Russian hacking campaign targets rights groups, media, former US ambassador

The government-backed hackers exploited fake friends and family with spear-phishing lures, according to research published Wednesday.

The post Russian hacking campaign targets rights groups, media, former US ambassador appeared first on CyberScoop.

Continue reading Russian hacking campaign targets rights groups, media, former US ambassador

Phones of journalists and activists in Europe targeted with Pegasus

The notorious Israeli spyware was used to target journalists often working in exile from their authoritarian home countries, report finds. 

The post Phones of journalists and activists in Europe targeted with Pegasus appeared first on CyberScoop.

Continue reading Phones of journalists and activists in Europe targeted with Pegasus

Inside Poland’s groundbreaking effort to reckon with spyware abuses 

Poland was once a “dark spot” on spyware abuse, but a probe, victim notifications and more has made it a potential model for other nations.

The post Inside Poland’s groundbreaking effort to reckon with spyware abuses  appeared first on CyberScoop.

Continue reading Inside Poland’s groundbreaking effort to reckon with spyware abuses 

New Leak Shows Business Side of China’s APT Menace

A new data leak that appears to have come from one of China’s top private cybersecurity firms provides a rare glimpse into the commercial side of China’s many state-sponsored hacking groups. Experts say the leak illustrates how Chinese government agencies increasingly are contracting out foreign espionage campaigns to the nation’s burgeoning and highly competitive cybersecurity industry. Continue reading New Leak Shows Business Side of China’s APT Menace

Apple Patches Actively Exploited iOS, macOS Zero-Days

Apple pushes out an urgent point-update to its flagship iOS and macOS platforms to fix a pair of security defects being exploited in the wild.
The post Apple Patches Actively Exploited iOS, macOS Zero-Days appeared first on SecurityWeek.
Continue reading Apple Patches Actively Exploited iOS, macOS Zero-Days

More than a dozen journalists sue NSO Group in U.S. court over alleged spyware targeting

The lawsuit is the third against the Israeli firm in the U.S., but the first brought by journalists.

The post More than a dozen journalists sue NSO Group in U.S. court over alleged spyware targeting appeared first on CyberScoop.

Continue reading More than a dozen journalists sue NSO Group in U.S. court over alleged spyware targeting

Security Vulnerabilities in Covert CIA Websites

Back in 2018, we learned that covert system of websites that the CIA used for communications was compromised by—at least—China and Iran, and that the blunder caused a bunch of arrests, imprisonments, and executions. We’re now learning that the CIA is still “using an irresponsibly secured system for asset communication.”

Citizen Lab did the research:

Using only a single website, as well as publicly available material such as historical internet scanning results and the Internet Archive’s Wayback Machine, we identified a network of 885 websites and have high confidence that the United States (US) Central Intelligence Agency (CIA) used these sites for covert communication…

Continue reading Security Vulnerabilities in Covert CIA Websites

House Intel Chairman vows to put ‘greater emphasis’ on fighting spyware

Spyware such as NSO Group-produced Pegasus is proliferating quickly and poses a threat to privacy and national security, experts said.

The post House Intel Chairman vows to put ‘greater emphasis’ on fighting spyware appeared first on CyberScoop.

Continue reading House Intel Chairman vows to put ‘greater emphasis’ on fighting spyware

Congress goes after spyware purveyors. Will it make a difference?

The crackdown on foreign commercial surveillance comes in the wake of high-profile attacks on diplomats and government officials abroad.

The post Congress goes after spyware purveyors. Will it make a difference? appeared first on CyberScoop.

Continue reading Congress goes after spyware purveyors. Will it make a difference?

NSO Group’s Pegasus Spyware Used against Thailand Pro-Democracy Activists and Leaders

Yet another basic human rights violation, courtesy of NSO Group: Citizen Lab has the details:

Key Findings

  • We discovered an extensive espionage campaign targeting Thai pro-democracy protesters, and activists calling for reforms to the monarchy.
  • We forensically confirmed that at least 30 individuals were infected with NSO Group’s Pegasus spyware.
  • The observed infections took place between October 2020 and November 2021.
  • The ongoing investigation was triggered by notifications sent by Apple to Thai civil society members in November 2021. Following the notification, multiple recipients made contact with civil society groups, including the Citizen Lab.

Continue reading NSO Group’s Pegasus Spyware Used against Thailand Pro-Democracy Activists and Leaders