Phony WhatsApp used Unicode to slip under Google’s radar

After a troubling week for Google not so long ago, the company is under the spotlight once more for missing a phony Whatsapp that, after further investigation by several members of Reddit, was found laden with adware.

Categories:

Tags:

(Read more…)

The post Phony WhatsApp used Unicode to slip under Google’s radar appeared first on Malwarebytes Labs.

The post Phony WhatsApp used Unicode to slip under Google’s radar appeared first on Security Boulevard.

Continue reading Phony WhatsApp used Unicode to slip under Google’s radar

1M Downloads Later, Google Pulls Phony WhatsApp From Google Play

An adware-laden phony WhatsApp download has been removed from Google Play and the developer’s account suspended, but not before it was downloaded one million times. Continue reading 1M Downloads Later, Google Pulls Phony WhatsApp From Google Play

Attackers Use Undocumented MS Office Feature to Leak System Profile Data

An undocumented Microsoft Office feature allows for spying via specially crafted Word documents—no macros, exploits or any other active content needed. Continue reading Attackers Use Undocumented MS Office Feature to Leak System Profile Data

Hacked: Can a UTF-8 encoded script execute non-UTF-8 characters?

To be honest, I’m not really sure the best title for this question, or the full scope of it, but the motivation behind it is:

Motivation

Assume your server was hacked, you open up your UTF-8 encoded php script and you find a block or lines of characters that mean nothing to you mostly mapping in the UTF-8 char set to “????????????? hacker.ru”

I’m trying to get a grasp on what this could be and do:

Thoughts I’m considering

  • Perhaps the text editor selected font doesn’t support those chars?
  • Perhaps those chars were copied and pasted from non UTF-8 into the UTF-8 document
    • Crude Example:
      • non-UTF-8 binary 1111->A
      • UTF-8 binary 1111->B
      • Effectively copying bits that don’t map properly
  • Is there a way to properly display those chars?
  • This is my priority question about these characters Can I assume that these non-mapping chars do nothing? (i.e., they don’t execute aka do damage)
  • Are programming languages multi-lingual?
    • Can I write php in russain?
    • Can i write php in english and russian in the same file?

Assumption: if I or anyone opens a UTF-8 encoded file and type into it, in any language or chars it will properly map them and display properly.

Can anyone shine some light on this subject?

Continue reading Hacked: Can a UTF-8 encoded script execute non-UTF-8 characters?

Threatpost News Wrap, April 21, 2017

Mike Mimoso and Chris Brook discuss the news of the week, including last Friday’s ShadowBrokers dump – how Microsoft learned of the vulnerabilities, how they were patched by Oracle, along with Microsoft ditching passwords, and a new car dongle hack. Continue reading Threatpost News Wrap, April 21, 2017