New EMFI Attack Against Drones Leads to Complete Take Over

0
[ad_1]
EMFI Attack Against Drones

Based on the recent reports by IOActive, Drones, also called Unmanned Aerial Vehicles (UAVs), are vulnerable to code injection, which would result in gaining complete access to the firmware and core functionality of the drone.

Drones have been used in many industries like aviation, agriculture, and law enforcement. They are often operated remotely, which offers an attack surface for threat actors to gain control over them.

Stealing a drone can offer much more sensitive information for an attacker and can also pave the way for implanting malware on the system.

According to the report, it is possible to exploit a drone by injecting a specific Electromagnetic glitch during a firmware update that could result in complete control over the drone.

EMFI Attack Against Drones

DJI drones are considered for testing purposes as they offer many security features in their products like Encrypted firmware, Trusted Execution Environment (TEE), Secure Boot, etc.

Furthermore, the whitepaper published by IOActive also covered Attack Surface, Technical Background, First and Second Approaches, and their Mitigations.

Attack Surface

Source: IOActive

Backend

There are multiple attack surfaces for a drone in a wireless network. Like any other system with a backend, drones are also made up of servers vulnerable to SQL injections, SSRF, and many other backend-based attacks.

Mobile Apps

Today’s drones are controlled by mobile applications mostly, which can be a great attack surface for threat actors.

The vulnerabilities include operating system and application-based vulnerabilities.

Radio-Frequency

RF-based attacks like interference, jamming, spoofing, and other attacks are also possible on these UAVs.

DJI drones also have OcuSync, a protocol for low latency between the controller and the drone. 

OcuSync protocol can automatically switch between multiple communication channels to have stable and strong connectivity.

It can also be used in environments where large radio interference is present.

Physical Device

Physical access to a drone can give a wide range of information to threat actors like firmware and other sensitive information.

The whitepaper mentioned that the technical information for this attack vector relied on three main types of side-channel attacks,

Timing Attacks

This attack relies on targeting the time taken for the completion of an operation which can be used for other attacks like breaking cryptographic implementation and guessing PIN numbers.

Power analysis

The voltage path for the chip is tracked and monitored for Simple Power Analysis for a targeted operation. Later, this can be used to recover secrets like cryptographic keys.

EM Analysis

An EM probe can retrieve power-based information, which can be less invasive. However, it must be kept very near to the drone chip.

EMFI (ElectroMagnetic Fault Injection)

The drones are susceptible to an EMFI, which can disrupt the hardware while processing some operations due to the EM probe attack.

This can change a lot of behavior of the CPU of the drones resulting in a gain complete takeover of the drone.
IOActive has published a complete attack report and mitigation steps.

Stop Advanced Email Threats That Target Your Business Email – Try AI-Powered Email Security


[ad_2]
Source link

Nothing Phone (2) could offer notably different design, CEO hints

0
[ad_1]

The Nothing Phone (2) is coming next month, and according to the company’s CEO, it could deliver a notably different design. Carl Pei did not flat-out say this, but he did hint at it, in a way.

The Nothing Phone (2) could offer a notably different design, according to Nothing’s CEO

What exactly happened? Well, Twitter users have been sending him one specific meme, intensively, it seems. It’s a meme in which a guy is unpacking the same shirt he already has on him, one is representing the Phone (1) and the other the Phone (2).

Carl Pei reshared that image on Twitter, while adding: “To everyone sending me this: just you wait and see!”. If that’s not an obvious hint of a different design, then we don’t know what is.

Things do get a bit complicated here, though. The Nothing Phone (2) design did surface in CAD-based renders earlier this month. Soon after that, Carl Pei called that info ‘fake’. The tipster who shared it, @OnLeaks, is usually spot on when it comes to such info, so he was a bit confused at first.

Tipsters are convinced it will look very similar to the Nothing Phone (1)

He went in to confirm the info, and he’s still convinced that his leak is accurate to a high degree. There may be some changes to it, but not anything major, let alone something that would justify the use of the word ‘fake’.

He said that such a term is “greatly exaggerated”. Max Weinbach also said that the leaked renders are “97% of the way there”, suggesting that the design is close to the final one.

