Digital Forensics & Cyber Security Blog
Digital Forensics & Cyber Security Blog
Researchers Crack Open Notorious Fancy Bear Rootkit
UEFI malware has been in the wild for more than two years The Fancy Bear hacking group's Lojax rootkit is far from a one-off tool, and may have been active in the wild for years before it was first reported. This is according to an analysis from Netscout's ASERT team, which took [...]
Over a Year Later and WannaCry Still Poses a Real Threat
While largely contain eighteen months after the initial outbreak of the WannaCry Ransomware infection, the malware continues to rear its head on thousands, if not hundreds of thousands, of infected computers. When the WannaCry infection was first unleashed, security researcher Marcus Hutchins of Kryptos Logic registered a domain that acted as a kill switch for the [...]
Elcomsoft Extracts Apple Health Data from iCloud
Moscow - ElcomSoft Co. Ltd. is pleased to announce the release of Elcomsoft Phone Breaker 9.0, the update to the company's forensic extraction tool for macOS and Windows. Version 9.0 gains the ability to remotely access Apple Health data stored in Apple iCloud, becoming the first forensic tool on the [...]
Verizon is launching RCS Chat on the Pixel 3 on December 6th
Verizon has confirmed to The Verge that it will be launching RCS Chat on the Pixel 3 and 3 XL on December 6th. Only those two phones on Verizon will have the feature, but the company tells me that it is “committed to bringing advanced messaging to other Verizon smartphones in the [...]
Are the Chinese Government Spying on Tesla and Other EV Drivers?
According to a new report from the AP, which reveals that the Chinese government requires all electric vehicle manufacturers in the country–not just Tesla, but BMW, Ford, Volkswagen, GM, a total of 200–to report a shocking amount of data on vehicles to the government. Specifically, they must report 61 data points, [...]
Hackers Can Exploit This Bug to Tamper with Surveillance Camera Footage
There is a vulnerability in Nuuo surveillance cameras which hackers can use to hijack the devices to tamper with footage and live feeds. The Cybersecurity firm Digital Defense said that its Vulnerability Research Team (VRT) had uncovered a zero-day vulnerability in Nuuo NVRmini 2 Network Video Recorder firmware, software used by hundreds [...]
Urban Massage Exposed a Huge Customer Database
A popular massage-booking app has exposed 309,000 customer profiles, including comments from their masseurs or masseuses on how creepy their customers are. The app’s wide-open, no-password-required database was discovered by researcher Oliver Hough, who tipped off TechCrunch. Hough said in a tweet on Tuesday that the breach was caused by unimplemented security [...]
One Thing You’ll No Longer be Able to Do at Starbucks… Thank Goodness
Bad news for creeps: Starbucks says that from next year it'll begin to block pornographic sites from being accessed via its Wi-Fi. It seems that the chain was under pressure from a group called Enough Is Enough, which is upset that Starbucks committed to doing something about the problem in 2016 [...]
Logan Airport Exacuated Due to a Suitcase Emitting Smoke
The Transportation Security Administration says smoke pouring from a suitcase caused passengers to face a fright and evacuation order at Boston’s Logan International Airport over the holiday weekend. The international airport ordered everyone in baggage security to leave after a suitcase began to emit smoke. The blue plastic suitcase started smoking [...]