Technology

When you think of the ‘best smartphones’ of the year, it’s easy to just picture expensive, flagship phones. However, like every year, we’ve had some real standout mid-range offerings as well in 2022 that might not go toe-to-toe with proper flagships, but offer enough performance and features at much more affordable prices. Folding phones continued to
0 Comments
Dec 30, 2022Ravie LakshmananPatch Management The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two years-old security flaws impacting TIBCO Software’s JasperReports product to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The flaws, tracked as CVE-2018-5430 (CVSS score: 7.7) and CVE-2018-18809 (CVSS score: 9.9), were addressed by TIBCO in April
0 Comments
Samsung Galaxy A23 and Galaxy A04s are getting Android 13-based One UI 5.0 updates in the US and Panama, respectively. The update on both handsets brings in new features like customisation upgrades, performance improvements, and more. Additionally, the One UI 5.0 update comes along with the November 2022 security patch on firmware versions A236U1UEU1BVL1 and
0 Comments
On Tuesday December 27th, the Chief Administrative Officer of the US House of Representatives sent a notice to all Congressmen and women informing them that TikTok was being banished from all phones provided to them or to their staff by the government. But this was just the latest tip of a slow-motion landslide. In January,
0 Comments
Dec 30, 2022Ravie LakshmananBug Bounty / Privacy A security researcher was awarded a bug bounty of $107,500 for identifying security issues in Google Home smart speakers that could be exploited to install backdoors and turn them into wiretapping devices. The flaws “allowed an attacker within wireless proximity to install a ‘backdoor’ account on the device,
0 Comments
5G is here in India as major network carriers roll out the high-speed internet service across the country. Most 5G capable smartphones in the country have also received updates from their manufacturers to enable 5G network support. However, Google Pixel users have been made to wait on that front. Google’s 5G capable handsets have not
0 Comments
Dec 29, 2022Ravie LakshmananOnline Security / Malvertising Users searching for popular software are being targeted by a new malvertising campaign that abuses Google Ads to serve trojanized variants that deploy malware, such as Raccoon Stealer and Vidar. The activity makes use of seemingly credible websites with typosquatted domain names that are surfaced on top of
0 Comments
Dec 29, 2022Ravie LakshmananServer Security / Citrix Thousands of Citrix Application Delivery Controller (ADC) and Gateway endpoints remain vulnerable to two critical security flaws disclosed by the company over the last few months. The issues in question are CVE-2022-27510 and CVE-2022-27518 (CVSS scores: 9.8), which were addressed by the virtualization services provider on November 8
0 Comments
Made-in-India smartphone shipments have reportedly declined by 8 percent in Q3 2022 compared to Q3 2021 to reach 52 million units. The fallen consumer demands and market uncertainties have impacted the shipments, according to a survey conducted by market research firm Counterpoint Research. While Oppo topped the Made in India smartphone shipments in Q3 with
0 Comments
Dec 28, 2022Ravie LakshmananMalware / Windows Security Microsoft’s decision to block Visual Basic for Applications (VBA) macros by default for Office files downloaded from the internet has led many threat actors to improvise their attack chains in recent months. Now according to Cisco Talos, advanced persistent threat (APT) actors and commodity malware families alike are
0 Comments
Dec 28, 2022Ravie LakshmananBlockchain / Android Malware Decentralized multi-chain crypto wallet BitKeep on Wednesday confirmed a cyberattack that allowed threat actors to distribute fraudulent versions of its Android app with the goal of stealing users’ digital currencies. “With maliciously implanted code, the altered APK led to the leak of user’s private keys and enabled the
0 Comments
Dec 27, 2022Ravie LakshmananCyber Attack / Windows Security BlueNoroff, a subcluster of the notorious Lazarus Group, has been observed adopting new techniques into its playbook that enable it to bypass Windows Mark of the Web (MotW) protections. This includes the use of optical disk image (.ISO extension) and virtual hard disk (.VHD extension) file formats
0 Comments
Dec 27, 2022Ravie LakshmananData Security / Privacy Meta Platforms, the parent company of Facebook, Instagram, and WhatsApp, has agreed to pay $725 million to settle a long-running class-action lawsuit filed in 2018. The legal dispute sprang up in response to revelations that the social media giant allowed third-party apps such as those, including Cambridge Analytica
0 Comments