FreshRSS

🔒
☐ ☆ ✇ WeLiveSecurity

Understanding Managed Detection and Response – and what to look for in an MDR solution

By Phil Muncaster — March 23rd 2023 at 10:30

Why your organization should consider an MDR solution and five key things to look for in a service offering

The post Understanding Managed Detection and Response – and what to look for in an MDR solution appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Twitter ends free SMS 2FA: Here’s how you can protect your account now

By Roman Cuprik — March 20th 2023 at 16:30

Twitter’s ditching of free text-message authentication doesn’t mean that you should forgo using 2FA. Instead, switch to another – and, indeed, better – 2FA option.

The post Twitter ends free SMS 2FA: Here’s how you can protect your account now appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

SVB’s collapse is a scammer’s dream: Don’t get caught out

By Phil Muncaster — March 17th 2023 at 11:12

How cybercriminals can exploit Silicon Valley Bank's downfall for their own ends – and at your expense

The post SVB’s collapse is a scammer’s dream: Don’t get caught out appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Not‑so‑private messaging: Trojanized WhatsApp and Telegram apps go after cryptocurrency wallets

By Lukas Stefanko — March 16th 2023 at 10:30

ESET researchers analyzed Android and Windows clippers that can tamper with instant messages and use OCR to steal cryptocurrency funds

The post Not‑so‑private messaging: Trojanized WhatsApp and Telegram apps go after cryptocurrency wallets appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

The slow Tick‑ing time bomb: Tick APT group compromise of a DLP software developer in East Asia

By Facundo Muñoz — March 14th 2023 at 10:30

ESET Research uncovered a campaign by APT group Tick against a data-loss prevention company in East Asia and found a previously unreported tool used by the group

The post The slow Tick‑ing time bomb: Tick APT group compromise of a DLP software developer in East Asia appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

5 signs you’ve fallen for a scam – and what to do next

By Phil Muncaster — March 13th 2023 at 10:30

Here’s how to know you have fallen victim to a scam – and what to do in order to undo or mitigate the damage.

The post 5 signs you’ve fallen for a scam – and what to do next appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Common WhatsApp scams and how to avoid them

By André Lameiras — March 10th 2023 at 10:30

Here's a roundup of some of the most common tricks that fraudsters use to dupe their victims on WhatsApp – and what you can do to protect yourself against them.

The post Common WhatsApp scams and how to avoid them appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Love scam or espionage? Transparent Tribe lures Indian and Pakistani officials

By Lukas Stefanko — March 7th 2023 at 10:30

ESET researchers analyze a cyberespionage campaign that distributes CapraRAT backdoors through trojanized and supposedly secure Android messaging apps – but also exfiltrates sensitive information

The post Love scam or espionage? Transparent Tribe lures Indian and Pakistani officials appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

MQsTTang: Mustang Panda’s latest backdoor treads new ground with Qt and MQTT

By Alexandre Côté Cyr — March 2nd 2023 at 10:30

ESET researchers tease apart MQsTTang, a new backdoor used by Mustang Panda, which communicates via the MQTT protocol

The post MQsTTang: Mustang Panda’s latest backdoor treads new ground with Qt and MQTT appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

BlackLotus UEFI bootkit: Myth confirmed

By Martin Smolár — March 1st 2023 at 10:30

The first in-the-wild UEFI bootkit bypassing UEFI Secure Boot on fully updated UEFI systems is now a reality

The post BlackLotus UEFI bootkit: Myth confirmed appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

ESET Research Podcast: Ransomware trashed data, Android threats soared in T3 2022

By ESET Research — February 28th 2023 at 10:30

And that’s just the tip of the iceberg when it comes to the trends that defined the cyberthreat landscape in the final four months of 2022.

The post ESET Research Podcast: Ransomware trashed data, Android threats soared in T3 2022 appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

A year of wiper attacks in Ukraine

By ESET Research — February 24th 2023 at 10:30

ESET Research has compiled a timeline of cyberattacks that used wiper malware and have occurred since Russia’s invasion of Ukraine in 2022

The post A year of wiper attacks in Ukraine appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

WinorDLL64: A backdoor from the vast Lazarus arsenal?

