Categories
Featured

Stay alert — this dangerous Android malware is pretending to be a McAfee security tool

[ad_1]

A new version of a known Android banking trojan is making rounds on the internet, stealing sensitive data, and possibly even money, from its victims.

Cybersecurity researchers from NCC Group’s Fox-IT sounded the alarm of a new, upgraded version of the Vultur banking trojan, first spotted in early 2021 but having received a number of important changes and upgrades since then.

[ad_2]

Source Article Link

Categories
Featured

5 ways to improve email security

[ad_1]

With email being the biggest business productivity tool out there, it’s no surprise that it’s also the main vehicle for cybercrime. Email phishing is the most common type of online exploitation, which grew by 173% in Q3 of 2023 compared to the previous quarter of the same year!

Google blocks about 100 million phishing emails every single day. That’s a huge number for just one platform. Most of us suffer from email overload, but it’s also the medium which feels safe and secure. There’s something about email that feels personal, it’s addressed to us and is now in our virtual – and physical – space. Which is probably why it’s such a successful tool for phishing.

[ad_2]

Source Article Link

Categories
Business Industry

Samsung Galaxy S24 gets April 2024 security update in South Korea

[ad_1]

Samsung has started rolling out the April 2024 security update to the Galaxy S24 series. The update is currently rolling out in South Korea and could be released in other countries within a matter of days. It is surprising to see the April 2024 update arrive even before March has ended.

April 2024 security update for Galaxy S24 fixes remaining camera issues

The new software update for the Galaxy S24, Galaxy S24+, and Galaxy S24 Ultra is available in South Korea with firmware version S92xNKSU1AXCA. The update has a download size of around 797.83MB, which is decently big, and you should consider downloading it via a Wi-Fi network. It includes the April 2024 security patch, but Samsung hasn’t revealed which security vulnerabilities it has fixed with the new patch.

According to a post in the Samsung Community Forum, the update improves the following aspects:

  1. The camera’s white balance accuracy and exposure.
  2. Low-light image quality.
  3. Color accuracy in the ExpertRAW camera app.
  4. Text clarity in high-zoom shots.
  5. Support for videos with 480×480 pixels resolution in the Instant Slow Mo feature.

These improvements line up with a previous report on the same topic.

Samsung Galaxy S24 Ultra April 2024 Security Patch Changelog South Korea

If you have a Galaxy S24 series phone and live in South Korea, you can now check for the new update on your phone. You can do that by navigating to Settings » Software update and tapping Download and install. The new firmware files will be available in our firmware database shortly.

[ad_2]

Source Article Link

Categories
News

Update Your iPhone Now: iOS 17.4.1 Includes These Security Fixes

[ad_1]

Apple today provided details about the security fixes included in last week’s iOS 17.4.1 and iPadOS 17.4.1 software updates for the iPhone and iPad.

iOS 17
In a support document, Apple said the updates patch an image-related security vulnerability that “may lead to arbitrary code execution.”

The full details:

CoreMedia

Available for: iPhone XS and later, iPad Pro 12.9-inch 2nd generation and later, iPad Pro 10.5-inch, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 6th generation and later, and iPad mini 5th generation and later

Impact: Processing an image may lead to arbitrary code execution

Description: An out-of-bounds write issue was addressed with improved input validation.

CVE-2024-1580: Nick Galloway of Google Project Zero

WebRTC

Available for: iPhone XS and later, iPad Pro 12.9-inch 2nd generation and later, iPad Pro 10.5-inch, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 6th generation and later, and iPad mini 5th generation and later

Impact: Processing an image may lead to arbitrary code execution

Description: An out-of-bounds write issue was addressed with improved input validation.

CVE-2024-1580: Nick Galloway of Google Project Zero

To update your iPhone or iPad, open the Settings app and tap General → Software Update.

Apple said it has patched the same vulnerability in macOS 14.4.1 and visionOS 1.1.1 as well.

