A popular iOS software development kit (SDK) used by over 1,200 apps—with a total of more than a billion mobile users—is said to contain malicious code with the goal of perpetrating mobile ad-click fraud and capturing sensitive information. According to a report published by cybersecurity firm Snyk, Mintegral — a mobile programmatic advertising platform owned by Chinese mobile ad tech company
Source de l’article sur The Hacker News

If your web-server runs on Apache, you should immediately install the latest available version of the server application to prevent hackers from taking unauthorized control over it. Apache recently fixed multiple vulnerabilities in its web server software that could have potentially led to the execution of arbitrary code and, in specific scenarios, even could allow attackers to cause a crash
Source de l’article sur The Hacker News

Pour apaiser les inquiétudes des parents quant aux contenus visionnés par leurs enfants sur YouTube, l’une des plateformes de streaming les plus utilisées par les enfants, Kaspersky a intégré la fonctionnalité “Safe Search” pour Youtube à la solution Kaspersky Safe Kids. Après activation, la fonctionnalité bloque les résultats des recherches présentant des contenus indésirables, montrant des scènes de violence, de consommation de drogue ou à caractère blasphématoire.
Source de l’article sur UNDERNEWS

An unpatched security weakness in Google Drive could be exploited by malware attackers to distribute malicious files disguised as legitimate documents or images, enabling bad actors to perform spear-phishing attacks comparatively with a high success rate. The latest security issue—of which Google is aware but, unfortunately, left unpatched—resides in the « manage versions » functionality
Source de l’article sur The Hacker News

The United States Cybersecurity and Infrastructure Security Agency (CISA) has published a new report warning companies about a new in-the-wild malware that North Korean hackers are reportedly using to spy on key employees at government contracting companies. Dubbed ‘BLINDINGCAN,’ the advanced remote access trojan acts as a backdoor when installed on compromised computers. According to the FBI
Source de l’article sur The Hacker News

The federal prosecutors in the United States have charged Uber’s former chief security officer, Joe Sullivan, for covering up a massive data breach that the ride-hailing company suffered in 2016. According to the press release published by the U.S. Department of Justice, Sullivan « took deliberate steps to conceal, deflect, and mislead the Federal Trade Commission about the breach » that also
Source de l’article sur The Hacker News

Microsoft has issued an emergency out-of-band software update for Windows 8.1, Windows RT 8.1, and Windows Server 2012 R2 systems to patch two new recently disclosed security vulnerabilities. RAS Cybersecurity researchers today disclosed details of a memory vulnerability in IBM’s Db2 family of data management products that could potentially allow a local attacker to access sensitive data and even cause a denial of service attacks. CVE-2020-4414 XDR This new technology merges multiple prevention and detection technologies on a single platform to better understand threat signals so that you don’t need to purchase, integrate, and manage various control and integration technologies. Think of XDR as prepackaged EDR, NTA, UEBA (and perhaps other
Source de l’article sur The Hacker News

The South African arm of one of the world’s largest credit check companies Experian yesterday announced a data breach incident that exposed personal information of millions of its customers. While Experian itself didn’t mention the number of affect customers, in a report, the South African Banking Risk Information Centre—an anti-fraud and banking non-profit organization who worked with
Source de l’article sur The Hacker News

Des chercheurs en cybersécurité ont dévoilé aujourd’hui un botnet P2P (peer-to-peer) sophistiqué et multifonctionnel écrit en Golang qui cible activement les serveurs SSH depuis janvier 2020.
Source de l’article sur UNDERNEWS

Le commerce de bitcoin est en fait assez simple une fois que vous avez les informations adéquates. Étant la première monnaie cryptographique, il est assez simple de les acheter et de les vendre quand et comme vous le souhaitez. Le bitcoin a une histoire de volatilité qui a suscité l’intérêt de nombreux traders et des médias.
Source de l’article sur UNDERNEWS