Jun 12, 2023Ravie LakshmananVulnerability / Software Security researchers have warned about an “easily exploitable” flaw in the Microsoft Visual Studio installer that could be abused by a malicious actor to impersonate a legitimate publisher and distribute malicious extensions. “A threat actor could impersonate a popular publisher and issue a malicious extension to compromise a targeted
Technology
Samsung launched the Galaxy S23 series earlier this year. The top-end Galaxy S23 Ultra grabbed attention due to its 10x optical zoom camera. Now, the rumours and speculations about the successor to Galaxy S23 Ultra have started doing rounds on the internet. A recent report suggests that the purported Galaxy S24 Ultra will come with
Jun 12, 2023The Hacker NewsAttack Surface Management The term “attack surface management” (ASM) went from unknown to ubiquitous in the cybersecurity space over the past few years. Gartner and Forrester have both highlighted the importance of ASM recently, multiple solution providers have emerged in the space, and investment and acquisition activity have seen an uptick.
Samsung has reportedly made the Google Wear OS 4-based One UI 5 Watch software update available to select beta testers in the US and South Korea. The update will allow owners of a Galaxy Watch to transfer their watch data and settings to a new phone without a factory reset. The feature is said to
The way we work has undergone a dramatic transformation in recent years. We now operate within digital ecosystems, where remote work and the reliance on a multitude of digital tools is the norm rather than the exception. This shift – as you likely know from your own life – has led to superhuman levels of
Infinix Note 30 5G is set to launch in India on June 14. The smartphone was released in select global markets in May. The company previously confirmed that the Indian variant will sport a 108-megapixel primary rear camera sensor. On Friday, Infinix announced that the phone will feature a bypass charging solution. The Infinix Note
Jun 09, 2023Ravie LakshmananCybercrime / APT The threat actor known as Asylum Ambuscade has been observed straddling cybercrime and cyber espionage operations since at least early 2020. “It is a crimeware group that targets bank customers and cryptocurrency traders in various regions, including North America and Europe,” ESET said in an analysis published Thursday. “Asylum
Meta announced to extend verified services to India on June 7. It will allow users to get verified badges in the country for their Facebook and Instagram accounts. Users will be able to purchase Meta Verified which will provide them a blue tick and certain additional features. Meta Verified is a subscription-based service that allows
Jun 10, 2023Ravie LakshmananCyber Attack / Malware Vietnamese public companies have been targeted as part of an ongoing campaign that deploys a novel backdoor called SPECTRALVIPER. “SPECTRALVIPER is a heavily obfuscated, previously undisclosed, x64 backdoor that brings PE loading and injection, file upload and download, file and directory manipulation, and token impersonation capabilities,” Elastic Security
Xiaomi is offering a free upgrade to a Xiaomi 12 Pro for Mi 11 Ultra users who are facing Wi-Fi issues. These users also have the option to further upgrade to the company’s latest Xiaomi 13 Pro by paying an extra fee of Rs. 30,000. Just recently, the company extended the warranty of the Mi 11
Jun 10, 2023Ravie LakshmananVulnerability / Cyber Threat Progress Software, the company behind the MOVEit Transfer application, has released patches to address brand new SQL injection vulnerabilities affecting the file transfer solution that could enable the theft of sensitive information. “Multiple SQL injection vulnerabilities have been identified in the MOVEit Transfer web application that could allow
Samsung Galaxy S22 is now being offered in India at a discounted price. The phone was launched in the country in February 2022, starting at a price of Rs. 72,999. The handset is powered by a 4nm octa-core Snapdragon 8 Gen 1 SoC and packs a 3,700mAh battery that supports up to 25W wired and
Jun 09, 2023Ravie LakshmananCyber Threat / Financial Security Banking and financial services organizations are the targets of a new multi-stage adversary-in-the-middle (AitM) phishing and business email compromise (BEC) attack, Microsoft has revealed. “The attack originated from a compromised trusted vendor and transitioned into a series of AiTM attacks and follow-on BEC activity spanning multiple organizations,”
The premium smartphone segment is a tough nut to crack for most manufacturers. This is because smartphones are expected to perform on every front. There’s no room for gimmicky features either. Software is expected to be fluid and so is a device’s gaming performance. Cameras should be more than capable of shooting low-light photos, with
Jun 09, 2023Ravie LakshmananCyber Espionage / APT A new custom backdoor dubbed Stealth Soldier has been deployed as part of a set of highly-targeted espionage attacks in North Africa. “Stealth Soldier malware is an undocumented backdoor that primarily operates surveillance functions such as file exfiltration, screen and microphone recording, keystroke logging and stealing browser information,”
iQoo Neo 7 Pro 5G is all set to launch on July 4 in India. The Vivo sub-brand, via Twitter, has confirmed the arrival of the new iQoo Neo-series smartphone in the country. The iQoo Neo 7 Pro 5G is teased to feature a hole-punch display design. It is confirmed to come in an orange
Jun 08, 2023Ravie LakshmananEndpoint Security / Zero-Day Details have emerged about a now-patched actively exploited security flaw in Microsoft Windows that could be abused by a threat actor to gain elevated privileges on affected systems. The vulnerability, tracked as CVE-2023-29336, is rated 7.8 for severity and concerns an elevation of privilege bug in the Win32k
Infinix Note 30 5G is set to launch in India on June 14. The phone was released globally earlier this year in May. It is powered by an octa-core MediaTek Dimensity 6080 SoC and is backed by a 5,000mAh battery with 45W wired fast charging support. The handset is available in varying configurations of 4GB
Jun 08, 2023Ravie LakshmananNetwork Security / Vulnerability VMware has released security updates to fix a trio of flaws in Aria Operations for Networks that could result in information disclosure and remote code execution. The most critical of the three vulnerabilities is a command injection vulnerability tracked as CVE-2023-20887 (CVSS score: 9.8) that could allow a
Samsung introduced the latest One UI 5 Watch software update for its eligible Galaxy Watch series in May and now it has been reportedly made available to select beta testers in the US and South Korea. The new One UI 5 Watch software update is said to be nearly 1.7GB in size. The is said