Forced Chrome extensions get removed, keep reappearing

Credit to Author: Pieter Arntz| Date: Wed, 29 Jun 2022 10:38:18 +0000

Malwarebytes found a family of forced Chrome extensions that can’t be removed because of a policy change that tells users “Your browser is managed”.

The post Forced Chrome extensions get removed, keep reappearing appeared first on Malwarebytes Labs.

Read more

Internet Safety Month: Everything you need to know about Omegle

Credit to Author: Jovi Umawing| Date: Wed, 29 Jun 2022 10:19:56 +0000

Chatting with strangers piqued millions of internet users’ interest during the pandemic. Omegle made this possible. Is my child safe to use it though?

The post Internet Safety Month: Everything you need to know about Omegle appeared first on Malwarebytes Labs.

Read more

Hermit spyware is deployed with the help of a victim’s ISP

Credit to Author: Jovi Umawing| Date: Wed, 29 Jun 2022 10:03:54 +0000

A new commercial spyware for governments, called Hermit, has spotted in the wild. It affects iOS and all Android versions.

The post Hermit spyware is deployed with the help of a victim’s ISP appeared first on Malwarebytes Labs.

Read more

The Link Between AWM Proxy & the Glupteba Botnet

Credit to Author: BrianKrebs| Date: Tue, 28 Jun 2022 18:33:31 +0000

On December 7, 2021, Google announced it had sued two Russian men allegedly responsible for operating the Glupteba botnet, a global malware menace that has infected millions of computers over the past decade. That same day, AWM Proxy — a 14-year-old anonymity service that rents hacked PCs to cybercriminals — suddenly went offline. Security experts had long seen a link between Glupteba and AWM Proxy, but new research shows AWM Proxy’s founder is one of the men being sued by Google.

Read more

How Apple is improving single sign-on

Credit to Author: Jonny Evans| Date: Tue, 28 Jun 2022 07:59:00 -0700

Among a slew of announcements at WWDC this year were some important changes to Apple’s support for single sign-on (SSO). Here’s what’s coming when new updates ship this fall.

SSO + BYOD = iOS 16, iPadOS 16

Apple first introduced SSO support at WWDC 2019 with Sign in with Apple, which also saw the introduction of extensions to enable this kind of authentication. It allowed a user to access a service or website using their Apple ID, and meant support for identity providers, the use of highly secure token-based signatures and the tools service providers required to implement these systems.

To read this article in full, please click here

Read more

Log4Shell Vulnerability in VMware Leads to Data Exfiltration and Ransomware

Credit to Author: Mohamed Fahmy| Date: Tue, 28 Jun 2022 00:00:00 +0000

We analyzed cases of a Log4Shell vulnerability being exploited in certain versions of the software VMware Horizon. Many of these attacks resulted in data being exfiltrated from the infected systems. However, we also found that some of the victims were infected with ransomware days after the data exfiltration.

Read more

City worker loses USB stick containing data on every resident after day of drinking

Credit to Author: Christopher Boyd| Date: Tue, 28 Jun 2022 12:26:21 +0000

We take a look at reports of a USB drive containing data on all 460k residents of a city in Japan, and how encryption helped lessen the risk.

The post City worker loses USB stick containing data on every resident after day of drinking appeared first on Malwarebytes Labs.

Read more

LGBTQ+ community targeted by extortionists who threaten to publish nudes

Credit to Author: Malwarebytes Labs| Date: Tue, 28 Jun 2022 11:15:24 +0000

The FTC has issued a warning to the LGBTQ+ community about extortionists posing as potential romantic partners on Grindr and Feeld.

The post LGBTQ+ community targeted by extortionists who threaten to publish nudes appeared first on Malwarebytes Labs.

Read more