FreshRSS

🔒
☐ ☆ ✇ WeLiveSecurity

Going on vacation soon? Stay one step ahead of travel scams

By Phil Muncaster — June 21st 2023 at 09:30

From bogus free trips to fake rental homes, here are some of the most common online threats you should look out for both before and during your travels

The post Going on vacation soon? Stay one step ahead of travel scams appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Passwords out, passkeys in: are you ready to make the switch?

By Phil Muncaster — June 20th 2023 at 09:30

With passkeys poised for prime time, passwords seem passé. What are the main benefits of ditching one in favor of the other?

The post Passwords out, passkeys in: are you ready to make the switch? appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Is a RAT stealing your files? – Week in security with Tony Anscombe

By Editor — June 16th 2023 at 15:20

Could your Android phone be home to a remote access tool (RAT) that steals WhatsApp backups or performs other shenanigans?

The post Is a RAT stealing your files? – Week in security with Tony Anscombe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Stop Cyberbullying Day: Prevention is everyone’s responsibility

By Márk Szabó — June 16th 2023 at 09:30

Strategies for stopping and responding to cyberbullying require a concerted, community-wide effort involving parents, educators and children themselves

The post Stop Cyberbullying Day: Prevention is everyone’s responsibility appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Android GravityRAT goes after WhatsApp backups

By Lukas Stefanko — June 15th 2023 at 09:30

ESET researchers analyzed an updated version of Android GravityRAT spyware that steals WhatsApp backup files and can receive commands to delete files

The post Android GravityRAT goes after WhatsApp backups appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Cyber insurance: What is it and does my company need it?

By Phil Muncaster — June 13th 2023 at 09:30

While not a 'get out of jail free card' for your business, cyber insurance can help insulate it from the financial impact of a cyber-incident

The post Cyber insurance: What is it and does my company need it? appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Mixing cybercrime and cyberespionage – Week in security with Tony Anscombe

By Editor — June 9th 2023 at 12:30

A crimeware group that usually targets individuals and SMBs in North America and Europe adds cyberespionage to its activities

The post Mixing cybercrime and cyberespionage – Week in security with Tony Anscombe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Asylum Ambuscade: crimeware or cyberespionage?

By Matthieu Faou — June 8th 2023 at 09:30

A curious case of a threat actor at the border between crimeware and cyberespionage

The post Asylum Ambuscade: crimeware or cyberespionage? appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Hear no evil: Ultrasound attacks on voice assistants

By Márk Szabó — June 7th 2023 at 09:30

How your voice assistant could do the bidding of a hacker – without you ever hearing a thing

The post Hear no evil: Ultrasound attacks on voice assistants appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

7 tips for spotting a fake mobile app

By Roman Cuprik — June 6th 2023 at 09:30

Plus, 7 ways to tell that you downloaded a sketchy app and 7 tips for staying safe from mobile security threats in the future

The post 7 tips for spotting a fake mobile app appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

API security in the spotlight – Week in security with Tony Anscombe

By Editor — June 2nd 2023 at 12:30

Given the reliance of today's digital world on APIs and the fact that attacks targeting them continue to rise sharply, API security cannot be an afterthought.

The post API security in the spotlight – Week in security with Tony Anscombe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

All eyes on APIs: Top 3 API security risks and how to mitigate them

By Phil Muncaster — June 1st 2023 at 09:30

As APIs are a favorite target for threat actors, the challenge of securing the glue that holds various software elements together is taking on increasing urgency

The post All eyes on APIs: Top 3 API security risks and how to mitigate them appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

5 free OSINT tools for social media

By Martina López — May 31st 2023 at 09:30

A roundup of some of the handiest tools for the collection and analysis of publicly available data from Twitter, Facebook and other social media platforms

The post 5 free OSINT tools for social media appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Tricks of the trade: How a cybercrime ring operated a multi‑level fraud scheme

By Roman Cuprik — May 30th 2023 at 09:30

A peek under the hood of a cybercrime operation and what you can do to avoid being an easy target for similar ploys

The post Tricks of the trade: How a cybercrime ring operated a multi‑level fraud scheme appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

How an innocuous app morphed into a trojan – Week in security with Tony Anscombe

By Editor — May 26th 2023 at 14:15

ESET research uncovers an Android app that initially had no harmful features but months later turned into a spying tool

The post How an innocuous app morphed into a trojan – Week in security with Tony Anscombe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Shedding light on AceCryptor and its operation

By Jakub Kaloč — May 25th 2023 at 09:30

ESET researchers reveal details about a prevalent cryptor, operating as a cryptor-as-a-service used by tens of malware families

