IT / OT Security News
Headlines: 2023
December 11, 2023
Two-day water outage in remote Irish region caused by pro-Iran hackers
Residents of a remote area on Ireland’s west coast were left without water last week due to a cyberattack perpetrated by a pro-Iran hacking group targeting a piece of equipment the hackers complained was made in Israel.
August 8, 2023
US regulators fine Wall Street firms $549 mln in latest texting probe
U.S. regulators on Tuesday fined nine Wall Street companies, including Wells Fargo (WFC.N), opens new tab, BNP Paribas (BNPP.PA), opens new tab and Société Générale (SOGN.PA), opens new tab $549 million over employees' use of personal messaging apps to discuss deals, trades and other business.
July 14, 2023
Honeywell, CISA warn of ‘Crit.IX’ vulnerabilities affecting manufacturing tools
Operational technology giant Honeywell joined the Cybersecurity and Infrastructure Security Agency (CISA) Thursday in warning of several serious vulnerabilities affecting a line of industrial control tools used widely within the manufacturing industry.
July 14, 2023
AVrecon malware infects 70,000 Linux routers to build botnet
Since at least May 2021, stealthy Linux malware called AVrecon was used to infect over 70,000 Linux-based small office/home office (SOHO) routers and add them to a botnet designed to steal bandwidth and provide a hidden residential proxy service.
July 11, 2023
Amid security concerns, IDF wants access to stationary cameras
Last month, emergency regulations were approved authorizing the IDF and the Shin Bet to penetrate the computers used to operate stationary cameras; Now the Ministry of Defense requests to extend those powers by at least six months.
June 27, 2023
Swiss intelligence warns of fallout in cyberspace as West clamps down on spies
Switzerland’s Federal Intelligence Service (FIS) is warning that cyberattacks conducted for espionage purposes — including those targeting critical infrastructure operators — are going to increase as a result of Western efforts to degrade Russia’s human intelligence networks in Europe.
June 1, 2023
Russia accuses US of hacking thousands of Apple devices to spy on diplomats
Russia's Federal Security Service (FSB) is accusing U.S. intelligence of hacking “thousands of Apple phones” to spy on Russian diplomats. According to FSB’s statement published on Thursday, the U.S. used previously unknown malware to target iOS devices.
May 16, 2023
US ‘strike force’ charges Chinese and Russian nationals with stealing sensitive tech
The Justice Department on Tuesday announced a round of indictments accusing foreign nationals of attempting to illegally gain access to sensitive U.S. technologies, including the source code for Apple's autonomous driving system.
April 17, 2023
IoT devices increasingly being targeted by cybercriminals
Over the past three years, one global cybersecurity firm has seen IoT attack levels surge by double digits despite experts’ warnings. In a three-year analysis of data from its own user base and threat intelligence telemetry, a cybersecurity firm has noted a sharp increase in cyberattacks targeting IoT devices.
April 6, 2023
FBI - "Avoid using free charging stations in airports, hotels or shopping centers
Avoid using free charging stations in airports, hotels or shopping centers. Bad actors have figured out ways to use public USB ports to introduce malware and monitoring software onto devices. Carry your own charger and USB cord and use an electrical outlet instead.
March 27, 2023
Android app from China executed 0-day exploit on millions of devices
Android apps digitally signed by China’s third-biggest e-commerce company exploited a zero-day vulnerability that allowed them to surreptitiously take control of millions of end-user devices to steal personal data and install malicious apps, researchers from security firm Lookout have confirmed.
March 6, 2023
Threat actors are using advanced malware to backdoor business-grade routers
Researchers have uncovered advanced malware that’s turning business-grade routers into attacker-controlled listening posts that can sniff email and steal files in an ongoing campaign hitting North and South America and Europe.
March 1, 2023
Why TikTok Is Being Banned on Gov’t Phones in US and Beyond
The United States is ratcheting up national security concerns about TikTok, mandating that all federal employees delete the Chinese-owned social media app from government-issued mobile phones. Other Western governments are pursuing similar bans, citing espionage fears.
February 23, 2023
TikTok Banned From EU Commission Phones Over Cybersecurity
The European Union’s executive branch said Thursday that it has temporarily banned TikTok from phones used by employees as a cybersecurity measure, reflecting widening worries from Western officials over the Chinese-owned video sharing app.
February 23, 2023
Mozilla: Nearly 80% of Google Play Store apps have discrepancies in privacy reporting
Nearly four out every five apps in Google’s Play Store are not accurately reporting how they handle user data despite filling out required forms intended to increase transparency, researchers have found.
January 10, 2023
StrongPity Hackers Distribute Trojanized Telegram App to Target Android Users
The advanced persistent threat (APT) group known as StrongPity has targeted Android users with a trojanized version of the Telegram app through a fake website that impersonates a video chat service called Shagle.
January 3, 2023
Nearly 300 Vulnerabilities Patched in Huawei’s HarmonyOS in 2022
Chinese tech giant Huawei patched nearly 300 vulnerabilities in its HarmonyOS operating system in 2022.
Huawei smartphones and other devices ran Android until 2019, when the US government barred American companies from selling software and technology to the Chinese firm.
January 2, 2023
Phone and Laptop Seizures at Airports and Borders - Privacy Travel Guide
The world and its borders are slowly opening up after strict Covid lockdowns, and people are looking forward to travelling again. While this is great and fun, keep in mind that you might be subject to random searches and highly invasive and traumatic experiences.