By Vladislav Hrčka — February 23rd 2023 at 10:30

The targeted region, and overlap in behavior and code, suggest the tool is used by the infamous North Korea-aligned APT group

The post WinorDLL64: A backdoor from the vast Lazarus arsenal? appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

ESET SMB Digital Security Sentiment Report: The damaging effects of a breach

By Editor — February 21st 2023 at 10:30

SMBs need to not only reduce their odds of being hit by an attack, but also implement processes that they can follow if their defenses are breached

The post ESET SMB Digital Security Sentiment Report: The damaging effects of a breach appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Security amidst a global frost

By Cameron Camp — February 16th 2023 at 16:15

No longer relegated to a side-show, tech is embedded into virtually every new piece of gear entering the battlefield

The post Security amidst a global frost appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

These aren’t the apps you’re looking for: fake installers targeting Southeast and East Asia

By Matías Porolli — February 16th 2023 at 10:30

ESET researchers have identified a campaign using trojanized installers to deliver the FatalRAT malware, distributed via malicious websites linked in ads that appear in Google search results

The post These aren’t the apps you’re looking for: fake installers targeting Southeast and East Asia appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

10 signs that scammers have you in their sights

By Phil Muncaster — February 15th 2023 at 10:30

Don’t be their next victim – here’s a handy round-up of some the most common signs that should set your alarm bells ringing

The post 10 signs that scammers have you in their sights appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Confident cybersecurity means fewer headaches for SMBs

By Editor — February 13th 2023 at 10:30

Small and medium-sized businesses have good reason to be concerned about the loss of data and financial impacts

The post Confident cybersecurity means fewer headaches for SMBs appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Alexa, who else is listening?

By Jake Moore — February 9th 2023 at 10:30

Your smart speaker is designed to listen, but could it be eavesdropping too?

The post Alexa, who else is listening? appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

ESET Threat Report T3 2022

By Roman Kovac — February 8th 2023 at 10:30

A view of the T3 2022 threat landscape as seen by ESET telemetry and from the perspective of ESET threat detection and research experts

The post ESET Threat Report T3 2022 appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Into the void: Your tech and security in digital darkness

By Aryeh Goretsky — February 7th 2023 at 10:30

No internet, perfect security? Two ESET researchers perform a thought experiment where they consider the implications of being plunged into digital darkness.

The post Into the void: Your tech and security in digital darkness appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Are online surveys legit and safe? Watch out for survey scams

By Phil Muncaster — February 2nd 2023 at 10:30

“Can I tell a legitimate survey apart from a fake one?” is the single most important question you need to answer for yourself before taking any surveys online

The post Are online surveys legit and safe? Watch out for survey scams appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Less is more: Conquer your digital clutter before it conquers you

By Phil Muncaster — February 1st 2023 at 10:30

Lose what you don’t use and other easy ways to limit your digital footprint and strengthen your online privacy and security

The post Less is more: Conquer your digital clutter before it conquers you appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

ESET APT Activity Report T3 2022

By Jean-Ian Boutin — January 31st 2023 at 10:30

An overview of the activities of selected APT groups investigated and analyzed by ESET Research in T3 2022

The post ESET APT Activity Report T3 2022 appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

SwiftSlicer: New destructive wiper malware strikes Ukraine

By Editor — January 27th 2023 at 17:45

Sandworm continues to conduct attacks against carefully chosen targets in the war-torn country

The post SwiftSlicer: New destructive wiper malware strikes Ukraine appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Why your data is more valuable than you may realize

By Tony Anscombe — January 26th 2023 at 10:30

The data trail you leave behind whenever you're online is bigger – and more revealing – than you may think

The post Why your data is more valuable than you may realize appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Mastodon vs. Twitter: Know the differences

By André Lameiras — January 25th 2023 at 10:30

Looking for an alternative to Twitter and thinking about joining the folks flocking to Mastodon? Here’s how the two platforms compare to each other.

The post Mastodon vs. Twitter: Know the differences appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Tech support scammers are still at it: Here’s what to look out for in 2023

By Phil Muncaster — January 19th 2023 at 10:30

Hello, is it me you’re looking for? Fraudsters still want to help you 'fix' a computer problem you never had in the first place.

The post Tech support scammers are still at it: Here’s what to look out for in 2023 appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Top 10 Venmo scams: Don’t fall for these common tricks

By Phil Muncaster — January 17th 2023 at 10:30

Here's what to know about some of the most common ploys that scammers use on the payment app

The post Top 10 Venmo scams: Don’t fall for these common tricks appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Introducing IPyIDA: A Python plugin for your reverse‑engineering toolkit

By Rene Holt — January 12th 2023 at 10:30

ESET Research announces IPyIDA 2.0, a Python plugin integrating IPython and Jupyter Notebook into IDA

The post Introducing IPyIDA: A Python plugin for your reverse‑engineering toolkit appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

StrongPity espionage campaign targeting Android users

By Lukas Stefanko — January 10th 2023 at 10:30

ESET researchers identified an active StrongPity campaign distributing a trojanized version of the Android Telegram app, presented as the Shagle app – a video-chat service that has no app version

The post StrongPity espionage campaign targeting Android users appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

The world’s most common passwords: What to do if yours is on the list

By Phil Muncaster — January 2nd 2023 at 10:30

Do you use any of these extremely popular – and eminently hackable – passwords? If so, we have a New Year’s resolution for you.

