jsrailton , to random
@jsrailton@mastodon.social avatar

NEW: Polish prosecutors seize equipment used by past gov.

Win for transparency in 🇵🇱.

Nightmare for NSO Group.

Story [PL]: https://tvn24.pl/polska/prokuratorzy-zabezpieczyli-urzadzenia-systemu-pegasus-st7973218

.

jsrailton , (edited ) to random
@jsrailton@mastodon.social avatar

Being so universally notorious that even scammers think their victims know your spyware.

amethyst , to random
@amethyst@haunted.computer avatar

Hey and probably also , why not. Are there any good talks on Unix rootkits? Specifically Unix, not Linux. Talking FreeBSD and all those flavors. Doing research for a character in a book.

PogoWasRight , to random
@PogoWasRight@infosec.exchange avatar

Japan Man Arrested for Creating Virus Using Generative AI Systems; ‘I Thought I Could Do Anything if I Asked AI’:

https://japannews.yomiuri.co.jp/society/crime-courts/20240528-188598/

#AI #generative #artificialintelligence #ransomware #malware

mpg , to bookstodon group
@mpg@grumble.social avatar

While I was working on compiling a PDF proof of some writing drafts this morning, I realized MS had "enhanced" office with AI. Without asking, without consent.

I was able to do the registry edit solution and now the AI.exe task does not appear to be loading when I go in to work on a draft.

https://thegeekpage.com/how-to-disable-the-artificial-intelligence-ai-host-feature/

I want to again remind people that AI is an equal opportunity robber. Your rough drafts? Private journals? AI don't care and will gobble that up.

@bookstodon

shadowfals ,
@shadowfals@mastodon.art avatar
Sempf , to random
@Sempf@infosec.exchange avatar

This is such a brilliantly simple flaw, I can't believe I didn't think of it.

Maybe because it is brilliant. And simple.

https://www.theregister.com/2024/04/22/edr_attack_remote_data_deletion/

polyduekes , to random
@polyduekes@ak.ari.lt avatar

#introduction

(ok so this is my first time writing something about myself so bear with me if it will be bad)

hey there everyone i am newbie to mastodon and a lot of things as well currently figuring out what my thing is

as of the time i am writing this my current interests are #android, #linux, #BSD, #cybersec, #reversing software and #malware analysis

most of the time yet i have spent on doing random things with android, have bricked my current phone three times XD and found a weird bug that is specifically applicable to my device that whenever i switch slot and reboot from fastbootd to fastbootd it's gpt partition table gets nuked lol, right now i am using a custom rom based on lineageOS on moto e7 plus called LMODroid

to linux i am little bit new and started using when i was fed up with windows annoyances(forced updates, search bar being useless, edge constantly bugging you etc.) the distro that i have used most is linux mint even though i have jumped to some distros from time to time namely debian, gentoo, fedora and yes kali XD but i have stopped using linux altogether nowadays and switched to FreeBSD(and i am loving it because of stuff like jails, poudriere and linux binary compatibility etc) due to an gpu driver bug in 5.x and later kernels i assume the issue was PC randomly freezing with weird strips of lines appearing on the screen and nothing except hard reboot worked

in cybersec i didn't did much except bunch of basic nmap stuff and trial of some android CVEs on my device

MA/RE are self explanatory i assume

oh and yeah for some time i was in gamedev as well, made bunch of incomplete projects in unity (and i hate the direction unity is going in nowadays) from a platformer to a FPS but that is an old story and out of my interest now

so yeah i have a lot of things and nothing much interesting about me and trying to figure out what i love the most to do but right now i am a jack of many trades you can say and that's all i have to say about me, hoping it wasn't much unbearable to read my introduction

heiseonline , to random German
@heiseonline@social.heise.de avatar

Intellexa: Spyware des Predator-Herstellers kommt über Online-Werbung

Der Malware-Dealer Intellexa stellt Spähsoftware vor, die Handys rein über Werbebanner infiziert.​ Ohne Klick.

https://www.heise.de/news/Intellexa-Spyware-des-Predator-Herstellers-kommt-ueber-Online-Werbung-9682500.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

YourAnonRiots , to random Japanese
@YourAnonRiots@mstdn.social avatar

⚠️ Beware of fake DocuSign emails – they're designed to trick you into downloading the New CHAVECLOAK Android banking .

