Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 33 / 76
1513 résultats taggé 2024  ✕
Light on Safety https://foundation.mozilla.org/en/campaigns/light-on-safety/
04/08/2024 10:14:43
QRCode
archive.org

To attract users across the Global Majority, many technology companies have introduced “lite” versions of their products: Applications that are designed for lower-bandwidth contexts. TikTok is no exception, with TikTok Lite estimated to have more than 1 billion users.

Mozilla and AI Forensics research reveals that TikTok Lite doesn’t just reduce required bandwidth, however. In our opinion, it also reduces trust and safety. In comparing TikTok Lite with the classic TikTok app, we found several discrepancies between trust and safety features that could have potentially dangerous consequences in the context of elections and public health.

Our research revealed TikTok Lite lacks basic protections that are afforded to other TikTok users, including content labels for graphic, AI-generated, misinformation, and dangerous acts videos. TikTok Lite users also encounter arbitrarily shortened video descriptions that can easily eliminate crucial context.

Further, TikTok Lite users have fewer proactive controls at their disposal. Unlike traditional TikTok users, they cannot filter offensive keywords or implement screen management practices.

Our findings are concerning, and reinforce patterns of double-standard. Technology platforms have a history of neglecting users outside of the US and EU, where there is markedly less potential for constraining regulation and enforcement. As part of our research, we discuss the implications of this pattern and also offer concrete recommendations for TikTok Lite to improve.

foundation.mozilla EN 2024 TikTok lite research double-standard disinformation privacy safety
Russia-linked operations target Paris 2024 Olympics https://dfrlab.org/2024/08/01/russia-linked-operations-target-paris-2024-olympics/
03/08/2024 21:12:02
QRCode
archive.org
thumbnail

Cross-platform efforts denigrated France's handling of the games and fomented fear of a potential terrorist attack

dfrlab EN 2024 disinformation Russia France Paris2024Olympics operations
Acronis Product Vulnerability Exploited in the Wild https://www.securityweek.com/acronis-product-vulnerability-exploited-in-the-wild/
03/08/2024 21:10:03
QRCode
archive.org

Cybersecurity and data protection technology company Acronis last week warned that threat actors are exploiting a critical-severity vulnerability patched nine months ago.

Tracked as CVE-2023-45249 (CVSS score of 9.8), the security defect impacts Acronis Cyber Infrastructure (ACI) and allows threat actors to execute arbitrary code remotely due to the use of default passwords.

securityweek EN 2024 acronis CVE-2023-45249 ACI Exploited
Apple Rolls Out Security Updates for iOS, macOS https://www.securityweek.com/apple-rolls-out-security-updates-for-ios-macos
03/08/2024 21:08:56
QRCode
archive.org

Apple on Monday announced a hefty round of security updates that address dozens of vulnerabilities impacting both newer and older iOS and macOS devices.

iOS 17.6 and iPadOS 17.6 were released for the latest generation iPhone and iPad devices with fixes for 35 security defects that could lead to authentication and policy bypasses, unexpected application termination or system shutdown, information disclosure, denial-of-service (DoS), and memory leaks.

securityweek EN 2024 macos ios ipados Security Updates for iOS iOS17.6
Cybercriminals Abusing Cloudflare Tunnels to Evade Detection and Spread Malware https://thehackernews.com/2024/08/cybercriminals-abusing-cloudflare.html
03/08/2024 21:07:17
QRCode
archive.org
thumbnail

Cloudflare's TryCloudflare is being exploited by cybercriminals for malware delivery via phishing emails, reports say.

thehackernews EN 2024 Cloudflare Tunnels TryCloudflare
Quartet of Trouble: XWorm, AsyncRAT, VenomRAT, and… https://www.esentire.com/blog/quartet-of-trouble-xworm-asyncrat-venomrat-and-purelogs-stealer-leverage-trycloudflare
03/08/2024 21:06:45
QRCode
archive.org
thumbnail

