Google Removes 9 Android Apps That Stole Facebook Users’ Credentials

Google Removes 9 Android Apps That Stole Facebook Users’ Credentials

Google recently removed nine malicious apps from the Play Store after they were found stealing Facebook users’ logins and passwords. Discovered by security researchers at Dr. Web, these stealer trojans were found using a special mechanism to trick users into disclosing their Facebook login details by offering them photo editing and app lock features as well…

3 more internet firms scrutinized amid rising data security concern

3 more internet firms scrutinized amid rising data security concern

The headquarters of DiDi in Beijing Photo:VCG  China’s cyberspace regulator on Monday put three more internet platforms under scrutiny, three days after it announced a review of cybersecurity into the country’s top ride-hailing platform Didi Chuxing, indicating the country’s resolve to clamp down on data breaches and misuse as part of a broader move to…

US shares of Chinese platform operators under cybersecurity reviews plummet pre-market

US shares of Chinese platform operators under cybersecurity reviews plummet pre-market

A man walks near the New York Stock Exchange (NYSE) on August 31, 2020 at Wall Street in New York City.Photo: CFP  Chinese ride-hailing giant Didi’s US shares plunged in pre-market trading on Tuesday, in a rout that was joined by two other platform firms that have recently been in China’s cybersecurity crosshairs. As of…

Ride-sharing group Didi’s shares tumble after China crackdown

Ride-sharing group Didi’s shares tumble after China crackdown

Full Truck Alliance Co and Kanzhun Ltd, both of which recently went public in the US, plummeted 14 per cent and 10 per cennt, respectively, after China expanded its probe on the technology industry to include the firms. Beijing ordered both to halt new user registrations, in addition to Didi. ‘The decision to crack down…

Up to 1,500 Organizations Hit in Ransomware Attack

Up to 1,500 Organizations Hit in Ransomware Attack

3rd Party Risk Management , Endpoint Security , Fraud Management & Cybercrime Software Vendor Quiet on Whether It Might Pay for REvil’s Full Decryption Tool Jeremy Kirk (jeremy_kirk) • July 6, 2021     Screenshot of Kaseya’s remote IT management software VSA, which was compromised by ransomware attackers. (Source: Kaseya) Kaseya said late Monday that…

World’s Single-Biggest Ransomware Attack Hit ‘Thousands’ in 17 Countries

World’s Single-Biggest Ransomware Attack Hit ‘Thousands’ in 17 Countries

It’s now being called “the single biggest global ransomware attack on record,” with thousands of victims in at least 17 different countries breached with ransomware Friday, reports the Associated Press, citing new details provided by cybersecurity researchers. An affiliate of the Russia-linked gang REvil deployed the ransomware “largely through firms that remotely manage IT infrastructure…

CVE-2021-23401

CVE-2021-23401

This affects all versions of package Flask-User. When using the make_safe_url function, it is possible to bypass URL validation and redirect a user to an arbitrary URL by providing multiple back slashes such as /////evil.com/path or \evil.com/path. This vulnerability is only exploitable if an….

Chinese regulators suggested Didi delay its US IPO: WSJ

Chinese regulators suggested Didi delay its US IPO: WSJ

NEW YORK: China’s cybersecurity watchdog suggested Didi Global Inc delay its initial public offering and urged it to review its network security, weeks before the Chinese ride-hailing giant went public, the Wall Street Journal reported on Monday, citing people familiar with the matter. It isn’t known whether Didi carried out its own review, according to…

China blocks SoftBank-backed Didi from app stores days after U.S. IPO

China blocks SoftBank-backed Didi from app stores days after U.S. IPO

China’s cyberspace regulator has ordered app stores to remove Didi Chuxing, dealing a major blow to a ride-hailing giant that just days ago pulled off one of the largest U.S. initial public offerings of the past decade. The Cyberspace Administration of China announced the ban Sunday, citing serious violations on Didi Global Inc.’s collection and…