What it does:

  • Hijacks your screen
  • Logs your keystrokes
  • Uses fake pop-ups to capture your banking logins

https://thehackernews.com/2024/03/new-banking-trojan-chavecloak-targets.html

flexghost , to random
@flexghost@mastodon.social avatar

The teens of america are uniting!

To end war? No

To solve world hunger? Nope

To stop congress from banning TikTok? Yep

After the spyware… (ahem) after the app supplied users with numbers to call, one teen threatened “I promise you do not ban TikTok. If you want a January 6th riot, that's what's going to happen. Don't do it”

…this, after giving their full name and address at the start of the call
(Via Politico)

And the calls keep coming

We’re about to see the wackiest uprising ever 🇺🇸

infosec_jcp , (edited )
@infosec_jcp@infosec.exchange avatar

@mozz @flexghost @maynarkh

I'll say it again. Same. 1:1. Arguments.

Change the company name above to Meta in your arguments.

Same. Arguments. ☑️✅✔️

Meta is a company masquerading as a Banner AD company. No more. Definitely Less due to Leadership issues.

TikTok is run by a former Facebook Intern who is now CEO.

So how's that project going again, Oracle Systems? What was that project name to localize this in TX data centers for TikTok? ✔️🦉📰🗞️

(Edit: , by , a former client, on !) 😂

This: https://www.washingtonpost.com/technology/2023/02/02/ticktok-transparency-center-opens/

infosec_jcp , (edited )
@infosec_jcp@infosec.exchange avatar

@mozz @flexghost @maynarkh

Ah, do I detecc a bit of UK wordage? Narce one guv Geezah.

Here is a smol example of how a simple image file can be used as a .ZIP file href to link to some . Hey, didn't you bring this very method up above? Huh. Citation give. ✅☑️☣️📰🗞️💤

This passes ' Play store Security ' scans, dbl communist tech bro. Meta does this. So does GammaGroup.Com software. This technique is quite.. checks notes old.

But go on. This is interesting! ☣️

https://infosec.exchange/@infosec_jcp/111767228025628368

Would you like to see the SHIM analysis also, dbl communist tech bro? 🤔

You know, the DEFAULT FACEBOOK SHIMS that checks notes go to ? 🤔☣️😂

Got that LINK .RU:
https://twitter.com/infosec_jcp/status/1585402019782619136

smallcircles , to random
@smallcircles@social.coop avatar

Beware infected repositories having in them.

https://apiiro.com/blog/malicious-code-campaign-github-repo-confusion-attack

> In order to maximize the chances of infection the malicious actor is flooding GitHub with malicious repos

Like this:

  • Clone existing repos (for example: TwitterFollowBot, WhatsappBOT, discord-boost-tool, Twitch-Follow-Bot)

  • Infect them with malware loaders

  • Upload them back to GitHub with identical names

  • Automatically fork each thousands of times

  • Covertly promote them across the web

anonymous222 , to random
@anonymous222@mastodon.social avatar

of a real life . Now with less , we can hope. Who's got a ?

jsrailton , to random
@jsrailton@mastodon.social avatar

BREAKING: spyware abused in 🇵🇱 under previous government, confirms the new PM Donald Tusk

"Very, very long" victim list.

Vindication.

When we @citizenlab first confirmed the hacking in 2021 both we & victims were targeted w/extensive harassment & disinformation.

REPORT: https://apnews.com/article/poland-government-pegasus-spyware-tusk-duda-78420fc7099401926d28b5be98669192

usk took power in December following an October election which he won as the head of a broad centrist alliance. It marked the end of eight years of rule by Law and Justice, a populist party that the European Union accused of eroding democratic norms. Duda, who holds presidential veto power and served during Law and Justice’s years in power, has at times opposed Tusk’s efforts to implement his agenda. The new parliament has set up a special commission to investigate who used Pegasus and against whom during Law and Justice’s years in government. “The list of victims of these practices is unfortunately very long,” Tusk said. The prime minister said he asked the justice minister and prosecutor general to provide Duda with a set of documents which “confirm 100% the purchase and use of Pegasus in a legal and illegal manner.” Several Polish opponents of the previous government were targeted with Pegasus, a spyware program made by Israel’s NSO Group, according to findings by the University of Toronto’s nonprofit Citizen Lab that were exclusively reported by The Associated Press. Pegasus gives its operators complete access to a mobile device, allowing them to extract passwords, photos, messages, contacts and browsing histories, and to activate the microphone and camera for real-time eavesdropping.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • test
  • worldmews
  • mews
  • All magazines