The post Shedding light on AceCryptor and its operation appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Digital security for the self‑employed: Staying safe without an IT team to help

By Phil Muncaster — May 24th 2023 at 09:30

Nobody wants to spend their time dealing with the fallout of a security incident instead of building up their business

The post Digital security for the self‑employed: Staying safe without an IT team to help appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Android app breaking bad: From legitimate screen recording to file exfiltration within a year

By Lukas Stefanko — May 23rd 2023 at 09:30

ESET researchers discover AhRat – a new Android RAT based on AhMyth – that exfiltrates files and records audio

The post Android app breaking bad: From legitimate screen recording to file exfiltration within a year appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

The real cost of a free lunch – Week in security with Tony Anscombe

By Editor — May 19th 2023 at 12:30

Don't download software from non-reputable websites and sketchy links – you might be in for more than you bargained for

The post The real cost of a free lunch – Week in security with Tony Anscombe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Top 5 search engines for internet‑connected devices and services

By Camilo Gutiérrez Amaya — May 18th 2023 at 09:30

A roundup of some of the handiest tools that security professionals can use to search for and monitor devices that are accessible from the internet

The post Top 5 search engines for internet‑connected devices and services appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Meet “AI”, your new colleague: could it expose your company’s secrets?

By Roman Cuprik — May 17th 2023 at 09:30

Before rushing to embrace the LLM-powered hire, make sure your organization has safeguards in place to avoid putting its business and customer data at risk

The post Meet “AI”, your new colleague: could it expose your company’s secrets? appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

You may not care where you download software from, but malware does

By Aryeh Goretsky — May 16th 2023 at 09:30

Why do people still download files from sketchy places and get compromised as a result?

The post You may not care where you download software from, but malware does appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Key findings from ESET’s new APT Activity Report – Week in security with Tony Anscombe

By Editor — May 12th 2023 at 15:15

What have some of the world's most infamous advanced threat actors been up to and what might be the implications of their activities for your business?

The post Key findings from ESET’s new APT Activity Report – Week in security with Tony Anscombe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Why you need parental control software – and 5 features to look for

By Phil Muncaster — May 12th 2023 at 09:30

Strike a balance between making the internet a safer place for your children and giving them the freedom to explore, learn and socialize

The post Why you need parental control software – and 5 features to look for appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Turning on stealth mode: 5 simple strategies for staying under the radar online

By André Lameiras — May 10th 2023 at 09:30

Have your cake and eat it too – enjoy some of what the online world has to offer without always giving out your contact details

The post Turning on stealth mode: 5 simple strategies for staying under the radar online appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

ESET APT Activity Report Q4 2022­–Q1 2023

By Jean-Ian Boutin — May 9th 2023 at 09:30

An overview of the activities of selected APT groups investigated and analyzed by ESET Research in Q4 2022 and Q1 2023

The post ESET APT Activity Report Q4 2022­–Q1 2023 appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

How the war in Ukraine has been a catalyst in private‑public collaborations

By André Lameiras — May 9th 2023 at 08:00

As the war shows no signs of ending and cyber-activity by states and criminal groups remains high, conversations around the cyber-resilience of critical infrastructure have never been more vital

The post How the war in Ukraine has been a catalyst in private‑public collaborations appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

APTs target MSP access to customer networks – Week in security with Tony Anscombe

By Editor — May 5th 2023 at 14:00

The recent compromise of the networks of several companies via the abuse of a remote access tool used by MSPs exemplifies why state-aligned threat actors should be on the radars of IT service providers

The post APTs target MSP access to customer networks – Week in security with Tony Anscombe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Creating strong, yet user‑friendly passwords: Tips for your business password policy

By Roman Cuprik — May 4th 2023 at 09:30

Don’t torture people with exceedingly complex password composition rules but do blacklist commonly used passwords, plus other ways to help people help themselves – and your entire organization

The post Creating strong, yet user‑friendly passwords: Tips for your business password policy appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Using Discord? Don’t play down its privacy and security risks

By Márk Szabó — May 3rd 2023 at 09:30

It’s all fun and games until someone gets hacked – here’s what to know about, and how to avoid, threats lurking on the social media juggernaut

The post Using Discord? Don’t play down its privacy and security risks appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

APT groups muddying the waters for MSPs

By James Shepperd — May 2nd 2023 at 09:30

A quick dive into the murky world of cyberespionage and other growing threats facing managed service providers – and their customers

The post APT groups muddying the waters for MSPs appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

