Testing times for AV-Test as Twitter account hijacked by NFT spammers

An unauthorised party has seized control of the @avtestorg Twitter account, nuked its profile picture and banner, replaced its name and description with a full-stop, and set about retweeting numerous messages about NFTs.

Anti-virus testing organisa… Continue reading Testing times for AV-Test as Twitter account hijacked by NFT spammers

Smashing Security podcast #284: The Most Wanted Missing CryptoQueen

In this special edition of the “Smashing Security” podcast, computer security veterans Graham Cluley and Carole Theriault welcome back author and journalist Jamie Bartlett – host of “The Missing CryptoQueen” podcast.

Jamie tells us about his new boo… Continue reading Smashing Security podcast #284: The Most Wanted Missing CryptoQueen

More malware-infested apps, downloaded millions of times, found in the Google Play store

Three million Android users may have lost money and had their devices infected by spyware, after the discovery that the official Google Play store has been distributing apps infected by a new family of malware.

Read more in my article on the Tripwir… Continue reading More malware-infested apps, downloaded millions of times, found in the Google Play store

Anti-Russian denial-of-service app actually infects pro-Ukrainian activists

An app which purported to launch distributed denial-of-service (DDoS) attacks against the internet infrastructure of Russia, was in reality secretly installing malware on to the devices of pro-Ukrainian activists.

Read more in my article on the Hot … Continue reading Anti-Russian denial-of-service app actually infects pro-Ukrainian activists

Who on earth would be trying to promote EC-Council University via comment spam on my website?

I can’t tell you not to seek ethical hacking certification from EC-Council. But I can suggest that if you are looking for an online university to boost your cybersecurity career, you don’t settle for an outfit that has proven itself to be of questiona… Continue reading Who on earth would be trying to promote EC-Council University via comment spam on my website?

Hacker hijacks NFT artist DeeKay’s Twitter account, steals $150,000 worth of NFTs from fans

NFT artist DeeKay Kwon had his Twitter account hacked at the end of last week by scammers who managed to steal NFTs valued at $150,000 from his followers.

Read more in my article on the Hot for Security blog. Continue reading Hacker hijacks NFT artist DeeKay’s Twitter account, steals $150,000 worth of NFTs from fans

Smashing Security podcast #283: Disney’s social dumpster fire, Anom phones, and TikTok tragedies

A self-proclaimed “super hacker” causes problems in the Magic Kingdom, criminals regret trusting Anom phones, and lawsuits are filed against TikTok.

All this and much more is discussed in the latest edition of the award-winning “Smashing Security” p… Continue reading Smashing Security podcast #283: Disney’s social dumpster fire, Anom phones, and TikTok tragedies

Windows 8.1 displays full-screen warning as it nears its last day of support

Turn on a PC running Microsoft Windows 8.1 and you’re likely to be greeted with a full-screen message warning that the operating system will no longer be supported after 10 January 2023, and – critically – will no longer be receiving any security updates. Continue reading Windows 8.1 displays full-screen warning as it nears its last day of support

10,000 organisations targeted by phishing attack that bypasses multi-factor authentication

Microsoft has shared details of a widespread phishing campaign that not only attempted to steal the passwords of targeted organisations, but was also capable of circumventing multi-factor authentication (MFA) defences.

Read more in my article on the… Continue reading 10,000 organisations targeted by phishing attack that bypasses multi-factor authentication