Cellebrite Tool Cracker Trump shooter’s Samsung Device in just 40 minutes

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The FBI successfully unlocked the Samsung smartphone of the deceased Trump shooter within 40 minutes, thanks to the digital forensics tools vendor, Cellebrite. The FBI had initially struggled to access the device for vital clues, prompting them to seek assistance …

Patchwork Hackers Upgraded Their Arsenal With Advanced PGoShell

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Advanced Threat Intelligence Team, Knownsec 404 has recently discovered a potential Bhutan-targeted attack by the Patchwork group that has employed an advanced Go backdoor and the Brute Ratel C4 red team tool for the first time. The vector of the …

Google Researchers Detailed Tools Used by APT41 Hacker Group

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Advanced persistent threat group APT41 launched an extended attack that successfully compromised a number of companies in the media and entertainment, IT, transportation and logistics, and automotive industries.  The campaign’s target organizations came from a wide range of nations, including …

Konfety Hackers Hosted 250 apps on Google’s Play Store to Push Malicious Ads

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers discovered a new ad fraud scheme named Konfety that leverages “decoy twin” apps on official marketplaces and their malicious “evil twin” counterparts.  Decoy twins are seemingly harmless apps found on platforms like the Google Play Store, while evil twins, …

Threat Actors Hijacking Facebook Accounts With Password Stealing Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors leverage social media to deploy malware, such as the SYS01 stealer, which steals Facebook credentials and spreads through compromised accounts. Social media’s popularity makes it a prime target, and stolen credentials are valuable for further attacks like ransomware …

GraphQL Security Report 2024: 69% of API Services Were Susceptible to DoS Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

GraphQL, a flexible and efficient query language for APIs, is seeing rapid adoption across enterprises. A recent report titled “The State of GraphQL Security 2024” reveals critical insights into the security landscape of GraphQL APIs. Based on the analysis of …

Critical Flaws In Traffic Light Controller Let Attackers Change Signal Lights

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in a traffic light controller has been found, which might allow attackers to change the lights and cause a traffic jam.  A traffic signal controller is one of the most essential devices for controlling traffic at junctions. …

Pwn2Own Automotive : Critical Vulnerabilities Discovered In AC Charging Controller

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Critical vulnerabilities in Phoenix Contact CHARX SEC-3100 have been found, giving attackers the ability to run arbitrary code and disclose confidential information on devices with compromised installations. Notably,  these vulnerabilities were discovered as part of a PWN2OWN competition initiated by …

Hacker’s Price List for Hijacking Server & Whatsapp Exposed

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Recordings heard by Calcalist reveal the shocking lengths to which litigants would go to influence a trial. The right-hand man of Ofer Baazov, an Israeli-Canadian businessman embroiled in a contentious lawsuit, allegedly hired a hacker to gain unauthorized access to …

10 Best Automated Penetration Testing Tools In 2024

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Automated penetration testing, known as vulnerability scanning, uses software to detect security flaws in networks, websites, applications, and cloud infrastructure. The process of assessing security threats in a system using automated security tools is known as “automated penetration testing” (“vulnerability …