Popular Stories

Sources: iOS 18 Lets Apps Be Placed Anywhere on Home Screen Grid

iOS 18 will give iPhone users greater control over Home Screen app icon arrangement, according to sources familiar with the matter. While app icons will likely remain locked to an invisible grid system on the Home Screen, to ensure there is some uniformity, our sources say that users will be able to arrange icons more freely on iOS 18. For example, we expect that the update will introduce…

Seven Reasons to Wait for Next Year’s iPhone 17

Apple’s iPhone development roadmap runs several years into the future and the company is continually working with suppliers on several successive iPhone models concurrently, which is why we sometimes get rumored feature leaks so far ahead of launch. The iPhone 17 series is no different, and already we have some idea of what to expect from Apple’s 2025 smartphone lineup. If you plan to skip…

Apple Releases iOS 17.4.1 and iPadOS 17.4.1 With Bug Fixes and Security Improvements

Apple today released iOS 17.4.1 and iPadOS 17.4.1, minor updates to the iOS 17 and iPadOS 17 operating systems. The new software comes a couple of weeks after Apple released iOS 17.4 and iPadOS 17.4 with app changes in the European Union, new emoji, and more. iOS 17.4.1 and iPadOS 17.4.1 can be downloaded on eligible iPhones and iPads over-the-air by going to Settings > General > Software…

The MacRumors Show: Apple’s Four Upcoming AirPods Models

On this week’s episode of The MacRumors Show, we discuss Apple’s rumored plan to refresh the entire AirPods lineup with a series of new models. Subscribe to The MacRumors Show YouTube channel for more videos The fourth-generation AirPods will reportedly feature a new design with a better fit, improved sound quality, and an updated charging case with a USB-C port. For the first time ever,…

Apple Silicon Vulnerability Allows Hackers to Extract Encryption Keys

An unpatchable vulnerability has been discovered in Apple’s M-series chips that allows attackers to extract secret encryption keys from Macs under certain conditions, according to a newly published academic research paper (via ArsTechnica). Named “GoFetch,” the type of cyber attack described involves Data Memory-Dependent Prefetchers (DMPs), which try to predict what data the computer will…

Review: Two Weeks With the M3 MacBook Air

The latest 13-inch and 15-inch MacBook Air models have been available for two weeks now, and MacRumors videographer Dan Barbera has been using the 15-inch version since it launched. Over on our YouTube channel, Dan shared a review now that he’s been able to spend some quality time with the machine. Subscribe to the MacRumors YouTube channel for more videos. The M3 MacBook Air is a perfect…

Top Stories: iOS 18’s Generative AI Features to Rely on Google?, Latest on New iPads, and More

We’re getting closer to the launch of new iPad Pro and iPad Air models, while rumors about iOS 18 are continuing to ramp up with this week’s surprise revelation that Apple has been talking to Google and others about potentially helping power the generative AI features expected to be a major part of this year’s update. Other news this week saw the release of iOS 17.4.1 and iPadOS 17.4.1…

[ad_2]

Source Article Link

Categories
Featured

Bridging the gap between security and developers

[ad_1]

Regardless of what you need, there is an app for that. In fact, there are 1.81 million apps on Apple’s App Store in 2024, according to Business of Apps. This growing trend has spread from our pockets to our businesses with more adoption of Software as a Service (SaaS) and cloud computing. The average company has 371 SaaS applications, while IDC found companies spent $315.5 billion on public cloud services during the first half of 2023.

All of this software and all of these applications are made by humans, and people, notoriously, make mistakes. Mistakes in software development increase the likelihood of attacks, which leads to security incidents. Multiply these risks by the size of your tech stack, and keeping your environment secure seems nearly impossible.

Identify problems early

[ad_2]

Source Article Link

Categories
Featured

This security flaw could let hackers unlock hotel doors across the world by hijacking keycards

[ad_1]

Security researchers have found a relatively easy and cheap way to clone the keycards used on three million Saflok electronic RFID locks in 13,000 hotels and homes all over the world.

The keycard and lock manufacturer, Dormakaba, has been notified, and it is currently working to replace the vulnerable hardware – but it’s a long, tedious process, which is not yet done.

Although first discovered back in 2022, the researchers have disclosed more information on the flaws, dubbed “Unsaflok”, in order to raise awareness.

