A report presented this month at the 2017 Usenix Workshop on Offensive Technologies was pretty offensive – and not in the way they meant in the workshop title. Offensive security is what spies do – go out and attack a system. The report demonstrated a proof of concept attack that would work if someone took […]
Continue reading →
[DISPLAY_ACURAX_ICONS]
The BankBot trojan is managing to keep Google Engineers on their toes. The trojan sits, literally, on top of existing banking apps and captures your user name and password. The initial target was Russian banks. Then it was “improved” to include UK, Austria, Germany and Turkey. Who knows what the next version will target. The […]
Continue reading →
[DISPLAY_ACURAX_ICONS]
A few short items today. First, Lastpass, one of the two password managers that I like (the other is Keepass) has been hit with three different security bugs in the last couple of weeks. This is due to the fact that Google Project Zero security researcher Tavis Ormandy has put Lastpass in his sights. The […]
Continue reading →
[DISPLAY_ACURAX_ICONS]
For those Google G-Suite (AKA Google Apps and Google Apps for Work) users, Google has released a new option for managing iPhones and iPads. What is great about it is that it does NOT require installing an agent on the phone or pad. Google calls it the Basic Mobile Management option for iOS and it […]
Continue reading →
[DISPLAY_ACURAX_ICONS]
First the good news – you have to have physical control of the iPhone in order to make this hack work. Now the bad news – there is more than one YouTube video describing how to do it. Too bad the FBI didn’t see the videos before they tried to get Apple to unlock the […]
Continue reading →
[DISPLAY_ACURAX_ICONS]
When is a hack not a hack? When an Israeli company sells it as a feature. The company, NSO Group, sells the software, to governments among others. The software allows the attacker to: Control the camera Listen to the microphone Track the phone’s location Intercept text messages Intercept emails Download the calendar data Download your […]
Continue reading →
[DISPLAY_ACURAX_ICONS]