If the two tipsters are accurate, then Carl Pei is simply trying to hype up the phone. On the other hand, perhaps he missed the mark entirely. We’ll have to wait and see.

The Nothing Phone (2) will become official on July 11. This will become the company’s second smartphone. The first-gen model arrived in July last year, and it really did manage to attract attention with its design.


[ad_2]
Source link

iPhone 15 & 15 Pro could get a major price hike

0
[ad_1]

Apple’s iPhones are not exactly cheap, so every news regarding a price hike is concerning. The latest one, however, is borderline shocking. Why? Well, it claims that the iPhone 15 Pro and Pro Max will get a major price hike.

The iPhone 15 Pro models could get a major price hike

How much are we talking about here? Based on the information from a Wall Street analyst, Dan Ives (via CNBC), both phones could cost up to $200 more than current-gen models. Needless to say, that’s a major difference.

The iPhone 14 Pro and Pro Max are already very expensive. The iPhone 14 Pro starts at $999, while the iPhone 14 Pro Max starts at $1,099. If we add $200 to each price tag, that means the iPhone 15 Pro could cost $1,199, while the iPhone 15 Pro Max could set you back $1,299.

Do note we’re talking about starting price tags here. Models with more storage will be even more expensive than that. Do note that it’s possible the price hike won’t be as high, it’s possible we’re talking about $100-200.

Dan Ives does not have the exact price tags, but he’s usually great at predicting them. He did, however, say up to $200, not exactly $200, so… we’ll have to wait and see.

The reasons behind it were not shared

What’s the reason behind this? Mr. Ives did not share any details regarding that, but the new iPhones will get some notable improvements, so that could be the reason behind the change.

They’re rumored to come with new frames, made out of titanium. On top of that, both phones are expected to offer improved cameras, especially the iPhone 15 Pro Max, as it’s expected to include a periscope telephoto camera for the first time ever in an iPhone.

All iPhone 15 units will ditch a Lightning port for a Type-C port as well, and so on. This is just a rumor at this point, we won’t know anything for sure until Apple confirms it. The iPhone 15 series is expected to launch in September.


[ad_2]
Source link

Save $130 on the OG Apple Watch SE at Walmart

0
[ad_1]

Apple makes some of the best smartwatches on the market, and its most bang-for-your-buck model, the Apple Watch SE (2020), just became even more affordable at Walmart. A massive discount of $130 brings this wearable health and fitness companion at nearly half of its usual price!

Get it right here!

The Apple Watch SE (2020) in a nutshell

The first generation of the Apple Watch SE comes with Apple’s S5 chipset, which is the same chipset that the Apple Watch 5 came with. It also comes with 32GB of internal storage an 1GB of RAM.

Design-wise, the OG Apple Watch SE is made out of an Ion-X strengthened glass front and ceramic/sapphire crystal back, with an aluminum frame combining the two. The front glass is protecting a Retina LTPO OLED display with a peak brightness of 1000 nits, measuring at 1.78 inches.

You can opt for the version that supports mobile coverage and eSIM if you want to be able to go out without your phone and still have service for contactless payments and calls.

The battery of the Apple Watch SE (2020) holds out about a day (or a little more depending on how you use it), and it charges wirelessly.

As for software, even though it is now three years old, Apple still supports its first SE wearable, and users will continue to enjoy major watchOS updates for at least two more years, so you are safe in terms of new features and optimizations for the near future.

Is it worth buying the Apple Watch SE in 2023?

Absolutely! To put it simply, the Apple Watch SE offers you almost everything that the more expensive and newer models do, and for much less money at that. It might be a little slower at times, but it is definitely not often enough to ruin the user experience. The almost 50% discount we have listed here makes it an even easier option to recommend!


[ad_2]
Source link

LockBit Ransomware Gang Earned $91 Million

0
[ad_1]
LockBit Ransomware Gang

LockBit was one of the most widely used ransomware in 2022, targeting both small and large organizations irrespective of their size or net worth.

The threat actor group deploying this LockBit ransomware was working as a RaaS (Ransomware-as-a-service) based group with affiliates working anonymously worldwide.

The group is also said to have recruited affiliates for deploying the ransomware in various industries like government, agriculture, education, etc. The group also conducted some publicity-generating stunts to attract more people to their group.

