Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 215 / 216
4310 résultats taggé E*N  ✕
New SysJoker Backdoor Targets Windows, Linux, and macOS https://www.intezer.com/blog/malware-analysis/new-backdoor-sysjoker/
15/02/2022 10:20:18
QRCode
archive.org
thumbnail

In December 2021, we discovered a new multi-platform backdoor that targets Windows, Mac, and Linux that we have named SysJoker.

Intezer backdoor SysJoker malware Linux macos Windows EN multiplatform 
SysJoker analyzing the first (macOS) malware of 2022! https://objective-see.com/blog/blog_0x6C.html
15/02/2022 10:18:34
QRCode
archive.org
thumbnail

Earlier today (January 11th), Researchers at Intezer published an report titled, “New SysJoker Backdoor Targets Windows, Linux, and macOS.”

In this report, they detailed a new cross-platform backdoor they named SysJoker. Though initially discovered on Linux, the Intezer researchers shortly thereafter also found both Windows and Mac versions:

"SysJoker was first discovered during an active attack on a Linux-based web server of a leading educational institution. After further investigation, we found that SysJoker also has Mach-O and Windows PE versions." -Intezer

SysJoker macos malware EN objectivesee report analysis
Google Docs Comment Exploit Allows for Distribution of Phishing and Malware https://www.avanan.com/blog/google-docs-comment-exploit-allows-for-distribution-of-phishing-and-malware
15/02/2022 10:06:51
QRCode
archive.org
thumbnail

An exploit in the Google Docs comment feature allows hackers to easily spread malware and phishing.

Googledocs EN phishing attack vector
Can You Trust a File’s Digital Signature? New Zloader Campaign exploits Microsoft’s Signature Verification putting users at risk https://research.checkpoint.com/2022/can-you-trust-a-files-digital-signature-new-zloader-campaign-exploits-microsofts-signature-verification-putting-users-at-risk/
15/02/2022 10:03:30
QRCode
archive.org
thumbnail

Last seen in August 2021, Zloader, a banking malware designed to steal user credentials and private information, is back with a simple yet sophisticated infection chain. Previous Zloader campaigns, which were seen in 2020, used malicious documents, adult sites and Google ads to infect systems.
Evidence of the new campaign was first seen around early November 2021. The techniques incorporated in the infection chain include the use of legitimate remote management software (RMM) to gain initial access to the target machine.

checkpoint EN Zloader Altera Antik.Corp research
iPhone flaw exploited by second Israeli spy firm-sources https://www.reuters.com/technology/exclusive-iphone-flaw-exploited-by-second-israeli-spy-firm-sources-2022-02-03/
14/02/2022 13:26:45
QRCode
archive.org
thumbnail

A flaw in Apple's software exploited by Israeli surveillance firm NSO Group to break into iPhones in 2021 was simultaneously abused by a competing company, according to five people familiar with the matter.

Apple EN Reuters QuaDream 0-day-as-a-service zero-click ForcedEntry
Israelis didn’t care about NSO and Pegasus – until this scandal https://www.haaretz.com/israel-news/.premium-israelis-didn-t-care-about-nso-and-pegasus-until-this-scandal-1.10595417
14/02/2022 13:24:27
QRCode
archive.org
thumbnail

A series of reports into how the Israeli police spied on their own citizens has finally grabbed everyone’s attention – and nowhere more so than among Benjamin Netanyahu’s loyal followers

NSO Netanyahu Israel Pegasus police Haaretz EN
Critical Vulnerabilities in PHP Everywhere Allow Remote Code Execution https://www.wordfence.com/blog/2022/02/critical-vulnerabilities-in-php-everywhere-allow-remote-code-execution/
14/02/2022 08:45:04
QRCode
archive.org
thumbnail

On January 4, 2022, the Wordfence Threat Intelligence team began the responsible disclosure process for several Remote Code Execution vulnerabilities in PHP Everywhere, a WordPress plugin installed on over 30,000 websites. One of these vulnerabilities allowed any authenticated user of any level, even subscribers and customers, to execute code on a site with the plugin ...Read More

wordfence EN Wordpress plugin PHPEverywhere CVE-2022-24664 CVE-2022-24665 CVE-2022-24663
Critical Magento 0-Day Vulnerability Under Active Exploitation — Patch Released https://thehackernews.com/2022/02/critical-magento-0-day-vulnerability.html
14/02/2022 08:17:20
QRCode
archive.org

Adobe on Sunday rolled out patches to contain a critical security vulnerability impacting its Commerce and Magento Open Source products that it said is being actively exploited in the wild.

CVE-2022-24086 thehackernews EN Magento critical 0-day
Google Online Security Blog: Vulnerability Reward Program: 2021 Year in Review https://security.googleblog.com/2022/02/vulnerability-reward-program-2021-year.html
14/02/2022 08:13:47
QRCode
archive.org
thumbnail

Last year was another record setter for our Vulnerability Reward Programs (VRPs). Throughout 2021, we partnered with the security researcher community to identify and fix thousands of vulnerabilities – helping keep our users and the internet safe.

