Surge in identity crime victims reporting suicidal thoughts

Identity theft can have great financial impact on the victims, but the experienced emotional, physical and psychological impact can be even more devastating, according to the 2023 Consumer Impact Report from the Identity Theft Resource Center (ITRC) an… Continue reading Surge in identity crime victims reporting suicidal thoughts

Frankenshed rises from the dead to win 2023 Shed of the Year

The winner of 2023’s Cuprinol Shed of the Year competition has been announced. Londoner Archie Proudfoot was chosen for his Frankenshed, which involved bringing a ruined old shed back to life with recycled materials and decorative artwork.Continue Read… Continue reading Frankenshed rises from the dead to win 2023 Shed of the Year

Nearly a third of young people preyed on by “text pest” delivery drivers

Surely you should be able to order pizza without being pestered for sex or a date?

So, how come so many young people are claiming that they are being hassled after ordering an online delivery?

Read more in my article on the Hot for Security blog. Continue reading Nearly a third of young people preyed on by “text pest” delivery drivers

Agile Approach to Mass Cloud Credential Harvesting and Crypto Mining Sprints Ahead

Developers are not the only people who have adopted the agile methodology for their development processes. From 2023-06-15 to 2023-07-11, Permiso Security’s p0 Labs team identified and tracked an attacker developing and deploying eight (8) incremental … Continue reading Agile Approach to Mass Cloud Credential Harvesting and Crypto Mining Sprints Ahead

Posted in Uncategorized

Syrian Threat Actor EVLF Unmasked as Creator of CypherRAT and CraxsRAT Android Malware

A Syrian threat actor named EVLF has been outed as the creator of malware families CypherRAT and CraxsRAT.
“These RATs are designed to allow an attacker to remotely perform real-time actions and control the victim device’s camera, location, and microph… Continue reading Syrian Threat Actor EVLF Unmasked as Creator of CypherRAT and CraxsRAT Android Malware

Posted in Uncategorized

Bogus OfficeNote app delivers XLoader macOS malware

A new macOS-specific variant of the well known XLoader malware is being delivered disguised as the “OfficeNote” app. “Multiple submissions of this sample have appeared on VirusTotal throughout July, indicating that the malware has bee… Continue reading Bogus OfficeNote app delivers XLoader macOS malware

CVE-2023-3899 (enterprise_linux, enterprise_linux_desktop, enterprise_linux_eus, enterprise_linux_for_arm_64, enterprise_linux_for_arm_64_eus, enterprise_linux_for_ibm_z_systems, enterprise_linux_for_ibm_z_systems_eus, enterprise_linux_for_power_big_endian, enterprise_linux_for_power_little_endian, enterprise_linux_for_power_little_endian_eus, enterprise_linux_for_scientific_computing, enterprise_linux_server, enterprise_linux_server_aus, enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions, enterprise_linux_server_tus, enterprise_linux_server_update_services_for_sap_solutions, enterprise_linux_update_services_for_sap_solutions, enterprise_linux_workstation, fedora, subscription-manager)

A vulnerability was found in subscription-manager that allows local privilege escalation due to inadequate authorization. The D-Bus interface com.redhat.RHSM1 exposes a significant number of methods to all users that could change the state of the regis… Continue reading CVE-2023-3899 (enterprise_linux, enterprise_linux_desktop, enterprise_linux_eus, enterprise_linux_for_arm_64, enterprise_linux_for_arm_64_eus, enterprise_linux_for_ibm_z_systems, enterprise_linux_for_ibm_z_systems_eus, enterprise_linux_for_power_big_endian, enterprise_linux_for_power_little_endian, enterprise_linux_for_power_little_endian_eus, enterprise_linux_for_scientific_computing, enterprise_linux_server, enterprise_linux_server_aus, enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions, enterprise_linux_server_tus, enterprise_linux_server_update_services_for_sap_solutions, enterprise_linux_update_services_for_sap_solutions, enterprise_linux_workstation, fedora, subscription-manager)

Posted in Uncategorized