Recent reports from CISA (Cybersecurity and Infrastructure Security Agency), the group has reportedly earned a revenue of $91 million in ransom in the United States itself, making it one of the highest-earning malware groups in history.

Attack Timeline

LockBit was discovered as part of an activity in the ABCD ransomware in 2019.  In 2020, the first LockBit-named ransomware was found in the Russian Language. The ransomware has been upgraded to version 2 in June 2021 and version 3 in March 2022.

According to the reports, 18% of the ransomware incidents reported between 1st April 2022 to 31st March 2023 included LockBit ransomware, whereas 22% of ransomware reports in Canada in 2022 were related to the same ransomware.

In addition, the FBI reported that there have been 1700 successful attacks in the US using the LockBit ransomware.

Exploitation of CVE(s)

The affiliates recruited by the LockBit ransomware group were exploiting older and newer vulnerabilities. Some of the very common vulnerabilities exploited by the affiliates were,

  • CVE-2023-0669 –  Fortra GoAnywhere Managed File Transfer (MFT) Remote Code Execution Vulnerability 
  • CVE-2023-27350 – PaperCut MF/NG Improper Access Control Vulnerability
  • CVE-2021-44228 – Apache Log4j2 Remote Code Execution Vulnerability
  • CVE-2021-22986 – F5 BIG-IP and BIG-IQ Centralised Management iControl REST Remote Code Execution Vulnerability
  • CVE-2020-1472 – NetLogon Privilege Escalation Vulnerability
  • CVE-2019-0708 – Microsoft Remote Desktop Services Remote Code Execution Vulnerability
  • CVE-2018-13379 – Fortinet FortiOS Secure Sockets Layer (SSL) Virtual Private Network (VPN) Path Traversal Vulnerability

Mitigations

  • Keep all the OS, hardware, firmware and software up to date
  • Control and restrict all the network connections
  • Apply local execution policies for applications
  • Disable unused ports
  • Investigate abnormal activity and other activities
  • Use Web Filtering
  • Maintain Offline backups of data and encrypt them
  • Create a recovery plan

Stop Advanced Email Threats That Target Your Business Email – Try AI-Powered Email Security


[ad_2]
Source link

Motorola moves Razr+ pre-orders up a day & AT&T has an incredible deal

0
[ad_1]

Motorola claims that they “couldn’t hold in the excitement” another day, and has moved up pre-orders to June 15. So starting tomorrow, you can pre-order the new Razr+. It will still ship on June 23, as was originally announced earlier this month.

Along with that news of the earlier pre-order date, AT&T has also announced a pretty incredible deal for the new Razr+. You’ll be able to get the Razr+ for just $5/month, without a trade-in. That’s $5 per month for 36 months. Which comes out to a final price of $180. That’s a pretty incredible deal for a phone that has an MSRP of $999.

There are a couple of caveats here, like it does require an eligible unlimited plan. And if you cancel or leave AT&T before the 36 months are up, you’ll forfeit the remaining bill credits. So you will need to stick with AT&T for three years.

The Razr+ might be the flipping phone to buy this year

This is really the third-generation of the Razr, since Motorola brought it back as a foldable, and it looks less like the traditional Razr, but it might be the best flipping phone yet.

New this year, Motorola has added a larger front-display. It’s so large on the Razr+, that it is the entire front-side of the phone. It’s about 3.6-inches and for some reason, it’s a 144Hz display. While the inside is a 6.7-inch 165Hz 22:9 aspect ratio display. With almost no crease, as we saw from our hands on a few weeks ago. It also has the Snapdragon 8+ Gen 1, and a 3800mAh battery inside. That might seem small, but it is a huge upgrade over the previous Razr which was just 2800mAh.

It comes in just one SKU, which is the 8GB of RAM and 256GB of storage model. So there’s plenty of storage available here for most people.


[ad_2]
Source link

New Twitter CEO outlines her plans for the social media platform

0
[ad_1]

The new Twitter CEO, Linda Yaccarino, is now making moves to improve the platform’s services. She also shares the same vision with Elon Musk, which is to make the platform an area to share thoughts from varying backgrounds. In a recent tweet thread, Linda Yaccarino highlights her plans for Twitter now that she is in control of its affairs.