The post The world’s most common passwords: What to do if yours is on the list appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Unmasking MirrorFace: Operation LiberalFace targeting Japanese political entities

By Dominik Breitenbacher — December 14th 2022 at 10:30

ESET researchers discovered a spearphishing campaign targeting Japanese political entities a few weeks before the House of Councillors elections, and in the process uncovered a previously undescribed MirrorFace credential stealer

The post Unmasking MirrorFace: Operation LiberalFace targeting Japanese political entities appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Fantasy – a new Agrius wiper deployed through a supply‑chain attack

By Adam Burgher — December 7th 2022 at 10:30

ESET researchers analyzed a supply-chain attack abusing an Israeli software developer to deploy Fantasy, Agrius’s new wiper, with victims including the diamond industry

The post Fantasy – a new Agrius wiper deployed through a supply‑chain attack appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Who’s swimming in South Korean waters? Meet ScarCruft’s Dolphin

By Filip Jurčacko — November 30th 2022 at 10:30

ESET researchers uncover Dolphin, a sophisticated backdoor extending the arsenal of the ScarCruft APT group

The post Who’s swimming in South Korean waters? Meet ScarCruft’s Dolphin appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

RansomBoggs: New ransomware targeting Ukraine

By Editor — November 28th 2022 at 15:23

ESET researchers spot a new ransomware campaign that goes after Ukrainian organizations and has Sandworm's fingerprints all over it

The post RansomBoggs: New ransomware targeting Ukraine appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

10 tips to avoid Black Friday and Cyber Monday scams

By André Lameiras — November 24th 2022 at 10:30

It pays not to let your guard down during the shopping bonanza – watch out for some of the most common scams doing the rounds this holiday shopping season

The post 10 tips to avoid Black Friday and Cyber Monday scams appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Bahamut cybermercenary group targets Android users with fake VPN apps

By Lukas Stefanko — November 23rd 2022 at 10:30

Malicious apps used in this active campaign exfiltrate contacts, SMS messages, recorded phone calls, and even chat messages from apps such as Signal, Viber, and Telegram

The post Bahamut cybermercenary group targets Android users with fake VPN apps appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Tor vs. VPN: Which should you choose?

By André Lameiras — November 18th 2022 at 10:30

Both Tor and a VPN can greatly help you keep prying eyes away from your online life, but they’re also two very different beasts. Which suits your needs better?

The post Tor vs. VPN: Which should you choose? appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

ESET APT Activity Report T2 2022

By Jean-Ian Boutin — November 14th 2022 at 10:30

An overview of the activities of selected APT groups investigated and analyzed by ESET Research in T2 2022

The post ESET APT Activity Report T2 2022 appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

FIFA World Cup 2022 scams: Beware of fake lotteries, ticket fraud and other cons

By Juan Manuel Harán — November 11th 2022 at 10:30

When in doubt, kick it out, plus other tips for hardening your cyber-defenses against World Cup-themed phishing and other scams

The post FIFA World Cup 2022 scams: Beware of fake lotteries, ticket fraud and other cons appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Hacking baby monitors can be child’s play: Here’s how to stay safe

By Phil Muncaster — November 7th 2022 at 10:30

Make sure that the device that’s supposed to help you keep tabs on your little one isn’t itself a privacy and security risk

The post Hacking baby monitors can be child’s play: Here’s how to stay safe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

The spy who rented to me? Throwing the spotlight on hidden cameras in Airbnbs

By Phil Muncaster — November 1st 2022 at 10:30

Do you find reports of spy cams found in vacation rentals unsettling? Try these tips for spotting hidden cameras to put your worries to rest.

The post The spy who rented to me? Throwing the spotlight on hidden cameras in Airbnbs appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Trick or treat? Stay so cyber‑safe it’s scary – not just on Halloween

By André Lameiras — October 31st 2022 at 10:30

Gather around, folks, to learn about some of the ghastliest tricks used by criminals online and how you can avoid security horrors this Halloween and beyond

The post Trick or treat? Stay so cyber‑safe it’s scary – not just on Halloween appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Parcel delivery scams are on the rise: Do you know what to watch out for?

