New Tecno Phantom V2 Fold details have just landed

0
[ad_1]

Tecno is planning to launch the Phantom V2 Fold this year, and new details have just landed. This is the second-gen book-style foldable from the company. The first one was solid considering its price tag, so it’ll be interesting to see what will Tecno do this time around.

Some new details regarding the Tecno Phantom V2 Fold have just surfaced

Now, in regards to its details. The device surfaced on Bluetooth SIG. That certification confirmed that the device will support Bluetooth 5.3. It’s not the latest iteration, but it’s good enough.

This may be the latest information regarding the device, but certainly not the latest one. The Tecno Phantom V2 Fold surfaced on Geekbench back in January. That listing did reveal more details than Bluetooth SIG, that’s for sure.

The second-gen model will be fueled by the MediaTek Dimensity 9000+ processor. At least one of its variants will include 12GB of RAM, though that could be the only RAM variant. Android 14 will come pre-installed on the device.

This model will retain the same processor as last year’s unit

So, it seems like Tecno won’t change the processor it included in the first-gen model. The new phone will also have the same RAM count. Considering that Tecno used LPDDR5X RAM the first time around, we won’t see any change in that area either.

What about the rest of the specs? Well, we’re unsure at this point. We’re expecting to see more details to appear, but they’re under wraps at the moment. Both displays will be of the OLED variety, though, and likely 120Hz panels, as they were the first time around.

We’re expecting to see a major improvement in the camera department. The first-gen model was good enough considering the price tag, but Tecno will certainly be looking to improve in that regard. The design of the phone is also under wraps.


[ad_2]
Source link

How does AI work for the environment?

0
[ad_1]
Nature image 893498348943

The world is evolving every day, and this includes the use of technology. As environmental challenges become more pressing, people are beginning to see how technology can help. One technology that is garnering a lot of attention is artificial intelligence (AI).

AI enhances efficiency, reduces waste, and drives innovation, making it essential for addressing some of the environmental challenges we face today. Its application has the potential to yield promising results. in this article, we’ll explore the role of AI in environmental protection and its future impact on our planet.

AI in Natural Resource Management

Some of these include the following:

Water Resource Management

One of our most valuable resources is water, and sustainability depends on how it is managed. Artificial Intelligence that ensures you use water effectively by tracking and forecasting usage. For example, AI-driven systems examine sensor data in irrigation systems to maximize the distribution of water in farming. This increases agricultural output while conserving water at the same time. AI can forecast water demand and identify leaks in cities in real time, reducing waste and guaranteeing a consistent supply.

Forestry Management

Forests are critical to preserving biodiversity, and artificial intelligence is playing an important role in their maintenance. AI can track deforestation and the condition of forests using satellite photos and machine learning techniques. These tools can detect illicit logging and anticipate areas prone to forest fires, allowing for prompt actions. AI is also useful for estimating the impact of climate change on forests and guiding replanting and conservation activities.

Fisheries Management

AI is assisting in the sustainable management of fisheries, which is crucial for the health of oceans. Fish population and ocean health are tracked by AI systems, which provide information to help control fishing methods. AI algorithms use sonar and satellite photos to predict fish populations and ensure sustainable harvesting. This sustains the livelihoods of populations that depend on fishing and helps preserve wildlife.

AI in Weather and Disaster Forecasting

These include the following:

Weather Prediction

To prepare for and minimize the effects of extreme weather events, an accurate weather forecast is crucial. AI improves the accuracy of weather forecasts by evaluating massive amounts of information from satellites, weather stations, and climate models. Machine learning algorithms can find trends in meteorological data, allowing for more accurate predictions of storms, heat waves, and heavy rainfall. Farmers, urban planners, and emergency services can all benefit greatly from this information.

Disaster Preparedness and Response

Life and property are at risk of natural calamities, including floods, hurricanes, and earthquakes. However, with AI, planning and anticipating these situations will be much easier. For example, AI models can use seismic data to forecast earthquakes and their potential consequences. In hurricane-prone areas, AI predicts storm trajectories and strength, assisting with evacuation and resource allocation. During disasters, AI-powered drones and robots help in search and rescue operations, delivering real-time data to responders.