What was hot at RSA Conference 2023? – Week in security with Tony Anscombe

By Editor — April 28th 2023 at 14:30

The importance of understanding – and prioritizing – the privacy and security implications of large language models like ChatGPT cannot be overstated

The post What was hot at RSA Conference 2023? – Week in security with Tony Anscombe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

RSA Conference 2023 – How AI will infiltrate the world

By Cameron Camp — April 26th 2023 at 14:30

As all things (wrongly called) AI take the world’s biggest security event by storm, we round up of some of their most-touted use cases and applications

The post RSA Conference 2023 – How AI will infiltrate the world appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Evasive Panda APT group delivers malware via updates for popular Chinese software

By Facundo Muñoz — April 26th 2023 at 09:30

ESET Research uncovers a campaign by the APT group known as Evasive Panda targeting an international NGO in China with malware delivered through updates of popular Chinese software

The post Evasive Panda APT group delivers malware via updates for popular Chinese software appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Did you mistakenly sell your network access? – Week in security with Tony Anscombe

By Editor — April 21st 2023 at 10:00

Many routers that are offered for resale contain sensitive corporate information and allow third-party connections to corporate networks

The post Did you mistakenly sell your network access? – Week in security with Tony Anscombe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Linux malware strengthens links between Lazarus and the 3CX supply‑chain attack

By Peter Kálnai — April 20th 2023 at 09:30

Similarities with newly discovered Linux malware used in Operation DreamJob corroborate the theory that the infamous North Korea-aligned group is behind the 3CX supply-chain attack

The post Linux malware strengthens links between Lazarus and the 3CX supply‑chain attack appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

The EU’s Cyber Solidarity Act: Security Operations Centers to the rescue!

By Márk Szabó — April 19th 2023 at 13:15

The legislation aims to bolster the Union’s cyber-resilience and enhance its capabilities to prepare for, detect and respond to incidents

The post The EU’s Cyber Solidarity Act: Security Operations Centers to the rescue! appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

PC running slow? 10 ways you can speed it up

By André Lameiras — April 19th 2023 at 09:30

Before you rush to buy new hardware, try these simple tricks to get your machine up to speed again – and keep it that way.

The post PC running slow? 10 ways you can speed it up appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Discarded, not destroyed: Old routers reveal corporate secrets

By Cameron Camp — April 18th 2023 at 13:00

When decommissioning their old hardware, many companies 'throw the baby out with the bathwater'

The post Discarded, not destroyed: Old routers reveal corporate secrets appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Hunting down BlackLotus – Week in security with Tony Anscombe

By Editor — April 14th 2023 at 11:00

Microsoft releases guidance on how organizations can check their systems for the presence of BlackLotus, a powerful threat first analyzed by ESET researchers

The post Hunting down BlackLotus – Week in security with Tony Anscombe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Safety first: 5 cybersecurity tips for freelance bloggers

By Márk Szabó — April 14th 2023 at 09:30

The much-dreaded writer’s block isn’t the only threat that may derail your progress. Are you doing enough to keep your blog (and your livelihood) safe from online dangers?

The post Safety first: 5 cybersecurity tips for freelance bloggers appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

What are the cybersecurity concerns of SMBs by sector?

By Editor — April 12th 2023 at 09:30

Some sectors have high confidence in their in-house cybersecurity expertise, while others prefer to enlist the support of an external provider to keep their systems and data secured

The post What are the cybersecurity concerns of SMBs by sector? appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

10 things to look out for when buying a password manager

By Phil Muncaster — April 11th 2023 at 09:30

Here's how to choose the right password vault for you and what exactly to consider when weighing your options

The post 10 things to look out for when buying a password manager appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Steer clear of tax scams – Week in security with Tony Anscombe

By Editor — April 6th 2023 at 14:15

In a rush to file your taxes? Watch out for cybercriminals preying on stressed taxpayers as Tax Day looms large on the horizon.

The post Steer clear of tax scams – Week in security with Tony Anscombe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Cleaning up your social media and passwords: What to trash and what to treasure

By Thomas Uhlemann — April 6th 2023 at 09:30

Give your social media presence a good spring scrubbing, audit your passwords and other easy ways to bring order to your digital chaos

The post Cleaning up your social media and passwords: What to trash and what to treasure appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Why you should spring clean your home network and audit your backups

By Thomas Uhlemann — April 5th 2023 at 09:30

Do you know how many devices are connected to your home network? You don’t? This is precisely why it’s time for a network audit.

The post Why you should spring clean your home network and audit your backups appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Spring into action and tidy up your digital life like a pro

By Thomas Uhlemann — April 4th 2023 at 09:30

Spring is in the air and as the leaves start growing again, why not breathe some new life into the devices you depend on so badly?

