Mobile Security

Meta AI is a ‘Privacy Disaster’ — OK Boomer
Richi Jennings | | cybersecurity risks of generative ai, dark patterns, DeleteFacebook, facebook, Facebook Spyware, generative AI, generative ai gen ai, Generative AI risks, Generative AI Security, generative artificial intelligence, Instagram, Large Language Models (LLM), Large language models (LLMs), LLM, llm applications security, Meta, Meta AI, Meta Platforms, Privacy, SB Blogwatch, social media, social network, social networking, social networking security, Social networks, spyware
More Meta mess: Pundits accuse Zuckerberg’s latest app of having a “dark pattern,” tricking the over 50s into oversharing ...
Security Boulevard

Zero-Click Flaw in Microsoft Copilot Illustrates AI Agent, RAG Risks
Jeffrey Burt | | AI agent security, Microsoft 365, Microsoft Copilot, RAG AI, security vulnerability
Aim Security researchers found a zero-click vulnerability in Microsoft 365 Copilot that could have been exploited to have AI tools like RAG and AI agents hand over sensitive corporate data to attackers ...
Security Boulevard

BADBOX 2.0 Botnet Infects Million-Plus Devices, FBI Says
BADBOX 2.0, which emerged two years after the initial iteration launched and a year after it was disrupted by vendors, has infected more than one million IoT consumer devices, prompting a warning ...
Security Boulevard

Microsoft Launches Free Security Program for European Governments
Microsoft is offering European countries a new cybersecurity program for free to help them defend against threats from nation-states like China and Russia, ransomware gangs, and AI-powered cyber threats through greater intelligence ...
Security Boulevard

Meta’s Secret Spyware: ‘Local Mess’ Hack Tracks You Across the Web
Richi Jennings | | android, android spyware, Browser Privacy, cookies, DeleteFacebook, facebook, Facebook Spyware, Incognito, Incognito Mode, Instagram, Meta, Meta Pixel, Meta Platforms, Privacy, SB Blogwatch, social media, social network, social networking, social networking security, Social networks, spyware, tracking, tracking cookies, Tracking Pixel, WebRTC leaks, Yandex
Farcebok: Zuckerberg’s privacy pledge revealed as ineffectual ...
Security Boulevard

Qualcomm Fixes Three Adreno GPU Flaws Abused in Android Attacks
Qualcomm issued patches for three zero-day vulnerabilities in its Adreno GPUs that Google threat intelligence researchers said were being exploited in "limited, targeted" attacks against Android devices ...
Security Boulevard

Microsoft Opens Windows Update to 3rd-Party Apps
Richi Jennings | | application delivery orchestration, APPX, Background Intelligent Transfer Service (BITS), BITS, Microsoft, Microsoft cybersecurity fixes, Microsoft Store, Microsoft Windows, MSIX App Installer, orchestration, Package Managers, SB Blogwatch, security orchestration, Win32, Windows, Windows Update, Windows Update orchestration platform, Windows updates, WinGet
A breath of fresh air: Security fixes and other updates will be “orchestrated” by Redmond’s own update tool ...
Security Boulevard

Law Enforcement, Microsoft Disrupt Operations of Popular Lumma Stealer
International law enforcement agencies and cybersecurity vendors seized thousands of domains used to run the MaaS operations of the widely popular Lumma Stealer malware, which was used to facilitate ransomware, malvertising, and ...
Security Boulevard

Warning to US Retail: ‘Scattered Spider’ Targets YOU (with DragonForce Ransomware)
Richi Jennings | | 0ktapus, attacks on online retailers, Co-op, Dembe Zuma, DragonForce, google, Harrods, internet retailers, John Hultquist, Mandiant, Marks & Spencer, Muddled Libra, online retailer, Online Retailers, online retailers cyber threats, Ransomware, Raymond Reddington, retail, Retail & Commerce, Retail & Consumer Goods, Retail & e-commerce, Retail and E-Commerce, Retail Cybersecurity, Retail Industry, SB Blogwatch, Scatter Swine, scattered spider, Starfraud, the Com, the Community, UNC3944
Arachnid alarm: Three major British retailers recently attacked, resulting in huge damage. Now we see the self-same scum spotlighting stores in the States ...
Security Boulevard

As US CVE Database Fumbles, EU ‘Replacement’ Goes Live
Richi Jennings | | CERT-EU, cisa, CISA Research, common vulnerabilities and exposures, CVE, CVE (Common Vulnerabilities and Exposures), CVE database, CVE Program, Cybersecurity and Infrastructure Security Agency, cybersecurity funding, Department of Homeland Security, DHS, ENISA, eu, EU Agency for Cybersecurity, European Union, European Union (EU), EUVD, Funding & Grants, Juhan Lepassaar, MITRE, MITRE Framework, National Institute of Standards and Technology, National Institute of Standards and Technology (NIST), NIS2, NIS2 Directive, NIST, SB Blogwatch, U.S. Department of Homeland Security, vulnerability database
Diesen Kuß der ganzen Welt! European Union Vulnerability Database (EUVD) launches this week. And not a moment too soon ...
Security Boulevard