By Phil Muncaster — October 26th 2022 at 09:30

As package delivery scams that spoof DHL, USPS and other delivery companies soar, here’s how to stay safe not just this shopping season

The post Parcel delivery scams are on the rise: Do you know what to watch out for? appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Domestic Kitten campaign spying on Iranian citizens with new FurBall malware

By Lukas Stefanko — October 20th 2022 at 09:30

APT-C-50’s Domestic Kitten campaign continues, targeting Iranian citizens with a new version of the FurBall malware masquerading as an Android translation app

The post Domestic Kitten campaign spying on Iranian citizens with new FurBall malware appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Don’t get scammed when buying tickets online

By Jake Moore — October 19th 2022 at 09:30

With hot-ticket events firmly back on the agenda, scammers selling fake tickets online have also come out in force

The post Don’t get scammed when buying tickets online appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

10 common Zelle scams – and how to avoid them

By Phil Muncaster — October 12th 2022 at 09:30

Fraudsters use various tactics to separate people from their hard-earned cash on Zelle. Here’s how to keep your money safe while using the popular P2P payment service.

The post 10 common Zelle scams – and how to avoid them appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

POLONIUM targets Israel with Creepy malware

By Matías Porolli — October 11th 2022 at 09:30

ESET researchers analyzed previously undocumented custom backdoors and cyberespionage tools deployed in Israel by the POLONIUM APT group

The post POLONIUM targets Israel with Creepy malware appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

ESET Threat Report T2 2022

By Roman Kovac — October 5th 2022 at 09:30

A view of the T2 2022 threat landscape as seen by ESET telemetry and from the perspective of ESET threat detection and research experts

The post ESET Threat Report T2 2022 appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Amazon‑themed campaigns of Lazarus in the Netherlands and Belgium

By Peter Kálnai — September 30th 2022 at 10:00

ESET researchers have discovered Lazarus attacks against targets in the Netherlands and Belgium that use spearphishing emails connected to fake job offers

The post Amazon‑themed campaigns of Lazarus in the Netherlands and Belgium appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Hey WeLiveSecurity, how does biometric authentication work?

By André Lameiras — September 22nd 2022 at 09:30

Your eyes may be the window to your soul, but they can also be your airplane boarding pass or the key unlocking your phone. What’s the good and the bad of using biometric traits for authentication?

The post Hey WeLiveSecurity, how does biometric authentication work? appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

You never walk alone: The SideWalk backdoor gets a Linux variant

By Vladislav Hrčka — September 14th 2022 at 09:30

ESET researchers have uncovered another tool in the already extensive arsenal of the SparklingGoblin APT group: a Linux variant of the SideWalk backdoor

The post You never walk alone: The SideWalk backdoor gets a Linux variant appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

RDP on the radar: An up‑close view of evolving remote access threats

By Aryeh Goretsky — September 7th 2022 at 09:30

Misconfigured remote access services continue to give bad actors an easy access path to company networks – here’s how you can minimize your exposure to attacks misusing Remote Desktop Protocol

The post RDP on the radar: An up‑close view of evolving remote access threats appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Worok: The big picture

By Thibaut Passilly — September 6th 2022 at 09:30

Focused mostly on Asia, this new cyberespionage group uses undocumented tools, including steganographically extracting PowerShell payloads from PNG files

The post Worok: The big picture appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

How to take control over your digital legacy

By André Lameiras — August 31st 2022 at 09:30

Do you have a plan for what will happen to your digital self when you pass away? Here’s how to put your digital affairs in order on Facebook, Google, Twitter and other major online services.

The post How to take control over your digital legacy appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

TikShock: Don’t get caught out by these 5 TikTok scams

By Jake Moore — August 30th 2022 at 09:30

Are you aware of the perils of the world’s no. 1 social media? Do you know how to avoid scams and stay safe on TikTok?

The post TikShock: Don’t get caught out by these 5 TikTok scams appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

What is doxing and how to protect yourself

By André Lameiras — August 25th 2022 at 09:30

Doxing can happen to anyone – here’s how you can reduce the odds that your personal information will be weaponized against you

The post What is doxing and how to protect yourself appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Is your personal data all over the internet? 7 steps to cleaning up your online presence

By André Lameiras — August 23rd 2022 at 09:30

You may not be able to disappear completely from the internet, but you can minimize your digital footprint with a few simple steps

The post Is your personal data all over the internet? 7 steps to cleaning up your online presence appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

A step‑by‑step guide to enjoying LinkedIn safely

By André Lameiras — August 18th 2022 at 09:30

LinkedIn privacy settings are just as overwhelming as any other social media settings. There’s a lot of menus, a lot buttons to enable, select, accept or reject. To make sure you have control over your information we bring you a step-by-step guide on how to enjoy LinkedIn safely.

The post A step‑by‑step guide to enjoying LinkedIn safely appeared first on WeLiveSecurity

❌