The post Spring into action and tidy up your digital life like a pro appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Avoiding data backup failures – Week in security with Tony Anscombe

By Editor — March 31st 2023 at 13:00

Today is World Backup Day, but maybe we also need a "did you test your backups" day?

The post Avoiding data backup failures – Week in security with Tony Anscombe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

World Backup Day: Avoiding a data disaster is a forever topic 

By Márk Szabó — March 31st 2023 at 09:30

By failing to prepare you are preparing to fail. Make sure you're able to bounce back if, or when, a data disaster strikes.

The post World Backup Day: Avoiding a data disaster is a forever topic  appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

ESET Research Podcast: A year of fighting rockets, soldiers, and wipers in Ukraine

By ESET Research — March 30th 2023 at 09:30

ESET experts share their insights on the cyber-elements of the first year of the war in Ukraine and how a growing number of destructive malware variants tried to rip through critical Ukrainian systems

The post ESET Research Podcast: A year of fighting rockets, soldiers, and wipers in Ukraine appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Pig butchering scams: The anatomy of a fast‑growing threat

By Márk Szabó — March 29th 2023 at 09:30

How fraudsters groom their marks and move in for the kill using tricks from the playbooks of romance and investment scammers

The post Pig butchering scams: The anatomy of a fast‑growing threat appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Staying safe on OnlyFans: The naked truth

By Jake Moore — March 28th 2023 at 09:30

How content creators and subscribers can embrace the social media platform without (overly) exposing themselves to the potentially toxic brew of NSFW content and privacy threats

The post Staying safe on OnlyFans: The naked truth appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Highlights from TikTok CEO’s Congress grilling – Week in security with Tony Anscombe

By Editor — March 24th 2023 at 15:50

Here are some of the key moments from the five hours of Shou Zi Chew's testimony and other interesting news on the data privacy front

The post Highlights from TikTok CEO’s Congress grilling – Week in security with Tony Anscombe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

What TikTok knows about you – and what you should know about TikTok

By Roman Cuprik — March 24th 2023 at 10:30

As TikTok CEO attempts to placate U.S. lawmakers, it’s time for us all to think about the wealth of personal information that TikTok and other social media giants collect about us

The post What TikTok knows about you – and what you should know about TikTok appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Understanding Managed Detection and Response – and what to look for in an MDR solution

By Phil Muncaster — March 23rd 2023 at 10:30

Why your organization should consider an MDR solution and five key things to look for in a service offering

The post Understanding Managed Detection and Response – and what to look for in an MDR solution appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Twitter ends free SMS 2FA: Here’s how you can protect your account now

By Roman Cuprik — March 20th 2023 at 16:30

Twitter’s ditching of free text-message authentication doesn’t mean that you should forgo using 2FA. Instead, switch to another – and, indeed, better – 2FA option.

The post Twitter ends free SMS 2FA: Here’s how you can protect your account now appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Banking turmoil opens opportunities for fraud – Week in security with Tony Anscombe

By Editor — March 17th 2023 at 15:30

Scammers are looking to cash in on the chaos that has set in following the startling meltdowns of Silicon Valley Bank and Signature Bank and the crisis at Credit Suisse

The post Banking turmoil opens opportunities for fraud – Week in security with Tony Anscombe appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

SVB’s collapse is a scammer’s dream: Don’t get caught out

By Phil Muncaster — March 17th 2023 at 11:12

How cybercriminals can exploit Silicon Valley Bank's downfall for their own ends – and at your expense

The post SVB’s collapse is a scammer’s dream: Don’t get caught out appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

Not‑so‑private messaging: Trojanized WhatsApp and Telegram apps go after cryptocurrency wallets

By Lukas Stefanko — March 16th 2023 at 10:30

ESET researchers analyzed Android and Windows clippers that can tamper with instant messages and use OCR to steal cryptocurrency funds

The post Not‑so‑private messaging: Trojanized WhatsApp and Telegram apps go after cryptocurrency wallets appeared first on WeLiveSecurity

☐ ☆ ✇ WeLiveSecurity

The slow Tick‑ing time bomb: Tick APT group compromise of a DLP software developer in East Asia

By Facundo Muñoz — March 14th 2023 at 10:30

ESET Research uncovered a campaign by APT group Tick against a data-loss prevention company in East Asia and found a previously unreported tool used by the group

The post The slow Tick‑ing time bomb: Tick APT group compromise of a DLP software developer in East Asia appeared first on WeLiveSecurity

❌