GriftHorse Android Trojan Infects Over 10 Million Devices Worldwide

A recently discovered cybercrime campaign leveraging mobile premium services has made over 10 million victims worldwide, potentially causing hundreds of millions in losses, according to mobile security firm Zimperium.
read more

Continue reading GriftHorse Android Trojan Infects Over 10 Million Devices Worldwide

Contactless Payment Card Hack Affects Apple Pay, Visa

A team of researchers has demonstrated a new attack method that affects iPhone owners who use Apple Pay and Visa payment cards. The vulnerabilities exploited in the attack remain unpatched, but the impacted vendors say they are not concerned.
read more… Continue reading Contactless Payment Card Hack Affects Apple Pay, Visa

Facebook Open-Sources ‘Mariana Trench’ Code Analysis Tool

Facebook’s security team on Wednesday pulled the curtain on Mariana Trench, an open-source tool that it has been using internally to identify vulnerabilities in Android and Java applications.
read more

Continue reading Facebook Open-Sources ‘Mariana Trench’ Code Analysis Tool

Akamai to Acquire Guardicore in $600M Zero Trust Tech Deal

Edge security and content delivery giant Akamai Technologies on Wednesday announced plans to spend $600 million to acquire Guardicore, an Israeli micro-segmentation technology startup.
Akamai said the deal would add new capabilities to help customers t… Continue reading Akamai to Acquire Guardicore in $600M Zero Trust Tech Deal

Cyberespionage Implant Delivered via Targeted Government DNS Hijacking

Threat hunters at Kaspersky have intercepted a new cyberespionage implant being delivered via targeted DNS hijacking of government zones in Eastern Europe and published a new report Wednesday with clues linking the malware to the SolarWinds attackers.
Continue reading Cyberespionage Implant Delivered via Targeted Government DNS Hijacking

CISA Warns of Hikvision Camera Flaw as U.S. Aims to Rid Chinese Gear From Networks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday informed organizations that some cameras made by Chinese video surveillance vendor Hikvision are affected by a critical vulnerability.
read more

Continue reading CISA Warns of Hikvision Camera Flaw as U.S. Aims to Rid Chinese Gear From Networks

FinSpy Surveillance Spyware Fitted With UEFI Bootkit

Security researchers at Kaspersky have spotted signs of the notorious FinSpy surveillance spyware hijacking — and replacing — the Windows UEFI bootloader to perform stealthy infections on target machines.
read more

Continue reading FinSpy Surveillance Spyware Fitted With UEFI Bootkit