Security News > 2021

Serious Security: Mac “XcodeSpy” backdoor takes aim at Xcode devs
2021-03-19 19:16

The hacked version of Xcode would add malware into iOS apps when they were compiled on an infected system, without infecting the source code of the app itself. As we said at the time, "Developers with sloppy security practices, such as using illegally-acquired software of unvetted origin for production builds, turned into iOS malware generation factories for the crooks behind XcodeGhost."

Office 365 Phishing Attack Targets Financial Execs
2021-03-19 18:18

A new phishing scam is on the rise, targeting executives in the insurance and financial services industries to harvest their Microsoft 365 credentials and launch business email compromise attacks, according to a new report from Area 1 Security. These new, sophisticated attacks are aimed at C-suite executives, their assistants and financial departments, and can work around email security and Office 365 defenses.

What could possibly go wrong? Sublet your home broadband to strangers who totally won't commit crimes
2021-03-19 18:01

The latest passive income trend, we're told by Lithuania-based internet biz IPRoyal, is internet sharing, a term that here means "Subletting" or "Reselling." Launched in January, IPRoyal pays residential internet users in exchange for "Sharing" their internet service, something many internet service providers like Sonic Internet [PDF] and Comcast prohibit in their terms of service.

Facebook outage affecting WhatsApp, Messenger and Instagram
2021-03-19 17:46

Facebook services are currently experiencing issues around the world, with users unable to access Facebook, Messenger, WhatsApp, and Instagram. When attempting to access Facebook services, users worldwide have stated that the application will display a continuous "Connecting" message.

Critical F5 BIG-IP vulnerability now targeted in ongoing attacks
2021-03-19 17:09

On Thursday, cybersecurity firm NCC Group said that it detected successful in the wild exploitation of a recently patched critical vulnerability in F5 BIG-IP and BIG-IQ networking devices. The security vulnerability these attackers attempt to exploit is an unauthenticated remote command execution tracked as CVE-2021-22986, and it affects most F5 BIG-IP and BIG-IQ software versions.

How to use semanage and avoid disabling SELinux
2021-03-19 16:50

Jack Wallen introduces you to three semanage commands that will help make dealing with SELinux considerably easier. With semanage, you can adjust file contexts, port contexts and booleans, which will go a long way to help you make things workable, while not disabling the security system.

Google: Sophisticated APT Group Burned 11 Zero-Days in Mass Spying Operation
2021-03-19 16:44

Google has added new details on a pair of exploit servers used by a sophisticated threat actor to hit users of Windows, iOS and Android devices. Malware hunters at Google continue to call attention to a sophisticated APT group that burned through at least 11 zero-days exploits in less than a year to conduct mass spying across a range of platforms and devices.

Russian Man Pleads Guilty to Role in Attempt to Plant Malware on Tesla Systems
2021-03-19 15:33

The Russian national who attempted to convince a Tesla employee to plant malware on the company's computers has pleaded guilty, the U.S. Justice Department announced on Thursday. Egor Igorevich Kriuchkov, 27, has pleaded guilty to one count of conspiracy to intentionally cause damage to a protected computer.

Bogus Android Clubhouse App Drops Credential-Swiping Malware
2021-03-19 15:21

Researchers are warning of a fake version of the popular audio chat app Clubhouse, which delivers malware that steals login credentials for more than 450 apps. As of now the app is only available on Apple's App Store mobile application marketplace - there's no Android version yet.

Computer giant Acer hit by $50 million ransomware attack
2021-03-19 15:11

Computer giant Acer has been hit by a REvil ransomware attack where the threat actors are demanding the largest known ransom to date, $50,000,000. Yesterday, the ransomware gang announced on their data leak site that they had breached Acer and shared some images of allegedly stolen files as proof.