AI in Carbon Emissions Capture

They include:

Smart Carbon Footprint Calculators

AI is a big part of the effort to reduce carbon emissions, which is vital for fighting climate change. Artificial intelligence uses smart algorithms for carbon footprint calculation of individuals and organizations. These technologies provide individualized recommendations for lowering emissions by processing data from multiple sources. AI recommends energy-efficient appliances, ideal travel routes, and long-term improvements to reduce carbon impact for individuals and enterprises.

Carbon Capture Technologies

Artificial Intelligence (AI) improves the effectiveness of carbon capture and storage (CCS) technologies, which are critical to reducing global warming. To remove as much CO2 as possible from industrial emissions, AI algorithms optimize the capture process. AI-powered predictive maintenance makes sure CCS infrastructure runs well, thereby cutting expenses and downtime. AI contributes to a healthy planet by drastically lowering atmospheric carbon emissions through technological advancements.

AI in Energy Consumption Optimization

These include:

Energy Management in Buildings

Buildings use a large amount of the world’s energy, and artificial intelligence (AI) helps to make them more energy-efficient. Artificial intelligence (AI) technologies track energy usage in real time and find locations where usage can be cut. Smart thermostats and lighting systems employ artificial intelligence to modify settings based on occupancy and environmental circumstances, hence optimizing energy use. This not only decreases energy bills but also lowers carbon emissions, which helps to promote sustainability.

Renewable Energy Integration

When it comes to integrating renewable energy sources like solar and wind power, Artificial Intelligence is essential. AI algorithms optimize renewable energy installations by monitoring weather patterns and energy use data. For example, AI can forecast solar panel performance based on weather predictions, guaranteeing optimal energy absorption. AI-powered predictive maintenance also helps in the efficient operation of renewable energy systems, lowering downtime and maintenance costs.

Conclusion

AI is an effective weapon in the struggle to stop ecological damage. AI offers innovative solutions for managing resources, predicting weather, capturing carbon, and optimizing energy use to tackle environmental challenges. AI’s involvement in environmental preservation will only expand as technology advances, bringing promise for a better planet.

Featured image source

The post How does AI work for the environment? appeared first on Android Headlines.


[ad_2]
Source link

TikTok’s AI video generator made to recite Hitler, quickly pulled after that

0
[ad_1]
Generative AI is all the hype nowadays, but its rapid adoption can cause problems. In a dramatic and somewhat comic string of events, TikTok’s Symphony Assistant was used to create AI avatars, reciting problematic scripts such as Hitler’s Mein Kampf and Osama Bin Laden’s “Letter to America.”

TikTok announced Symphony Avatars last month as part of its “Creative AI Suite,” aimed at helping create personalized videos without the need to hire real actors. The feature has been rolling out for the past week to TikTok Ads Manager accounts, or it was supposed to be limited to those accounts.

CNN producer and digital content creator Jon Sarlin gained access to the AI tool using his personal account and found that there are no safeguards when it comes to sensitive content.

Generative AI is in extensive use across the tech world, and TikTok is no exception. The platform first announced Symphony Avatars last month as part of its “Creative AI Suite,” enabling businesses, brands, and creators to create fully customized ads using generative AI and the likenesses of paid actors (avatars).

This feature was then rolled out earlier this week, but only for people with a TikTok Ads Manager account. However, it seems like this limitation was briefly not in place, with a CNN reporter gaining access to one of the Symphony AI tools using their personal account. This led to the reporter finding practically no guardrails or safeguards in this AI tool.

In a post on X (formerly Twitter), Sarlin showed some examples of videos, created with Symphony Assistant, including avatars, reciting the aforementioned problematic scripts. What’s even worse is that there were no watermarks or any indications on the videos to show that they were AI-generated.

Unsurprisingly, CNN reached out to TikTok for comment and received the following statement: “A technical error, which has now been resolved, allowed an extremely small number of users to create content using an internal testing version of the tool for a few days. If CNN had attempted to upload the harmful content it created, this content would have been rejected for violating our policies. TikTok is an industry leader in responsible AIGC creation, and we will continue to test and build in the safety mitigations we apply to all TikTok products before public launch.”

It’s unclear whether TikTok accidentally rolled out an “internal testing version” of the AI tool or just missed placing the appropriate filters and safeguard mechanisms, but now the issue has been remedied, according to TikTok (we understand that Symphony Assistant has been pulled off, at least for the moment).
ByteDance, the company behind TikTok, has an ultimatum until the end of the year to sell TikTok or have the app banned in the U.S. after the Senate voted to send a bill to the White House, and it was subsequently signed by President Biden. Legislators in the United States are concerned that ByteDance may be coerced by the Chinese Communist Party (CCP) to give up user personal information and spy on Americans.