Learn more about how four malware, XWorm, AsyncRAT, VenomRAT, and PureLogs Stealer, are leveraging TryCloudflare and get security recommendations from our…

esentire EN 2024 research analysis XWorm AsyncRAT VenomRAT PureLogStealer TryCloudflare
Black Basta ransomware switches to more evasive custom malware https://www.bleepingcomputer.com/news/security/black-basta-ransomware-switches-to-more-evasive-custom-malware/
03/08/2024 21:04:49
QRCode
archive.org
thumbnail

The Black Basta ransomware gang has shown resilience and an ability to adapt to a constantly shifting space, using new custom tools and tactics to evade detection and spread throughout a network.

bleepingcomputer EN 2024 BlackBasta Initial-Access Malware Ransomware mandiant UNC4393
UNC4393 Goes Gently into the SILENTNIGHT https://cloud.google.com/blog/topics/threat-intelligence/unc4393-goes-gently-into-silentnight/?hl=en
03/08/2024 21:04:00
QRCode
archive.org
thumbnail

In mid-2022, Mandiant's Managed Defense detected multiple intrusions involving QAKBOT, leading to the deployment of BEACON coupled with other pre-ransomware indicators. This marked Mandiant's initial identification of UNC4393, the primary user of BASTA ransomware. Mandiant has responded to over 40 separate UNC4393 intrusions across 20 different industry verticals. While healthcare organizations have not traditionally been a focus for UNC4393, several breaches in the industry this year indicate a possible expansion of their interests. However, this represents only a fraction of the cluster's victims, with the Black Basta data leak site purporting over 500 victims since inception.

Over the course of this blog post, Mandiant will detail the evolution of UNC4393's operational tactics and malware usage throughout its active lifespan, with a focus on the period following the QAKBOT botnet takedown. We will highlight the cluster's transition from readily available tools to custom malware development as well as its evolving reliance on access brokers and diversification of initial access techniques.

Mandiant EN 2024 QAKBOT UNC4393 BlackBasta SILENTNIGHT UNC4393
Cyber Espionage Group XDSpy Targets Companies in Russia and Moldova https://thehackernews.com/2024/07/cyber-espionage-group-xdspy-targets.html
03/08/2024 21:01:33
QRCode
archive.org
thumbnail

Russian and Moldovan companies targeted by XDSpy phishing campaign, deploying DSDownloader malware, amid escalating cyber conflicts.

thehackernews EN 2024 Cyber Espionage Group XDSpy Russia Moldova DSDownloader malware
How the theft of 40M UK voter register records was entirely preventable https://techcrunch.com/2024/08/02/how-the-theft-of-40-million-uk-voter-register-records-was-entirely-preventable/
03/08/2024 13:39:59
QRCode
archive.org
thumbnail

A scathing rebuke by the U.K. data protection watchdog reveals what led to the compromise of tens of millions of U.K. voters' information.

techcrunch EN 2024 UK data-protection watchdog compromise UK voters
US sues TikTok for collecting mass data on kids 13 and under https://cybernews.com/privacy/us-sues-tiktok-data-collection-kids-children-coppa
03/08/2024 11:09:25
QRCode
archive.org

The US government is suing TikTok and its Chinese parent company ByteDance over “widespread” privacy violations that it illegally collects data on kids 13 and under.

cybernews EN 2024 tiktok coppa US legal sued kids
Social Media Malvertising Campaign Promotes Fake AI Editor Website for Credential Theft https://www.trendmicro.com/en_us/research/24/h/malvertising-campaign-fake-ai-editor-website-credential-theft.html
03/08/2024 02:04:24
QRCode
archive.org
thumbnail

We uncovered a malvertising campaign where the threat actor hijacks social media pages, renames them to mimic popular AI photo editors, then posts malicious links to fake websites.

