Security News

Europol says Home Routing mobile encryption feature aids criminals
2024-07-07 15:23

Europol is proposing solutions to avoid challenges posed by privacy-enhancing technologies in Home Routing that hinder law enforcement's ability to intercept communications during criminal investigations. Home Routing is a system in telecommunication services that allows customers to route traffic through their home network even when traveling abroad. When privacy-enhancing technologies are enabled in Home Routing, data is encrypted at the service level and subscribers' devices exchange session-based keys with the provider in the home network.

Europol says mobile roaming tech is making its job too hard
2024-07-05 08:26

Europol published a position paper today highlighting its concerns around SMS home routing - the technology that allows telcos to continue offering their services when customers visit another country. According to the cops, they pointed out that when roaming, a suspect in a criminal case who's using a SIM from another country will have all of their mobile communications processed through their home network.

T-Mobile denies it was hacked, links leaked data to vendor breach
2024-06-20 00:43

IntelBroker describes the data they're selling as "Source code, SQL files, Images, Terraform data, t-mobile.com certifications, Siloprograms." Recently, IntelBroker has been rapidly releasing new data breaches, and if they all used this cloud provider, it could explain where all the data is coming from.

Arid Viper Launches Mobile Espionage Campaign with AridSpy Malware
2024-06-13 13:55

The threat actor known as Arid Viper has been attributed to a mobile espionage campaign that leverages trojanized Android apps to deliver a spyware strain dubbed AridSpy. "The malware is...

Security and privacy strategies for CISOs in a mobile-first world
2024-06-12 04:00

First, there needs to be a shift in thinking when it comes to data security and an acknowledgment that the threat landscape has become much more complex with the majority of sensitive corporate data now residing in the cloud rather than in dedicated private data centers, multiple servers, network equipment, and storage devices. Instead, organizations must think about adopting a defense-in-depth approach to their security strategy - one that provides continuous insights into what's happening to their mobile devices, and an ability to detect and respond with AI-driven automation to protect sensitive data in the cloud no matter where it goes.

An attorney says she saw her library reading habits reflected in mobile ads. That's not supposed to happen
2024-05-18 17:04

Concerns about the privacy of library reading material date back to the early 20th century, explained Dorothea Salo, academic librarian and library-school instructor at the University of Wisconsin-Madison, to The Register. Library privacy became national news in 2005 when George Christian, then executive director of Library Connection, a Connecticut library consortium, received a National Security Letter from the FBI. The Feds, under the US Patriot Act, demanded library patron information without a warrant and imposed a lifetime gag order that forbade disclosure of the NSL. Christian and three colleagues, who became known as the Connecticut Four, refused to comply and a district court eventually found the gag order unconstitutional, prompting the government to drop its demand.

AT&T, Verizon, Sprint, T-Mobile US fined $200M for selling off people's location info
2024-04-29 23:20

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

Reddit down in major outage blocking access to web, mobile apps
2024-04-25 17:26

Reddit is investigating a major outage blocking users worldwide from accessing the social network's websites and mobile apps. Mobile users also report seeing an "Error: Choose failed Missing field 'user id'" error or an outage icon with the Reddit alien logo on the mobile app.

Enterprises face significant losses from mobile fraud
2024-04-18 03:30

A recent Enea survey highlights a worrying trend in enterprise security: Following ChatGPT's launch, 76% of businesses are inadequately protected against rising AI-driven vishing and smishing threats. In this Help Net Security video, John Hughes, SVP, Head of Network Security Business Group at Enea, discusses how, despite advancements, most enterprises continue to incur losses due to mobile fraud, mainly through smishing and vishing.

T-Mobile, Verizon workers get texts offering $300 for SIM swaps
2024-04-16 23:01

Criminals are now texting T-Mobile and Verizon employees on their personal and work phones, trying to tempt them with cash to perform SIM swaps. The targeted employees have shared screenshots of messages offering $300 to those willing to aid the senders in their criminal endeavors.