Privacy

App Tracking Transparency circumvented

“Since App Tracking Transparency was introduced last year with iOS 14.5, every iPhone and iPad app now has to ask users whether they want to be tracked or not. However, some developers have figured out new ways to keep tracking iOS users even when they opt out of being tracked by third-party apps. A new […]

Privacy Surveillance

How do democracies spy on you?

Spyware installed after a WhatsApp message or iMessage on the phone of politicians, lawyers, and activists in order to know what they are saying, hearing, chatting, searching, etc. All types of government are buying such spying software but how to prevent that it is used in the wrong way?

Security VPN Vulnerability
vulnerability in FortiOS SSL VPN

Paolo Alto VPN vulnerable to OpenSSL Bug

Palo Alto Networks warned customers yesterday that some of its firewall, VPN, and XDR products are vulnerable to a high severity OpenSSL infinite loop bug disclosed three weeks ago.Threat actors can exploit this security vulnerability (tracked as CVE-2022-0778) to trigger a denial of service state and remotely crash devices running unpatched software.Even though the OpenSSL […]

Phishing

Google’s reCAPTCHA used in new phishing attacks

Attackers send phishing emails with a (non-)password-protected PDF purporting to be a faxed document or convincingly spoofed Microsoft OneDrive page. The automated email security scanner must extract the destination URL from a PDF document and solve the CAPTCHA. These conditions prevent email security scanners from detecting phishing URLs in attachments, or provides attachment previews allowing […]

Security VPN Vulnerability

Paolo Alto VPN vulnerable to OpenSSL Bug

Palo Alto Networks warned customers yesterday that some of its firewall, VPN, and XDR products are vulnerable to a high severity OpenSSL infinite loop bug disclosed three weeks ago.Threat actors can exploit this security vulnerability (tracked as CVE-2022-0778) to trigger a denial of service state and remotely crash devices running unpatched software.Even though the OpenSSL […]