Tag: security

Watch out — that free Android VPN app could hijack your device

Almost two dozen free Android VPN apps were actually turning host devices into residential proxies, researchers have revealed announced. All of the apps were subsequently removed from the Play Store, with some making a comeback after cleaning up their code. Cybersecurity researchers from HUMAN’s Satori Intelligence Team recently discovered a…

Read More

Thousands of Asus routers taken over by malware to form new proxy service

Thousands of old, outdated Asus routers are being targeted by a new version of “TheMoon” malware botnet, turning them into a network of devices used by a criminal residential proxy service. Researchers from Black Lotus Labs claim the campaign started in early March 2024 and within 72 hours, compromised roughly…

Read More

Google reveals the nastiest zero-days it tracked this year

The number of zero-day vulnerabilities exploited in the wild continued on an upward trajectory in 2023, posing a worrying question for businesses and consumers alike, new research from Google‘s security experts has claimed. A new report from Mandiant and Google’s own Threat Analysis Group (TAG) analyzed the zero-day landscape, noting…

Read More

A new ZenHammer attack is targeting more AMD CPUs

The infamous Rowhammer DRAM attack can now be pulled off on some AMD CPUs as well, academic researchers from ETH Zurich have proved. As reported by BleepingComputer, the researchers dubbed the attack ZenHammer, after cracking the complex, non-linear DRAM addressing functions in AMD platforms. For the uninitiated, the Rowhammer DRAM…

Read More

Ukraine VPN launches new improved apps

ClearVPN has just released a new more intuitive design across all its apps. It’s the second time the Ukraine VPN has undergone a major revamp to help its users, in and outside the country, to browse the open internet with improved security. Launched in 2020, the ClearVPN 2 update rolled…

Read More

Python devs are being targeted by this massive infostealing malware campaign

Cybersecurity researchers from Checkmarx have discovered a new infostealing campaign that leveraged typosquatting and stolen GitHub accounts to distribute malicious Python packages to the PyPI repository. In a blog post, Tal Folkman, Yehuda Gelb, Jossef Harush Kadouri, and Tzachi Zornshtain of Checkmarx said they discovered the campaign after a Python…

Read More