Security News

US military contractor moves to buy Israeli spy-tech company NSO Group
2022-07-11 13:00

US security technology provider L3Harris has courted controversial Israeli spyware firm NSO with an aim to buy it, according to reports. The New York Times claims L3Harris in recent months sent a team to Israel to try to smooth passage of the deal, which was made challenging by US president Joe Biden's decision to blacklist NSO following the use of its Pegasus software to crack phones of politicians and campaigners.

ZuoRAT Malware Hijacking Home-Office Routers to Spy on Targeted Networks
2022-06-29 00:40

A never-before-seen remote access trojan dubbed ZuoRAT has been singling out small office/home office routers as part of a sophisticated campaign targeting North American and European networks. The malware "Grants the actor the ability to pivot into the local network and gain access to additional systems on the LAN by hijacking network communications to maintain an undetected foothold," researchers from Lumen Black Lotus Labs said in a report shared with The Hacker News.

Industrial Spy data extortion market gets into the ransomware game
2022-05-26 12:02

The Industrial Spy data extortion marketplace has now launched its own ransomware operation, where they now also encrypt victim's devices. Last month, we reported on a new data extortion marketplace called Industrial Spy that allowed threat actors, and possibly even business competitors, to purchase data stolen from companies.

Screencastify fixes bug that would have let rogue websites spy on webcams
2022-05-24 00:17

Screencastify, a popular Chrome extension for capturing and sharing videos from websites, was recently found to be vulnerable to a cross-site scripting flaw that allowed arbitrary websites to dupe people into unknowingly activating their webcams. Palant contends the browser extension continues to pose a risk because the code trusts multiple partner subdomains, and an XSS flaw on any one of those sites could potentially be misused to attack Screencastify users.

New Industrial Spy stolen data market promoted through cracks, adware
2022-04-16 16:50

Threat actors have launched a new marketplace called Industrial Spy that sells stolen data from breached companies, as well as offering free stolen data to its members. While stolen data marketplaces are not new, instead of extorting companies and scaring them with GDPR fines, Industrial Spy promotes itself as a marketplace where businesses can purchase their competitors' data to gain access to trade secrets, manufacturing diagrams, accounting reports, and client databases.

UK spy agencies sharing bulk personal data with foreign allies was legal, says court
2022-04-06 08:33

A privacy rights org this week lost an appeal [PDF] in a case about the sharing of Bulk Personal Datasets by MI5, MI6, and GCHQ with foreign intelligence agencies. The decision means a contested part of a 2018 ruling by the IPT will stand: that safeguards and rules around data collection between 2015 to 2017 by the state agencies meant that sharing that data was legal - "Compatible with article 8 of the European Convention of Human Rights."

UK spy boss warns China hopes Russia will help it take over tech standards
2022-03-31 04:01

The director of UK intelligence agency Government Communications Headquarters, Sir Jeremy Fleming, has warned that China is trying to introduce "Undemocratic values as the default for vast swathes of future tech and the standards that govern it." China believes Russia will support its digital markets and technology plans.

Cow-counting app abused by China 'to spy on US states'
2022-03-09 00:08

Beijing's spies compromised government computer networks in six US states by exploiting, among other flaws, a vulnerability in a cattle-counting system, according to Mandiant. Mandiant said APT41 aka Double Dragon, one of China's more aggressive intrusion crews, exploited a zero-day vulnerability in a web app called USAHerds, used by agriculture officials to track the health and density of the nation's livestock, as well as the Log4j flaw, to break into American local government systems.

Cow-counting app 'abused by China to spy on US govt'
2022-03-09 00:08

Beijing's spies compromised government computer networks in six US states by exploiting, among other flaws, a vulnerability in a cattle-counting system, according to Mandiant. Mandiant said APT41 aka Double Dragon, one of China's more aggressive intrusion crews, exploited a zero-day vulnerability in a web app called USAHerds, used for tracking the health and density of the nation's livestock, as well as the Log4j flaw, to break into American public-sector systems.

Internet 'spy system' delayed because nation can't get the equipment
2022-02-16 03:45

The government of Cambodia has delayed implementation of its National Internet Gateway, because it is yet to acquire the equipment needed to operate the service. The Gateway was announced in February 2021 and quickly attracted criticism on the basis its enabling legislation gives the regime - which has banned opposition parties from contesting elections - the power to force all internet traffic to or from the country, and within its borders, to pass through the Gateway.