AI isn’t going anywhere anytime soon, so expect more stories like this one to pop up. What do you think about it? AI is just a tool, and it’s us humans who ultimately use it unethically. But there should be mechanisms in place to prevent such mishaps, right?


[ad_2]
Source link

Hackers Exploit Multiple WordPress Plugins to Hack Websites & Create Rogue Admin Accounts

0
[ad_1]

Wordfence Threat Intelligence team identified a significant security breach involving multiple WordPress plugins.

 The initial discovery was made when the team found that the Social Warfare plugin had been injected with malicious code on June 22nd, 2024.

This discovery was based on a forum post by the WordPress.org Plugin Review team.

Upon further investigation, Wordfence identified four additional plugins that were similarly compromised.

Scan Your Business Email Inbox to Find Advanced Email Threats - Try AI-Powered Free Threat Scan

The affected plugins include:

  • Social Warfare (versions 4.4.6.4 – 4.4.7.1)
  • Blaze Widget (versions 2.2.5 – 2.5.2)
  • Wrapper Link Element (versions 1.0.2 – 1.0.3)
  • Contact Form 7 Multi-Step Addon (versions 1.0.4 – 1.0.5)
  • Simply Show Hooks (version 1.2.1)

Wordfence has contacted the WordPress plugins team to alert them about the compromised plugins.

Although there has been no official response, the affected plugins have been delisted.

Users are advised to update the patched versions where available or remove the plugins entirely if no patch exists.

The injected malware attempts to create a new administrative user account and sends the details to an attacker-controlled server.

Additionally, malicious JavaScript is injected into the website’s footer, adding SEO spam.

The malware is not heavily obfuscated, making it easy to follow and remove.

Indicators of Compromise and Next Steps

The Wordfence team is conducting a deeper analysis and developing malware signatures to detect these compromised plugins.

The Wordfence Vulnerability Scanner will notify users running the affected versions.

Immediate steps include checking for unauthorized administrative accounts and running a complete malware scan using the Wordfence plugin or CLI.

Indicators of Compromise:

  • Server IP Address: 94.156.79.8
  • Generated Admin Usernames: Options, PluginAuth

If you have any of these plugins installed, consider your site compromised and take immediate action.

For detailed guidance on cleaning your WordPress site, visit the Wordfence website or sign up for their incident response services.

Stay vigilant and ensure your WordPress installations are secure to prevent further exploitation.

Free Webinar! 3 Security Trends to Maximize MSP Growth -> Register For Free


[ad_2]
Source link

New OnePlus Nord phone is official with 120Hz display & 5,500mAh battery

0
[ad_1]

OnePlus has just announced a new ‘Nord’ phone, the OnePlus Nord CE 4 Lite. The device launched in India first, as expected, and it’s exactly what we thought it would be. A somewhat compelling budget device.

Let’s talk about its design first. As you can see it has a flat display, with a centered display camera hole at the top. The bezels are rather thin, but they’re not uniform. All the physical buttons sit on the right-hand side.

The OnePlus Nord CE 4 Lite has a dual camera setup and a 120Hz display

On the back, there are two vertically-aligned cameras in the top-left corner. Those cameras are a part of the same camera island. That’s also where an LED flash is, while OnePlus’ logo is centered on the back. The phone also has a flat frame all around.

The device includes a 6.67-inch fullHD+ (2400 x 1080) OLED display. That panel has a 120Hz refresh rate and a 240Hz touch sampling rate. Its peak brightness goes up to 1,200 nits (2,100 partial brightness), by the way.

The Snapdragon 695 SoC from Qualcomm fuels this phone. OnePlus also included 8GB of LPDDR4X RAM here, and you can choose between 128GB and 256GB of UFS 2.2 internal storage. That storage is expandable via a microSD card, by the way, up to 1TB.

A 5,500mAh battery is also included, and the phone supports 80W charging

A 5,500mAh battery sits inside of this phone. The device supports 80W SuperVOOC wired charging. It also has stereo speakers, and it’s IP54 certified, which means it’s both splash and dust-resistant.

