Hackers Could Turn Pre-Installed Antivirus App on Xiaomi Phones Into Malware

What could be worse than this, if the software that’s meant to protect your devices leave backdoors open for hackers or turn into malware?

Researchers today revealed that a security app that comes pre-installed on more than 150 million devices manufac… Continue reading Hackers Could Turn Pre-Installed Antivirus App on Xiaomi Phones Into Malware

WordPress iOS App Bug Leaked Secret Access Tokens to Third-Party Sites

If you have a “private” blog with WordPress.com and are using its official iOS app to create or edit posts and pages, the secret authentication token for your admin account might have accidentally been leaked to third-party websites.

WordPress has rec… Continue reading WordPress iOS App Bug Leaked Secret Access Tokens to Third-Party Sites

In-Depth Analysis of JS Sniffers Uncovers New Families of Credit Card-Skimming Code

In a world that’s growing increasingly digital, Magecart attacks have emerged as a key cybersecurity threat to e-commerce sites.

Magecart, which is in the news a lot lately, is an umbrella term given to 12 different cyber criminal groups that are spec… Continue reading In-Depth Analysis of JS Sniffers Uncovers New Families of Credit Card-Skimming Code

Here’s the List of ~600 MAC Addresses Targeted in Recent ASUS Hack

EXCLUSIVE — While revealing details of a massive supply chain cyber attack against ASUS customers, Russian security firm Kaspersky last week didn’t release the full list all MAC addresses that hackers hardcoded into their malware to surgically target a… Continue reading Here’s the List of ~600 MAC Addresses Targeted in Recent ASUS Hack

Critical Magento SQL Injection Vulnerability Discovered – Patch Your Sites

If your online e-commerce business is running over the Magento platform, you must pay attention to this information.

Magento yesterday released new versions of its content management software to address a total of 37 newly-discovered security vulnerab… Continue reading Critical Magento SQL Injection Vulnerability Discovered – Patch Your Sites

Elfin Hacking Group Targets Multiple U.S. and Saudi Arabian Firms

An Iran-linked cyber-espionage group that has been found targeting critical infrastructure, energy and military sectors in Saudi Arabia and the United States two years ago continues targeting organizations in the two nations, Symantec reported on Wedne… Continue reading Elfin Hacking Group Targets Multiple U.S. and Saudi Arabian Firms

Insecure UC Browser ‘Feature’ Lets Hackers Hijack Android Phones Remotely

Beware! If you are using UC Browser on your smartphones, you should consider uninstalling it immediately.

Why? Because the China-made UC Browser contains a “questionable” ability that could be exploited by remote attackers to automatically download an… Continue reading Insecure UC Browser ‘Feature’ Lets Hackers Hijack Android Phones Remotely

Warning: ASUS Software Update Server Hacked to Distribute Malware

Remember the CCleaner hack?

CCleaner hack was one of the largest supply chain attacks that infected more than 2.3 million users with a backdoored version of the software in September 2017.

Security researchers today revealed another massive supply ch… Continue reading Warning: ASUS Software Update Server Hacked to Distribute Malware

Medtronic’s Implantable Defibrillators Vulnerable to Life-Threatening Hacks

The U.S. Department of Homeland Security Thursday issued an advisory warning people of severe vulnerabilities in over a dozen heart defibrillators that could allow attackers to fully hijack them remotely, potentially putting lives of millions of patien… Continue reading Medtronic’s Implantable Defibrillators Vulnerable to Life-Threatening Hacks