Remove 2019 Remove Information Security Remove Spyware Remove VPN
article thumbnail

NSO CEO claims Facebook wanted NSO surveillance tool to spy on users

Security Affairs

In October 2019, WhatsApp sued the Israeli surveillance firm NSO Group accusing it of carrying out malicious attacks against its users. In May, Facebook has patched a critical zero-day vulnerability in WhatsApp, tracked as CVE-2019-3568 , that has been exploited to remotely install spyware on phones by calling the targeted device.

article thumbnail

Security Affairs newsletter Round 235

Security Affairs

UK NCSC agency warns of APTs exploiting Enterprise VPN vulnerabilities. MS October 2019 Patch Tuesday updates address 59 flaws. Users reported problems with patches for CVE-2019-1367 IE zero-day. Multiple APT groups are exploiting VPN vulnerabilities, NSA warns. SAP October 2019 Security Patch Day fixes 2 critical flaws.

VPN 54
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Security Affairs newsletter Round 240

Security Affairs

Microsoft Patch Tuesday updates fix CVE-2019-1429 flaw exploited in the wild. CVE-2019-3648 flaw in all McAfee AV allows DLL Hijacking. Tracking Iran-linked APT33 group via its own VPN networks. WhatsApp flaw CVE-2019-11931 could be exploited to install spyware. Checkra1n, a working iPhone Jailbreak, was released.

DDOS 52
article thumbnail

Cyber Security Roundup for May 2021

Security Boulevard

roundup of UK focused Cyber and Information Security News, Blog Posts, Reports and general Threat Intelligence from the previous calendar month, April 2021. The UK Security Service MI5 said 10,000 staff from every UK government department and from important UK industries have been lured by fake LinkedIn profiles.

article thumbnail

Security Affairs newsletter Round 237

Security Affairs

NordVPN, TorGuard, and VikingVPN VPN providers disclose security breaches. Swedish Government grants police the use of spyware against violent crime suspects. CVE-2019-11043 exposes Web servers using nginx and PHP-FPM to hack. Autoclerk travel reservations platform data leak also impacts US Government and military.

Spyware 41
article thumbnail

Security Affairs newsletter Round 343

Security Affairs

Hundreds of vulnerabilities in common Wi-Fi routers affect millions of users German BSI agency warns of ransomware attacks over Christmas holidays Cuba ransomware gang hacked 49 US critical infrastructure organizations CISA warns of vulnerabilities in Hitachi Energy products NSO Group spyware used to compromise iPhones of 9 US State Dept officials (..)

Spyware 84
article thumbnail

Updates from the MaaS: new threats delivered through NullMixer

Security Affairs

Lower.exe, a sample of “GCleaner” spyware, historically, this piece of malware was initially faking CCleaner to drop additional malware ( link ). Sqlcmd.exe, an interesting information stealer and dropper leveraging custom ECC cryptography to secure its communication (details below) KiffAppE2.exe,

Malware 82