OnePlus included an in-display fingerprint scanner here. Android 14 comes pre-installed on the phone, with OxygenOS 14 included on top of it. There is also a hybrid dual SIM setup here (nano + nano / microSD).

A 50-megapixel main camera (Sony’s LYT-600 sensor, f/1.8 aperture, OIS) is backed by a 2-megapixel depth sensor (f/2.4 aperture). On the front, you’ll find a 16-megapixel unit (f/2.4 aperture).

The OnePlus Nord CE 4 Lite comes in three color options

The OnePlus Nord CE 4 Lite measures 162.9 x 75.6 x 8.1mm, while it weighs 191 grams. The phone comes in Mega Blue, Super Silver, and Ultra Orange colors. Do note that the latter color will stay exclusive to India.

The phone’s 128GB storage variant is priced at INR19.999 ($240), while the 256GB storage option costs INR22,999 ($276).


[ad_2]
Source link

How eSIM can save your time and money when traveling to Europe

0
[ad_1]

Just like everything else, traveling changed with the development of technology and the internet among other things. Today, it’s not only about packing your belongings and having your passport on you. Nobody travels without their mobile device and internet. Mobile data is an important part of every trip.

If you’re planning to travel to the Old Continent, eSIM in Europe can be a lifesaver for you. Europe eSIM offers a stable internet connection just like a physical SIM card would. With eSIM technology you get the much needed mobile data.

Each of these cards comes with a data plan, and depending on your purchase it could even come with unlimited data. Let’s see which advantages Europe eSIM brings and how it works.

eSIM in Europe Advantages

when in Europe do what the Europeans do. When traveling on the Old Continent many tourists decide to buy Europe eSIM plan from Holafly. With a Holafly Europe eSIM purchase, you don’t only get peace of mind but unlimited cellular data without buying a local phone number if your device is compatible. This is how it works:

Start by Customizing Your Plan

First of all, you need to know how long you will need your prepaid eSIM plans. When you have a set timeline you can adjust your data plan accordingly. With a proper service you will never run out of internet data connection nor will you be overspending. This is what makes multi country plans so good.

Aim For Unlimited Data Plans

Running out of internet data is everyone’s nightmare when abroad. This is why you need to have prepaid unlimited data in Europe that comes with an virtual SIM. When you’re covered by outlets such as Holafly you can sleep peacefully knowing that there will be no additional data roaming charges while at the same time you have the best coverage and access to best networks.

It Allows You To Keep Your WhatsApp Number

When travelling abroad keeping in touch with friends and family is paramount. So, having a service such as WhatsApp when using Europe eSIM comes in handy. Holafly’s eSIM package allows you access to WhatsApp and all of its contacts. Having unlimited calls via this mobile plan could prove to be a lifesaver when in a foreign country.

24/7 Customer Support

This is where the good part steps in. First of all, eSIM is easy to use for the needs of mobile data and everything else. Regardless, you could face some issues with network coverage even if you have access to best local network. So, it’s good to know that with a good eSIM plan, you’ll get 24/7 access to a support team via email or chat support. It was never easier to receive instructions and avoid any imaginable issues with your new eSIM data plan via this digital SIM.

Instant Delivery

It doesn’t matter if you’re planning on traveling or you’re already on the road. The eSIM delivery is an instant process. Europe eSIM can be sent directly to your email. Connection is possible in seconds and by a few simple clicks, you get instant access to your unlimited plan without having to resort to buying a local number or experiencing any hidden fees. Your data plan is activated immediately through a simple activation process.  If you’re already hooked up on buying eSIM data program and have eSIM compatible device you should see this page.

Sharing is Caring

When you activate your eSIM plan it is possible to share it with your friends or travel companions on other devices. With every good eSIM plan, there is up to 500MB of data to share with whoever you want. You can use your smartphone to share the data by using a WiFi network or mobile hotspot. Multiple device connection is the norm here.

How Does eSIM for Europe Work?

As we already said, the process is quite straightforward. But, regardless of this, let’s walk you through the few steps necessary to install the eSIM Europe onto your mobile device and have you connected to unlimited data through some of the best Europe eSIM plans.

Check Compatibility

First, you need to check if your phone is compatible with an eSIM. There shouldn’t be any issues in this department as the majority of eSIMs are compatible with all the popular brands such as iPhone, Samsung, and Google Pixel among others.

