Month: January 2021

Top Software Testing Services

iPhones Vulnerable To Zero-Click Spyware Attacks

36 Personal iPhones that belonged to Al-jazeera’s journalists were taken control of in a cyberattack that took place around July, August 2020. It is believed that the attack was done by nation-state-backed advanced persistent threats (APTs) groups probably belonging or linked to Middle-Eastern countries. The iMessage service of iPhone had a zero-day, exploited by attackers,…
Read more

A Tool Developed By A Cybercrime Group Creates Phishing Pages in Real-Time

A novel phishing toolkit has been developed by a cybercrime group that has the capabilities to change the logos and text of a phishing page in real-time to adjust with the environments of the targeted casualties. This phishing toolkit, named LogoKit, has already been conveyed in the wild as indicated by threat intelligence firm RiskIQ…
Read more

Emotet – World’s Most Dangerous Malware Turned Upside Down By The European Authorities

Law enforcement authorities from as numerous as eight nations destroyed the framework of Emotet, which is an infamous email-based malware for Windows, behind a few botnet-driven spam crusades and ransomware assaults over the past years. The planned takedown of the botnet on Tuesday was named Operation Ladybird, which was the consequence of a joint exertion…
Read more

Dark-Web Website Connected With The Netwalker Ransomware, Seized By Authorities

Authorities from the US and Bulgaria recently seized a dark web website which was utilized by the cybercrime group behind the Netwalker ransomware to distribute and sell the stolen/breached data. Nicholas L. McQuaid, the Acting Assistant Attorney General at the Criminal division of the Justice Department explained that “ransomware victims should know that coming forward…
Read more

New Family Of Credential Stealing Android Malware, Forewarns Italy CERT

Researchers recently unveiled a new family of credential stealing Android malware which exploits the Androids accessibility service to capture video and audio of activities going on the device display and steal credentials of the user. The malware was first found by the AddressIntel and was named Oscorp by Italy’s CERT-AGID. Researchers highlighted, “it should be…
Read more

Kaspersky Explains That Organizations In Africa Should Be More Alert And Better To Battle Cyber Attacks

Alerting your boss that your organization’s PC has been phished, survivors of a mission to acquire delicate data through false emails should be viewed as a corporate win rather than viewing it as a peril to your work. That is the adjustment in culture required at African organizations as cybersecurity threats thrive on the rear…
Read more

A Severe Gap Filled By Threat Hunting

Threat hunting is a practice or act of searching for cyber threats that may have slipped into your networks. It is a severe discipline that, nowadays, more and more organizations are utilizing to destroy hidden espionage campaigns/attacks prior to letting them breach data or perform malicious operations. Since threat hunting utilizes human knowledge and experience…
Read more

Researchers Discovered Hacking Of Azure Functions And Escaping Docker

Paul Litvak, a cybersecurity researcher at Interzer Lab, recently revealed an unfixed vulnerability in Microsoft Azure Functions that could be utilized by an aggressor to elevate rights and escape from the Docker container that is utilized for facilitating them (privileges). The discovery of the vulnerability occurred during the Intezer Lab’s examinations concerning the Azure compute…
Read more

Any Unprivileged User Can Gain Root Privileges On A Linux System Using A Default Sudo Configuration

The research team of Qualys, recently found a vulnerability in sudo, dubbed as the heap overflow vulnerability. Sudo is an omnipresent and powerful open-source utility that is mainly utilized on operating systems like Unix and Linux. This vulnerability has been registered as CVE-2021-3156. Exploiting this vulnerability can allow any unauthorized user, without any permissions, to…
Read more

Iranian Whatsapp Users Migrate To Signal, Government Blocks It

The government of Iran has now blocked the trendy messaging app “Signal”, right after users migrate to it from Whatsapp. Much the same as the residents of different nations, Iranians too downloaded Signal after security/privacy worries with Facebook and WhatsApp peaked. Clients across the world shifted to Signal and Telegram in reaction to WhatsApp’s new…
Read more