Security News > 2023 > December

Spying through Push Notifications
2023-12-07 12:02

Wiredog December 7, 2023 7:17 AM. "Now that this method has become public we are updating our transparency reporting to detail these kinds of requests." I wonder what the chances are that someone at Apple leaked what was going on to a Senate staffer? And the chances that Apple's higher-ups knew about it?

New Bluetooth Flaw Let Hackers Take Over Android, Linux, macOS, and iOS Devices
2023-12-07 11:46

A critical Bluetooth security flaw could be exploited by threat actors to take control of Android, Linux, macOS and iOS devices. Tracked as CVE-2023-45866, the issue relates to a case of...

Hacking the Human Mind: Exploiting Vulnerabilities in the 'First Line of Cyber Defense'
2023-12-07 11:44

Humans are complex beings with consciousness, emotions, and the capacity to act based on thoughts. In the ever-evolving realm of cybersecurity, humans consistently remain primary targets for...

Building a Robust Threat Intelligence with Wazuh
2023-12-07 10:51

Threat intelligence refers to gathering, processing, and analyzing cyber threats, along with proactive defensive measures aimed at strengthening security. It enables organizations to gain a...

Researchers automated jailbreaking of LLMs with other LLMs
2023-12-07 10:46

AI security researchers from Robust Intelligence and Yale University have designed a machine learning technique that can speedily jailbreak large language models in an automated fashion. "The method, known as the Tree of Attacks with Pruning, can be used to induce sophisticated models like GPT-4 and Llama-2 to produce hundreds of toxic, harmful, and otherwise unsafe responses to a user query in mere minutes," Robust Intelligence researchers have noted.

Governments May Spy on You by Requesting Push Notifications from Apple and Google
2023-12-07 10:24

Unspecified governments have demanded mobile push notification records from Apple and Google users to pursue people of interest, according to U.S. Senator Ron Wyden. "Push notifications are alerts...

Belgian man charged with smuggling sanctioned military tech to Russia and China
2023-12-07 07:30

A Belgian man has been arrested and charged for his role in a years-long smuggling scheme to export military-grade electronics from the US to Russia and China. Belgian law enforcement detained Hans Maria De Geetere, 61, and five others for questioning on December 5.

New Stealthy 'Krasue' Linux Trojan Targeting Telecom Firms in Thailand
2023-12-07 06:15

A previously unknown Linux remote access trojan called Krasue has been observed targeting telecom companies in Thailand by threat actors to main covert access to victim networks at lease since...

Krasue RAT malware hides on Linux servers using embedded rootkits
2023-12-07 06:00

Security researchers discovered a remote access trojan they named Krasue that is targeting Linux systems of telecommunications companies and managed to remain undetected since 2021. According to researchers at cybersecurity company Group-IB, the main function of the malware is to maintain access to the host, which may suggest that it is deployed through a botnet or sold by initial access brokers to threat actors seeking access to a particular target.

Meta Launches Default End-to-End Encryption for Chats and Calls on Messenger
2023-12-07 05:52

Meta has officially begun to roll out support for end-to-end encryption (E2EE) in Messenger for personal calls and one-to-one personal messages by default in what it called the "most significant...