Buying Prepaid eSIM Data Plans

Just like with any other online purchase you need to head to an eSIM online store and buy a cellular data plan that suits your needs the best. Once you have your eSIM the time is right to install it and start enjoying the perks of unlimited internet without a need for a physical SIM card.

Scan the QR Code

This part is easy. You’ll receive a QR Code on your device. Scan the QR Code and proceed by turning on your mobile data roaming in the settings of your phone. By doing this browsing the World Wide Web in Europe becomes accessible.

What Does Europe eSIM Offers?

There are plenty of reasons why one should opt for an eSIM mobile data connection in Europe when traveling. First of all, it provides a clear connection to the web. Your video calls and messages will go out uninterrupted. You can share your photos and videos on social media platforms without a delay. Both data upload and download will be super fast. Also, access to maps works seamlessly which is paramount when traveling. With a quality eSIM, you will have full access to high-speed 4G and 5G networks in Europe.

Things to Know About eSIMs

There’s a chance you’re still not convinced about buying an Europe eSIM immediately. That’s all right. We will give you a few more information about eSIMs that should provide enough reassurance about your upcoming decision. This is what you should know:

No Local Phone Number

Remember, while eSIMs are amazing they only provide access to internet data. You will not receive a local phone number. So, you can’t send SMS messages and make calls. for that you’ll need your original SIM card. But, as we said, same eSIM plan offers WhatsApp and Skype too and that should provide enough means for communication.

Your Phone Needs to be Compatible With an eSIM

Before you opt for buying any eSIM products from any provider and enable data roaming ensure that your phone is eSIM card compatible with this data service to ensure you always stay connected and that data connectivity is always top notch.

Install Before Traveling

Before you set off make sure you’re packed and that your European eSIM and international data plan is prepared.  Buy the product before you travel but activate it when you reach your destination where it will be automatically upgraded to local standards. Just for your safety, it might be a good idea to carry a printed-out version of the QR Code you’ll receive in your email.

Bottom Line

eSIMs as a service just offer too many advantages to be ignored when you decide to travel to Europe. We believe enough information was shared to help you make the right decision. If that’s not the case, please tell us what we should add to help you activate data roaming via an eSIM card.


[ad_2]
Source link

Google Wallet adds 29 more banks to its growing list

0
[ad_1]
Google Wallet brings the ease of a digital wallet to millions, letting users store and use bank cards, tickets, passes, car keys, and IDs with a tap. Now, the tech giant has broadened its support to include additional banks.

Google Wallet continues to add new banks to its list


To attract a broader audience, Google Wallet continues to expand its support base, adding new banks each month. This year alone, over 170 banks have been included. Continuing this trend, Google has now added 29 new banks to its supported list. Keep in mind that support for the newly added banks may not be available right away, possibly due to gradual integration from the banks or a phased rollout by Google. For a complete list of supported banks, you can visit the Google Wallet Help page.

If your bank is on Google’s list of supported banks, you have a couple of options for adding your card. One way is to do it directly from your bank’s website or app. However, I find it easier to add it through the Google Wallet app. Here is how:

  1. Launch the Google Wallet app.
  2. Tap the + Add to Wallet button at the bottom right.
  3. Select Payment Card.
  4. Enter your card details manually or use your phone camera to scan the card.
  5. Tap Save.
  6. Agree to the terms and conditions, and you are all set!
Video Thumbnail

Video credit – Google

Digital wallets offer incredible convenience by enabling quick payments for purchases, whether online or in-store. Personally, I rely on Apple Wallet, which serves a similar function to Google Wallet but for iOS users. It has become a daily essential for me and I have practically forgotten the hassle of carrying around a bulky physical wallet.

With tech giants like Google expanding support for digital IDs and driver’s licenses in digital wallet apps across more states, in the future, physical plastic cards could become a rarity. Of course, let’s hope that by the time that eventually happens, smartphone batteries will last much longer. Otherwise, ending up wallet-less and phone-less in a tough spot wouldn’t be ideal, would it?


[ad_2]
Source link

Hackers Attacking Windows IIS Server to Upload Web Shells

0
[ad_1]

Windows IIS Servers often host critical web applications and services that provide a gateway to sensitive data and systems due to which hackers attack Windows IIS servers.

A South Korean medical establishment’s Windows IIS server with a Picture Archiving and Communication System (PACS) has been attacked, as identified by AhnLab Security Intelligence Center (ASEC), which resulted in CoinMiner infections.

