-with-dimensity-6300/
Forwarded from Gizchina.com
OnePlus 13 Series Winter Launch Event Announced for January 7
https://www.gizchina.com/2024/12/17/oneplus-13-series-winter-launch-event-announced-for-january-7/
https://www.gizchina.com/2024/12/17/oneplus-13-series-winter-launch-event-announced-for-january-7/
Forwarded from Gizchina.com
ChatGPT’s AI Search Engine Now Available to All
https://www.gizchina.com/2024/12/17/chatgpts-ai-search-engine-now-available-to-all/
https://www.gizchina.com/2024/12/17/chatgpts-ai-search-engine-now-available-to-all/
Forwarded from Gizchina.com
Honor GT Launched with 120Hz AMOLED, 50MP Camera, and 5300mAh Battery
https://www.gizchina.com/2024/12/17/honor-gt-smartphone-launch/
https://www.gizchina.com/2024/12/17/honor-gt-smartphone-launch/
Forwarded from Gizchina.com
Honor Pad V9 Launches with 11.5″ 144Hz Display, Dimensity 8350, and 10,100mAh Battery
https://www.gizchina.com/2024/12/17/honor-pad-v9-launch/
https://www.gizchina.com/2024/12/17/honor-pad-v9-launch/
Forwarded from Hacker News
Surfing Complexity
Quick takes on the recent OpenAI public incident write-up
OpenAI recently published a public writeup for an incident they had on December 11, and there are lots of good details in here! Here are some of my off-the-cuff observations: Saturation With thousa…
Forwarded from Hacker News