As she takes over control of Twitter from Elon Musk, most users of the platform might expect some changes. Well, that might not be the case, as she repeatedly made references to Elon Musk in the tweet explaining her vision for the social media platform. This shows that she concords with Elon’s ideas for the platform before purchasing it.

This isn’t bad, as they are great ideas that aim to promote freedom of speech on Twitter for all users. In her words, Linda Yaccarino says that “Twitter is on a mission to become the world’s most accurate real-time information source.” She also expresses optimism for the platform’s dream of becoming “a global town square for communication.”

Linda Yaccarino takes on the role of Twitter’s CEO to promote accurate information for users

As Linda Yaccarino takes on the role of Twitter’s CEO, there comes an important mantle. Ever since he purchased the social media platform, Elon Musk has held this mantle to the best of his abilities. Now he is handing things over to someone with the technical know-how when it comes to running Twitter and ensuring its users are well taken care of.

Linda Yaccarino was the advertising chair for NBCUniversal, a position she evacuated a few weeks ago. She also worked with the Trump administration, occupying the President’s Council on Sports, Fitness, and Nutrition office. Her achievements and prowess throughout her career make her an ideal choice to fill in Musk’s position at Twitter.

But what are her plans for the social media platform, will there be any changes to the affairs of things? Well, her goal with the social media platform isn’t to bring any change but to build on the already established aims and objectives. This involves becoming a platform that promotes freedom of speech to all users, regardless of their background.

The entirety of this goal is known as Twitter 2.0 and users globally are already getting new features that help in its actualization. With Linda Yaccarino working together with Elon Musk and the team at Twitter, the platform hopes to make some needed improvements. In the coming months, netizens will see how the new Twitter CEO Linda Yaccarino is working to achieve the social media platform’s goals.


[ad_2]
Source link

WhatsApp is adding a new way (kind of) to communicate with your friends

0
[ad_1]
We have more ways than ever to communicate with each other nowadays: you can simply text someone, send them a voice message, or compose an email if it is a more formal conversation. What is that? You can also call people on the phone you say? Sure, if you are weird.

Do you know what’s not so weird (ironically), though? Sending short, spontaneous, raw video clips. Snapchat was the first to make this communication medium popular back when Snapchat was yet to be robbed and swallowed up by Meta’s apps.

While we are on the topic of Meta’s apps stealing prominent Snapchat features, WhatsApp is apparently looking of implementing its own jab at video messaging, as spotted by WABetaInfo in a beta update. The new feature was discovered in both the Android and iOS versions of the app, and it is already accessible to some beta testers.

Of course, WhatsApp users already had the ability to send recorded videos in chat, either by selecting one from their gallery or by recording one on the spot and clicking the send button. The video messaging feature, on the other hand, will work more like voice messages.

In other words, you tap and hold the button while recording, and it will automatically send itself once you remove your finger. Presumably, you would also be able to swipe up to lock the recording in, so you don’t have to keep pressing. You should also be able to swipe left to delete.

The new video messaging button will be where the voice messaging one is, and users have to tap once to switch between the two modes.

Safety-wise, these video messages will be end-to-end encrypted, meaning the only people with access to them would be the sender and recipient. Additionally, the one receiving the video message won’t be able to forward it to others. The video message will stay in the chat after being sent, however, unless it is manually deleted.

The feature is still in beta, but it is safe to assume something as fundamental as this will eventually come to the stable version of the app sometime in the near future.


[ad_2]
Source link

Chinese Hackers Exploit VMware ESXi Zero-Day

0
[ad_1]
VMware ESXi Zero-Day

The Chinese cyberespionage gang, identified as UNC3886, has been spotted employing a VMware ESXi zero-day vulnerability to get escalated privileges on guest virtual machines.

UNC3886 has been using malicious vSphere Installation Bundles (VIBs), typically used to maintain systems and deploy updates, to install backdoors on ESXi hypervisors, and gain access to command execution, file manipulation, and reverse shell capabilities. This activity was first reported in September 2022.

The group’s malicious activities would affect Windows virtual machines (VM), vCenter servers, and VMware ESXi hosts.