There are several suspicions of web shell uploads indicating possible PACS vulnerabilities or wrongly configured safety settings.

The attacks were two different situations just days apart, probably organized by Chinese hackers who used various tools like Cpolar and RingQ, complete with Chinese annotations.

This event is an example of the continuous targeting of exposed web servers in Korea but specifically directed towards China-speaking groups emphasizing the importance of having secure measures for such critical systems like PACS in hospitals.

Scan Your Business Email Inbox to Find Advanced Email Threats - Try AI-Powered Free Threat Scan

Hackers Attacking Windows IIS Server

Firstly, an attack was launched against a Korean medical institute’s web server via upload of Chopper and Behinder web shells, followed by system reconnaissance.

For privilege escalation, BadPotato was deployed by the threat actor, while Cpolar was used for remote access. A CoinMiner came in through a “1.cab” file that contained batch script, task scheduler XML, and downloader.

Finally, some Chinese-speaking attackers had chosen the above tools and also made annotations on the scripts. 

They included several additional web shells (ASPXspy, Caidao), privilege escalation tools (PrintNotifyPotato, IIS LPE, GodPotato), port forwarding tools (Lcx, Frpc), as well as user account creation malware.

Consequently, this all-inclusive toolkit provided continuous accessibility to the compromised server, which enabled governing it, and assisted in cryptocurrency mining.

Days later, the second attack was launched on the web server of a Korean medical institution. 

The attacker also used Certutil to download additional malware and installed more privilege escalation tools such as GodPotato, PrintNotifyPotato, and CVE-2021-1732 exploit which were among others network exploration tools deployed like fscan, remote shell, and Netcat.

EarthWorm served as a proxy tool while Ladon is a multi-functional Chinese-built tool that handles different steps in an attack process.

RingQ project on GitHub (Source - ASEC)
RingQ project on GitHub (Source – ASEC)

Besides that, evidence suggests that the threat actor may be a Chinese speaker, who used RingQ to encrypt and execute malware in memory to bypass file-based detection.

Consequently, they finely crafted an ASPX downloader as XMRig CoinMiner which had some of the most advanced evasion techniques or even focused on crypto mining.

Recommendations

Here below we have mentioned all the recommendations that the security analysts provide to prevent such attacks:-

  • Administrators should address file upload vulnerabilities.
  • Implement regular password changes.
  • Access controls to mitigate lateral movement risks.
  • Keep antivirus software updated.

IOCs

MD5

First Attack Case:-

– 67af0bc97b3ea18025a88a0b0201c18d: WebShell – woanware (1.aspx)

– f6591c1ab7f7b782c386af1b6c2c0e9b: WebShell – woanware (2.aspx)

– 986c8c6ee6f6a9d12a54cf84ad9b853a: WebShell – Chopper (2a.aspx)

– 2183043b19f4707f987d874ce44389e3: WebShell – Behinder (32.aspx)

– 77d507d30a155cf315f839db3bf507f7: WebShell – Behinder (1234a.aspx)

– 8d52407e143823a867c6c8330cdcb91a: WebShell – Behinder (1235a.aspx)

– 73cdd1be414dec81c6e42b83f0d04f20: WebShell – Behinder (12345a.aspx)

– 7e9f28cedfa8b012ab8646ac341a841c: BadPotato (bad1231.exe)

– 8cf601c06370612010f438fa8faa8aa7: Cpolar (cpolar.exe)

– e2753e9bc7e5880a365f035cdc5f6e77: Runner (1.bat)

– 205e6247f5a0dce8a55910354c816a61: ScheduleTask (1.xml)

– e13adb67739f4b485544ed99bc29f618: NSSM (service.exe)

– f3bdcd409063a42479dbb162dc7f5d21: CoinMiner downloader (svchost.exe)

– fce1b5ffcaefd1dcb130f4e11cdb488d: CoinMiner downloader (sihost.exe)

– a66338d9ba331efa4918e2d6397b17fe: CoinMiner (SecurityHealthServices.exe)

– 40dc8989d4b2e3db0a9e98ef7082b0d9: WebShell – ASPXspy (aspx.txt)

– b69eb0155df920514d4ae8d44316d05a: WebShell – ASPXspy (good.txt)

