Category index

Cyber Security

4276 articles

4276 ARTICLES

FEATURED REPORT

Cognyte Sells a Mobile Cell Surveillance Van

Yet another Israeli mass surveillance company: Made by Israeli surveillance company Cognyte, the tech simulates a mobile phone tower, which forces nearby phones to connect to it. That enables cops to keep tabs on any phones in the vicinity ­ whether they’re owned by a suspect in a case or not. Cognyte’s contract with the state of Texas reveals that the simulator, called FalcoNet, can be concealed within the vehicles, hidden in a backpack for on-foot missions or attached to a helicopter. It’s the same technology as the infamous Stingray, one of the original cell-site simulators made by defense giant L3Harris…

BY Bruce Schneier
MIN READ 1 MIN READ
EXPLORE north_east
Cognyte Sells a Mobile Cell Surveillance Van
Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows Malware
CYBERSECURITY

Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows Malware

The China-linked cybercrime group behind the use of income tax-related phishing lures targeting Indian taxpayers, tax professionals, and corporate finance teams has been observed using a sophisticated crypter service called Cruciferra. According to a new analysis by Proofpoint, Cruciferra has been utilized by various unrelated cybercriminal threat clusters to deliver a wide array of remote

1 MIN READ arrow_forward
TELESHIM Abuses Telegram for C2 in Attacks Against Middle East Governments
CYBERSECURITY

TELESHIM Abuses Telegram for C2 in Attacks Against Middle East Governments

Cybersecurity researchers have flagged fresh malicious cyber activity by a threat actor with ties to East Asia targeting government entities in the Middle East. The intrusions have resulted in the deployment of previously unreported malware families dubbed TELESHIM, MIXEDKEY, and BINDCLOAK, according to Zscaler ThreatLabz. The cybersecurity firm said it detected the campaign earlier this month.

1 MIN READ arrow_forward
GitHub Adds 3-Day Dependabot Cooldown to Limit Poisoned Package Adoption
CYBERSECURITY

GitHub Adds 3-Day Dependabot Cooldown to Limit Poisoned Package Adoption

GitHub has announced a new cooldown mechanism in Dependabot, allowing the tool to wait at least three days after a release is published before opening a pull request. “The cooldown configuration option in the dependabot.yml still controls the behavior, though, so you can choose a different cooldown parameter that fits your project,” the Microsoft-owned subsidiary said. According to GitHub, the

1 MIN READ arrow_forward