Cheap card cloning

The flaws were discovered at a private hacking event was set up in Las Vegas, where different research teams competed to find vulnerabilities in a hotel room and all devices inside. A team, consisting of Lennert Wouters, Ian Carroll, rqu, BusesCanFly, Sam Curry, shell, and Will Caruana, focused their attention on the Dormakaba Saflok electronic locks for hotel rooms. Soon enough, they found two flaws which, when chained together, allowed them to open the doors with a custom-built keycard.

First, they needed access to any card from the premises. That could be the card to their own room. Then, they reverse-engineered the Dormakaba front desk software and lock programming device, which allowed them to spoof a working master key which can open any room on the property. Finally, to clone the cards, they needed to break into Dormakaba’s key derivation function.

To forge the keycards, the team used a MIFARE Classic card, a commercial card-writing tool, and an Android phone with NFC capabilities. All of this costs just a few hundred dollars, it was said.

With their custom-built keycard, the team would be able to access more than three million locks, installed in 13,000 hotels and homes all over the world.

Following the publication of the findings, Dormakaba released a statement to the media, saying the vulnerability affects Saflok systems System 6000, Ambiance, and Community. It added that there is no evidence of these flaws ever being exploited in the wild.

Via BleepingComputer

More from TechRadar Pro

[ad_2]

Source Article Link

Categories
News

Apple Releases iOS 17.4.1 and iPadOS 17.4.1 With Bug Fixes and Security Improvements

[ad_1]

Apple today released iOS 17.4.1 and iPadOS 17.4.1, minor updates to the iOS 17 and iPadOS 17 operating systems. The new software comes a couple of weeks after Apple released iOS 17.4 and iPadOS 17.4 with app changes in the European Union, new emoji, and more.

iOS 17
iOS 17.4.1 and iPadOS 17.4.1 can be downloaded on eligible iPhones and iPads over-the-air by going to Settings > General > Software Update.

According to Apple’s release notes, the iOS 17.4.1 update includes important security updates and bug fixes.

Apple will likely begin testing iOS 17.5 in the near future, with betas expected to come out in the next two weeks.

Popular Stories

Seven Reasons to Wait for Next Year’s iPhone 17

Apple’s iPhone development roadmap runs several years into the future and the company is continually working with suppliers on several successive iPhone models concurrently, which is why we sometimes get rumored feature leaks so far ahead of launch. The iPhone 17 series is no different, and already we have some idea of what to expect from Apple’s 2025 smartphone lineup. If you plan to skip…

Apple to Announce New iPads on March 26, Rumors Claim

Apple is widely expected to release new iPad Air and OLED iPad Pro models in the next few weeks. According to new rumors coming out of Asia, the company will announce its new iPads on Tuesday, March 26. Chinese leaker Instant Digital on Weibo this morning 日发布%23″>claimed that the date will see some sort of announcement from Apple related to new iPads, but stopped short of calling it an…

New iPad Air Now Shipping From China Ahead of Announcement

The next-generation iPad Air is now reportedly shipping to the United States and other countries in preparation for launch. The rumor comes from the leaker known as “Instant Digital,” who claims that manufacturers in China are now shipping the 2024 iPad Air in two sizes to overseas locations. “Everything is ready” for launch, the Weibo user says. The sixth-generation iPad Air is rumored…

New iPads Likely to Begin Shipping in April

Apple’s new iPad Pro models with OLED displays will likely begin shipping to customers in April, according to information shared today by Ross Young, CEO of display industry research firm Display Supply Chain Consultants. Bloomberg’s Mark Gurman also said the new iPad Pro models might not ship until “deeper” into April in his Power On newsletter on Sunday:I’ve repeatedly said that new…

iOS 17.4.1 Update for iPhone is Imminent

iOS 17.4.1 and iPadOS 17.4.1 should be released within the next few days, with a build number of 21E235, according to a source with a proven track record. MacRumors previously reported that Apple was internally testing iOS 17.4.1. As a minor update for the iPhone, it will likely address software bugs and/or security vulnerabilities. It is unclear if the update will include any other changes. …

macOS Sonoma 14.4: Reasons Not to Update

Since Apple unveiled macOS Sonoma 14.4 on March 7, the transition to the latest software update has not been entirely smooth for everyone, and a number of issues have been reported by users that significantly impact their daily workflow. This article lists the most prominent challenges users have faced since updating to macOS Sonoma 14.4, and offers potential solutions where available. USB…

Two New AirPods 4 Models Expected to Launch in September or October

Apple suppliers will begin production of two new fourth-generation AirPods models in May, according to Bloomberg’s Mark Gurman. Based on this production timeframe, he expects the headphones to be released in September or October. Gurman expects both fourth-generation AirPods models to feature a new design with better fit, improved sound quality, and an updated charging case with a USB-C…

[ad_2]

Source Article Link

Categories
Business Industry

Galaxy A55 gets its first firmware update with a new security patch

[ad_1]

Last updated: March 21st, 2024 at 12:47 UTC+01:00

Samsung’s new Galaxy A55 is now getting its first firmware update. The phone ships with the February 2024 security patch, but now, Samsung is already releasing the March update for the new mid-range hero phone.

The update is rolling out in India, at the very least, and carries firmware version A556EXXS1AXC1. It weighs a little under 210MB. And judging by the firmware version, the update consists only of the newer March 2024 security patch.

The changelog does mention “New and/or enhanced features,” and “Further improvements to performance,” but this is just what Samsung’s generic copy-pasted changelog looks like. There’s no guarantee that the generic changelog reflects the real update.

The Galaxy A55 already ships with the latest version of One UI you can get, i.e., One UI 6.1, which means it will take a while before the phone will receive any new and meaningful software features.

One UI 6.1 is the same update that shipped with the Galaxy S24 series, although it doesn’t contain any clever Galaxy AI tools for the mid-range A55 phone. Its chipset likely couldn’t handle Samsung’s Advanced Intelligence suite.

If you happen to own the Galaxy A55, you can keep an eye on our firmware page or try downloading this update manually on your phone by opening the Settings app, accessing “Software update,” and tapping “Download and install.”

[ad_2]

Source Article Link

Categories
Entertainment

Get up to 42 percent off Blink security cameras during the Amazon Big Spring Sale

[ad_1]

Yes, securing your home is worth spending money on, but if you can do it at a discount, that’s the way to go. Right now, there are a bunch Amazon Blink devices discounted as part of the site’s Big Spring Sale. The new Blink Outdoor 4‘s deal is especially of note, with the device’s three camera system down to $150 from $260. The 42 percent discount brings the fourth-generation camera to the lowest price we’ve seen this year (the three pack’s all-time low was $135 on Black Friday). If one camera is all you need, then take advantage of the sale on a single Blink Outdoor 4. It’s currently down to $65 from $100 — a 35 percent discount.

Blink

The Blink Outdoor 4 debuted last August as a significant upgrade to its predecessor. One of the biggest differences is the field of vision, which has increased from 110 to 143 degrees. It also boasts better low-light sensitivity and image quality. Blink claims the devices last two years before needing their AA batteries replaced.

Another new feature of the Blink Outdoor 4 is its person detection. Basically, instead of just alerting you to the fact that there’s some kind of motion, the camera can determine whether the movement is from a human. However, this feature is exclusive to anyone with Blink’s subscription plan. If you’re interested in it, there’s a 30-day free trial, and then you can pay $3 per month or $30 annually to continue it. The plan also offers the ability to save and share videos through the cloud.

Your Spring Sales Shopping Guide: Spring sales are in the air, headlined by Amazon’s Big Spring sale event. Our expert editors are curating all the best spring sales right here. Follow Engadget to shop the best tech deals from Amazon’s Big Spring Sale, hear from Autoblog’s car experts on the best spring auto deals on Amazon, and find spring sales to shop on AOL, handpicked just for you.

[ad_2]

Source Article Link

Categories
Featured

UK government releases new cloud SCADA security guidance for OT

[ad_1]

The UK National Cyber Security Center (NCSC) has released new guidance on securing supervisory control and data acquisition (SCADA) cloud environments for operational technology (OT).

UK critical national infrastructure (CNI) is highly dependent on SCADA as a means for data collection and control, and due to the importance of their environments they are at a higher risk of cyber attack.

[ad_2]

Source Article Link