– 285b5f246f994b4650475db5143e4987: WebShell – Caidao (index.txt)

– 7e1a2828650e707d8142d526604f4061: BadPotato (bad.exe)

– 83b66aae624690e82c8e011e615bce59: BadPotato (bad520.exe)

– 5f3dd0514c98bab7172a4ccb2f7a152d: GodPotato (god3.exe)

– 1fdb1dd742674d3939f636c3fc4b761f: GodPotato (god4.exe)

– 493aaca456d7d453520caed5d62fdc00: PrintNotifyPotato (P2.exe)

– 493aaca456d7d453520caed5d62fdc00: PrintNotifyPotato (P3.exe)

– 7727070eb8c69773cafb09ce77492c27: PrintNotifyPotato (P4.exe)

– f7d53946b3ae7322cd018480a2f47de8: IIS LPE (iislpe.exe)

– 10cf4d43163ee395ddad1fe7e777e2c9: IIS LPE (iislpe1.exe)

– f222524766456936074f513cec2149a8: Cpolar (cpo.exe)

– d6f84855f212400314fb72d673aba27b: Frpc (F.exe)

– 62ba55ac729763037da1836b46cb84bc: Frpc (frpc.exe)

– 3c5905da1f3aecd2dccc05f6b76a1ca9: Frpc Config (frpc.txt)

– ce1f3b789b2aab2b2b833343f13b7c98: Lcx (99.exe)

– 371a2eb2800bb2beccc1a975f3073594: Lcx (Lcx.exe)

– 7abca4faa3609f86f89f1a32fe7bbcc6: UserAdder (UserAdd.exe)

– e8a7e8bb090da018b96aab3a66c7adeb: UserAdder Command (net.txt)

– 5d9464aba77e1830e1cf8d6b6e14aa55: UserAdder Command (useradd.bat)

Second Attack Case:-

– 71a6ba713f3f5c8e24c965487a86b5d4: WebShell – Chopper (zbngjv.aspx)

– 93abe2fcb964ec91de7d75c52d676d2d: WebShell – Chopper (bin.aspx)

– 2c3de1cefe5cd2a5315a9c9970277bd7: WebShell – Godzilla (aaa.ashx)

– 69c7d9025fa3841c4cd69db1353179cf: WebShell – Godzilla (aaa.asmx)

– 7871587d8de06edc81c163564ea4ea41: WebShell – awen (cmd.aspx)

– 10b6e46e1d4052b2ad07834604339b57: WebShell – Behinder (hi1.aspx)

– 5eeda9bfb83aacb9c3f805f5a2d41f3b: WebShell – Deleter (sklqbpbl.aspx)

– 5f3dd0514c98bab7172a4ccb2f7a152d: GodPotato (gp1.exe)

– 493aaca456d7d453520caed5d62fdc00: PrintNotifyPotato (pp.exe)

– 87562e70e958c0a0e13646f558a85d04: Privilege escalation tool – CVE-2021-1732 (aa.aspx)

– 8f7dfbec116017d632ca77be578795fd: Fscan (fscan.exe)

– 5dcf26e3fbce71902b0cd7c72c60545b: NetCat (nc.exe)

– 523613a7b9dfa398cbd5ebd2dd0f4f38: NetCat (nc64.exe)

– d76e1525c8998795867a17ed33573552: EarthWorm (ew.exe)

– 5d93629fbc80fed017e1657392a28df4: Ladon (11.exe)

– e9cb6a37c43e0393d4c656bc9f6bf556: RingQ (ringq.exe)

– 705e5d7328ae381c5063590b4f5198da: CoinMiner downloader (gzrqo.aspx)

– b81577dbe375dbc1d1349d8704737adf: CoinMiner (aspx.exe)

C&C Server URLs

– 14.19.214[.]36:6666: NetCat

– 14.19.214[.]36:3333: NetCat

– 1.119.3[.]28:7455: Frpc

Download URLs

– hxxp://sinmaxinter[.]top:7001/services.zip: CoinMiner

– hxxp://sinmaxinter[.]top:7001/C3-server25.zip: CoinMiner

– hxxp://14.19.214[.]36:6666/pp.exe: PrintNotifyPotato

– hxxp://14.19.214[.]36/aa.aspx: Privilege escalation tool – CVE-2021-1732

– hxxp://14.19.214[.]36/fscan.exe: Fscan

– hxxp://14.19.214[.]36/ew.exe: EarthWorm

– hxxp://14.19.214[.]36/11.exe: Ladon

– hxxp://14.19.214[.]36/RingQ.exe: RingQ

– hxxp://45.130.22[.]219/aspx.exe: CoinMiner

– hxxp://192.210.206[.]76/sRDI.dat: CoinMiner

Free Webinar! 3 Security Trends to Maximize MSP Growth -> Register For Free


[ad_2]
Source link

WhatsApp starts rolling out a new sticker type with more fluid animations and vivid colors

