Junto com a quantidade cada vez maior de serviços que podem ser operados pelas contas gov.br (CNH, ID, SUS, ENEM, INSS, assinatura de documentos), cresce o interesse dos fraudadores em credenciais deste tipo (especialmente níveis prata e ouro) para uso em golpes.
The way Apple describes security features is pushing people away. It's hard to convince someone to use Lockdown Mode, Advanced Data Protection, or Security Keys when Apple calls these features "extreme" and only for those facing "concerted threats." glitchcat.xyz/p/apples-secur…
We've discovered a new cyberattack against iOS called Triangulation.
The attack starts with iMessage with a malicious attachment, which, using a number of vulnerabilities in iOS installs spyware. No user action is required.
#IOSTriangulation
Kaspersky released a new blogpost today, documenting an iOS 0day + zero-click exploit used to target cybersecurity researchers. The scope and full victimology are still unknown.
securelist.com/operation-tri…
NEW SPYWARE: Researchers at @kaspersky have captured and exposed a new iOS spyware campaign which was used to target **Kaspersky employees**.
Kaspersky were able to uncover the attack with @AmnestyTech's Mobile Verification Tool (MVT).
securelist.com/operation-tri…
Join on June 7 4pm CET for our webcast on cybersecurity of automotive industry.
Topics:
✅ Threat landscape evolution over the last 10 years
✅ Top threats the automotive industry
✅ Standards of automotive #cybersecurity
Sign up 👉 kas.pr/bm65
🚨 Denúncia: brasileiro foragido atacava empresas com ransomware
O suposto cibercriminoso Matheus Marques utilizava o LockBit para sequestrar arquivos em ataques nacionais e internacionais. Teria sido responsável pelo ataque no Banco de Brasília (BRB).
Detalhes 👇
Esta noticia da que pensar sobre el problema en la industria que puede suponer la capacidad de comunicación de los técnicos. En cada foro en el que tengo oportunidad, insisto en que los que nos dedicamos a la ciberseguridad no sabemos comunicarnos. Y eso no es gratis. Hilo¬
Quão eficiente é seu blacklist? @buzz3r_ mostrou no #ysts como o malware brasileiro Guildma abusa de fastflux, DGA, serviços legítimos, se valendo de serviços de cloud para criar um número ilimitado de C2s
Am I missing something obvious or was that video actually recorded on 10+ years old OS? If that tool really does what it claims shouldn't it be tested against latest OS version? and hardened Defender?
2nd week of our 5 weeks CTF started today!
We have released 3 new challenges to be tackled right away: Yara lvl 2, RE lvl 2 and IR lvl 2!
Happy hunting friends and have fun!
codebreakers.ctfd.io
Our first @kaspersky X training CTF is live right now. It consists of 2 popular tracks and an exotic one:
- IR
- Reversing
- Yara (!)
That's right! We have a dedicated Yara track with amazing challenges.
Head over to codebreakers.ctfd.io/ for more info.