Google reward bugbounty 2021 vulnerabilities data report EN
ModifiedElephant APT and a Decade of Fabricating Evidence https://www.sentinelone.com/labs/modifiedelephant-apt-and-a-decade-of-fabricating-evidence/
14/02/2022 08:08:29
QRCode
archive.org
thumbnail

A previously unreported threat actor has been targeting civil society for over a decade. Read about how it operates and its relationships to other threats.

SentinelOne EN attribution research APT ModifiedElephant
North Korea Hacked Him. So He Took Down Its Internet https://www.wired.com/story/north-korea-hacker-internet-outage
13/02/2022 22:19:29
QRCode
archive.org
thumbnail

Disappointed with the lack of US response to the Hermit Kingdom's attacks against US security researchers, one hacker took matters into his own hands.

north-korea fightback hacker internet wired EN
I Used Apple AirTags, Tiles and a GPS Tracker to Watch My Husband’s Every Move - The New York Times https://www.nytimes.com/2022/02/11/technology/airtags-gps-surveillance.html
13/02/2022 22:10:12
QRCode
archive.org
thumbnail

A vast location-tracking network is being built around us so we don’t lose our keys: One couple’s adventures in the consumer tech surveillance state.

Privacy GPS Stalking Apple AirTags story nytimes EN
Emsisoft Decryptor for Maze / Sekhmet / Egregor - Emsisoft: Free Ransomware Decryption Tools https://www.emsisoft.com/ransomware-decryption-tools/maze-sekhmet-egregor
13/02/2022 22:04:57
QRCode
archive.org
thumbnail

Free Maze / Sekhmet / Egregor ransomware decryptor by Emsisoft. Unlock your files without paying the ransom.

decrypter decryptor emsisoft EN ransomware tool Maze Sekhmet Egregor emsisoft
[LEAK] Maze + Egregor + Sekhmet keys along with m0yv (expiro) source code https://www.bleepingcomputer.com/forums/t/768330/leak-maze-egregor-sekhmet-keys-along-with-m0yv-expiro-source-code/
13/02/2022 21:56:22
QRCode
archive.org
thumbnail

Hello, Its developer. It was decided to release keys to the public for Egregor, Maze, Sekhmet ransomware families.
also there is a little bit harmless source code of polymorphic x86/x64 modular EPO file infector m0yv detected in the wild as Win64/Expiro virus, but it is not expiro actually, but AV engines detect it like this, so no single thing in common with...

leak Maze Egregor Sekhmet keys decryptor EN forum bleepingcomputer
Decryptor released for Maze, Egregor, and Sekhmet ransomware strains | ZDNet https://www.zdnet.com/article/decryptor-for-maze-egregor-and-sekhmet-ransomware-strains-released/
13/02/2022 21:54:50
QRCode
archive.org
thumbnail

A decryptor has been released for the Maze, Sekhmet, and Egregor ransomware after someone published the master decryption keys in a BleepingComputer forum post.

decryptor EN Egregor Maze Sekhmet ransomware
Exposed documents reveal how the powerful clean up their digital past using a reputation laundering firm https://restofworld.org/2022/documents-reputation-laundering-firm-eliminalia/
13/02/2022 11:05:29
QRCode
archive.org
thumbnail

Reputation firms like Eliminalia use legal threats and copyright notices to have material taken down around the world.

Eliminalia EN reputation laundering copyright
List of the most common passwords https://en.wikipedia.org/wiki/List_of_the_most_common_passwords
13/02/2022 01:56:54
QRCode
archive.org

This is a list of the most common passwords, discovered in various data breaches. Common passwords generally are not recommended on account of low password strength

Wikipedia EN reference list passwords common
Why is the Zoom app listening on my microphone... https://community.zoom.com/t5/Meetings/Why-is-the-Zoom-app-listening-on-my-microphone-when-not-in-a/m-p/41449#M20549
13/02/2022 01:48:22
QRCode
archive.org
thumbnail

I'm running MacOS Monterey. Several times in the last few weeks, I've noticed the orange dot indicating the microphone is being used by an app, and I click on the Control Center and see that Zoom is accessing the microphone. I'm not in a meeting and simply have the Zoom app open. Why would Zoom be accessing the microphone when I'm not in a meeting?

zoom EN macOS bug microphone
Who Needs to Exploit Vulnerabilities When You Have Macros? https://insights.sei.cmu.edu/blog/who-needs-to-exploit-vulnerabilities-when-you-have-macros/
13/02/2022 01:46:37
QRCode
archive.org
thumbnail

Recently, there has been a resurgence of malware that is spread via Microsoft Word macro capabilities....

microsoft macros office EN
esmat: New Free macOS Endpoint Security Message Analysis Tool • UX monitoring & endpoint security analytics for Windows, macOS, Citrix, VMware on Splunk https://uberagent.com/blog/esmat-new-free-macos-endpoint-security-framework-esf-message-analysis-tool/
13/02/2022 01:45:21
QRCode
archive.org

We’re happy to announce the public release of esmat, a new free & open-source tool. esmat is a command-line app for macOS that allows you to explore the behavior of Apple’s Endpoint Security framework.

macOS EN tool esmat commandline endpointsecurityframework apple log logging
page 215 / 216
4898 links
Shaarli - Le gestionnaire de marque-pages personnel, minimaliste, et sans base de données par la communauté Shaarli - Theme by kalvn