Feb 22, 2023Ravie LakshmananEndpoint Security / Software Update Apple has revised the security advisories it released last month to include three new vulnerabilities impacting iOS, iPadOS, and macOS. The first flaw is a race condition in the Crash Reporter component (CVE-2023-23520) that could enable a malicious actor to read arbitrary files as root. The iPhone
Technology
Infinix Smart 7 device has been launched in India today. The company had previously unveiled the model globally. The Infinix Smart 7 Indian variant comes equipped with a “first-in-segment” 6,000mAH battery “with a power marathon tech that enhances the battery life by 25 percent.” The company claims that the battery could power the device for
Feb 22, 2023Ravie LakshmananExploitation Framework / Cyber Threat An open source command-and-control (C2) framework known as Havoc is being adopted by threat actors as an alternative to other well-known legitimate toolkits like Cobalt Strike, Sliver, and Brute Ratel. Cybersecurity firm Zscaler said it observed a new campaign in the beginning of January 2023 targeting an
Redmi 12C, which was launched in China last year, is soon expected to get a global debut. Ahead of an official announcement from the company regarding the smartphone, a poster has reportedly revealed the design and some of the key specs of the Redmi 12C. The handset is tipped to arrive with a 6.71-inch display,
Feb 21, 2023Ravie LakshmananEndpoint Security / Botnet A sophisticated botnet known as MyloBot has compromised thousands of systems, with most of them located in India, the U.S., Indonesia, and Iran. That’s according to new findings from BitSight, which said it’s “currently seeing more than 50,000 unique infected systems every day,” down from a high of
Vivo X Fold 2, the purported successor to the Vivo X Fold that was launched last year, is said to be in the works. The company is also reportedly working on the Vivo X Flip, another foldable phone that could feature a clamshell foldable design. While Vivo is yet to officially reveal plans to launch
Feb 21, 2023Ravie LakshmananCyber Threat / Cyber Attack A spear-phishing campaign targeting Indian government entities aims to deploy an updated version of a backdoor called ReverseRAT. Cybersecurity firm ThreatMon attributed the activity to a threat actor tracked as SideCopy. SideCopy is a threat group of Pakistani origin that shares overlaps with another actor called Transparent
Google Pixel 7 and Pixel 7 Pro have received 5G support in India after the Android 13 QPR2 Beta 2 update released earlier this year. The latest Google Pixel series phones support 5G networks only on Airtel and Jio. However, a recent report has revealed that the Pixel 7 series phones only support the first
Norwegian police agency Økokrim has announced the seizure of 60 million NOK (about $5.84 million) worth of cryptocurrency stolen by the Lazarus Group in March 2022 following the Axie Infinity Ronin Bridge hack. “This case shows that we also have a great capacity to follow the money on the blockchain, even if the criminals use
Samsung One UI 5.0 based on Android 13 was announced by the South Korean company at the Samsung Developer Conference (SDC) 2022 held in October last year. The Galaxy S22 Series received the stable version of the OS update by October end, followed by a series of Samsung smartphones being updated to One UI 5.0.
Feb 20, 2023Ravie LakshmananMobile Security / Zero Day Samsung has announced a new feature called Message Guard that comes with safeguards to protect users from malware and spyware via what’s referred to as zero-click attacks. The South Korean chaebol said the solution “preemptively” secures users’ devices by “limiting exposure to invisible threats disguised as image
Redmi 12C, a budget smartphone by the Xiaomi sub-brand, was launched in China last year. Soon after, the global variant of the phone was spotted on several certification sites, hinting at its imminent launch in other markets. Redmi 12C was speculated to launch in India and globally in February this year, before MWC 2023. Now,
Hey 👋 there, cyber friends! Welcome to this week’s cybersecurity newsletter, where we aim to keep you informed and empowered in the ever-changing world of cyber threats. In today’s edition, we will cover some interesting developments in the cybersecurity landscape and share some insightful analysis of each to help you protect yourself against potential attacks.
Poco C55 will launch in India on February 21, the company has confirmed. The arrival of the handset was previously teased by Poco India via a short promotional video. The smartphone was previously been spotted on several certification websites. The upcoming Poco C55 in earlier reports was tipped to be a rebranded Redmi 12C, which
Feb 19, 2023Ravie LakshmananNetwork Security / Firewall Fortinet has released security updates to address 40 vulnerabilities in its software lineup, including FortiWeb, FortiOS, FortiNAS, and FortiProxy, among others. Two of the 40 flaws are rated Critical, 15 are rated High, 22 are rated Medium, and one is rated Low in severity. Top of the list
Xiaomi 13 series will be launched in global markets on February 26, just in time for the upcoming Mobile World Congress (MWC 2023). On the same day, the company has confirmed that the Xiaomi 13 Pro will be released in India. Qualcomm’s latest-generation Snapdragon 8 Gen 2 SoC powers the Xiaomi 13 smartphone lineup. Details
Feb 18, 2023Ravie LakshmananAuthentication / Online Security Twitter has announced that it’s limiting the use of SMS-based two-factor authentication (2FA) to its Blue subscribers. “While historically a popular form of 2FA, unfortunately we have seen phone-number based 2FA be used – and abused – by bad actors,” the company said. “We will no longer allow
Vivo Y56 5G smartphone was launched in India by the company on Saturday. Sales of the handset via offline retail shops began on February 15. The device is now also listed for purchase on the official Vivo website. The newly launched smartphone from Vivo is powered by a MediaTek Dimensity 700 SoC, coupled with 8GB
Feb 18, 2023Ravie LakshmananServer Security / Malware Web hosting services provider GoDaddy on Friday disclosed a multi-year security breach that enabled unknown threat actors to install malware and siphon source code related to some of its services. The company attributed the campaign to a “sophisticated and organized group targeting hosting services.” GoDaddy said in December
Feb 17, 2023Ravie LakshmananMobile Security / Cyber Threat Suspected North Korean nation-state actors targeted a journalist in South Korea with a malware-laced Android app as part of a social engineering campaign. The findings come from South Korea-based non-profit Interlab, which coined the new malware RambleOn. The malicious functionalities include the “ability to read and leak