UNC3886 VMware Zero-Day Attack

The gang has also used a zero-day vulnerability in VMware Tools to bypass authentication and run privileged commands on Windows, Linux, and PhotonOS (vCenter) guest VMs.

The vulnerability, CVE-2023-20867, has been given a “low severity” rating since it can only be exploited by an attacker with root access to the ESXi server.

“A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine,” VMware said in its security advisory.

Mandiant claims that UNC3886 was seen employing scripts to enumerate all ESXi hosts and their guest VMs, change lists of allowed IPs across all connected ESXi hosts, and collect credentials from compromised vCenter servers using the associated vPostgreSQL database.

Expanded UNC3886 attack path
Expanded UNC3886 attack path

“Additionally, the use of CVE-2023-20867 does not generate an authentication log event on the guest VM when commands are executed from the ESXi host,” researchers said.

The cybersecurity company also saw the group installing two backdoors (VirtualPita and VirtualGate) that used VMCI sockets for persistence and lateral movement.

In addition to enabling network segmentation bypass and the evasion of security inspections for open listening ports, the malware gives the attackers a new degree of persistence (access to the infected ESXi host is recovered by accessing a VM).

“The attack is highly targeted, with some hints of preferred governmental or government-related targets,” Fortinet said.

“The exploit requires a deep understanding of FortiOS and the underlying hardware. Custom implants show that the actor has advanced capabilities, including reverse-engineering various parts of FortiOS.”

Fortimanager attack flow
Fortimanager attack flow

According to Mandiant, UNC3886’s usage of a wide variety of new malware families and harmful tools designed specifically for the platforms they are targeting implies significant research capabilities and an out-of-the-ordinary capacity to comprehend the sophisticated technology the use of the targeted appliance.

In assaults against organizations involved in defense, technology, and telecommunications in the US and the Asia-Pacific area, UNC3886 is renowned for using zero-day vulnerabilities in firewall and virtualization solutions.

Stop Advanced Email Threats That Target Your Business Email – Try AI-Powered Email Security


[ad_2]
Source link

Don’t Miss Out on This Deal on the MSI Creator Z16

0
[ad_1]

Amazon has a great deal on the MSI Creator Z16 Professional Laptop right now, where you can pick it up for just $1,499. That’s going to save you about $1,000 on this laptop. Making it a really great deal right now.

MSI Creator Z16 – Amazon

Why you should buy the MSI Creator Z16

The MSI Creator Z16 is a powerful and versatile laptop that is perfect for creative professionals. It features a 16-inch QHD+ (2560×1600) display with a 120Hz refresh rate, which is ideal for video editing, graphic design, and gaming. The laptop is also powered by an 11th Gen Intel Core i9 processor and an NVIDIA GeForce RTX 3060 graphics card, which provides plenty of power for demanding tasks.

In addition to its powerful performance, the MSI Creator Z16 also features a number of other features that make it ideal for creative professionals. These include a backlit keyboard, a fingerprint sensor, a Thunderbolt 4 port, and a Wi-Fi 6E connection. The laptop also comes with a number of pre-installed creative software applications, such as Adobe Photoshop, Illustrator, and Premiere Pro.

The MSI Creator Z16 is a great value for creative professionals who are looking for a powerful and versatile laptop. It is currently on sale for just $1,499, which is a great deal for a laptop with this level of performance and features.

Here are some of the reasons why you should buy the MSI Creator Z16:

  • Powerful performance: The 11th Gen Intel Core i9 processor and NVIDIA GeForce RTX 3060 graphics card provide plenty of power for demanding tasks such as video editing, graphic design, and gaming.
  • Stunning display: The 16-inch QHD+ (2560×1600) display with a 120Hz refresh rate is ideal for video editing, graphic design, and gaming.
  • Versatile features: The laptop also features a backlit keyboard, a fingerprint sensor, a Thunderbolt 4 port, and a Wi-Fi 6E connection.
  • Great value: The MSI Creator Z16 is currently on sale for just $1,499, which is a great deal for a laptop with this level of performance and features.

If you are a creative professional who is looking for a powerful and versatile laptop, the MSI Creator Z16 is a great option. It is currently on sale for just $1,499, which is a great deal.

MSI Creator Z16 – Amazon


[ad_2]
Source link