trendmicro EN 2024 malware cyber-crime research phishing malvertising social media fake mimic campaign
Don’t Let Your Domain Name Become a “Sitting Duck” https://krebsonsecurity.com/2024/07/dont-let-your-domain-name-become-a-sitting-duck/
03/08/2024 01:55:47
QRCode
archive.org

More than a million domain names -- including many registered by Fortune 100 firms and brand protection companies -- are vulnerable to takeover by cybercriminals thanks to authentication weaknesses at a number of large web hosting providers and domain registrars,…

krebsonsecurity EN 2024 abused DNS takeover weaknesses Duck domain
Mozilla follows Google in distrusting Entrust’s TLS certs • The Register https://www.theregister.com/2024/08/01/mozilla_entrust
03/08/2024 01:52:16
QRCode
archive.org
thumbnail

Compliance failures and unsatisfactory responses mount from the long-time certificate authority

theregister EN 2024 Mozilla Entrust Distrust certificate authority
Turkey blocks access to Instagram – POLITICO https://www.politico.eu/article/turkey-blocks-access-to-instagram/
02/08/2024 19:43:02
QRCode
archive.org
thumbnail

A senior official previously condemned the platform for ‘censoring’ Hamas-related content.

politico EN 2024 Israel-Hamas Turkey war Social Media Communications Israel Palestine Platforms Iran
News Greek Court Clears State Institutions of Involvement With Illegal Spyware https://balkaninsight.com/2024/07/30/greek-court-clears-state-institutions-of-involvement-with-illegal-spyware/
02/08/2024 18:07:14
QRCode
archive.org

Supreme Court ruling that Greek state agencies were not involved in the use of illegal spy software shocks opposition leader who says confidence in the justice system had been 'seriously shaken'.

balkaninsight EN 2024 Greece Pegasus ruled Supreme Court Spyware Illegal
Who are the two major hackers Russia just received in a prisoner swap? https://arstechnica.com/security/2024/08/who-are-the-two-major-hackers-russia-just-received-in-a-prisoner-swap/
02/08/2024 11:07:30
QRCode
archive.org
thumbnail

Both men committed major financial crimes—and had powerful friends.

arstechnica EN 2024 swap US Russia hackers financial crimes
Risk assessment report on cyber resilience on EU’s telecommunications and electricity sectors https://digital-strategy.ec.europa.eu/en/news/risk-assessment-report-cyber-resilience-eus-telecommunications-and-electricity-sectors
01/08/2024 23:13:00
QRCode
archive.org

EU Member States, with the support of the European Commission and ENISA, the EU Agency for Cybersecurity, published the first report on the cybersecurity and resilience of Europe’s telecommunications and electricity sectors.

digital-strategy.ec.europa.eu 2024 EU ENISA cybersecurity resilience report electricity telecommunications
Certificate Revocation Incident https://www.digicert.com/support/certificate-revocation-incident
01/08/2024 23:09:18
QRCode
archive.org

DigiCert will be revoking certificates that did not have proper Domain Control Verification (DCV). Before issuing a certificate to a customer, DigiCert validates the customer’s control or ownership over the domain name for which they are requesting a certificate using one of several methods approved by the CA/Browser Forum (CABF). One of these methods relies on the customer adding a DNS CNAME record which includes a random value provided to them by DigiCert. DigiCert then does a DNS lookup for the domain and verifies the same random value, thereby proving domain control by the customer..

digicert EN 2024 Certificate Revocation Incident DCV
'Fortune 50' Company Made Record-Breaking $75M Ransomware Payment https://www.pcmag.com/news/fortune-50-company-made-record-breaking-75m-ransomware-payment
01/08/2024 23:07:59
QRCode
archive.org

A major company made a staggering $75 million ransomware payment to hackers earlier this year, according to cybersecurity vendor Zscaler.

Zscaler made the claim in a Tuesday report examining the latest trends in ransomware attacks, which continue to ensnare companies, hospitals, and schools across the country.

pcmag EN 2024 Zscaler report Fortune50 record ransomware payment DarkAngels
page 33 / 76
4540 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio