Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 237 / 239
Objective-See's Blog https://objective-see.com/blog/blog_0x6D.html
15/02/2022 10:35:30
QRCode
archive.org
thumbnail

Analyzing OSX.DazzleSpy
A fully-featured cyber-espionage macOS implant

objectivesee EN analysis cyberespionage Asia macos DazzleSpy
Analyzing a watering hole campaign using macOS exploits https://blog.google/threat-analysis-group/analyzing-watering-hole-campaign-using-macos-exploits/
15/02/2022 10:33:08
QRCode
archive.org
thumbnail

To protect our users, TAG routinely hunts for 0-day vulnerabilities exploited in-the-wild. In late August 2021, TAG discovered watering hole attacks targeting visitors to Hong Kong websites for a media outlet and a prominent pro-democracy labor and political group. The watering hole served an XNU privilege escalation vulnerability (CVE-2021-30869) unpatched in macOS Catalina, which led to the installation of a previously unreported backdoor.

macOS EN google wateringhole exploit CVE-2021-30869
Watering hole deploys new macOS malware, DazzleSpy, in Asia https://www.welivesecurity.com/2022/01/25/watering-hole-deploys-new-macos-malware-dazzlespy-asia/
15/02/2022 10:30:34
QRCode
archive.org
thumbnail

The website of a Hong Kong pro-democracy radio station was compromised to serve a Safari exploit that installed cyberespionage malware on visitors’ Macs.

DazzleSpy macOS WeLiveSecurity wateringhole EN malware WebKit exploit Asia
SysJoker : un malware pour macOS, Windows et Linux qui opère discrètement depuis des mois https://www.macg.co/macos/2022/01/sysjoker-un-malware-pour-macos-windows-et-linux-qui-opere-discretement-depuis-des-mois-126671
15/02/2022 10:27:08
QRCode
archive.org
thumbnail

Un inquiétant cheval de Troie très discret et multiplateformes vient d'être repéré. Baptisé SysJoker et mis en lumière par la firme de sécurité Intezer, il peut cibler autant Windows, Linux que macOS. Pire encore, celui-ci passait sous les radars des antivirus depuis un bout de temps. Les versions Linux et macOS n'étaient jusqu'à présent pas du tout détectées par des sites

malware macos MacGeneration FR SysJoker Windows Linux
Backdoor RAT for Windows, macOS, and Linux went undetected until now | Ars Technica https://arstechnica.com/information-technology/2022/01/backdoor-for-windows-macos-and-linux-went-undetected-until-now/
15/02/2022 10:22:27
QRCode
archive.org
thumbnail

Never-before-seen, cross-platform SysJoker came from an "advanced threat actor."

Backdoor RAT EN arstechnica SysJoker APT
New SysJoker Backdoor Targets Windows, Linux, and macOS https://www.intezer.com/blog/malware-analysis/new-backdoor-sysjoker/
15/02/2022 10:20:18
QRCode
archive.org
thumbnail

In December 2021, we discovered a new multi-platform backdoor that targets Windows, Mac, and Linux that we have named SysJoker.

Intezer backdoor SysJoker malware Linux macos Windows EN multiplatform 
SysJoker analyzing the first (macOS) malware of 2022! https://objective-see.com/blog/blog_0x6C.html
15/02/2022 10:18:34
QRCode
archive.org
thumbnail

Earlier today (January 11th), Researchers at Intezer published an report titled, “New SysJoker Backdoor Targets Windows, Linux, and macOS.”

In this report, they detailed a new cross-platform backdoor they named SysJoker. Though initially discovered on Linux, the Intezer researchers shortly thereafter also found both Windows and Mac versions:

"SysJoker was first discovered during an active attack on a Linux-based web server of a leading educational institution. After further investigation, we found that SysJoker also has Mach-O and Windows PE versions." -Intezer

SysJoker macos malware EN objectivesee report analysis
Google Docs Comment Exploit Allows for Distribution of Phishing and Malware https://www.avanan.com/blog/google-docs-comment-exploit-allows-for-distribution-of-phishing-and-malware
15/02/2022 10:06:51
QRCode
archive.org
thumbnail

An exploit in the Google Docs comment feature allows hackers to easily spread malware and phishing.

Googledocs EN phishing attack vector
Can You Trust a File’s Digital Signature? New Zloader Campaign exploits Microsoft’s Signature Verification putting users at risk https://research.checkpoint.com/2022/can-you-trust-a-files-digital-signature-new-zloader-campaign-exploits-microsofts-signature-verification-putting-users-at-risk/
15/02/2022 10:03:30
QRCode
archive.org
thumbnail

Last seen in August 2021, Zloader, a banking malware designed to steal user credentials and private information, is back with a simple yet sophisticated infection chain. Previous Zloader campaigns, which were seen in 2020, used malicious documents, adult sites and Google ads to infect systems.
Evidence of the new campaign was first seen around early November 2021. The techniques incorporated in the infection chain include the use of legitimate remote management software (RMM) to gain initial access to the target machine.

checkpoint EN Zloader Altera Antik.Corp research
iPhone flaw exploited by second Israeli spy firm-sources https://www.reuters.com/technology/exclusive-iphone-flaw-exploited-by-second-israeli-spy-firm-sources-2022-02-03/
14/02/2022 13:26:45
QRCode
archive.org
thumbnail

A flaw in Apple's software exploited by Israeli surveillance firm NSO Group to break into iPhones in 2021 was simultaneously abused by a competing company, according to five people familiar with the matter.

Apple EN Reuters QuaDream 0-day-as-a-service zero-click ForcedEntry
Israelis didn’t care about NSO and Pegasus – until this scandal https://www.haaretz.com/israel-news/.premium-israelis-didn-t-care-about-nso-and-pegasus-until-this-scandal-1.10595417
14/02/2022 13:24:27
QRCode
archive.org
thumbnail

A series of reports into how the Israeli police spied on their own citizens has finally grabbed everyone’s attention – and nowhere more so than among Benjamin Netanyahu’s loyal followers

NSO Netanyahu Israel Pegasus police Haaretz EN
Le piratage d'une société américaine a des conséquences en Suisse https://www.blick.ch/fr/news/monde/attaque-de-rancongiciel-le-piratage-dune-societe-americaine-a-des-consequences-en-suisse-id17233928.html
14/02/2022 11:08:32
QRCode
archive.org
thumbnail

La société américaine iBasis a subi une attaque informatique ces derniers jours. Elle pourrait être utilisée comme transporteur de données appartenant à des opérateurs suisses.

iBasis CH FR piratage blick Swisscom Sunrise UPC Salt
Critical Vulnerabilities in PHP Everywhere Allow Remote Code Execution https://www.wordfence.com/blog/2022/02/critical-vulnerabilities-in-php-everywhere-allow-remote-code-execution/
14/02/2022 08:45:04
QRCode
archive.org
thumbnail

On January 4, 2022, the Wordfence Threat Intelligence team began the responsible disclosure process for several Remote Code Execution vulnerabilities in PHP Everywhere, a WordPress plugin installed on over 30,000 websites. One of these vulnerabilities allowed any authenticated user of any level, even subscribers and customers, to execute code on a site with the plugin ...Read More

wordfence EN Wordpress plugin PHPEverywhere CVE-2022-24664 CVE-2022-24665 CVE-2022-24663
Critical Magento 0-Day Vulnerability Under Active Exploitation — Patch Released https://thehackernews.com/2022/02/critical-magento-0-day-vulnerability.html
14/02/2022 08:17:20
QRCode
archive.org

Adobe on Sunday rolled out patches to contain a critical security vulnerability impacting its Commerce and Magento Open Source products that it said is being actively exploited in the wild.

CVE-2022-24086 thehackernews EN Magento critical 0-day
Google Online Security Blog: Vulnerability Reward Program: 2021 Year in Review https://security.googleblog.com/2022/02/vulnerability-reward-program-2021-year.html
14/02/2022 08:13:47
QRCode
archive.org
thumbnail

Last year was another record setter for our Vulnerability Reward Programs (VRPs). Throughout 2021, we partnered with the security researcher community to identify and fix thousands of vulnerabilities – helping keep our users and the internet safe.

Google reward bugbounty 2021 vulnerabilities data report EN
ModifiedElephant APT and a Decade of Fabricating Evidence https://www.sentinelone.com/labs/modifiedelephant-apt-and-a-decade-of-fabricating-evidence/
14/02/2022 08:08:29
QRCode
archive.org
thumbnail

A previously unreported threat actor has been targeting civil society for over a decade. Read about how it operates and its relationships to other threats.

SentinelOne EN attribution research APT ModifiedElephant
Swisscom, Sunrise et Salt touchés par un piratage aux Etats-Unis https://www.letemps.ch/economie/swisscom-sunrise-salt-touches-un-piratage-aux-etatsunis
13/02/2022 23:19:45
QRCode
archive.org
thumbnail

L’entreprise américaine iBasis, qui travaille avec des centaines d’opérateurs télécoms au niveau mondial, a vu une partie de ses données volées et publiées. Les opérateurs suisses sont concernés, révèle «Le Temps»

CH FR paywall letemps piratage iBasis Swisscom Sunrise Salt ransomware
North Korea Hacked Him. So He Took Down Its Internet https://www.wired.com/story/north-korea-hacker-internet-outage
13/02/2022 22:19:29
QRCode
archive.org
thumbnail

Disappointed with the lack of US response to the Hermit Kingdom's attacks against US security researchers, one hacker took matters into his own hands.

north-korea fightback hacker internet wired EN
I Used Apple AirTags, Tiles and a GPS Tracker to Watch My Husband’s Every Move - The New York Times https://www.nytimes.com/2022/02/11/technology/airtags-gps-surveillance.html
13/02/2022 22:10:12
QRCode
archive.org
thumbnail

A vast location-tracking network is being built around us so we don’t lose our keys: One couple’s adventures in the consumer tech surveillance state.

Privacy GPS Stalking Apple AirTags story nytimes EN
Emsisoft Decryptor for Maze / Sekhmet / Egregor - Emsisoft: Free Ransomware Decryption Tools https://www.emsisoft.com/ransomware-decryption-tools/maze-sekhmet-egregor
13/02/2022 22:04:57
QRCode
archive.org
thumbnail

Free Maze / Sekhmet / Egregor ransomware decryptor by Emsisoft. Unlock your files without paying the ransom.

decrypter decryptor emsisoft EN ransomware tool Maze Sekhmet Egregor emsisoft
page 237 / 239
4762 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio