Malware distribution on Android devices has been facilitated by the new SecuriDropper dropper-as-a-service operation by evading Android 13's "Restricted Settings" functionality to breach "Accessibility Services," BleepingComputer reports.
Jamf says North Korean subgroup of the financially motivated Lazarus Group targets specific users the threat actors believe have access to cryptocurrency.
Threat actors could leverage Apple's "Find My" location network used for locating lost Apple devices to facilitate the exfiltration of keylogger-stored information, BleepingComputer reports.
Android virtual private network apps in Google Play that have been subjected to a Mobile Application Security Assessment will have their Data safety section include the new "Independent security review" badge as part of Google's efforts to enhance transparency on app safety and privacy, according to The Hacker News.
Cyberattack hits Ace Hardware BleepingComputer reports that most IT systems of Ace Hardware have been disrupted by a cyberattack over the weekend, affecting many key operating systems of the U.S. multinational hardware store retailers' cooperative, including those for scheduling deliveries and processing additional orders.
Threat actors could leverage 34 newly identified vulnerable Windows Driver Model and Windows Driver Framework drivers to facilitate system process manipulation, persistence, and total device takeovers without being detected by security software, according to SecurityWeek.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.