0
[ad_1]

WhatsApp is getting some nice enhancements to its stickers with a new type of sticker pack rolling out. WhatsApp has been constantly working on new features and updates to current features, and this latest change is another addition to an already rich feature set.

WhatsApp is reportedly quietly rolling out Lottie support for stickers with a new sticker pack, as noticed by WABetaInfo. Now, the “I’m Just a Girl” pack is available in the official Sticker Store, and it’s the first of its kind to be generated with the Lottie framework.

The sticker pack, designed by BUCK, can be downloaded and gives an idea to developers on how to make the most of the sticker framework.


Lottie basically allows developers to use vector-based animations for stickers. This pretty much means you get more eye-pleasing stickers with smoother animations and more vivid colors. The current stickers in WhatsApp are WebP-based and they are high quality indeed, but vector-based stickers have even better animations. For now, though, it seems there isn’t an option for developers to begin making Lottie stickers with third-party apps. It could be something to come in the future though.

WhatsApp beta version 2.24.5.10 was the first version to hint at Meta’s plan to roll out Lottie stickers. The new type of sticker will make the experience of sending WhatsApp stickers even more fun when more sticker packs are developed in the near future.


[ad_2]
Source link

WikiLeaks Founder Julian Assange Released in Deal with U.S.

0
[ad_1]

WikiLeaks founder Julian Assange has been released from prison after reaching a deal with the U.S. government.

The agreement, announced early today, ends the long-standing legal battle between Assange and the U.S. authorities.

Terms of the Deal

Assange, 52, was arrested at the Ecuadorian embassy in London in April 2019 and has been held in Belmarsh prison since then.

He was facing extradition to the United States on charges related to WikiLeaks’ publication of classified U.S. military records and diplomatic cables in 2010 and 2011.

Under the terms of the deal, Assange has agreed to plead guilty to one count of conspiracy to commit computer intrusion, a charge that carries a maximum sentence of five years in prison.

Scan Your Business Email Inbox to Find Advanced Email Threats - Try AI-Powered Free Threat Scan

However, in a surprise move, the U.S. government has agreed to drop all remaining charges against him, including espionage charges that could have carried a sentence of up to 175 years in prison.

In exchange for his guilty plea, Assange will be released from prison immediately and allowed to return to his home in London.

He will also be required to cooperate with U.S. authorities in their ongoing investigations related to WikiLeaks.

Shift in U.S. Government Stance

The deal marks a significant shift in the U.S. government’s stance on Assange, who has been a thorn in the side of successive U.S. administrations.

The Obama administration had previously declined to prosecute Assange, citing concerns about the implications for press freedom.

However, the Trump administration had taken a harder line, with then-Attorney General Jeff Sessions stating that Assange’s arrest was a “priority.”

Assange’s supporters, who have long argued that he was being unfairly targeted for his role in exposing U.S. war crimes and human rights abuses, are hailing the deal as a major victory.“

This is a huge win for Julian and press freedom,” said WikiLeaks lawyer Jennifer Robinson. “We are thrilled that Julian will finally be able to return home and resume his life.”

The deal is also seen as a significant blow to the U.S. government’s efforts to prosecute Assange, which human rights groups and journalists around the world had widely criticized.

Reactions and Implications

Amnesty International, which had campaigned for Assange’s release, welcomed the news, saying it was “a long-overdue recognition of the need to protect freedom of expression and the right to information.”

Assange’s release is expected to spark a new wave of debate about the role of whistleblowers and the importance of protecting press freedom in the digital age.

As the world becomes increasingly interconnected and dependent on digital technologies, the question of balancing national security with the need for transparency and accountability will only likely become more pressing in future years.

Free Webinar! 3 Security Trends to Maximize MSP Growth -> Register For Free


[ad_2]
Source link